Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-03-2020
Ran by SHINKANZEN_3 (24-03-2020 20:05:20)
Running from C:\Users\SHINKANZEN_3\Desktop
Windows 10 Home Version 1909 18363.720 (X64) (2020-02-27 21:31:11)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-668756172-322552514-2229198216-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-668756172-322552514-2229198216-503 - Limited - Disabled)
Guest (S-1-5-21-668756172-322552514-2229198216-501 - Limited - Disabled)
SHINKANZEN_3 (S-1-5-21-668756172-322552514-2229198216-1001 - Administrator - Enabled) => C:\Users\SHINKANZEN_3
WDAGUtilityAccount (S-1-5-21-668756172-322552514-2229198216-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.1.1.1472 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 20.2.2 - Advanced Micro Devices, Inc.)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 80.0.3621.133 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.6.605.0 - AVAST Software) Hidden
Branding64 (HKLM\...\{856DA29A-EA4A-468B-BBC2-B5F60DD75BFE}) (Version: 1.00.0002 - Advanced Micro Devices, Inc.) Hidden
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CrystalDiskInfo 8.3.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.3.2 - Crystal Dew World)
Divinity Original Sin 2 Definitive Edition v.3.6.58.1306 (36113) (HKLM-x32\...\Divinity Original Sin 2 Definitive Edition_is1) (Version:  - )
DOOM 64 (HKLM-x32\...\DOOM 64_is1) (Version:  - )
DOOMEternal version final (HKLM-x32\...\DOOMEternal_is1) (Version: final - The)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
e-Saver version 3.4.2 (HKLM-x32\...\{C97CA73D-E96B-4B42-830E-D0F7BD780FB8}_is1) (Version: 3.4.2 - AOC)
Far Cry 5 Gold Edition MULTi15 - ElAmigos verze 1.011 (HKLM-x32\...\{94EF50C3-1479-48BE-8E80-D54680BCB911}_is1) (Version: 1.011 - Ubisoft)
HG9015G Audio 7.1 (HKLM-x32\...\SSS16xxAudioExt) (Version: 3.21.2018.104 - SHENZHEN MARK TECHNOLGY CO.,LTD)
ICQ (verze 10.0.39800) (HKU\S-1-5-21-668756172-322552514-2229198216-1001\...\icq.desktop) (Version: 10.0.39800 - Mail.ru LLC)
i-Menu version 4.3.6 (HKLM-x32\...\{0121C0BD-363C-4B1D-8B64-FE7681A37D0A}_is1) (Version: 4.3.6 - AOC)
Java 8 Update 241 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180241F0}) (Version: 8.0.2410.7 - Oracle Corporation)
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.2.32 - PandoraTV)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Excel 2016 - cs-cz (HKLM\...\ExcelRetail - cs-cz) (Version: 16.0.12527.20278 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 18.151.0729.0013 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-668756172-322552514-2229198216-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.21.27702 (HKLM-x32\...\{f4220b74-9edd-4ded-bc8b-0342c1e164d8}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Word 2016 - cs-cz (HKLM\...\WordRetail - cs-cz) (Version: 16.0.12527.20278 - Microsoft Corporation)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.12527.20242 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.12527.20278 - Microsoft Corporation) Hidden
OpenOffice 4.1.5 (HKLM-x32\...\{2FEA9841-64DE-4FA5-A36F-1CD23E2790EB}) (Version: 4.15.9789 - Apache Software Foundation)
Opera Stable 67.0.3575.97 (HKU\S-1-5-21-668756172-322552514-2229198216-1001\...\Opera 67.0.3575.97) (Version: 67.0.3575.97 - Opera Software)
qBittorrent 4.2.0 (HKLM-x32\...\qBittorrent) (Version: 4.2.0 - The qBittorrent project)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
Screen+ version Screen+ 1.4.2 (HKLM\...\Screen+_is1) (Version: Screen+ 1.4.2 - AOC)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 99.0 - Ubisoft)
Watch_Dogs 2 (HKLM-x32\...\{B0E33297-78B1-4B37-B8C1-39150F2DEE43}_is1) (Version:  - Ubisoft)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
Wondershare Video Converter Ultimate(Build 10.0.7.97) (HKLM-x32\...\Video Converter Ultimate_is1) (Version: 10.0.7.97 - Wondershare Software)

Packages:
=========
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.5.9.0_x86__kgqvnymyfvs32 [2020-02-27] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.33.4.0_x86__kgqvnymyfvs32 [2020-03-18] (king.com)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-02-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-02-27] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [2020-02-28] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20503.0_x64__8wekyb3d8bbwe [2020-03-06] (Microsoft Corporation) [MS Ad]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.1.137.0_x64__dt26b99r8h8gj [2020-02-27] (Realtek Semiconductor Corp)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0 [2020-03-16] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2020-02-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-03-02 12:08 - 2020-03-02 12:08 - 098275328 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
2020-03-02 12:08 - 2020-03-02 12:08 - 000092672 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
2020-03-02 12:08 - 2020-03-02 12:08 - 003922432 _____ () [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 003567616 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2020-02-26 18:07 - 2020-02-26 18:07 - 001518592 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\WVR\OpenVR\bin\win64\driver_amdwvr.dll
2018-07-15 13:15 - 2018-07-15 13:15 - 000885560 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicExplorer64.dll
2018-07-15 13:15 - 2018-07-15 13:15 - 003664696 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2018-07-15 13:15 - 2018-07-15 13:15 - 000291128 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\WINDOWS\system32\StartMenuHelper64.dll
2020-03-22 09:48 - 2015-02-27 10:35 - 000489984 _____ (Newtonsoft) [File not signed] C:\Program Files (x86)\Wondershare\WAF\2.4.3.224\Newtonsoft.Json.dll
2020-02-28 10:01 - 2017-11-03 10:44 - 000232960 ____N (Solid State System) [File not signed] C:\Program Files (x86)\HG9015G Audio 7.1\DLL3S_UsbAudio16xx_x32.dll
2020-03-02 12:08 - 2020-03-02 12:08 - 000547840 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\chrome_elf.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000039424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000413696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000519168 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 001431040 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 001180672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000135680 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qwindowsvistastyle.dll
2020-02-26 18:15 - 2020-02-26 18:15 - 006010880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 006345216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 001078272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 004000256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 003802624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000171008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickControls2.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 001083904 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5QuickTemplates2.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000205312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Sql.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000376320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 092323328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 005560832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 000188416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-07-24 12:37 - 2019-07-24 12:37 - 002888704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000287232 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000329216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000089088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000312320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2019-07-24 12:38 - 2019-07-24 12:38 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2020-02-26 18:15 - 2020-02-26 18:15 - 000085504 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtWebEngine\qtwebengineplugin.dll
2020-03-22 09:48 - 2017-04-20 14:39 - 000087552 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Wondershare\WAF\2.4.3.224\WsAppCollect.dll
2020-03-22 09:48 - 2017-04-20 14:39 - 000197632 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Wondershare\WAF\2.4.3.224\WsAppCommon.dll
2020-03-22 09:47 - 2017-08-08 10:36 - 000087552 _____ (Wondershare) [File not signed] D:\Video Converter Ultimate\Tasks.dll
2020-03-22 09:47 - 2017-08-08 10:36 - 000105472 _____ (Wondershare) [File not signed] D:\Video Converter Ultimate\Utility.dll
2020-03-22 09:47 - 2017-08-08 10:36 - 000771072 _____ (Wondershare) [File not signed] D:\Video Converter Ultimate\WUL.Core.dll
2020-03-22 09:47 - 2017-08-08 10:36 - 001862144 _____ (Wondershare) [File not signed] D:\Video Converter Ultimate\WUL.Ctrls.dll
2020-03-22 09:47 - 2017-08-08 10:36 - 000048640 _____ (Wondershare) [File not signed] D:\Video Converter Ultimate\WUL.Localization.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-02-27 22:20 - 2020-02-27 22:19 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-668756172-322552514-2229198216-1001\Control Panel\Desktop\\Wallpaper -> D:\Stažené\562719.jpg
DNS Servers: 78.157.167.7 - 78.157.167.57
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{613B3BC2-D5B7-48E4-ADDE-E47B00662E3D}F:\total war warhammer ii\warhammer2.exe] => (Allow) F:\total war warhammer ii\warhammer2.exe (The Creative Assembly Limited -> The Creative Assembly Ltd) [File not signed]
FirewallRules: [UDP Query User{CCD7A629-E259-4ED3-8DEB-C1ADE5D277FB}F:\total war warhammer ii\warhammer2.exe] => (Allow) F:\total war warhammer ii\warhammer2.exe (The Creative Assembly Limited -> The Creative Assembly Ltd) [File not signed]
FirewallRules: [{108365EC-604A-4F85-8238-0B483BD275D3}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{9A199BC8-E86D-4927-AFB5-004B994817FC}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [TCP Query User{8780BA33-ACA7-415B-9727-941AD891C827}C:\program files\java\jre1.8.0_241\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_241\bin\javaw.exe
FirewallRules: [UDP Query User{9283AD24-25CB-4312-883A-BA5BBBEFBEE0}C:\program files\java\jre1.8.0_241\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_241\bin\javaw.exe
FirewallRules: [TCP Query User{664A3731-FBEC-487E-8AEC-0CA2C110354B}F:\kingdom come deliverance\bin\win64\kingdomcome.exe] => (Allow) F:\kingdom come deliverance\bin\win64\kingdomcome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [UDP Query User{4E9D21B1-E347-401C-A2B3-DEF99FBCDA7A}F:\kingdom come deliverance\bin\win64\kingdomcome.exe] => (Allow) F:\kingdom come deliverance\bin\win64\kingdomcome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{B78A26A1-A433-4CF2-ACB9-F573850E5CEB}F:\rise of the tomb raider\rottr.exe] => (Allow) F:\rise of the tomb raider\rottr.exe No File
FirewallRules: [UDP Query User{048A7760-CBAA-4087-93C7-C77215B2AD33}F:\rise of the tomb raider\rottr.exe] => (Allow) F:\rise of the tomb raider\rottr.exe No File
FirewallRules: [TCP Query User{192190CE-373B-469A-AF40-6A55FA1D5D1C}F:\games\total war three kingdoms\three_kingdoms.exe] => (Allow) F:\games\total war three kingdoms\three_kingdoms.exe (The Creative Assembly Limited -> The Creative Assembly Ltd)
FirewallRules: [UDP Query User{E097D555-8B99-4B9E-A7FF-E2311628DCA0}F:\games\total war three kingdoms\three_kingdoms.exe] => (Allow) F:\games\total war three kingdoms\three_kingdoms.exe (The Creative Assembly Limited -> The Creative Assembly Ltd)
FirewallRules: [TCP Query User{11E0D967-4A58-43E2-B65C-1CB53E47AADC}F:\prey\binaries\danielle\x64\release\prey.exe] => (Allow) F:\prey\binaries\danielle\x64\release\prey.exe No File
FirewallRules: [UDP Query User{FFB8ABAA-DEDD-40D3-A233-BE87C8312558}F:\prey\binaries\danielle\x64\release\prey.exe] => (Allow) F:\prey\binaries\danielle\x64\release\prey.exe No File
FirewallRules: [{6C4343BA-4161-43C3-BDEB-A01B9FC6D4AC}] => (Allow) F:\Far Cry New Dawn\bin\FarCryNewDawn.exe No File
FirewallRules: [{6F740584-F446-41E3-A574-75D3BF712931}] => (Allow) F:\Far Cry New Dawn\bin\FarCryNewDawn.exe No File
FirewallRules: [{352ED8CB-6C4A-450A-8A25-5A9FA4A540CC}] => (Allow) F:\Far Cry New Dawn\bin\FarCryNewDawn.exe No File
FirewallRules: [{07932E14-33C8-4354-A307-297F01EE86B3}] => (Allow) F:\Far Cry New Dawn\bin\FarCryNewDawn.exe No File
FirewallRules: [{1A3CD73B-D807-4A6E-9E08-927CAC8FBD15}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{C11FD778-7ADA-466C-9177-AAD8E8AE80F5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{8A305AC5-1D0D-4A8C-951F-5C3E5D0FE5F3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{C64332D8-ECC3-4E36-A4BB-CB1EC8A9C868}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D2A61508-62DA-455E-AB72-A420B85C422F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{DB88596F-3C6E-4464-BAFB-8FFDF24F9258}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{09AC59EA-AD02-4BBD-A024-4172355641FD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{EB71D273-BBE5-4F19-9397-ADCC8AC555B1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2297F0AA-57F5-4EBC-A1DE-56AED9C90522}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6946CE7C-5645-4FC1-9BD3-093D670B35E9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F35969EE-FD09-4D3F-8787-6C2F7EBCE373}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{A858193E-DA2C-4E30-A96D-8CE891694D84}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.128.721.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{F16C56AA-54EF-40BD-B163-307EFD729E58}F:\divinity original sin 2 definitive edition\bin\eocapp.exe] => (Allow) F:\divinity original sin 2 definitive edition\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [UDP Query User{5AB4AB7E-89D2-45BA-A703-993B1B030D53}F:\divinity original sin 2 definitive edition\bin\eocapp.exe] => (Allow) F:\divinity original sin 2 definitive edition\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [{C2C3F5EF-8AA4-4D21-9075-BC6B42486318}] => (Allow) C:\Users\SHINKANZEN_3\AppData\Local\Programs\Opera\67.0.3575.79\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{DF4A90A6-5F7C-4532-A316-A53331BACF67}] => (Block) F:\Fallout 4\Fallout4.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{56DC349C-5454-4C03-B9AF-59765D02E2DA}] => (Allow) F:\WatchDogs\bin\Watch_Dogs.exe No File
FirewallRules: [{A413D0BE-0FA8-4BDD-8E13-C6B3EB9BBE7B}] => (Allow) F:\WatchDogs\bin\Watch_Dogs.exe No File
FirewallRules: [{37EFF40E-B4B2-49F1-9DC0-AC1A47C6236D}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{13404BD9-D52A-4CDB-9A1B-1ECE297BABBC}] => (Allow) C:\Users\SHINKANZEN_3\AppData\Local\Programs\Opera\67.0.3575.97\opera.exe (Opera Software AS -> Opera Software)

==================== Restore Points =========================

11-03-2020 12:30:55 Naplánovaný kontrolní bod
13-03-2020 17:38:18 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026
19-03-2020 17:06:34 Nainstalováno rozhraní DirectX
24-03-2020 11:19:14 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/24/2020 07:57:20 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4516,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (03/24/2020 06:37:37 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (15912,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (03/24/2020 06:27:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program DOOMEternalx64vk.exe verze 1.0.0.1 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 42ec

Čas spuštění: 01d601ff878c9405

Čas ukončení: 4294967295

Cesta k aplikaci: F:\DOOMEternal\DOOMEternalx64vk.exe

ID hlášení: 43bf9bca-51da-49df-916f-f892c51a0a54

Úplný název balíčku s chybou: 

ID aplikace relativní podle balíčku s chybou: 

Typ zablokování: Top level window is idle

Error: (03/24/2020 06:27:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Radeonsoftware.exe, verze: 10.1.2.1788, časové razítko: 0x5e56fc17
Název chybujícího modulu: ntdll.dll, verze: 10.0.18362.719, časové razítko: 0x64d10ee0
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f92a9
ID chybujícího procesu: 0x48a4
Čas spuštění chybující aplikace: 0x01d601ff5410cc6f
Cesta k chybující aplikaci: C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 9281f483-dcbf-4b27-aeda-9b19df3b58bf
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (03/24/2020 06:19:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10504,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (03/24/2020 06:13:07 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program DOOMEternalx64vk.exe verze 1.0.0.1 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: e40

Čas spuštění: 01d601fec9bdcaa4

Čas ukončení: 4294967295

Cesta k aplikaci: F:\DOOMEternal\DOOMEternalx64vk.exe

ID hlášení: d440958c-adfd-4206-9647-04ede83b18b0

Úplný název balíčku s chybou: 

ID aplikace relativní podle balíčku s chybou: 

Typ zablokování: Top level window is idle

Error: (03/24/2020 06:11:43 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Radeonsoftware.exe, verze: 10.1.2.1788, časové razítko: 0x5e56fc17
Název chybujícího modulu: ntdll.dll, verze: 10.0.18362.719, časové razítko: 0x64d10ee0
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000f92a9
ID chybujícího procesu: 0x2750
Čas spuštění chybující aplikace: 0x01d601a6f9d02c55
Cesta k chybující aplikaci: C:\Program Files\AMD\CNext\CNext\Radeonsoftware.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: e53d9b50-a3a4-4104-b70e-782dd190b44e
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (03/24/2020 06:11:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: dwm.exe, verze: 10.0.18362.387, časové razítko: 0x8e064b77
Název chybujícího modulu: d3d11.dll, verze: 10.0.18362.387, časové razítko: 0x7e72d1cb
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000002fb83
ID chybujícího procesu: 0x490
Čas spuštění chybující aplikace: 0x01d601a6ea9d5741
Cesta k chybující aplikaci: C:\WINDOWS\system32\dwm.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\d3d11.dll
ID zprávy: a21672bf-e9a7-4f52-8e23-a328e4bf8387
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (03/24/2020 07:32:05 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-6SV21Q8)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/23/2020 02:01:30 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (13:22:58, ‎23.‎03.‎2020) bylo neočekávané.

Error: (03/22/2020 07:26:50 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-6SV21Q8)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/22/2020 07:26:50 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-6SV21Q8)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/22/2020 07:26:50 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-6SV21Q8)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/22/2020 03:30:27 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-6SV21Q8)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby BcastDVRUserService_49cf4 s argumenty Není k dispozici za účelem spuštění serveru: 
Windows.Media.Capture.Internal.AppCaptureShell

Error: (03/22/2020 03:30:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Uživatelská služba pro GameDVR a vysílání her_49cf4 neuspěla při spuštění v důsledku následující chyby: 
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (03/22/2020 03:30:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Uživatelská služba pro GameDVR a vysílání her_49cf4 bylo dosaženo časového limitu (30000 ms).


==================== Memory info =========================== 

BIOS: American Megatrends Inc. 1.C0 09/23/2019
Motherboard: Micro-Star International Co., Ltd B450 GAMING PLUS (MS-7B86)
Processor: AMD Ryzen 5 3600 6-Core Processor 
Percentage of memory in use: 54%
Total physical RAM: 16337.75 MB
Available physical RAM: 7384.14 MB
Total Virtual: 25041.75 MB
Available Virtual: 11418.18 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:195.43 GB) (Free:120.37 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:1863.01 GB) (Free:22.16 GB) NTFS ==>[system with boot components (obtained from drive)]
Drive f: (Nový svazek) (Fixed) (Total:757.81 GB) (Free:93.03 GB) NTFS
Drive g: (ESD-USB) (Removable) (Total:28.9 GB) (Free:5.47 GB) NTFS

\\?\Volume{3a150ffc-14a6-47e2-b27e-d053fc881387}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.14 GB) NTFS
\\?\Volume{f3926240-da06-46c6-b65f-7d6f1571c17a}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: FB0EAC66)
Partition 1: (Active) - (Size=1863 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 28.9 GB) (Disk ID: B2D70A2C)
Partition 1: (Active) - (Size=28.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================