Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-10-2020
Ran by ProBook (27-10-2020 14:55:44)
Running from C:\FRST\FRST-OlderVersion
Windows 10 Pro Version 2004 19041.572 (X64) (2020-07-02 15:17:31)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3686106505-1447252684-3751893866-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686106505-1447252684-3751893866-503 - Limited - Disabled)
DevToolsUser (S-1-5-21-3686106505-1447252684-3751893866-1004 - Limited - Enabled) => C:\Users\DevToolsUser
Guest (S-1-5-21-3686106505-1447252684-3751893866-501 - Limited - Disabled)
ProBook (S-1-5-21-3686106505-1447252684-3751893866-1001 - Administrator - Enabled) => C:\Users\ProBook
sshd (S-1-5-21-3686106505-1447252684-3751893866-1002 - Limited - Enabled)
WDAGUtilityAccount (S-1-5-21-3686106505-1447252684-3751893866-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\uTorrent) (Version: 3.5.5.45790 - BitTorrent Inc.)
3D-Tool FreeViewer V13 (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\3D-Tool FreeViewer V13) (Version: V13.30 - 3D-Tool GmbH & Co. KG)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 20.012.20048 - Adobe Systems Incorporated)
Alcor Micro Smart Card Reader Driver (HKLM-x32\...\{F24F876B-7D71-4BD6-88E9-614D3BB84238}) (Version: 1.7.38.0 - Alcor Micro Corp.) Hidden
Alcor Micro Smart Card Reader Driver (HKLM-x32\...\SZCCID) (Version: 1.7.38.0 - Alcor Micro Corp.)
AMD Catalyst Install Manager (HKLM\...\{E2078C11-E9EC-BD96-037C-A3423082F2BF}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Asistent pri aktualizácii na Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22807 - Microsoft Corporation)
Autodesk MapGuide(R) Viewer ActiveX Control Release 6.5 (HKLM-x32\...\{E031338C-839D-4EDD-9537-99B653C39D81}) (Version: 6.5.5.24 - Autodesk, Inc.)
AVerMedia R889 USB DVB-S2 2.1.64.159 (HKLM-x32\...\AVerMedia R889 USB DVB-S2) (Version: 2.1.64.159 - AVerMedia TECHNOLOGIES, Inc.)
balenaEtcher 1.5.102 (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\d2f3b6c7-6f49-59e2-b8a5-f72e33900c2b) (Version: 1.5.102 - Balena Inc.)
Bitvise SSH Client - FlowSshNet (x64) (HKLM\...\{2730C146-B589-4D08-87F4-FBDDBE8FF7DC}) (Version: 8.23.0.0 - Bitvise Limited) Hidden
Bitvise SSH Client - FlowSshNet (x86) (HKLM-x32\...\{6D57165C-5254-42B3-8C8F-27CA180F06F1}) (Version: 8.23.0.0 - Bitvise Limited) Hidden
Bitvise SSH Client 8.23 (remove only) (HKLM-x32\...\BvSshClient) (Version: 8.23 - Bitvise Limited)
Bitwar PDF Converter (HKLM-x32\...\DLPdf2Word_Multi) (Version: 3.5.2.0 - hxxps://www.bitwarsoft.com/)
CCleaner (HKLM\...\CCleaner) (Version: 5.73 - Piriform)
DVBViewer Pro (HKLM-x32\...\DVBViewer Pro_is1) (Version: 6.1.2 - CM&V)
EAGLE 7.7.0 (HKLM\...\EAGLE 7.7.0) (Version: 7.7.0 - CadSoft Computer GmbH)
Epson Event Manager (HKLM-x32\...\{0324C972-6139-489C-9003-857C4F195A80}) (Version: 3.10.0094 - Seiko Epson Corporation)
EPSON L210 Series Printer Uninstall (HKLM\...\EPSON L210 Series) (Version:  - SEIKO EPSON Corporation)
EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version:  - Seiko Epson Corporation)
Epson Software Updater (HKLM-x32\...\{D2D9559D-359A-4C61-B93A-FE01AE2BFB75}) (Version: 4.5.4 - Seiko Epson Corporation)
Estlcam 11 (HKLM-x32\...\Estlcam 11) (Version:  - )
Flash Magic 13.10 (HKLM-x32\...\Flash Magic_is1) (Version:  - Embedded Systems Academy, Inc.)
HP 3D DriveGuard (HKLM\...\{F8C604AC-1939-4B74-B847-CB59417F1FF2}) (Version: 4.2.9.1 - Hewlett-Packard Company)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.17.2042 - HP Inc.)
HP PC Hardware Diagnostics Windows (HKLM-x32\...\{3EC04ABB-D60E-44B6-9403-0D9DE44F56D9}) (Version: 1.6.0.0 - HP Inc.)
HP SoftPaq Download Manager (HKLM-x32\...\{51388444-3369-4569-bbf3-98582f5e67a1}) (Version: 4.4.0.0 - HP)
HP Support Solutions Framework (HKLM-x32\...\{BD2B76A0-B41E-46CD-8049-C35B2D82EB24}) (Version: 12.18.34.21 - HP Inc.)
Intel(R) Computing Improvement Program (HKLM\...\{D98C2DF9-C731-4322-A5F0-D897300216EE}) (Version: 2.4.05718 - Intel Corporation)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{227fd89d-2205-499a-8b73-9ec775789c4d}) (Version: 19.70.0 - Intel Corporation)
Java 8 Update 261 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180261F0}) (Version: 8.0.2610.12 - Oracle Corporation)
JMicron Flash Media Controller Driver (HKLM-x32\...\{26604C7E-A313-4D12-867F-7C6E7820BE4C}) (Version: 1.0.72.4 - JMicron Technology Corp.)
LAV Filters 0.72 (HKLM-x32\...\lavfilters_is1) (Version: 0.72 - Hendrik Leppkes)
LSI HDA Modem (HKLM\...\LSI Soft Modem) (Version: 2.2.100 - LSI Corporation)
MHEG-5/HbbTV for DVBViewer Pro (HKLM-x32\...\DVBViewer Pro MHEG-HBBTV Engine_is1) (Version: 2.0.0.5 - CM&V)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 86.0.622.51 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.135.49 - )
Microsoft Office 2013 Professional Plus - sk-sk (HKLM\...\ProPlusRetail - sk-sk) (Version: 15.0.5249.1001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{650c9b4a-60ec-4e4e-8d8e-32d85ce3b7c5}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.50.1 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.6 (x64) (HKLM-x32\...\{7bc97a3a-1c5c-4743-bba3-f20f8eb448b8}) (Version: 3.1.6.29016 - Microsoft Corporation)
Mozilla Firefox 82.0 (x64 sk) (HKLM\...\Mozilla Firefox 82.0 (x64 sk)) (Version: 82.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 78.0 - Mozilla)
Mozilla Thunderbird 78.4.0 (x86 sk) (HKLM-x32\...\Mozilla Thunderbird 78.4.0 (x86 sk)) (Version: 78.4.0 - Mozilla)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.8.7 - Notepad++ Team)
Office 15 Click-to-Run Extensibility Component (HKLM\...\{90150000-008C-0000-1000-0000000FF1CE}) (Version: 15.0.5249.1001 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-007E-0000-1000-0000000FF1CE}) (Version: 15.0.5249.1001 - Microsoft Corporation) Hidden
OpenSCAD (remove only) (HKLM\...\OpenSCAD) (Version: 2019.01.08.ci1084 - The OpenSCAD Developers)
OpenTFTPServer (HKLM-x32\...\OpenTFTPServer) (Version:  - )
PDFPasswordProtectorPro Personal Edition (HKLM-x32\...\{D4943A3B-5CD7-487B-B296-1C99DB831602}) (Version: 1.0 - XenArmor) Hidden
PlaysTV (HKLM-x32\...\PlaysTV) (Version: 1.27.5-r125535-release - Plays.tv, LLC)
PowerToys (Preview) (HKLM\...\{D6CA302C-BA91-489F-B025-02616E74B81C}) (Version: 0.23.0 - Microsoft)
PuTTY release 0.70 (64-bit) (HKLM\...\{45B3032F-22CC-40CD-9E97-4DA7095FA5A2}) (Version: 0.70.0.0 - Simon Tatham)
Python 3.7.5 (64-bit) (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\{5e6d7bfa-46e9-4496-9ccd-e15816be8f0a}) (Version: 3.7.5150.0 - Python Software Foundation)
Python 3.7.5 Core Interpreter (64-bit) (HKLM\...\{6DC6BC71-F1FB-412D-A16A-2FE8C463E89F}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
Python 3.7.5 Development Libraries (64-bit) (HKLM\...\{5A54B213-36D8-40CB-9E55-D20864AEF3C8}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
Python 3.7.5 Executables (64-bit) (HKLM\...\{8864B390-4DFB-43AB-934B-F02C48577666}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
Python 3.7.5 pip Bootstrap (64-bit) (HKLM\...\{2E590D5A-4E40-4C9C-AFF8-7CB80F085752}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
Python 3.7.5 Standard Library (64-bit) (HKLM\...\{45CB356A-C0DF-430E-B75F-7764DBA06DF9}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
Python 3.7.5 Utility Scripts (64-bit) (HKLM\...\{EFF40415-0D5B-4CBA-9080-3EE2DADB527C}) (Version: 3.7.5150.0 - Python Software Foundation) Hidden
QCAD/CAM Trial 3.25.2 (HKLM\...\{408438E2-DCAC-4B88-882C-026F11AA2D5A}) (Version: 3.25.2 - RibbonSoft GmbH)
RAPID Mode (HKLM\...\{7B2F4116-7C42-4EB6-9B11-220F0FAA3567}) (Version: 1.0.1.105 - Samsung Electronics Co., Ltd.) Hidden
Raspberry Pi Imager (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\Raspberry Pi Imager) (Version: 1.4 - Raspberry Pi)
Repetier-Host verzia 2.1.3 (HKLM\...\{1143F758-929B-4EEB-8784-46CCB622F037}_is1) (Version: 2.1.3 - repetier)
RMPrepUSB (HKLM-x32\...\RMPrepUSB) (Version:  - )
Samsung Data Migration (HKLM-x32\...\{3B304604-0BF5-488E-AB95-F2F2E31206F3}) (Version: 3.1 - Samsung)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 6.2.1.260 - Samsung Electronics)
SD Card Formatter (HKLM-x32\...\{A61131DC-B92D-4AD8-A925-E2D6D5FE217C}) (Version: 5.0.1 - SD Association)
Siko Kitchen Planner Web SK (HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\SquareClock_Production_Home_5-2_bbbe2f7a) (Version:  - 3DVIA SAS)
Skype verzia 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.65 - Synaptics Incorporated)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.10.5 - TeamViewer)
Total Commander (Remove or Repair) (HKLM-x32\...\Totalcmd) (Version: 9.12 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.1 - VideoLAN)
Windows Driver Package - NXP (WinUSB) LpcDevice  (08/06/2009 7.0.7600.16385) (HKLM\...\5F6D17F943AE4462A3F80B19435931046D6352AB) (Version: 08/06/2009 7.0.7600.16385 - NXP)
WinMerge 2.16.4.0 x64 (HKLM\...\WinMerge_is1) (Version: 2.16.4.0 - Thingamahoochie Software)
Wise Care 365 5.5.5 (HKLM-x32\...\Wise Care 365_is1) (Version: 5.5.5 - WiseCleaner.com, Inc.)
Wise Data Recovery 5.1.6 (HKLM-x32\...\Wise Data Recovery_is1) (Version: 5.1.6 - WiseCleaner.com, Inc.)
XenArmor PDFPasswordProtectorPro Personal Edition 2020 (HKLM-x32\...\PDFPasswordProtectorPro Personal Edition 1.0) (Version: 1.0 - XenArmor)

Packages:
=========
Arduino IDE -> C:\Program Files\WindowsApps\ArduinoLLC.ArduinoIDE_1.8.42.0_x86__mdqgnx93n4wtt [2020-07-24] (Arduino LLC)
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-27] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.13.6.0_x86__kgqvnymyfvs32 [2020-10-02] (king.com)
Candy Crush Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSaga_1.1880.4.0_x86__kgqvnymyfvs32 [2020-10-23] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.179.300.0_x86__kgqvnymyfvs32 [2020-10-15] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_5.4.1.0_x86__h6adky7gbf63m [2020-10-14] (Gameloft SE)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.5.201.0_x64__rz1tebttyb220 [2020-09-25] (Dolby Laboratories)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.6.7.0_x64__v10z8vjag6ke6 [2020-10-07] (HP Inc.)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_5.2.0.6_x86__h6adky7gbf63m [2020-10-21] (Gameloft SE)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-23] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-23] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-10-23] (Microsoft Studios) [MS Ad]
Microsoft Wireless Display Adapter -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_4.220.139.0_x64__8wekyb3d8bbwe [2020-10-02] (Microsoft Corporation) [Startup Task]
SketchUp Viewer -> C:\Program Files\WindowsApps\TrimbleInc.SketchUpViewerV2_2.3.25.0_x86__v37rjws4vgf0e [2020-10-11] (Trimble Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3686106505-1447252684-3751893866-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\ProBook\AppData\Local\Microsoft\OneDrive\17.005.0107.0008\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3686106505-1447252684-3751893866-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> "C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3686106505-1447252684-3751893866-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\ProBook\AppData\Local\Microsoft\OneDrive\17.005.0107.0008\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3686106505-1447252684-3751893866-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\ProBook\AppData\Local\Microsoft\OneDrive\17.005.0107.0008\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro1 (ErrorConflict)] -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro2 (SyncInProgress)] -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ SkyDrivePro3 (InSync)] -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-06-05] (Notepad++ -> )
ContextMenuHandlers1: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:\Program Files\WinMerge\ShellExtensionX64.dll [2019-05-19] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers2: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:\Program Files\WinMerge\ShellExtensionX64.dll [2019-05-19] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers3: [PowerRenameExt] -> {0440049F-D1DC-4E46-B27B-98393D79486B} => C:\Program Files\PowerToys\modules\PowerRename\PowerRenameExt.dll [2020-09-28] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:\Program Files\WinMerge\ShellExtensionX64.dll [2019-05-19] (hxxp://winmerge.org) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [WinMerge] -> {4E716236-AA30-4C65-B225-D68BBA81E9C2} => C:\Program Files\WinMerge\ShellExtensionX64.dll [2019-05-19] (hxxp://winmerge.org) [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\ProBook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open TFTP Server\Run Stand Alone.lnk -> C:\OpenTFTPServer\RunStandAloneMT.bat ()

==================== Loaded Modules (Whitelisted) =============

2017-12-12 21:22 - 2017-12-12 21:22 - 000033280 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\cx_Logging.cp35-win32.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 001780736 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtCore.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 001934336 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtGui.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 000505856 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtNetwork.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 003812864 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\PyQt5.QtWidgets.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 000405504 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\pythoncom35.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 000111616 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\pywintypes35.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 000077824 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\sip.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 000103424 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32api.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 000173568 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32gui.pyd
2017-12-12 21:22 - 2017-12-12 21:22 - 000041984 _____ () [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\win32process.pyd
2020-10-04 18:35 - 2020-10-04 18:35 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\b6815caf718dc8ea92f183419fb92d56\A4.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\c0dc3fff3b37656b9d6425c467dde7ef\AEM.Actions.CCAA.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\67260c5d29e720ad2ac931189679f3f6\AEM.Plugin.EEU.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\e08ec2b862d1b586ee96b3691036de16\AEM.Plugin.Hotkeys.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\e68828aa54f858611d00d7f417bbc3d7\AEM.Plugin.DPPE.Shared.ni.dll
2020-10-15 08:46 - 2020-10-15 08:46 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\c383b9d0092f8806446ed4dd020e19eb\AEM.Plugin.Source.Kit.Server.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\29e79597ac4d2c9ed4b4864976a49fa8\AEM.Plugin.WinMessages.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\49e4572342506c54f61a9d799ae75499\AEM.Plugin.REG.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\aa05ed691ef5691f8e955a9925e4cbf3\AEM.Plugin.GD.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\7f9ff373b1634bf918b2005853eabe92\AEM.Server.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\4c3a790f6409fae0e5d61421ed2147bf\AEM.Server.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\62e9198f87073b378be046c96c12a35a\APM.Foundation.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\1bb1095a475a31f45e8a705c8dac7bcc\ATICCCom.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\988c073f28e58fd72caaca6b4fdc6456\CCC.Implementation.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\2d1115c9e05a30533374881dceea8149\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\0a057dc3884746f8f01517e2c4c8e1ef\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\863c848ec6a0e3d189268e021613b91d\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\b4707efd52d1368f62aae53a3cfbaff3\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\9af6eb1a4620b19afbbf4f5b968bc7b5\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\b4b4149d570b27ce3a3e78018c5b9883\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\616a539f82ad972373d599f1151679f5\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\e30f959120d498c6ef579a25eb87dc87\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\f0e44c2cf802919021fea656f0f976c0\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\2e02fbb89f35c8af2f32c2a9402afefa\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\a7476e794ee21bef9549f1cd0af2ccfd\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\4cf7db481ba8b0e200f2e37917e7e7cb\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\341fab998161bbc82ee2e39329a7f3ea\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\e4554c248fc85816e666a5034e48ad0a\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\fe2b738709d68b7c1367d18ddca9546c\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\b885923dbdfdc3f9eccfcb378ce52d3c\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\b943443bcc2fd1da5a3cc234a8193577\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\0b30ccdb9fc94c8660feebd48f323df7\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\9faf6632e22de26654e0faf4c9877f2c\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\7b01f409e613e4f05bc79ac1b6248d01\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\93e537087b3da029e4e9575f37823346\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\58fb8dbf00d51ad854d64199d0a6f09f\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\e98790bc58ef36204abd284ce332a6fb\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\7d044e330c4a8c14cbfce339534e78e8\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\aa8f9bb2a78b872d22c631b9db356633\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\b4fa8558dcaffb5ca6204ee23e00678f\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\464fc762bca18340b5b56d932534af85\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\762fde24a15aec538c659d445155605f\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\c072f526abf43220c6a09506205a42ce\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\1ff30b7b2879f24385f37e0341c22ca8\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\8b570bdd7f6d1271ad8e3871b3b68b62\CLI.Caste.A4.Runtime.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\a2e0a7d0a423bcc6a478892d990e9ad0\CLI.Caste.A4.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\4e758986878476813acb6dbdd16539da\CLI.Caste.A4.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\a423d5997147f3b5e399179c8573584c\CLI.Caste.Fuel.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\b17f94225715e5c9a9c0fe5cfceb6242\CLI.Caste.Fuel.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\4eec53fdbba2cb4f32a7a14e1290f573\CLI.Caste.Fuel.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\02095b3781969d2c3d501ca7ec7ec305\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\d272cf8d444a27af015484c02c48acd1\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\d99c7b69627797546a83af2183b69fd5\CLI.Caste.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\2e3891ef220078b2136de354b3157742\CLI.Caste.HydraVision.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\28eb7c00d0649d9d4c69297f3fcb45b3\CLI.Caste.HydraVision.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\01fd6ea017d0838aedc9dd7ed9b3ed43\CLI.Caste.HydraVision.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\c88b420b2ce835b803d932a193b2fc8b\CLI.Caste.Platform.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\7dcdedd2e8fcb2ddcde9812ec020bce3\CLI.Caste.Platform.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\d09eb970c788b0b07c8017fb4520813b\CLI.Caste.Platform.Dashboard.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\872f4b3ac0aba2c6d6bd00d428365725\CLI.Component.Runtime.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\3e3ed55ed7f67d44b2c742dc378fd2ca\CLI.Component.Systemtray.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\bade58fbd0bc8351b77832882b059439\CLI.Component.Dashboard.ProfileManager2.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\b4830da5fea427f7c8ac00923331ba4e\CLI.Component.Runtime.Shared.Private.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\0dd48d35d57514415699cb88010043c8\CLI.Component.Runtime.Extension.EEU.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\6da4f3ad6bf8cec5e69a1a22843b3314\CLI.Component.Dashboard.Shared.Private.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\82778814553750fd40eecd84a8d169d0\CLI.Component.Client.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\74fd08c687069f22c49387259a1ced08\CLI.Component.Dashboard.Shared.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\58006f5cb87f287a0293270e53bbf8ac\CLI.Foundation.Private.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\d9316dfea8fb1f1da23d0051af1d4d55\CLI.Foundation.XManifest.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\1fb226a576aaaaa3a52f245a1d3ab81b\CLI.Foundation.CoreAudioAPI.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 001079296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\64af0fbf8e6a96d712ce89ffcd043cbc\CLI.Foundation.Client.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\388de6c2865dc8136c0dfeea5a8b3e29\CLI.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\73b0e8845a50ec92668bce66a5a4f26f\DEM.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\64697c8e4fc6da96b67331a3c1389e86\DEM.Graphics.I0601.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\c7b95ae2c989a1ed9d6b97d1ce87a181\DEM.Graphics.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\6632a83964b22e191d359d95205742b5\Fuel.Foundation.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\d5f5c8ebaa6ce2251571d9062c13ff49\LOG.Foundation.Implementation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\3e07c85e4733de01c817adef05e6dd31\LOG.Foundation.Private.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\540e45b09faf66658068a8a39775815a\LOG.Foundation.Implementation.Private.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\a19f9cf9b456864e579228e55d54668e\LOG.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\201ff2dc9d43929c4397b8721e630eae\MOM.Foundation.ni.dll
2020-10-04 18:37 - 2020-10-04 18:37 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\1831c717d824387da841f727cf6fa21c\MOM.Implementation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\d6a3f276f092b79ce0a5c4da3b9b4de3\NEWAEM.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\ab1112f2228f3958f5baa3ec33ca0ab5\ADL.Foundation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\a19fce6dde6ff8d1f20e58d27ca3a12c\APM.Server.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\e633d1ae559249147dcab819746e0908\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\ebefa413d23f799a5d616e2a0d4262bf\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\260468f60311a4cc57d451b539458f99\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\75a96094474691ac210e14047a3ae79a\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\5e09c235d9052319d25a0e22e928dbf6\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\463d4884f2dbb74e84e4eb7beaa2bcba\CLI.Component.Client.Shared.Private.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\0108b4df9eb1a2901309318ddf927b25\CLI.Component.Runtime.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\16afd5f12d06ffaa0a8ae8f06b3b4a08\CLI.Component.Dashboard.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\d1e472525b028a30aabbceffe7161197\DEM.Graphics.I0706.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\6fcf9f1120024078d4ae0bea706b06f5\DEM.Graphics.I0709.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\9b14c1a163e3999ee02c08835c478b62\DEM.Graphics.I0712.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\46d2597d16397de4af70002beaf9e556\DEM.Graphics.I0804.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\eb1494854922511a30a0fbb1714af12e\DEM.Graphics.I0805.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\cbbefe12ed70338abbf18d18e2bee560\DEM.Graphics.I0812.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\d231dc765d4c79ecfb668a0049d8b696\DEM.Graphics.I0906.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\4bda0373f3b13fe3c574d5d31029f6cb\DEM.Graphics.I0912.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\8db87337f7fd0ffc6bb40f2784841d35\DEM.Graphics.I1010.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\c70732399fe5b0091e39fe55cb6643b8\Localization.Foundation.Private.ni.dll
2020-10-04 18:37 - 2020-10-04 18:37 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\275130eec5474f832135a683ad692bbf\ResourceManagement.Foundation.Implementation.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\d73226a2695648ddf16cb714e7c084fa\ResourceManagement.Foundation.Private.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\4918b7a5eaa11cc78314b63b9d083212\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\a7d04b051b16996d1dd34a0633f1c991\CLI.Caste.Graphics.Shared.ni.dll
2020-10-04 18:36 - 2020-10-04 18:36 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\043b47dc5a44cfa894fc33c96cfbbf8f\CLI.Caste.Graphics.Runtime.ni.dll
2020-10-04 18:35 - 2020-10-04 18:35 - 000335360 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\d43756d65b74f4ae5595319c944a1534\Microsoft.WindowsAPICodePack.ni.dll
2020-10-15 08:47 - 2020-10-15 08:47 - 002546688 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\578969b39f55dfb7c1423e1fd55fb2ad\Microsoft.WindowsAPICodePack.Shell.ni.dll
2017-02-13 13:54 - 2017-02-13 13:54 - 000132096 _____ (Seiko Epson Corporation) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\epnsm.dll
2009-10-21 16:39 - 2009-10-21 16:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\Epson Software\Event Manager\LcMgr.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 004626432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Core.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 004854784 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Gui.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 000847872 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Network.dll
2017-12-12 21:22 - 2017-12-12 21:22 - 004439552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Raptr Inc\PlaysTV\Qt5Widgets.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_261\bin\ssv.dll [2020-10-19] (Oracle America, Inc. -> Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2020-05-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_261\bin\jp2ssv.dll [2020-10-19] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\OCHelper.dll [2020-03-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\GROOVEEX.DLL [2020-05-12] (Microsoft Corporation -> Microsoft Corporation)
DPF: HKLM-x32 {62789780-B744-11D0-986B-00609731A21D} hxxps://mapa.katasterportal.sk/kapor2/lib/mgaxctrl.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2018-03-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\MSOSB.DLL [2018-03-07] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\...\localhost -> localhost

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files\Python38\Scripts\;C:\Program Files\Python38\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Bitvise SSH Client;C:\Program Files\PuTTY\;C:\Program Files\WinMerge;C:\Program Files\dotnet\
HKU\S-1-5-21-3686106505-1447252684-3751893866-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\ProBook\AppData\Roaming\Mozilla\Firefox\Pozadie plochy.bmp
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "PlaysTV"
HKLM\...\StartupApproved\Run32: => "Raptr"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E4E13B60-5C60-4D71-83F2-391959560E81}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{267B9BAF-EAA0-4819-BC6F-29FC091D496F}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{0E84D93C-04D9-4F12-9F7A-69E95DDE0A91}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{1AE7E5D4-BC5F-431E-BF43-996FFD39C98B}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> )
FirewallRules: [{9C2C3C69-4E02-4103-92ED-ACFAF1FD10A8}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7EA7E87F-4D13-416C-9F63-DDB87A16A9F0}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2726032B-1B31-4804-B6D3-78EF02CF369E}] => (Allow) C:\Program Files (x86)\DVBViewer\DVBViewer.exe (Christian Hackbart -> CM&V Hackbart)
FirewallRules: [{1027DA26-98C4-48F6-A524-A89F1BEDE8DE}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation-Wireless Connectivity Solutions -> )
FirewallRules: [{F91A907F-955B-4EA8-A5E2-CF0620717652}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Plays.tv, LLC -> Copyright (c) 2017 Plays.tv, LLC)
FirewallRules: [{48CA9DFF-D7BB-4BA4-8180-07A554438C33}] => (Allow) C:\Program Files (x86)\Raptr Inc\PlaysTV\playstv.exe (Plays.tv, LLC -> Copyright (c) 2017 Plays.tv, LLC)
FirewallRules: [{5F764090-D2AE-4A90-B83B-6DF4BB238017}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{4497FAB3-FA6A-41FA-8EE6-1BCB7E36999E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{AF64406F-AA97-4242-B9DE-CFC26CB37D0A}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F096E122-7853-4A48-B8DA-C51B7C1C0652}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{171FD0FD-3E35-4730-A2FC-A92644DE01E5}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{1759FD5A-FB53-4139-9790-E6FC7C6CC876}C:\arduino\java\bin\javaw.exe] => (Allow) C:\arduino\java\bin\javaw.exe
FirewallRules: [UDP Query User{2692A8C9-BA7E-49AF-99BB-FD554DA4BBEC}C:\arduino\java\bin\javaw.exe] => (Allow) C:\arduino\java\bin\javaw.exe
FirewallRules: [TCP Query User{5B718BEF-F2B5-48AF-B0AC-63730F53DB75}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{08138200-3AD9-4C98-958E-BC229824F90F}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{D24FEBA7-1966-42A1-84C5-D6D2386E8574}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{867CBD59-074D-4BAE-9A15-4A740212B087}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{2AC34C17-EFB1-4D28-8989-3D2A614FA3D3}C:\opentftpserver\opentftpservermt.exe] => (Allow) C:\opentftpserver\opentftpservermt.exe () [File not signed]
FirewallRules: [UDP Query User{7C2DACD6-5171-4200-A6D0-E7E30A314692}C:\opentftpserver\opentftpservermt.exe] => (Allow) C:\opentftpserver\opentftpservermt.exe () [File not signed]
FirewallRules: [{6C46DDD5-B6F5-4D23-8DC7-CA9E87E45B32}] => (Block) C:\opentftpserver\opentftpservermt.exe () [File not signed]
FirewallRules: [{68B07295-65AB-4829-8F31-5BADCACDCB98}] => (Block) C:\opentftpserver\opentftpservermt.exe () [File not signed]
FirewallRules: [TCP Query User{8BFC9366-DF6A-42A5-B9D4-FA4BAF0F014F}C:\tftp\tftpd64.exe] => (Allow) C:\tftp\tftpd64.exe (Ph. Jounin) [File not signed]
FirewallRules: [UDP Query User{22CFC069-B513-4AB7-ACEA-21669AE74117}C:\tftp\tftpd64.exe] => (Allow) C:\tftp\tftpd64.exe (Ph. Jounin) [File not signed]
FirewallRules: [{E45A3990-392B-4EC4-A79C-3D731D1441EB}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C83DC6B9-48B4-4686-A330-0324C5A92713}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F3783F92-4BA7-431F-A7E6-A586C1CF5327}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B12B0AB3-2FB3-43EE-A79C-46A48F7DBB4C}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9648F11B-CDFB-4462-8E13-3D7F0C59C721}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{DE017AFC-4E64-4262-B27C-6A5D99233731}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{2F10F3E5-EDE3-4DE0-9915-0AED29E0AF21}] => (Allow) C:\Users\ProBook\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{25078B76-FFF8-473D-803F-9B4A35BBC071}] => (Allow) C:\Users\ProBook\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [TCP Query User{5956A993-2ACB-4B6D-996D-08AB33ED84F6}C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [UDP Query User{CFEE2C96-5F66-4FAC-8F24-AF9F8B58FE15}C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [TCP Query User{178EA511-F6BA-4EEC-977D-2F876EBB624B}C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [UDP Query User{86093FA3-D88D-44D0-89C2-5FE4C612E2E9}C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.42.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [{233802D6-6D28-48DF-80A7-6FCE60D9F134}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49273D74-DB97-43D9-A251-D7FAF0FAE99A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{B9F64A62-62E5-49B5-B7B3-1A5E9E4DDDD8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{893FDC9A-29CD-4F99-84AC-C1CB27C866F5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.65.78.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{95429D0E-2A3C-4208-A2E9-6D48F3458A7C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9BD2B660-96C3-4B92-B935-004A516C5AE0}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C98D7E1C-EEF8-4560-A3FC-88355ACAFA32}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{67C615BC-9C62-41E6-9A42-52A8A7CAAA2C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)

==================== Restore Points =========================

27-10-2020 14:45:18 AdwCleaner_BeforeCleaning_27/10/2020_14:45:17
27-10-2020 14:47:53 AdwCleaner_BeforeCleaning_27/10/2020_14:47:52

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/27/2020 02:55:07 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-OP82NTN)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance.  hr = 0x8007045b, A system shutdown is in progress.
.

Error: (10/27/2020 02:48:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]


System errors:
=============
Error: (10/27/2020 02:53:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby HP Support Solutions Framework Service zlyhalo kvôli nasledujúcej chybe: 
The system cannot find the file specified.

Error: (10/27/2020 02:51:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Intel(R) SUR QC Software Asset Manager bol dosiahnutý časový limit (30000 ms).

Error: (10/27/2020 02:50:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/27/2020 02:50:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/27/2020 02:50:35 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/27/2020 02:50:33 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/27/2020 02:50:32 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Modul WLAN Extensibility Module sa neočakávane zastavil.

Cesta k modulu: C:\WINDOWS\System32\IWMSSvc.dll

Error: (10/27/2020 02:50:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) System Usage Report Service SystemUsageReportSvc_QUEENCREEK sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


Windows Defender:
===================================
Date: 2020-10-27 11:01:47.2340000Z
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0
Name: Misleading:Win32/Lodi
ID: 240849
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: file:_C:\Users\ProBook\Downloads\CleanMyPC.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\totalcmd\TOTALCMD.EXE
Security intelligence Version: AV: 1.325.1519.0, AS: 1.325.1519.0, NIS: 1.325.1519.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-27 10:57:33.7460000Z
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0
Name: Misleading:Win32/Lodi
ID: 240849
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: file:_C:\Users\ProBook\Downloads\CleanMyPC.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Windows\System32\svchost.exe
Security intelligence Version: AV: 1.325.1519.0, AS: 1.325.1519.0, NIS: 1.325.1519.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-27 10:57:31.5500000Z
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0
Name: Misleading:Win32/Lodi
ID: 240849
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: file:_C:\Users\ProBook\Downloads\CleanMyPC.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe
Security intelligence Version: AV: 1.325.1519.0, AS: 1.325.1519.0, NIS: 1.325.1519.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-27 10:57:30.0620000Z
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0
Name: Misleading:Win32/Lodi
ID: 240849
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: file:_C:\Users\ProBook\Downloads\CleanMyPC.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Users\ProBook\AppData\Local\Temp\is-41JET.tmp\CleanMyPC.tmp
Security intelligence Version: AV: 1.325.1519.0, AS: 1.325.1519.0, NIS: 1.325.1519.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-27 10:57:28.5960000Z
Description: 
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Misleading:Win32/Lodi&threatid=240849&enterprise=0
Name: Misleading:Win32/Lodi
ID: 240849
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: file:_C:\Users\ProBook\Downloads\CleanMyPC.exe
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: Real-Time Protection
Process Name: C:\Program Files (x86)\Wise\Wise Care 365\WiseTray.exe
Security intelligence Version: AV: 1.325.1519.0, AS: 1.325.1519.0, NIS: 1.325.1519.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-21 23:05:03.4840000Z
Description: 
Microsoft Defender Antivirus has encountered a critical error when taking action on malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/Occamy.CEC&threatid=2147756193&enterprise=0
Name: Trojan:Win32/Occamy.CEC
ID: 2147756193
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\HBCD\Programs\Files\UltraISO.7z
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Program Files (x86)\RMPrepUSB\RMPREPUSB.exe
Action: Quarantine
Action Status:  No additional actions required
Error Code: 0x80070005
Error description: Access is denied. 
Security intelligence Version: AV: 1.325.1171.0, AS: 1.325.1171.0, NIS: 1.325.1171.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

==================== Memory info =========================== 

BIOS: Hewlett-Packard 68SCF Ver. F.67 02/13/2018
Motherboard: Hewlett-Packard 1618
Processor: Intel(R) Core(TM) i5-2520M CPU @ 2.50GHz
Percentage of memory in use: 46%
Total physical RAM: 8142.35 MB
Available physical RAM: 4377.45 MB
Total Virtual: 9422.35 MB
Available Virtual: 5612.09 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:182.74 GB) (Free:93.68 GB) NTFS

\\?\Volume{133051dd-0000-0000-0000-100000000000}\ () (Fixed) (Total:0.49 GB) (Free:0.46 GB) NTFS
\\?\Volume{133051dd-0000-0000-0000-a0ce2d000000}\ () (Fixed) (Total:0.83 GB) (Free:0.31 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 133051DD)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=182.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=849 MB) - (Type=27)
Partition 4: (Not Active) - (Size=48.8 GB) - (Type=05)
 Could not read MBR for disk 1.

==================== End of Addition.txt =======================