Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-06-2020
Ran by Tom (03-07-2020 22:26:24)
Running from D:\Stiahnuté súbory
Windows 10 Pro Version 2004 19041.329 (X64) (2020-06-20 10:34:32)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2064958064-1934800041-1553970938-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2064958064-1934800041-1553970938-503 - Limited - Disabled)
Guest (S-1-5-21-2064958064-1934800041-1553970938-501 - Limited - Disabled)
Tom (S-1-5-21-2064958064-1934800041-1553970938-1002 - Administrator - Enabled) => C:\Users\Tom
WDAGUtilityAccount (S-1-5-21-2064958064-1934800041-1553970938-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.75.1089 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.68 - Piriform)
Citrix Workspace 1911 (HKLM-x32\...\CitrixOnlinePluginPackWeb) (Version: 19.11.0.50 - Citrix Systems, Inc.)
Eurobattle.net (HKLM-x32\...\Eurobattle.net) (Version:  - Eurobattle.net)
Exodus (HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\exodus) (Version: 20.7.3 - Exodus Movement Inc)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 10.0.0.35798 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 83.0.4103.116 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HP Hotkey Support (HKLM-x32\...\{6E7401DB-B722-4428-BE94-DD4740CF6464}) (Version: 5.0.28.1 - Hewlett-Packard Company)
LibreOffice 6.4.4.2 (HKLM\...\{F00C391B-6092-40E7-9ECD-144933865571}) (Version: 6.4.4.2 - The Document Foundation)
Malwarebytes version 4.1.2.73 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.2.73 - Malwarebytes)
Microsoft Teams (HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\Teams) (Version: 1.3.00.15561 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.16.27012 (HKLM-x32\...\{427ada59-85e7-4bc8-b8d5-ebf59db60423}) (Version: 14.16.27012.6 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.16.27012 (HKLM-x32\...\{67f67547-9693-4937-aa13-56e296bd40f6}) (Version: 14.16.27012.6 - Microsoft Corporation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.8.7 - Notepad++ Team)
Online Plug-in (HKLM-x32\...\{222A41FD-855F-44DC-AC1B-519EC589DB1C}) (Version: 19.11.0.50 - Citrix Systems, Inc.) Hidden
Opera Stable 68.0.3618.173 (HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\Opera 68.0.3618.173) (Version: 68.0.3618.173 - Opera Software)
Self-service Plug-in (HKLM-x32\...\{713A7965-2BF8-4D7F-B424-548CF9AE849D}) (Version: 19.11.0.33 - Citrix Systems, Inc.) Hidden
Spotify (HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\Spotify) (Version: 1.1.35.458.g891674f3 - Spotify AB)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.63 - Synaptics Incorporated)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Warcraft III eSK 1.26.0.6401 (HKLM-x32\...\Warcraft III eSK 1.26.0.6401) (Version:  - )

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-06-20] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-06-20] (Microsoft Corporation) [MS Ad]
MSN Počasie -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-06-20] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2064958064-1934800041-1553970938-1002_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Tom\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20091.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2064958064-1934800041-1553970938-1002_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Tom\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20091.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-03] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2020-02-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-03] (Malwarebytes Corporation -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-06-21 13:19 - 2020-06-21 13:19 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\4bbf026f906027cae5d3d2382beb6b81\A4.Foundation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\94c6f7cf7800f40b595c64b981572afa\AEM.Actions.CCAA.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\7dcd722e4995f4b10d229406e480e3ed\AEM.Plugin.EEU.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\3cca08cbab9e85a7aaa5c78d8524d550\AEM.Plugin.Hotkeys.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\f5dc98db8f6b4b2981ff2aa184554222\AEM.Plugin.DPPE.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\93edb36ff1d934c3c3e7dda5f38955df\AEM.Plugin.Source.Kit.Server.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\9bfb846a0e24eb9876e8634e424cd1c2\AEM.Plugin.WinMessages.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\666563dafe3d97ff85705a52f804b05c\AEM.Plugin.REG.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\bff4858adb4ef789211f10843d2cf675\AEM.Plugin.GD.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\4ebc4ad49150b4051e09b8d60bdd14df\AEM.Server.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\20934b77be45afe98002eac7c457389f\AEM.Server.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\9de70198e75ee250af8d78a42b2f72a0\APM.Foundation.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\9af20af090e3bb06b23a7451c47df4aa\ATICCCom.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\2aa320785e65adc37a2489a7cf54f9a2\CCC.Implementation.ni.dll
2020-06-21 14:19 - 2020-06-21 14:19 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\e12cf6abc8b2c8e621a8e0a689af97cf\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\861a1fdae716957fecea5a46187ff835\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\abf1aedba11ab68377ec74df62c1bb37\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\493dbea1f019f30a7ddb7443055b4d0a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\2b0a19f596eba1aae1bd165a618ef08a\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\e4a542bb5fbff8caff8f63d78def0b98\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\f9c9ed421929bf27d1d496d38bc372e8\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\2b71c1b5648b8d266c6edead4900dc02\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2020-06-21 14:19 - 2020-06-21 14:19 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\0ca849cf63d8f8d12d0e5b328a0ac59c\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\1019d3de2897ac20758d94b93d445a0c\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\d9f68848e72ee8ec8d32711112c1b4ce\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\0a97b5c19c371c9cf2334864a4ca09e8\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\d23aa0df34e32d49e61645336e09f7fb\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\5985c2ac84fd517f0efdc598e4c66c61\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\069150e1f7cde157e210a5b9d4f01b28\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\bbc9d0013546f02e384a65f8fde0a045\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\32e1c7238775edc0524ff39bdc94c0c2\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\cf8c73c6d70cda6000757bed1f4d38f0\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\29d253cd37ea7ce78cd1946b3b254d58\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2020-06-21 14:19 - 2020-06-21 14:19 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\23df70b06082675b947426691b2592a1\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\09ad8d649980f6aae391c5d478707271\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000096256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\4583320aab9debd8994406587fa012e0\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\bde29756560e38ed24eead78d157e5d6\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\3e79b18abb18896d5b7b1b4f8663c4ca\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\8db33010c2d20271316df57776612c1b\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\e62a4f3b0cb0a47fedf29edca0291e2a\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\943a8b463daf92e17e225926a366b7a9\CLI.Caste.A4.Runtime.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\c851fe212ef659138b76b8037e01a1ee\CLI.Caste.A4.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\f0a2a87b7635cf922dc97d78b076952d\CLI.Caste.A4.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\c8dea12e320d47d2c8643694a471dfd2\CLI.Caste.Fuel.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\99d68b755cdef93fd001183ebe86eb66\CLI.Caste.Fuel.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\7015849c04569b451633ca3e8f1d43dd\CLI.Caste.Fuel.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\dbe4acbc4c78a62414294b514c25152a\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\dbd76f3d1487726f97364662132ec186\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\0e58c7ebc463ea8e02bfffe689296c07\CLI.Caste.Graphics.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\a75bc769d282f5db09d9fb8abdda0e9e\CLI.Caste.HydraVision.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\dcad0f3dbd916e3016ea4b06c038599f\CLI.Caste.HydraVision.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\b5a0da7d56c22aead6f2035714384f88\CLI.Caste.HydraVision.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\4cf55bc3ce0af5704883d44625c8a2f6\CLI.Caste.Platform.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\c3858a90645bd282732bdd848c2a6f94\CLI.Caste.Platform.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\c8c6f718e716941269a07409520f0191\CLI.Caste.Platform.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\937cdee80ce2384fff861c88321d0df7\CLI.Component.Runtime.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\51f4919375845e6ab18185a73bb89b7b\CLI.Component.Systemtray.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\11e22b2608ca5b133b53ae19f420e38a\CLI.Component.Dashboard.ProfileManager2.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\30793cd81146442fc80b02731f7ef5c9\CLI.Component.Runtime.Shared.Private.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\97bb205bea2ebdf78c2e8661b3764304\CLI.Component.Runtime.Extension.EEU.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\a02e5d264c5695e0ca8e01ba9ca8a762\CLI.Component.Dashboard.Shared.Private.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\5e76f0a19eca0118d116c9d81d33ea1c\CLI.Component.Client.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\b309e3fe41aed7f96e38d96716b47844\CLI.Component.Dashboard.Shared.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\ffe4244850fc86e392c80bff1d8f62f3\CLI.Foundation.Private.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\2d85782a07afc1aa9bd42ed4feacfab1\CLI.Foundation.XManifest.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\c444e3a56492dc0f3dbfd05558797aec\CLI.Foundation.CoreAudioAPI.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 001079296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\ddfc2151538b6bb29770f08fc374a824\CLI.Foundation.Client.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\59e3f58fdf3e4aa22654680e4ef3421e\CLI.Foundation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\f289f8d8d650c55f0b81e60b7f5adcd5\DEM.Foundation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\fb778dad37923d0d127bee9dcd38f5ba\DEM.Graphics.I0601.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\7fb78a000631199322a991e99501ddae\DEM.Graphics.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\11abee620406133ba38e0982d4418ef7\Fuel.Foundation.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\5c9a1c6fd08b696275c10d45776def16\LOG.Foundation.Implementation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\0eea54290272678bf4b800d77d555db7\LOG.Foundation.Private.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\47a062636c881a820d630d6d1dba8986\LOG.Foundation.Implementation.Private.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\b789e03aeded35f012c47ac742c6ec3d\LOG.Foundation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\901e151ec06b74e4eb7cd98a9393a300\MOM.Foundation.ni.dll
2020-06-21 14:21 - 2020-06-21 14:21 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\f2ce648d44a601ec93e254312a574f2b\MOM.Implementation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\96d1e94341ac4ab49b2b57850314b135\NEWAEM.Foundation.ni.dll
2015-08-04 00:14 - 2015-08-04 00:14 - 000004608 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiamenu.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\862fd0ef8582db0dca584ff36fa79675\ADL.Foundation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\75ea0b0982e0590beefe6364e05882b5\APM.Server.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000783872 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\5fc2107171e91cf282d3988b242a89f4\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000357888 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\49f5e4564410a2890675f88a2f769208\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000595456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\768a115284ae6b813f70981c03fe42ec\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\03566fbdf3a6840f2f0edcbf0d7570ad\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\e710938184b3d818ec0a0cc6c2b02314\CLI.Component.Client.Shared.Private.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\8a764a8c5e94a151746774884ee37f4d\CLI.Component.Runtime.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\cf4f9476d4bd2023c0d9521f9702102c\CLI.Component.Dashboard.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000011264 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\03dd655f43218657028a4fa8b9fff76a\DEM.Graphics.I0702.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\9ed7debd1872dd6168f4e5b734b74165\DEM.Graphics.I0709.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\caa3fe1c237cfa8390ae05ebbbf129f7\DEM.Graphics.I0710.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\147e20049694132251c2aaa16285ef85\DEM.Graphics.I0712.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\d995792d611867b4059d0d4b60aa4aa4\DEM.Graphics.I0804.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\bad14791c11d2b3cd6bf4b608305940a\DEM.Graphics.I0901.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\8b8264140ce2ace660218cdf5483fe57\DEM.Graphics.I1010.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\b2dc61678a6a40495536019aea189417\Localization.Foundation.Private.ni.dll
2020-06-21 14:21 - 2020-06-21 14:21 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\edda9a8623a8c20dc216b392241b1fbf\ResourceManagement.Foundation.Implementation.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\1758676d4dd80b99c54ca87398f97903\ResourceManagement.Foundation.Private.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\c129ff848abc3acb4c9e9d0b1b14fcec\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\0e430e3a48539a75436506be3ba673e8\CLI.Caste.Graphics.Shared.ni.dll
2020-06-21 14:20 - 2020-06-21 14:20 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\1e6a87c655da1d728adeba616bd5b853\CLI.Caste.Graphics.Runtime.ni.dll
2013-01-23 23:03 - 2013-01-23 23:03 - 000113496 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] [File is in use] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\CaslShared.dll
2013-01-23 23:03 - 2013-01-23 23:03 - 000092504 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] [File is in use] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\hpcasl.dll
2013-03-26 21:12 - 2013-03-26 21:12 - 000056832 _____ (Hewlett-Packard Development Company, L.P.) [File not signed] [File is in use] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HP.Mobile.Shared.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 000335360 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\41df51e3441dcfb43cfc8fffda3dc8d8\Microsoft.WindowsAPICodePack.ni.dll
2020-06-21 13:19 - 2020-06-21 13:19 - 002546688 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\4f1b44c01f9aaf8612a1a9c7803b63af\Microsoft.WindowsAPICodePack.Shell.ni.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MSIServer => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-06-20 13:23 - 2020-06-23 18:10 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: FoxitReaderUpdateService => 2
HKLM\...\StartupApproved\Run32: => "ConnectionCenter"
HKLM\...\StartupApproved\Run32: => "Redirector"
HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-2064958064-1934800041-1553970938-1002\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{DCA9D496-39D5-4D66-BAFE-90AB26BC3398}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{32FF3468-BA29-46A9-8C7C-E565C5F868BF}C:\users\tom\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tom\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{7F892F36-A0CC-4726-908E-D32B5A82DC22}C:\users\tom\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\tom\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{D9EBA83C-7188-44B8-9457-241F2F120778}C:\users\tom\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tom\appdata\roaming\utorrent\utorrent.exe => No File
FirewallRules: [UDP Query User{D31D0808-8C20-41B3-B988-55A4815FC222}C:\users\tom\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tom\appdata\roaming\utorrent\utorrent.exe => No File
FirewallRules: [TCP Query User{FFC63981-5C05-4268-B2EE-BE131102B495}C:\users\tom\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\tom\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{67A40EC4-FA6D-43B8-A3D2-5DAE4ABD4171}C:\users\tom\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\tom\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{476F34FB-4DA4-464A-89D7-CA3EFA4D46E3}D:\hry\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\hry\warcraft iii frozen throne esk\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [UDP Query User{C19B0E5E-90EC-4A25-9425-AE4AD88E5352}D:\hry\warcraft iii frozen throne esk\war3.exe] => (Allow) D:\hry\warcraft iii frozen throne esk\war3.exe (Blizzard Entertainment) [File not signed]
FirewallRules: [TCP Query User{C4FAF192-502B-49A4-9726-942974C57C86}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe () [File not signed]
FirewallRules: [UDP Query User{25BCA65E-96C8-4A08-B10F-EE40672936B4}C:\program files (x86)\eurobattle.net\gproxy.exe] => (Allow) C:\program files (x86)\eurobattle.net\gproxy.exe () [File not signed]

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:109.97 GB) (Free:79.92 GB) (73%)

==================== Faulty Device Manager Devices ============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Base System Device
Description: Base System Device
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Base System Device
Description: Base System Device
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/02/2020 01:53:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: war3.exe, verzia: 1.26.0.6401, časová značka: 0x4d83baa9
Názov chybujúceho modulu: Game.dll_unloaded, verzia: 1.26.0.6401, časová značka: 0x4d83bb00
Kód výnimky: 0xc0000005
Odstup chyby: 0x00007760
Identifikácia chybujúceho procesu: 0x1ef0
Čas spustenia chybujúcej aplikácie: 0x01d6505e3d5d016e
Cesta chybujúcej aplikácie: D:\Hry\Warcraft III Frozen Throne eSK\war3.exe
Cesta chybujúceho modulu: Game.dll
Identifikácia hlásenia: 9e98f6dd-2237-4b3e-bbbb-b59689982d29
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (07/02/2020 01:53:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: war3.exe, verzia: 1.26.0.6401, časová značka: 0x4d83baa9
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000005
Odstup chyby: 0x35800000
Identifikácia chybujúceho procesu: 0x1ef0
Čas spustenia chybujúcej aplikácie: 0x01d6505e3d5d016e
Cesta chybujúcej aplikácie: D:\Hry\Warcraft III Frozen Throne eSK\war3.exe
Cesta chybujúceho modulu: unknown
Identifikácia hlásenia: 36a0dae4-72ff-4462-bb0f-26846353c350
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (07/02/2020 12:19:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: war3.exe, verzia: 1.26.0.6401, časová značka: 0x4d83baa9
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000005
Odstup chyby: 0x35800000
Identifikácia chybujúceho procesu: 0x66c
Čas spustenia chybujúcej aplikácie: 0x01d6505a1bb6bd21
Cesta chybujúcej aplikácie: D:\Hry\Warcraft III Frozen Throne eSK\war3.exe
Cesta chybujúceho modulu: unknown
Identifikácia hlásenia: 6a63ce03-9293-4019-907e-87e79f09c3ba
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (07/02/2020 12:13:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: war3.exe, verzia: 1.26.0.6401, časová značka: 0x4d83baa9
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000005
Odstup chyby: 0x35800000
Identifikácia chybujúceho procesu: 0x2128
Čas spustenia chybujúcej aplikácie: 0x01d65058916895bd
Cesta chybujúcej aplikácie: D:\Hry\Warcraft III Frozen Throne eSK\war3.exe
Cesta chybujúceho modulu: unknown
Identifikácia hlásenia: 8b6fc98e-4bca-47cc-8bf8-55eda3a60291
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (07/01/2020 04:57:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: utorrent.exe, verzia: 2.2.1.25534, časová značka: 0x4e4594ce
Názov chybujúceho modulu: GDI32.dll, verzia: 10.0.19041.1, časová značka: 0xd4f1fbcd
Kód výnimky: 0xc000041d
Odstup chyby: 0x00005d67
Identifikácia chybujúceho procesu: 0x10b0
Čas spustenia chybujúcej aplikácie: 0x01d64fb5cabd103b
Cesta chybujúcej aplikácie: C:\Users\Tom\AppData\Roaming\uTorrent\utorrent.exe
Cesta chybujúceho modulu: C:\WINDOWS\System32\GDI32.dll
Identifikácia hlásenia: 907ce834-e8ed-4256-9c00-cc67d2cba83e
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (06/28/2020 02:57:45 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Dokumenty (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (06/27/2020 01:22:55 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Dokumenty (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (06/22/2020 09:39:20 PM) (Source: SecurityCenter) (EventID: 17) (User: )
Description: Security Center failed to validate caller with error %1.


System errors:
=============
Error: (07/03/2020 09:09:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby eapihdrv zlyhalo kvôli nasledujúcej chybe: 
This driver has been blocked from loading

Error: (07/03/2020 09:09:13 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Tom\AppData\Local\Temp\ehdrv.sys

Error: (07/03/2020 09:09:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby eapihdrv zlyhalo kvôli nasledujúcej chybe: 
This driver has been blocked from loading

Error: (07/03/2020 09:09:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Tom\AppData\Local\Temp\ehdrv.sys

Error: (07/03/2020 09:09:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby eapihdrv zlyhalo kvôli nasledujúcej chybe: 
This driver has been blocked from loading

Error: (07/03/2020 09:09:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Tom\AppData\Local\Temp\ehdrv.sys

Error: (07/03/2020 09:09:12 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby eapihdrv zlyhalo kvôli nasledujúcej chybe: 
This driver has been blocked from loading

Error: (07/03/2020 09:09:12 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Tom\AppData\Local\Temp\ehdrv.sys


Windows Defender:
===================================
Date: 2020-06-24 14:17:45.2440000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0E882473-2DED-4893-B477-BE07FD2289A9}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-06-21 14:21:52.1650000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {46567078-46FC-409B-95A8-D90FF35F8CA5}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-06-21 13:44:33.4050000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {9DD1204D-EDA3-41F5-96AA-E1CF8EBBD0F7}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-06-21 13:19:58.5620000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {9692F8BF-C35A-4E0A-82AF-B8A83AB30073}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-06-20 16:29:13.3710000Z
Description: 
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode 
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.

CodeIntegrity:
===================================

Date: 2020-06-22 20:50:20.8870000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Avira\Antivirus\avirasecuritycenteragent.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Avira\Antivirus\libcurl.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-06-22 20:34:50.7310000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Windows signing level requirements.

Date: 2020-06-22 20:34:49.4450000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Windows signing level requirements.

Date: 2020-06-22 20:34:40.8240000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-22 20:34:40.8080000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-22 20:34:40.7920000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-22 20:34:40.7650000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

Date: 2020-06-22 20:34:40.7480000Z
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bitdefender Antivirus Free\bdamsi\264642434163612704\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: Hewlett-Packard 68IRR Ver. F.68 04/11/2019
Motherboard: Hewlett-Packard 17F0
Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 45%
Total physical RAM: 8073.43 MB
Available physical RAM: 4438.86 MB
Total Virtual: 9353.43 MB
Available Virtual: 5102.79 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:109.97 GB) (Free:79.92 GB) NTFS
Drive d: (Dokumenty) (Fixed) (Total:698.63 GB) (Free:383.5 GB) NTFS

\\?\Volume{6bb0b32a-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.34 GB) (Free:0.06 GB) NTFS
\\?\Volume{6bb0b32a-0000-0000-0000-10941b000000}\ () (Fixed) (Total:0.6 GB) (Free:0.08 GB) NTFS
\\?\Volume{6bb0b32a-0000-0000-0000-b0ba1b000000}\ () (Fixed) (Total:0.87 GB) (Free:0.31 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 6BB0B32A)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=110 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=617 MB) - (Type=27)
Partition 4: (Not Active) - (Size=893 MB) - (Type=27)

==========================================================
Disk: 1 (Size: 698.6 GB) (Disk ID: 0B854709)
Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================