Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-10-2020
Ran by casyo (17-10-2020 15:27:39)
Running from C:\Users\casyo\OneDrive\Počítač
Windows 10 Pro Version 1909 18363.592 (X64) (2019-12-26 21:28:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1237953686-2037993472-3780050099-500 - Administrator - Disabled)
casyo (S-1-5-21-1237953686-2037993472-3780050099-1001 - Administrator - Enabled) => C:\Users\casyo
DefaultAccount (S-1-5-21-1237953686-2037993472-3780050099-503 - Limited - Disabled)
Guest (S-1-5-21-1237953686-2037993472-3780050099-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1237953686-2037993472-3780050099-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 20.012.20048 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
APP Center (HKLM-x32\...\{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 3.20.0506.1 - GIGABYTE) Hidden
APP Center (HKLM-x32\...\InstallShield_{D50BEE9A-0EC6-4A58-BF90-35BDC6D6495D}) (Version: 3.20.0506.1 - GIGABYTE)
Conquer Online 3.0 (HKLM-x32\...\{78B51FD5-DA3F-4B48-8F3F-4E4068F25D89}_is1) (Version: 7110 - Conquer Online)
ENE IO Driver (HKLM-x32\...\{D0512FFD-6194-4D2E-967E-25B82A3322FF}) (Version: 3.0.0 - ENE TECHNOLOGY INC.) Hidden
ENE RGB HAL (HKLM\...\{B380DBDE-BA95-481B-92E9-52F2E5E84F24}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{adbc3d98-57f2-4d68-b155-138f8fb0f73d}) (Version: 1.00.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM\...\{BC5E0A82-C638-44CB-8129-20C8ED70DE7A}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_DRAM_RGB_AURA42 (HKLM-x32\...\{f3d7fb09-b93f-4c01-a765-0b0adc5bc746}) (Version: 1.00.02 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{26b207d1-1f37-4df9-8b3f-aeebbca6bb85}) (Version: 1.00.04 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.75 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LenovoUsbDriver 1.1.34 (HKLM-x32\...\LenovoUsbDriver) (Version: 1.1.34 - Lenovo)
Lightshot-5.5.0.4 (HKLM-x32\...\{30A5B3C9-2084-4063-A32A-628A98DE512B}_is1) (Version: 5.5.0.4 - Skillbrains)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version:  - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 86.0.622.38 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.49 - )
Microsoft Office 2016 Professional Plus - sk-sk (HKLM\...\ProplusRetail - sk-sk) (Version: 16.0.13231.20262 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0006 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0409-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{d491dd9d-2eda-4d75-b504-1a201436e7fd}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Mu (HKLM-x32\...\{F57CEB84-3D22-4657-8EDA-F8CD5217B83E}) (Version: 0.68.0000 - Webzen)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.4.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.14 - NVIDIA Corporation)
NVIDIA Grafický ovládač 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA USBC Driver 1.45.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.45.831.832 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13231.20126 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13231.20200 - Microsoft Corporation) Hidden
qBittorrent 4.2.1 (HKLM-x32\...\qBittorrent) (Version: 4.2.1 - The qBittorrent project)
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.63.0 - Samsung Electronics Co., Ltd.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.3 - TeamSpeak Systems GmbH)
Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.10 - VideoLAN)
Vzum (HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\6cfa0c5674100ff8) (Version: 1.0.0.25 - Vzum)
WifiAutoInstall version 2.0.0.8 (HKLM\...\{BBADB2D6-0408-42D0-AAF8-B79D3E8B994C}_is1) (Version: 2.0.0.8 - Realtek, Inc.)
Windows Driver Package - MediaTek Inc. (wdm_usb) Ports  (01/22/2015 3.0.1504.0) (HKLM\...\BD5E2A628C2263FAEC66A4BFF2E88B897427E4C3) (Version: 01/22/2015 3.0.1504.0 - MediaTek Inc.)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
Wraith Prism Settings software (HKLM-x32\...\{1A3E3EA7-5A7C-4292-8A13-B0DE1BF49E13}_COOLER_MASTER_SR4) (Version: 1.18 - AMD Wraith)

Packages:
=========
Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-07-09] (Microsoft Corporation)
Doplnok pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2017.39121.36610.0_x64__8wekyb3d8bbwe [2020-07-09] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-12-27] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-25] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.3.180.0_x64__dt26b99r8h8gj [2019-12-26] (Realtek Semiconductor Corp)
Xbox Insider Hub -> C:\Program Files\WindowsApps\Microsoft.FlightDashboard_475.2008.10001.0_x64__8wekyb3d8bbwe [2020-08-30] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1237953686-2037993472-3780050099-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1237953686-2037993472-3780050099-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\Windows\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_feed726c6560f7a7\nvshext.dll [2020-10-02] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-04-30 15:28 - 2020-04-30 15:28 - 001866752 _____ () [File not signed] C:\Program Files (x86)\GIGABYTE\AppCenter\BDR_info.dll
2019-04-15 16:24 - 2019-04-15 16:24 - 000155648 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) [File not signed] C:\Program Files (x86)\GIGABYTE\AppCenter\yccV2.dll
2015-10-14 01:15 - 2015-10-14 01:15 - 002042368 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\GIGABYTE\AppCenter\osvi.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\casyo:Heroes & Generals [38]
AlternateDataStreams: C:\Users\casyo\Application Data:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\casyo\AppData\Roaming:6699d3ee8dd9cf775caae782c8f44f03 [394]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [488]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-09-17] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-06] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2020-04-30 14:29 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1       localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\casyo\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\wp3073532-fallout-76-wallpapers.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Wraith Prism"
HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\StartupApproved\Run: => "LGHUB"
HKU\S-1-5-21-1237953686-2037993472-3780050099-1001\...\StartupApproved\Run: => "qBittorrent"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{56E5CF25-497D-4A33-933B-E1C134D8EFC4}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{A7B27183-51BD-48C9-B65B-E386EBC31BAD}C:\program files (x86)\steam\steam.exe] => (Allow) C:\program files (x86)\steam\steam.exe (Valve -> Valve Corporation)
FirewallRules: [{86A26790-7770-4AA2-B2B4-A9E31E375963}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{F920CC88-F512-4C4A-85E9-08C41F7EEEA7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{25DE7DFB-BC7C-48AB-8A14-5B95CAB18A5A}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{78023B9E-AC42-41FB-A413-2010980C8253}C:\program files (x86)\google\chrome\application\chrome.exe] => (Allow) C:\program files (x86)\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{3904AA6A-BFA2-4D86-B603-E13B676C9F31}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [UDP Query User{124900D9-67E4-43F1-84DF-858224C34978}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [TCP Query User{CE03AF89-A179-403D-9639-559294411905}C:\users\casyo\onedrive\počítač\winbox64.exe] => (Allow) C:\users\casyo\onedrive\počítač\winbox64.exe => No File
FirewallRules: [UDP Query User{6B74F573-B0D6-4D0D-AA5B-D6DB6A437925}C:\users\casyo\onedrive\počítač\winbox64.exe] => (Allow) C:\users\casyo\onedrive\počítač\winbox64.exe => No File
FirewallRules: [TCP Query User{5F1960F3-9B3A-415F-9879-3A62CA70CE5C}D:\hry\grounded\maine\binaries\win64\maine-win64-shipping.exe] => (Allow) D:\hry\grounded\maine\binaries\win64\maine-win64-shipping.exe => No File
FirewallRules: [UDP Query User{D2323D4B-2A64-4214-9CA8-EDC3DA07AC54}D:\hry\grounded\maine\binaries\win64\maine-win64-shipping.exe] => (Allow) D:\hry\grounded\maine\binaries\win64\maine-win64-shipping.exe => No File
FirewallRules: [TCP Query User{6C5F2B12-B222-49C7-8676-724139616189}C:\program files\windowsapps\edrlab.thoriumreader_1.4.0.0_x64__r3hax6t39xm4t\app\thorium.exe] => (Allow) C:\program files\windowsapps\edrlab.thoriumreader_1.4.0.0_x64__r3hax6t39xm4t\app\thorium.exe => No File
FirewallRules: [UDP Query User{635167C7-2998-4B93-8988-C34B4383E489}C:\program files\windowsapps\edrlab.thoriumreader_1.4.0.0_x64__r3hax6t39xm4t\app\thorium.exe] => (Allow) C:\program files\windowsapps\edrlab.thoriumreader_1.4.0.0_x64__r3hax6t39xm4t\app\thorium.exe => No File
FirewallRules: [{607B4AF1-3AC8-48E6-B25B-E43BA2DC65DA}] => (Allow) LPort=9009
FirewallRules: [TCP Query User{57A95629-0FE7-41B2-B248-275E03D3C0DF}C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe] => (Allow) C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe => No File
FirewallRules: [UDP Query User{A9E75BC0-AB11-47ED-816B-6762E6A4EF61}C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe] => (Allow) C:\program files (x86)\mumu\emulator\nemu\emulatorshell\nemuplayer.exe => No File
FirewallRules: [{177B4564-2FA9-4EFE-9CF8-A81F0F819CE9}] => (Allow) LPort=9009
FirewallRules: [{CC799EF2-D543-443A-8B79-B21922545FBA}] => (Allow) D:\SteamLibrary\steamapps\common\Fallout76\Fallout76.exe (Bethesda Softworks) [File not signed]
FirewallRules: [{D257CF66-1DEC-4C21-9C1B-F6584CA401C2}] => (Allow) D:\SteamLibrary\steamapps\common\Fallout76\Fallout76.exe (Bethesda Softworks) [File not signed]
FirewallRules: [TCP Query User{67314003-F8FA-4D1B-85D1-C8504A0657B2}D:\hry\7 days to die alpha 19 + multiplayer (2020)\7dtd a19 b180\7daystodie.exe] => (Allow) D:\hry\7 days to die alpha 19 + multiplayer (2020)\7dtd a19 b180\7daystodie.exe () [File not signed]
FirewallRules: [UDP Query User{AC300351-BE12-4360-B9CA-EE4A826D9179}D:\hry\7 days to die alpha 19 + multiplayer (2020)\7dtd a19 b180\7daystodie.exe] => (Allow) D:\hry\7 days to die alpha 19 + multiplayer (2020)\7dtd a19 b180\7daystodie.exe () [File not signed]
FirewallRules: [{52DFF4EA-7FC9-4837-9EAA-75D911ED6A55}] => (Allow) LPort=9009
FirewallRules: [{473C877B-662D-4FE8-949F-98E20DCF4109}] => (Allow) D:\SteamLibrary\steamapps\common\VillagersAndHeroes\AMysticalLandSAC\VillagersAndHeroes.exe => No File
FirewallRules: [{85B17BF2-52F6-41B4-9244-E7982A956C11}] => (Allow) D:\SteamLibrary\steamapps\common\VillagersAndHeroes\AMysticalLandSAC\VillagersAndHeroes.exe => No File
FirewallRules: [{D3B1EEC8-FE8A-4C3C-BA23-95BB4318A057}] => (Allow) D:\Program Files (x86)\Villagers and Heroes\VHPatcher.exe => No File
FirewallRules: [{DF5743F8-21C8-4B1B-A327-8061CE9067E3}] => (Allow) D:\Program Files (x86)\Villagers and Heroes\VHLauncher.exe => No File
FirewallRules: [{7FEC33CF-71A8-4B87-8C17-2C7ED9159EB1}] => (Allow) D:\Program Files (x86)\Villagers and Heroes\AMysticalLandSAC\villagersAndHeroes.exe => No File
FirewallRules: [{940F0822-6BD5-4EAD-8A7E-FF4A50F9265C}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{68DA1020-5C52-4EB4-A2B5-6BD2E6F91582}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UbisoftGameLauncher.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{A6B87B1C-E39C-4D05-BBF5-FADB66656DEC}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5\bin\H5_Game.exe () [File not signed]
FirewallRules: [{00596A82-178E-4D2D-82E2-C58D80796AB5}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5\bin\H5_Game.exe () [File not signed]
FirewallRules: [{4D2423EC-1B44-4582-A220-0635A5300F84}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5\bina1\testapp.exe () [File not signed]
FirewallRules: [{5CB0FE19-89B9-4705-A2C3-B7DD95352407}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5\bina1\testapp.exe () [File not signed]
FirewallRules: [{0F125E0B-7DF1-4D32-B783-8FBB2294472F}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5 Tribes of the East\bin\H5_Game.exe () [File not signed]
FirewallRules: [{5EAB9D71-7914-4E70-A6CA-7424128E82D8}] => (Allow) D:\SteamLibrary\steamapps\common\Heroes of Might and Magic 5 Tribes of the East\bin\H5_Game.exe () [File not signed]
FirewallRules: [TCP Query User{6AADB7F8-8D1E-4F5B-AB40-1FEA094645F9}D:\program files\epic games\rs2v\binaries\win64\risingstorm2.exe] => (Allow) D:\program files\epic games\rs2v\binaries\win64\risingstorm2.exe => No File
FirewallRules: [UDP Query User{A26536A1-67E2-4EBD-A9A7-7E57FE7D0377}D:\program files\epic games\rs2v\binaries\win64\risingstorm2.exe] => (Allow) D:\program files\epic games\rs2v\binaries\win64\risingstorm2.exe => No File
FirewallRules: [{85B64898-8869-4BD6-97FF-6CB98290052A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{11933440-A74F-48B4-99D4-0C3822833378}] => (Allow) D:\SteamLibrary\steamapps\common\RuneScape\bin\win64\RuneScape.exe (Jagex Ltd -> Jagex Ltd.)
FirewallRules: [{0D93185D-628D-447B-8B84-BF09B0DA84E7}] => (Allow) D:\SteamLibrary\steamapps\common\RuneScape\bin\win64\RuneScape.exe (Jagex Ltd -> Jagex Ltd.)

==================== Restore Points =========================

01-10-2020 14:07:01 Windows Update
04-10-2020 17:43:46 Installed DirectX
08-10-2020 11:23:25 Windows Update
13-10-2020 14:42:07 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/15/2020 06:38:04 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: wuauclt.exe, verzia: 10.0.18362.449, časová značka: 0xb8640219
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.18362.418, časová značka: 0x99ca0526
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000072a6
Identifikácia chybujúceho procesu: 0x4740
Čas spustenia chybujúcej aplikácie: 0x01d6a3109eae34e2
Cesta chybujúcej aplikácie: C:\Windows\system32\wuauclt.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 2e41f07b-0e82-42b9-aa2d-3a7949337654
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/13/2020 02:46:46 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: wuauclt.exe, verzia: 10.0.18362.449, časová značka: 0xb8640219
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.18362.418, časová značka: 0x99ca0526
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000072a6
Identifikácia chybujúceho procesu: 0x2258
Čas spustenia chybujúcej aplikácie: 0x01d6a15e46ab7a99
Cesta chybujúcej aplikácie: C:\Windows\system32\wuauclt.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 3a4a12e5-9b7c-48e2-a857-204f431d3ad0
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/10/2020 11:26:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: wuauclt.exe, verzia: 10.0.18362.449, časová značka: 0xb8640219
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.18362.418, časová značka: 0x99ca0526
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000072a6
Identifikácia chybujúceho procesu: 0xa94
Čas spustenia chybujúcej aplikácie: 0x01d69ee6c3756c07
Cesta chybujúcej aplikácie: C:\Windows\system32\wuauclt.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia hlásenia: c6520a02-26f4-42cc-b2a4-8e4f094f74eb
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/09/2020 01:54:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: wuauclt.exe, verzia: 10.0.18362.449, časová značka: 0xb8640219
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.18362.418, časová značka: 0x99ca0526
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000072a6
Identifikácia chybujúceho procesu: 0x368
Čas spustenia chybujúcej aplikácie: 0x01d69e325d2d2148
Cesta chybujúcej aplikácie: C:\Windows\system32\wuauclt.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 8ec29102-eeb2-489a-aa89-2ec8d6775cdf
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/09/2020 01:26:20 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Wow.exe version 3.3.5.12340 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 308

Start Time: 01d69e2d34c64731

Termination Time: 3

Application Path: D:\Hry\WOW Wotlk 3.3.5a\Wow.exe

Report Id: 14f0f432-8161-4406-b176-5fbb47212f48

Faulting package full name: 

Faulting package-relative application ID: 

Hang type: Unknown

Error: (10/08/2020 11:28:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: wuauclt.exe, verzia: 10.0.18362.449, časová značka: 0xb8640219
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.18362.418, časová značka: 0x99ca0526
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000072a6
Identifikácia chybujúceho procesu: 0x3d0c
Čas spustenia chybujúcej aplikácie: 0x01d69d54b0650e9b
Cesta chybujúcej aplikácie: C:\Windows\system32\wuauclt.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\ntdll.dll
Identifikácia hlásenia: f65e7cb5-5098-4822-9f6f-3fa5e48cc20d
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/06/2020 06:33:22 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Vzum.exe, verzia: 1.0.0.0, časová značka: 0xbf22186b
Názov chybujúceho modulu: KERNELBASE.dll, verzia: 10.0.18362.535, časová značka: 0x5bd9df62
Kód výnimky: 0xe0434352
Odstup chyby: 0x001135d2
Identifikácia chybujúceho procesu: 0x2bc8
Čas spustenia chybujúcej aplikácie: 0x01d69bfd823194aa
Cesta chybujúcej aplikácie: C:\Users\casyo\AppData\Local\Apps\2.0\EQJQHE7K.JXT\M1PDJDX0.2NO\vzum..tion_e8aa87c1f870925e_0001.0000_bcd17931394ab74c\Vzum.exe
Cesta chybujúceho modulu: C:\Windows\System32\KERNELBASE.dll
Identifikácia hlásenia: b28cf6ac-cf66-465b-b3da-0f17faf82007
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (10/06/2020 06:33:22 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: Vzum.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: System.IO.IOException
   at System.Net.ConnectStream.Read(Byte[], Int32, Int32)
   at Vzum.FileDownloader.DownloadFileFromResponse(System.Net.WebResponse, System.IO.Stream)
   at Vzum.FileDownloader.Vlákno()
   at System.Threading.ThreadHelper.ThreadStart_Context(System.Object)
   at System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
   at System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
   at System.Threading.ThreadHelper.ThreadStart()


System errors:
=============
Error: (10/17/2020 08:36:29 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {995C996E-D918-4A8C-A302-45719A6F4EA7} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.

Error: (10/16/2020 07:46:16 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-FOMQ4FQ)
Description: The server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} did not register with DCOM within the required timeout.


Windows Defender:
===================================
Date: 2020-10-16 12:52:24.666
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {DE1B5205-BACA-4F8B-B083-16E255753D28}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-10-16 12:40:52.857
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {08FD0644-B83A-4B4A-ACF9-38CF35DEC811}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-10-15 10:37:29.104
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {78943F24-06F9-41BC-9897-1A5F80FF9414}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-10-13 14:41:46.327
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {829265BA-BE6B-4450-B35B-AA7AAB01ECD3}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-10-12 11:47:24.104
Description: 
Windows Defender Antivirus scan has been stopped before completion.
Scan ID: {B2215ACD-E6D2-4F91-AE97-465C39FBA1B8}
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===================================

Date: 2020-07-18 21:11:57.180
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-07-18 21:11:56.941
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-07-18 21:11:56.397
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-07-18 21:11:50.564
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\SearchIndexer.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-07-18 21:11:48.909
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\dllhost.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-07-18 21:11:47.780
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-05-01 20:09:22.237
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

Date: 2020-05-01 20:09:22.053
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume6\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\MuOffi\GameGuard\npggNT64.des that did not meet the Microsoft signing level requirements.

==================== Memory info =========================== 

BIOS: American Megatrends Inc. F2 08/08/2018
Motherboard: Gigabyte Technology Co., Ltd. B450 AORUS PRO-CF
Processor: AMD Ryzen 7 2700X Eight-Core Processor 
Percentage of memory in use: 23%
Total physical RAM: 16332.23 MB
Available physical RAM: 12419.81 MB
Total Virtual: 18764.23 MB
Available Virtual: 12542.25 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:446.5 GB) (Free:356.79 GB) NTFS
Drive d: () (Fixed) (Total:1863 GB) (Free:1282.42 GB) NTFS

\\?\Volume{d1fc455a-1f56-45f3-b20a-0e7d52d3ef3d}\ (Obnovenie) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{6a00fe6b-6c1f-4c54-a157-cf3e7c5375dd}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Size: 447.1 GB) (Disk ID: 0F776EED)

Partition: GPT.

==================== End of Addition.txt =======================