Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-11-2020
Ran by tokar (20-11-2020 16:29:16)
Running from C:\Users\tokar\Desktop
Windows 10 Pro Version 2004 19041.572 (X64) (2020-08-11 16:51:26)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4083168225-1666349347-495660934-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4083168225-1666349347-495660934-503 - Limited - Disabled)
Guest (S-1-5-21-4083168225-1666349347-495660934-501 - Limited - Disabled)
tokar (S-1-5-21-4083168225-1666349347-495660934-1001 - Administrator - Enabled) => C:\Users\tokar
WDAGUtilityAccount (S-1-5-21-4083168225-1666349347-495660934-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

8GadgetPack (HKLM-x32\...\{36E60904-D465-40F7-82A7-A9C7A84C29B7}) (Version: 24.0.0 - 8GadgetPack.net)
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 20.013.20064 - Adobe Systems Incorporated)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.114 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
Apple Mobile Device Support (HKLM\...\{BD6778C5-6FA5-492A-ADD6-E706339C2A7B}) (Version: 11.0.2.4 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{C1BBFD2A-BCDD-45B3-8C0B-66BD434970A8}) (Version: 2.4.8.1 - Apple Inc.)
Asistent pri inovácii na Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22175 - Microsoft Corporation)
Battle.net (HKLM-x32\...\Battle.net) (Version:  - Blizzard Entertainment)
Battlestate Games Launcher 10.4.2.1226 (HKLM-x32\...\{B0FDA062-7581-4D67-B085-C4E7C358037F}_is1) (Version: 10.4.2.1226 - Battlestate Games)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Core Temp version 0.99.7 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 0.99.7 - Arthur Liberman)
Discord (HKU\S-1-5-21-4083168225-1666349347-495660934-1001\...\Discord) (Version: 0.0.308 - Discord Inc.)
Display Pilot (HKLM-x32\...\{6DD25D67-4339-47A1-950E-EEFC321CBB24}) (Version: 2.80.002 - Portrait Displays, Inc.)
Escape from Tarkov (HKLM-x32\...\EscapeFromTarkov) (Version: 0.12.8.9831 - Battlestate Games)
EXPERTool v10.6 (HKLM-x32\...\{551D9481-9487-4D0C-9A1D-6BC3E7B6D991}_is1) (Version: 10.6.0.1 - Gainward Co. Ltd.)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version:  - GOG.com)
HP Deskjet 5520 series Basic Device Software (HKLM\...\{014A59C8-DDA5-4788-906D-1F5CBA8A583D}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Deskjet 5520 series Product Improvement Study (HKLM\...\{29E392C4-E0C3-4E96-85B6-03B8E3963310}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) Network Connections 21.1.30.0 (HKLM\...\PROSetDX) (Version: 21.1.30.0 - Intel)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 15.2.0.1020 - Intel Corporation)
iTunes (HKLM\...\{BDE14F64-E8A1-468E-AB7C-D8B1F5DB95E9}) (Version: 12.7.2.60 - Apple Inc.)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}) (Version: 3.5.67.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 16.0.13328.20356 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4083168225-1666349347-495660934-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Mozilla Firefox 82.0.3 (x64 sk) (HKLM\...\Mozilla Firefox 82.0.3 (x64 sk)) (Version: 82.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 57.0 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation)
NVIDIA Grafický ovládač 457.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.09 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
O&O Defrag Professional (HKLM\...\{177DE549-9107-4370-A840-9FC4AE8BC2BE}) (Version: 17.0.504 - O&O Software GmbH)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.36.23506 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 457.09 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 457.09 - NVIDIA Corporation) Hidden
Pivot Pro Plugin (HKLM-x32\...\{0217E1D1-BCEF-4A61-AF6D-F7740F65A066}) (Version: 9.61.004 - Portrait Displays, Inc.) Hidden
Podpora Apple aplikácií (32-bit) (HKLM-x32\...\{BC7C46A4-D7A7-48EC-A98C-32A7762B5EFA}) (Version: 6.2.1 - Apple Inc.)
Podpora Apple aplikácií(64-bit) (HKLM\...\{F0C4B709-8BF4-4A72-B527-12E7BF5482F8}) (Version: 6.2.1 - Apple Inc.)
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 4.6.2.2750 - Jan Fiala)
Revo Uninstaller Pro 3.0.8 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.0.8 - VS Revo Group, Ltd.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.27.272 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.6.5 - Rockstar Games)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SteelSeries Engine 3.15.2 (HKLM\...\SteelSeries Engine 3) (Version: 3.15.2 - SteelSeries ApS)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.0 - Ghisler Software GmbH)
Twitch (HKU\S-1-5-21-4083168225-1666349347-495660934-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{2E8B8BDD-03DF-4C1C-8C99-E6A4BCBF43CE}) (Version: 2.51.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{F339C545-24DC-4870-AA32-6EB6B0500B95}) (Version: 1.24.0.0 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 46.0 - Ubisoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.6 - VideoLAN)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version:  - Blizzard Entertainment)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Facebook -> C:\Program Files\WindowsApps\Facebook.Facebook_186.2619.19263.0_x86__8xx8rvfyw5nnt [2019-11-25] (Facebook Inc)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-08-11] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-10-22] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4083168225-1666349347-495660934-1001_Classes\CLSID\{083f5ae0-2b0a-11dd-bd0b-0800200c9a66}\InprocServer32 -> C:\Users\tokar\AppData\Local\Microsoft\Windows Sidebar\Gadgets\All_CPU_Meter.gadget\CoreTempReader.dll (AddGadgets IT -> )
CustomCLSID: HKU\S-1-5-21-4083168225-1666349347-495660934-1001_Classes\CLSID\{0B7AD8D3-094A-44DE-A348-83C6C3FA347C}\InprocServer32 -> C:\Users\tokar\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Clipboarder.gadget\Release\Clipboarder64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-4083168225-1666349347-495660934-1001_Classes\CLSID\{0E7BE950-4ACC-47CB-834B-41A8B96BBFF9}\InprocServer32 -> C:\Users\tokar\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll (Helmut Buhler) [File not signed]
CustomCLSID: HKU\S-1-5-21-4083168225-1666349347-495660934-1001_Classes\CLSID\{5b55a44a-d008-49aa-9234-86fb7709bc0a}\InprocServer32 -> C:\Users\tokar\AppData\Local\Microsoft\Windows Sidebar\Gadgets\GPU_Meter.gadget\GPUStatusReader.dll (AddGadgets IT -> Orbmu2k)
CustomCLSID: HKU\S-1-5-21-4083168225-1666349347-495660934-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files (x86)\PSPad editor\pspshellx64.dll () [File not signed]
ContextMenuHandlers1: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2014-01-24] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2014-01-24] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers4: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2020-10-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [PortraitDisplaysContextMenu] -> {8602BDD8-9780-4717-B89A-7F89AF75B2AB} =>  -> No File
ContextMenuHandlers6: [OODefrag] -> {48EAD1E1-ECF2-4a85-AA09-1C44FBEED451} => C:\Program Files\OO Software\Defrag\oodsh.dll [2014-01-24] (O&O Software GmbH -> O&O Software GmbH)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-4083168225-1666349347-495660934-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files (x86)\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2017-12-04 20:18 - 2014-11-02 18:45 - 000029184 _____ () [File not signed] C:\Program Files (x86)\PSPad editor\pspshellx64.dll
2017-11-20 14:35 - 2017-10-07 15:28 - 000608256 _____ (Helmut Buhler) [File not signed] C:\Program Files\Windows Sidebar\dwmapi.dll
2017-11-20 14:35 - 2017-10-06 18:25 - 000475648 _____ (Helmut Buhler) [File not signed] C:\Users\tokar\AppData\Local\Microsoft\Windows Sidebar\Gadgets\Sidebar7.gadget\Release\Sidebar7.64.dll
2019-03-06 19:18 - 2019-03-06 19:18 - 002146304 _____ (Holtek Semiconductor Inc.) [File not signed] C:\Program Files\SteelSeries\SteelSeries Engine 3\HIDDLL.dll
2019-03-06 19:18 - 2019-03-06 19:18 - 002284032 _____ (Holtek) [File not signed] C:\Program Files\SteelSeries\SteelSeries Engine 3\ISPDLL.dll
2017-11-15 20:14 - 2013-06-18 12:24 - 000372736 _____ (Intel Corporation) [File not signed] C:\Program Files (x86)\Portrait Displays\Pivot Pro Plugin\ijl15.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-10-05] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-10-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 12:47 - 2016-07-16 12:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4083168225-1666349347-495660934-1001\Control Panel\Desktop\\Wallpaper -> 
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "O&O Defrag Tray.lnk"
HKLM\...\StartupApproved\Run: => "OODefragTray"
HKLM\...\StartupApproved\Run: => "iTunesHelper"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{D5164CAF-8052-435F-9AF0-CBB07FA96EA2}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{C9DBA1D0-8919-4DFB-B32B-1C5523C7922F}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{443537D6-E92E-4535-9483-447554454276}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{5C52BBB1-7644-4FDA-8BCF-5BBCAABE850B}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{8E25ABF1-B9E5-4750-8184-8ED3D20EE7A2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{69530B80-4A5A-44F8-8F11-618EB3F6EB58}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CCD809E1-7A91-4E76-AEA9-AC332BFA7AAC}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FBDBD2A7-6B10-4BE8-A2B6-174818146CD2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [UDP Query User{BB8A62FE-5DC1-416D-ABD5-96C3682D7106}C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Block) C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{38B08EA3-DE19-452B-AD33-8AE91190BEB2}C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Block) C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{998CA45C-F630-406A-8D0C-58D1D91CC21C}] => (Block) D:\program files\steam\steamapps\common\h1z1\h1z1.exe => No File
FirewallRules: [{28E01A32-E85E-4713-BF28-7146E3B191C7}] => (Block) D:\program files\steam\steamapps\common\h1z1\h1z1.exe => No File
FirewallRules: [UDP Query User{8AD4ECE9-8604-458F-8AFF-0F07761DD4F0}D:\program files\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\program files\steam\steamapps\common\h1z1\h1z1.exe => No File
FirewallRules: [TCP Query User{C1D250F2-DB2E-4342-941A-AB78BBA767DB}D:\program files\steam\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\program files\steam\steamapps\common\h1z1\h1z1.exe => No File
FirewallRules: [UDP Query User{533326F9-0041-4741-9E5E-8D91563A522C}D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{A8969BF9-2286-4DA4-864D-A0A34E6EF531}D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{F62308E5-2A23-4CDE-95A5-D2C0832B2F4C}] => (Block) D:\program files\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [{041F1603-BF76-42B2-8A12-61B0FD555A0E}] => (Block) D:\program files\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [UDP Query User{4812DFB1-A2A4-418D-AC0F-7D2ECEEC95A1}D:\program files\diablo iii\x64\diablo iii64.exe] => (Allow) D:\program files\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [TCP Query User{B028CAE8-0796-488B-85F4-3332B378474B}D:\program files\diablo iii\x64\diablo iii64.exe] => (Allow) D:\program files\diablo iii\x64\diablo iii64.exe => No File
FirewallRules: [UDP Query User{34323334-D5CE-4B64-8B16-4E40A9D0E997}C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [TCP Query User{0E73173B-DC33-458C-AA2E-6A54C1ABB965}C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) C:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{E9BF8B09-D700-410A-9EA7-CADA189D9F7E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DCC9F2C7-50D3-4603-B821-BA3E034BF693}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{DD0BE12B-5508-4BFB-A01F-C289756A66D4}D:\program files\apex\r5apex.exe] => (Allow) D:\program files\apex\r5apex.exe => No File
FirewallRules: [TCP Query User{6268DD70-9C85-4FAD-8FA3-11D2BE8D68DB}D:\program files\apex\r5apex.exe] => (Allow) D:\program files\apex\r5apex.exe => No File
FirewallRules: [UDP Query User{DBD6EF0D-182C-4716-981D-EB5227E99974}D:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) D:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe => No File
FirewallRules: [TCP Query User{DDA7C3F1-794C-4EED-9CDA-219B4059C179}D:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe] => (Allow) D:\program files\world of warcraft\_retail_\utils\wowvoiceproxy.exe => No File
FirewallRules: [{92809E50-6843-4367-831D-03064ABCB4A3}] => (Allow) D:\program files\steam\steamapps\common\fallout 4\fallout4.exe => No File
FirewallRules: [{D3B95B66-4572-4754-9C59-B12D4C4CDF2C}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{988DC911-2075-4C75-9EC4-5902E97CC909}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [UDP Query User{B76806A4-6386-4C11-8706-D657DD19D72A}D:\program files\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\program files\world of warcraft\utils\wowvoiceproxy.exe => No File
FirewallRules: [TCP Query User{D6418784-4925-498F-96B4-B9CAD2C7D126}D:\program files\world of warcraft\utils\wowvoiceproxy.exe] => (Allow) D:\program files\world of warcraft\utils\wowvoiceproxy.exe => No File
FirewallRules: [{23A65F58-8F6C-4077-98FD-8F4C4886CF27}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7029D527-5C29-4CA6-8A6F-69F28E34506A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{38AAF4D2-3738-4E09-882B-4F9538874EDC}D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{499BAD6D-D941-4F82-9627-A4FA495CE270}D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\program files\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{56185E9A-85BD-4040-B579-8FD6BB954CB1}D:\program files\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\program files\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe => No File
FirewallRules: [TCP Query User{E2FCF8FB-FC38-41AE-AA10-8FAB06E2CEF0}D:\program files\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe] => (Allow) D:\program files\steam\steamapps\common\dead by daylight\deadbydaylight\binaries\win64\deadbydaylight-win64-shipping.exe => No File
FirewallRules: [UDP Query User{98E8E1C0-8FDD-4592-9BEA-E4286D53B5D6}D:\program files\steam\steamapps\common\hunt showdown (test server)\bin\win_x64\gamelauncher.exe] => (Allow) D:\program files\steam\steamapps\common\hunt showdown (test server)\bin\win_x64\gamelauncher.exe => No File
FirewallRules: [TCP Query User{E8E6D5E9-02CC-4505-A916-BD1FA837A59D}D:\program files\steam\steamapps\common\hunt showdown (test server)\bin\win_x64\gamelauncher.exe] => (Allow) D:\program files\steam\steamapps\common\hunt showdown (test server)\bin\win_x64\gamelauncher.exe => No File
FirewallRules: [{76437A0F-258A-485F-BB27-FDD5EADAC5D7}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2A6A45E7-CD11-4626-9682-3D22DA380B9E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{28098E86-107F-40BC-AC17-08B006BF04E2}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B475263B-23A6-4A85-A194-BCA23D7F4576}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4A0B7107-884C-4208-BF04-83E19D794A45}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4FD3849D-8830-481D-80FE-6BCAC6004BF1}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2BE2F615-C134-4402-97B6-C8806BE237B6}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\launcher.exe (Kristjan Skutta -> )
FirewallRules: [{B80E1034-6E3D-42C5-BE73-7DBEE01998FB}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\launcher.exe (Kristjan Skutta -> )
FirewallRules: [UDP Query User{301959F3-1473-4770-B748-10B7227962DF}D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{EB555544-F3DA-4E73-B2CC-D8CEAE2D26B5}D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{6ACFF708-36EF-42FB-AD8F-D23F6D8C4EF4}] => (Allow) D:\program files\steam\steamapps\common\fallout 4\fallout4.exe => No File
FirewallRules: [{54605C69-D84C-419D-BF5F-48A7CAE8BD58}] => (Allow) D:\program files\steam\steamapps\common\fallout 4\fallout4.exe => No File
FirewallRules: [UDP Query User{EF92DBF7-B2B1-4785-9288-54D71E1AACF7}D:\program files\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) D:\program files\steam\steamapps\common\fallout 4\fallout4.exe => No File
FirewallRules: [TCP Query User{8252DCF5-C402-4A82-B707-97248D5CC506}D:\program files\steam\steamapps\common\fallout 4\fallout4.exe] => (Allow) D:\program files\steam\steamapps\common\fallout 4\fallout4.exe => No File
FirewallRules: [{62669503-CF40-4F60-A9C0-880E98321CA2}] => (Allow) D:\Program Files\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe => No File
FirewallRules: [{DA4F0D59-65E3-492E-827F-BE6DF4896A7B}] => (Allow) D:\Program Files\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe => No File
FirewallRules: [{DB36EBE6-AFDB-4046-A984-5FD830A863D9}] => (Allow) D:\Program Files\Steam\steamapps\common\Fallout 4\Fallout4Launcher.exe => No File
FirewallRules: [UDP Query User{FD2CA1F5-1C7C-4063-BD77-3F45FE8A534B}D:\program files\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{DFA1A052-4DCB-4F95-84CC-34CFBC159849}D:\program files\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg_test\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{C31F767C-7EAD-4E35-8C1A-C730A0BAB2DA}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B17518A5-2AA8-4399-843A-E5025C7D4E05}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FCCDCC0F-8491-45D1-94A3-3FC4B190F95F}] => (Allow) LPort=3935
FirewallRules: [{FAB3EB08-3E15-4417-825B-2863B7F65AB3}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\DeviceSetup.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{756B273A-B9B8-4324-945E-A7E15AEAAFC6}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicator.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{ADCDF532-2CB4-400C-9981-DD9B7045054C}] => (Allow) C:\Program Files\HP\HP Deskjet 5520 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{8F8D975C-63AA-4B43-B9FB-7894ACC24B8A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E47F02BF-0E29-47AB-8BCF-855B01357B26}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{32918E97-4BDF-442E-8BCA-8930F098F7AE}] => (Allow) D:\Program Files\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{6C65AAF6-D07C-44F8-A716-27FFA34C2792}] => (Allow) D:\Program Files\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{68667DE8-493A-4C49-9A06-359304D21F23}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{D36AD375-88F2-4F96-8A12-E5B31D6BAA40}] => (Allow) D:\Program Files\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{905F4776-D06C-4969-8A79-FF93122A097D}] => (Allow) D:\Program Files\Steam\steamapps\common\H1Z1\LaunchPad.exe => No File
FirewallRules: [{E22CDFF3-CFD4-4CEC-8635-06AEF539694F}] => (Allow) D:\Program Files\Steam\steamapps\common\H1Z1\LaunchPad.exe => No File
FirewallRules: [{9CA32E41-CA0E-4C34-976B-ADBAC1C22ACD}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{4216604F-F492-4862-9962-724BC3455A97}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{1CD9305C-2157-4E86-98E6-F9BDD7C40504}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{AFF14484-4809-49AD-A6AE-9258C7B18A01}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [TCP Query User{1E32B1B0-E8B8-4010-B4D2-95D9BC41D09E}D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [UDP Query User{940E04B9-EB3A-4562-86CA-699AE93B45B4}D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\program files\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{5C707D0B-8ACE-4F4D-8845-17E89D821C75}] => (Allow) D:\Program Files\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{8A947E6E-6ADB-40C0-A822-F6741F371652}] => (Allow) D:\Program Files\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{006E592B-4CCA-448E-B73A-2880FA7D1720}] => (Allow) D:\Program Files\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{D955DDE7-9087-42A6-9080-FA0338BAC811}] => (Allow) D:\Program Files\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{5212FF62-660C-4EB8-AB3B-BDD950B60348}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{28345AA4-BC2E-41AC-AAFB-AA14302AE09B}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{760F54B3-76C9-4D3E-AB91-8B9FBA0F9D76}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{632E9AE7-E8D0-422C-A582-1DE83AE7C696}] => (Allow) D:\Program Files\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{2600AD14-3029-4D46-A240-0D3B55048F84}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Kristjan Skutta -> )
FirewallRules: [{95DCC453-1F20-4FEF-8371-EA005BF9558C}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Kristjan Skutta -> )
FirewallRules: [{D60BA8CE-10EB-4015-9D25-C63AF2672A8D}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{236823D2-C510-4F11-8CDF-631F0D573D3E}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Kristjan Skutta -> )
FirewallRules: [{F0927218-2861-4E22-ABAA-A4AFEE31515C}] => (Allow) D:\Program Files\Steam\steamapps\common\wallpaper_engine\bin\diagnostics32.exe (Kristjan Skutta -> )
FirewallRules: [{DAB565C1-539E-4D2B-B61D-E7DCCAFA8361}] => (Allow) D:\Program Files\Steam\steamapps\common\Metro Exodus\MetroExodus.exe (4A Games) [File not signed]
FirewallRules: [{0ED28BA4-80C5-4FFE-B98C-82BFCB9572B0}] => (Allow) D:\Program Files\Steam\steamapps\common\Metro Exodus\MetroExodus.exe (4A Games) [File not signed]
FirewallRules: [{669ABB8C-C5D7-425F-A17B-CA30E6C8564C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F653EF7F-00F3-42B9-9D37-8BE11DA8A997}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C03F043C-BF94-4354-813D-F649AB559030}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{427091C5-C7BB-4D97-A16A-FE4794564A8D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{6CA9682E-AA8B-4520-BF4F-AA6A76AA6FA7}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (Battlestate Games Ltd -> Battlestate Games)
FirewallRules: [{6E341351-671D-4822-9ADA-C212ED3BB47A}] => (Allow) C:\Battlestate Games\BsgLauncher\BsgLauncher.exe (Battlestate Games Ltd -> Battlestate Games)

==================== Restore Points =========================

13-11-2020 13:05:24 Scheduled Checkpoint
20-11-2020 15:19:42 AdwCleaner_BeforeCleaning_20/11/2020_15:19:42

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/20/2020 03:21:27 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: DTHtml.exe, verzia: 1.2.80.2, časová značka: 0x58af7b7a
Názov chybujúceho modulu: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000
Identifikácia chybujúceho procesu: 0x27c4
Čas spustenia chybujúcej aplikácie: 0x01d6bf486efb7f95
Cesta chybujúcej aplikácie: C:\Program Files (x86)\BenQ\Display Pilot\DTHtml.exe
Cesta chybujúceho modulu: unknown
Identifikácia hlásenia: 411c2f92-1175-45c4-995f-25b66b018481
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/20/2020 03:20:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: Explorer.EXE, verzia: 10.0.19041.546, časová značka: 0x89ce2e55
Názov chybujúceho modulu: dthook.dll_unloaded, verzia: 0.0.0.0, časová značka: 0x58af7cd8
Kód výnimky: 0xc0000005
Odstup chyby: 0x0000000000007d10
Identifikácia chybujúceho procesu: 0x1830
Čas spustenia chybujúcej aplikácie: 0x01d6bf2429260883
Cesta chybujúcej aplikácie: C:\WINDOWS\Explorer.EXE
Cesta chybujúceho modulu: dthook.dll
Identifikácia hlásenia: 157d6289-c4f4-4894-81ef-044ec1e0689b
Celé meno chybujúceho balíka: 
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (11/20/2020 11:02:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SearchApp.exe, verzia: 10.0.19041.546, časová značka: 0xc404ae05
Názov chybujúceho modulu: ConstraintIndex.Search.dll, verzia: 10.0.19041.153, časová značka: 0x4f1e28d8
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000b4f91
Identifikácia chybujúceho procesu: 0x25dc
Čas spustenia chybujúcej aplikácie: 0x01d6bf2433e47638
Cesta chybujúcej aplikácie: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta chybujúceho modulu: C:\Windows\System32\ConstraintIndex.Search.dll
Identifikácia hlásenia: 7019dae7-fa37-4f6a-920f-0784eb9d3ce4
Celé meno chybujúceho balíka: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: CortanaUI

Error: (11/20/2020 11:02:03 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SearchApp.exe, verzia: 10.0.19041.546, časová značka: 0xc404ae05
Názov chybujúceho modulu: ConstraintIndex.Search.dll, verzia: 10.0.19041.153, časová značka: 0x4f1e28d8
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000b4f91
Identifikácia chybujúceho procesu: 0x2564
Čas spustenia chybujúcej aplikácie: 0x01d6bf2431a5db7c
Cesta chybujúcej aplikácie: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta chybujúceho modulu: C:\Windows\System32\ConstraintIndex.Search.dll
Identifikácia hlásenia: 0c668cae-a7c5-4f17-8018-4e3c70a0d29b
Celé meno chybujúceho balíka: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: CortanaUI

Error: (11/20/2020 11:01:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SearchApp.exe, verzia: 10.0.19041.546, časová značka: 0xc404ae05
Názov chybujúceho modulu: ConstraintIndex.Search.dll, verzia: 10.0.19041.153, časová značka: 0x4f1e28d8
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000b4f91
Identifikácia chybujúceho procesu: 0x1f20
Čas spustenia chybujúcej aplikácie: 0x01d6bf242f811290
Cesta chybujúcej aplikácie: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta chybujúceho modulu: C:\Windows\System32\ConstraintIndex.Search.dll
Identifikácia hlásenia: eee935db-3a45-429f-82a1-6a65401fa9fc
Celé meno chybujúceho balíka: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: CortanaUI

Error: (11/20/2020 11:01:56 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SearchApp.exe, verzia: 10.0.19041.546, časová značka: 0xc404ae05
Názov chybujúceho modulu: ConstraintIndex.Search.dll, verzia: 10.0.19041.153, časová značka: 0x4f1e28d8
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000b4f91
Identifikácia chybujúceho procesu: 0x1d90
Čas spustenia chybujúcej aplikácie: 0x01d6bf242d52d9be
Cesta chybujúcej aplikácie: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta chybujúceho modulu: C:\Windows\System32\ConstraintIndex.Search.dll
Identifikácia hlásenia: 7ee31ec2-0435-46a8-9b8e-3149b875e676
Celé meno chybujúceho balíka: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: CortanaUI

Error: (11/20/2020 11:01:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SearchApp.exe, verzia: 10.0.19041.546, časová značka: 0xc404ae05
Názov chybujúceho modulu: ConstraintIndex.Search.dll, verzia: 10.0.19041.153, časová značka: 0x4f1e28d8
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000b4f91
Identifikácia chybujúceho procesu: 0x19a0
Čas spustenia chybujúcej aplikácie: 0x01d6bf2429ffe691
Cesta chybujúcej aplikácie: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta chybujúceho modulu: C:\Windows\System32\ConstraintIndex.Search.dll
Identifikácia hlásenia: 28680cc9-e2c9-481b-a14f-f798896905eb
Celé meno chybujúceho balíka: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: CortanaUI

Error: (11/12/2020 10:45:22 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest".Error in manifest or policy file "C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL" on line 1.
Component identity found in manifest does not match the identity of the component requested.
Reference is UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definition is UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Please use sxstrace.exe for detailed diagnosis.


System errors:
=============
Error: (11/20/2020 03:21:00 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby PdiService zlyhalo kvôli nasledujúcej chybe: 
The system cannot find the file specified.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 6000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba O&O Defrag sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Apple Mobile Device Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 60000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Portrait Displays Display Tune Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 0 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 6000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (11/20/2020 03:19:55 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Bonjour Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


Windows Defender:
===================================
Date: 2020-11-18 19:25:41.0270000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0497361B-FCD3-4431-85BB-0B2FDF85A2C3}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-11-17 11:56:45.5470000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {35606977-11EF-4684-AA29-9EEA637D6587}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-11-16 18:12:49.1930000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {FB19134A-7B58-402B-A431-85CB92704238}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-11-15 12:34:01.6010000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {BE038B28-F07E-4A6C-8AA8-0341D56C41F6}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-11-14 15:22:14.9830000Z
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {7C0F0CA7-150C-46CD-8BBF-FF3A42973476}
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2020-11-13 10:23:00.8490000Z
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.327.755.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17600.5
Error code: 0x80240438
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore. 

Date: 2020-10-05 16:59:09.2630000Z
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.321.1620.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.17300.4
Error code: 0x80070102
Error description: The wait operation timed out. 

==================== Memory info =========================== 

BIOS: American Megatrends Inc. P7.20 11/17/2016
Motherboard: ASRock H170 Pro4/Hyper
Processor: Intel(R) Core(TM) i5-7500 CPU @ 3.40GHz
Percentage of memory in use: 19%
Total physical RAM: 16317.6 MB
Available physical RAM: 13197.07 MB
Total Virtual: 29117.6 MB
Available Virtual: 24056.83 MB

==================== Drives ================================

Drive c: (Windows 10 x64  SSD) (Fixed) (Total:254.85 GB) (Free:102.32 GB) NTFS
Drive d: (Toki Beast HDD) (Fixed) (Total:931.51 GB) (Free:750.68 GB) NTFS

\\?\Volume{8a153a08-0000-0000-0000-100000000000}\ (Vyhradené systémom) (Fixed) (Total:0.49 GB) (Free:0.11 GB) NTFS
\\?\Volume{8a153a08-0000-0000-0000-00d63f000000}\ () (Fixed) (Total:0.83 GB) (Free:0.4 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 256.2 GB) (Disk ID: 8A153A08)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=254.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=847 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 8A153A32)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================