Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-04-2017 01
Ran by ctelu (14-05-2021 16:20:03)
Running from C:\Users\ctelu\Desktop
Windows 10 Home Version 2009 (X64) (2020-10-21 16:21:47)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3984166785-435578412-2767841028-500 - Administrator - Disabled)
ctelu (S-1-5-21-3984166785-435578412-2767841028-1001 - Administrator - Enabled) => C:\Users\ctelu
DefaultAccount (S-1-5-21-3984166785-435578412-2767841028-503 - Limited - Disabled)
Guest (S-1-5-21-3984166785-435578412-2767841028-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3984166785-435578412-2767841028-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Spybot - Search and Destroy (Disabled - Out of date) {F77C7796-45C4-531E-0DAE-B4A8229B11C8}
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AMD Quick Stream (HKLM\...\{E9EED4AE-682B-4501-9574-D09A21717599}_is1) (Version: 4.0.0.0 - AppEx Networks)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 90.0.818.56 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.143.57 - )
Microsoft Mouse and Keyboard Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 13.250.137.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{A0E1B43D-5F4A-46AF-9925-ABA3423325DC}) (Version: 2.77.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
Unchecky v1.2 (HKLM-x32\...\Unchecky) (Version: 1.2 - Reason Software Company Inc.)
Wargaming.net Game Center (HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\Wargaming.net Game Center) (Version: 21.2.2.4998 - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\WOT.EU.PRODUCTION) (Version:  - Wargaming.net)
Základní software zařízení HP Deskjet 2050 J510 series (HKLM\...\{F61FD928-A74D-4AF9-9667-BE2BB6F2C386}) (Version: 28.0.1313.0 - Hewlett-Packard Co.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {008539BF-83F9-4483-9E0A-EEEE6EAC0A08} - System32\Tasks\Microsoft\Windows\Shell\UpdateUserPictureTask
Task: {077333D6-06BA-4EA4-BDF4-1CD1439558F2} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask
Task: {0CBABB27-6DFC-4155-BAE7-AE919B92FEF2} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache => C:\WINDOWS\system32\dxgiadaptercache.exe [2021-04-14] (Microsoft Corporation)
Task: {0CEC0B91-4AE9-4E8A-ACB2-3B4C811F442C} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation
Task: {0E2DCCB3-7B11-40CF-B973-90F22732E317} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task
Task: {0E5112CF-CF52-4B49-A776-D608517A949D} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing
Task: {105D676A-D551-4274-81E7-97AC52E4FD87} - System32\Tasks\Microsoft\Windows\Speech\HeadsetButtonPress => C:\WINDOWS\system32\speech_onecore\common\SpeechRuntime.exe [2021-04-29] (Microsoft Corporation)
Task: {12DF3F8A-9612-48CA-AE38-2818FA70CA73} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2021-01-13] ()
Task: {1579F5CC-9033-47BF-BF50-670F72032C0C} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2021-02-02] (Microsoft Corporation)
Task: {1843AF2D-75F9-46FB-8994-5D8E384682F5} - System32\Tasks\Agent Activation Runtime\S-1-5-21-3984166785-435578412-2767841028-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [2021-04-29] ()
Task: {1DDE71CD-4543-416C-B8E7-D5461B2AF67A} - System32\Tasks\CCleanerSkipUAC => D:\Portable\ccsetup577\CCleaner.exe [2021-04-22] (Piriform Software Ltd)
Task: {2C8FA00B-DC9C-4E19-892B-6D2E0A095033} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [2021-05-14] (Microsoft Corporation)
Task: {304D2127-E6ED-4C82-B9B3-63B3B54A4D66} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan
Task: {33C0D61F-1DE5-4859-98FE-3F4A7E236562} - System32\Tasks\Microsoft\Windows\Application Experience\PcaPatchDbTask => Rundll32.exe %windir%\system32\PcaSvc.dll,PcaPatchSdbTask
Task: {34ADEFE8-89DB-43BC-8C0B-14BB34D69F6D} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives
Task: {35525E8D-FD60-47BF-8D11-FA4F778C57C3} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv => C:\WINDOWS\system32\eduprintprov.exe [2019-12-07] (Microsoft Corporation)
Task: {3FC4BE91-4A96-48F5-8858-1628CB88EFB5} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair => C:\WINDOWS\system32\bcdboot.exe [2021-01-13] (Microsoft Corporation)
Task: {44AF7ADA-1C0D-43B1-A063-9E7581F7730B} - System32\Tasks\Microsoft\Windows\InstallService\SmartRetry
Task: {4904BCBA-AFAF-48ED-A28E-D15075B6FE51} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [2021-05-14] (Microsoft Corporation)
Task: {4A0DEFDA-A2B8-4736-88E1-A578E00D9704} - System32\Tasks\Microsoft\Windows\Input\PenSyncDataAvailable
Task: {4BCE6391-0B05-40B4-B642-910B37FB1CE6} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration => Sc.exe start pushtoinstall registration
Task: {4F2030CE-BA8E-4122-B9A8-29AA5858973E} - System32\Tasks\Microsoft\Windows\Flighting\OneSettings\RefreshCache
Task: {51D4681D-DFB3-4C51-813E-BBEA3C4A19E4} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2021-02-02] (Microsoft Corporation)
Task: {5380838B-62B2-4BF4-AB46-702847B60A1D} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting
Task: {55B1C85E-5BEF-4EDB-ADD0-ECEAEF261E7C} - System32\Tasks\Microsoft\Windows\DirectX\DirectXDatabaseUpdater => C:\WINDOWS\system32\directxdatabaseupdater.exe [2021-04-14] (Microsoft Corporation)
Task: {571A0A5E-B60E-4A25-BEFB-ABB3C6BB6B78} - System32\Tasks\Microsoft\Windows\Workplace Join\Device-Sync
Task: {58CCC4DA-C86D-4E3D-8FAF-A7B24D8F3950} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => Rundll32.exe %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks
Task: {5D161462-236F-4A9E-BE16-7D324FBB65D2} - System32\Tasks\Microsoft\Windows\WwanSvc\OobeDiscovery
Task: {5E351EE7-F0D4-4F41-A05C-907EB1A33CE8} - System32\Tasks\Microsoft\Windows\WlanSvc\CDSSync
Task: {66A3F618-0C70-4F70-9BBA-735CCDB43A09} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task
Task: {6AE11DED-128B-4366-8A44-DBB66AA92509} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback
Task: {7C4733D2-81D6-4CA3-B30C-E00B496B9857} - System32\Tasks\Microsoft\Windows\Input\TouchpadSyncDataAvailable
Task: {87094343-6C1F-4855-A6B9-305BA74AB761} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh
Task: {977F94CC-E294-4F45-8CC9-8D2221732380} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2019-12-07] (Microsoft Corporation)
Task: {9B29B882-A95C-438B-BF91-E7C31B1D82D1} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates
Task: {9E8B79EF-F9E6-4FF0-BA02-D483A147A2CB} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2021-02-02] (Microsoft)
Task: {9F8E634D-83BA-4491-A236-7AFBCACAEAD7} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2021-02-02] (Microsoft Corporation)
Task: {A08D6A77-C926-4E78-9ED0-09836E2769AE} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdates
Task: {A1ED25D6-A0CA-4146-9EE4-7182F2DA3232} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
Task: {A2FADBDF-6855-42F7-BDFC-F0C510EDA9BC} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdatesAsUser
Task: {A499FA48-7057-4AC1-9702-44C6FD924058} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources
Task: {A60D9ECB-A6F4-4FE1-9BD7-B049487A67E7} - System32\Tasks\Microsoft\Windows\International\Synchronize Language Settings
Task: {A74EF9D1-6D6B-4566-8E25-782430F970E5} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck => Sc.exe start pushtoinstall login
Task: {A8AD4AB5-9363-4CD3-9D28-D30F9CC90182} - System32\Tasks\Safer-Networking\Spybot Anti-Beacon\Refresh Anti-Beacon immunization => C:\Program Files (x86)\Safer-Networking Ltd\Spybot Anti-Beacon\Spybot3AntiBeacon.exe 
Task: {AADDFD4F-EBA0-472A-85F3-3120A8C81380} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3984166785-435578412-2767841028-500 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe 
Task: {AF73DAAA-53AE-4CC8-8671-BE29D886B057} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged
Task: {AF7A8CDF-8ECD-442F-B3AF-19BE0846C384} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner
Task: {B617144C-85AA-4EAB-B51F-ED3B832B51DD} - System32\Tasks\iolo\ActiveMessenger => D:\Portable\ActiveBridge.exe 
Task: {BC0D7E84-908F-4F51-9060-88DA652826E5} - System32\Tasks\Microsoft_MKC_Logon_Task_ceip.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ceip.exe [2021-02-02] (Microsoft)
Task: {BF853FE1-B5AC-4FA3-8125-500339342B0A} - System32\Tasks\CCleaner Update => D:\Portable\ccsetup577\CCUpdate.exe [2021-04-22] (Piriform)
Task: {C0816751-BF59-4797-B2C2-D24FABEF209D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [2021-05-14] (Microsoft Corporation)
Task: {C5D47392-881C-422A-9BF8-E4916B55CD22} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications
Task: {C8E70C16-FDFA-40E1-868C-56D914E754E2} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-27] (Microsoft Corporation) <==== ATTENTION
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => C:\WINDOWS\System32\UNP\UpdateNotificationMgr.exe [2021-01-13] (Microsoft Corporation)
Task: {CADF1293-5495-426F-8E37-A30F69274AF4} - System32\Tasks\Microsoft\Windows\Input\LocalUserSyncDataAvailable
Task: {CD58D87E-E4C9-470E-A947-E127B37E58C5} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2021-02-02] (Microsoft Corporation)
Task: {DA42085F-11E4-4EE1-A363-1898204812F5} - System32\Tasks\Microsoft\Windows\Input\MouseSyncDataAvailable
Task: {EC3EFE4E-A2E4-4C66-975C-CA2EFD0D42CD} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates
Task: {F290F36B-686B-4167-A4D6-43EAA4C37C68} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\WINDOWS\system32\ClipRenew.exe [2019-12-07] (Microsoft Corporation)
Task: {F398DA01-81C4-44B4-A2A9-3E13EBCDDABC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [2021-05-14] (Microsoft Corporation)
Task: {F84954B7-3F92-4CEE-8A4F-D33B8D9AA177} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-27] (Microsoft Corporation) <==== ATTENTION
Task: {F8FEDA28-6261-4385-844A-684E6C988577} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh
Task: {FA1CBCF0-0FE4-4FC9-9BD8-FCE74D4AA7D3} - System32\Tasks\Core Temp Autostart ctelu => D:\Portable\CoreTemp64\Core Temp.exe [2021-04-11] (ALCPU)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\ctelu\AppData\Local\Microsoft\Edge\User Data\Default\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\ctelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\ctelu\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\4ac866364817f10c\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) ==============

2020-10-09 22:46 - 2020-10-09 22:46 - 00064552 _____ () C:\WINDOWS\system32\UMPDC.dll
2020-10-09 22:46 - 2020-10-09 22:46 - 00064552 _____ () c:\windows\system32\UMPDC.dll
2020-10-09 22:46 - 2020-10-09 22:46 - 00064552 _____ () C:\WINDOWS\SYSTEM32\UMPDC.dll
2021-01-13 09:37 - 2021-01-13 09:37 - 00643072 _____ () C:\Windows\System32\windowmanagementapi.dll
2021-03-17 19:15 - 2021-03-17 19:15 - 00707016 _____ () C:\WINDOWS\system32\TextShaping.dll
2020-10-09 22:46 - 2020-10-09 22:46 - 00064552 _____ () C:\WINDOWS\System32\UMPDC.dll
2021-03-17 19:15 - 2021-03-17 19:15 - 00707016 _____ () C:\WINDOWS\SYSTEM32\TextShaping.dll
2021-01-13 09:37 - 2021-01-13 09:37 - 02260992 _____ () C:\WINDOWS\system32\TextInputMethodFormatter.dll
2015-08-04 00:25 - 2015-08-04 00:25 - 00214528 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 00817152 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Device.dll
2014-02-11 07:08 - 2014-02-11 07:08 - 03650560 _____ () C:\Program Files\AMD\ATI.ACE\Fuel\Platform.dll
2021-01-13 09:37 - 2021-01-13 09:37 - 00643072 _____ () C:\Windows\System32\WindowManagementAPI.dll
2021-01-13 09:39 - 2021-01-13 09:39 - 00095744 _____ () C:\Windows\System32\VirtualMonitorManager.dll
2020-12-01 09:08 - 2020-12-01 09:08 - 00363520 _____ () C:\Windows\System32\Windows.Internal.UI.Shell.WindowTabManager.dll
2019-12-07 11:08 - 2019-12-07 11:08 - 00499200 _____ () C:\Windows\ShellExperiences\TileControl.dll
2021-01-13 09:37 - 2021-01-13 09:37 - 02142208 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2021-01-13 07:31 - 2021-01-13 07:23 - 00793416 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
2021-01-13 09:37 - 2021-01-13 09:37 - 00643072 _____ () C:\WINDOWS\SYSTEM32\WindowManagementAPI.dll
2020-10-09 22:46 - 2020-10-09 22:46 - 00064552 _____ () C:\Windows\System32\UMPDC.dll
2021-04-29 07:36 - 2021-04-29 07:36 - 00438784 _____ () C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\Search.Core.dll
2019-12-07 11:08 - 2019-12-07 11:08 - 00039424 _____ () C:\Windows\System32\usocoreps.dll
2021-05-08 21:21 - 2021-05-06 10:46 - 02877256 _____ () C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.56\swiftshader\libglesv2.dll
2021-05-08 21:21 - 2021-05-06 10:46 - 00488776 _____ () C:\Program Files (x86)\Microsoft\Edge\Application\90.0.818.56\swiftshader\libegl.dll
2021-05-14 15:26 - 2021-05-14 15:26 - 00011264 _____ () C:\Users\ctelu\AppData\Local\Temp\nsa1D96.tmp\System.dll
2021-05-14 15:26 - 2021-05-14 15:26 - 00008704 _____ () C:\Users\ctelu\AppData\Local\Temp\nsa1D96.tmp\newadvsplash.dll
2021-04-07 01:26 - 2021-01-28 18:04 - 00701376 _____ () D:\Sticky Password\DLLs\unicodedata.pyd
2021-04-07 01:26 - 2021-01-28 18:04 - 00156608 _____ () D:\Sticky Password\DLLs\pyexpat.pyd

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:4FC01C57 [101]
AlternateDataStreams: C:\Users\ctelu\Desktop\FRST64.exe:SmartScreen [7]
AlternateDataStreams: C:\Users\ctelu\Desktop\RSITx64.exe:SmartScreen [7]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioEndpointBuilder => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\AudioSrv => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CBDHSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudAddService.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HdAudBus.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MsQuic => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NetSetupSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcCtnrSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NgcSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\SerCx2.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\usbaudio.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => ""="Media"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{4D36E96C-E325-11CE-BFC1-08002BE10318} => "SafeBootDrivers"="1"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com

There are 7942 more sites.

IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\123simsen.com -> www.123simsen.com

There are 7942 more sites.


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2021-03-20 20:05 - 00456390 ____A C:\WINDOWS\system32\Drivers\etc\hosts

0.0.0.0	analytics.ff.avast.com
0.0.0.0	analytics.ns1.ff.avast.com0.0.0.0	v7event.stats.avcdn.net
0.0.0.0	v7.stats.avcdn.net
0.0.0.0	flow.lavasoft.com
0.0.0.0	telemetry.malwarebytes.com
0.0.0.0	ws.mcafee.com
0.0.0.0	analytics.ccs.mcafee.com
0.0.0.0	analyticsdcs.ccs.mcafee.com
0.0.0.0	carcharodon.trendmicro.com0.0.0.0	0.0.0.0
0.0.0.0	tracking.opencandy.com.s3.amazonaws.com
0.0.0.0	media.opencandy.com
0.0.0.0	cdn.opencandy.com
0.0.0.0	tracking.opencandy.com
0.0.0.0	api.opencandy.com
0.0.0.0	api.recommendedsw.com
0.0.0.0	rp.yefeneri2.com
0.0.0.0	os.yefeneri2.com
0.0.0.0	os2.yefeneri2.com
0.0.0.0	installer.betterinstaller.com
0.0.0.0	installer.filebulldog.com
0.0.0.0	d3oxtn1x3b8d7i.cloudfront.net
0.0.0.0	inno.bisrv.com
0.0.0.0	nsis.bisrv.com
0.0.0.0	cdn.file2desktop.com
0.0.0.0	cdn.goateastcach.us
0.0.0.0	cdn.guttastatdk.us
0.0.0.0	cdn.inskinmedia.com
0.0.0.0	cdn.insta.oibundles2.com
0.0.0.0	cdn.insta.playbryte.com
0.0.0.0	cdn.llogetfastcach.us

There are 15650 more lines.


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3984166785-435578412-2767841028-1001\Control Panel\Desktop\\Wallpaper -> c:\users\ctelu\appdata\roaming\microsoft\windows photo viewer\tapeta programu windows prohlížeč fotografií.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

HKLM\...\StartupApproved\StartupFolder: => "APC UPS Status.lnk"
HKLM\...\StartupApproved\Run32: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "Display"
HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\StartupApproved\StartupFolder: => "Sledovat výstrahy inkoustu - HP Deskjet 2050 J510 series.lnk"
HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\StartupApproved\Run: => "AppEx Accelerator UI"
HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\StartupApproved\Run: => "electron.app.Ghostery Midnight"
HKU\S-1-5-21-3984166785-435578412-2767841028-1001\...\StartupApproved\Run: => "SpyEmergency"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [Microsoft-Windows-DeviceManagement-CertificateInstall-TCP-Out] => (Allow) %SystemRoot%\system32\dmcertinst.exe
FirewallRules: [Microsoft-Windows-DeviceManagement-deviceenroller-TCP-Out] => (Allow) %SystemRoot%\system32\deviceenroller.exe
FirewallRules: [Microsoft-Windows-DeviceManagement-OmaDmClient-TCP-Out] => (Allow) %SystemRoot%\system32\omadmclient.exe
FirewallRules: [TCP Query User{42F26F69-C414-4167-A37B-4139B9F200ED}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [UDP Query User{2B30D67B-8667-491A-A090-9FF6D11F2521}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [TCP Query User{6E03CFE1-4B20-4B15-89F0-2398D78737AF}D:\games\world_of_tanks\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\win32\worldoftanks.exe
FirewallRules: [UDP Query User{1EF8130A-1B0F-4654-9B22-6B7A18F3771D}D:\games\world_of_tanks\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\win32\worldoftanks.exe
FirewallRules: [TCP Query User{C1AAC3B2-6BC5-4C51-84FB-68EB232C04FE}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Allow) C:\program files (x86)\microsoft\edge\application\msedge.exe
FirewallRules: [UDP Query User{343D0FFB-70A8-4BA0-B168-1F42D41FFB4B}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Allow) C:\program files (x86)\microsoft\edge\application\msedge.exe
FirewallRules: [TCP Query User{A01B097F-6B94-4175-9AB7-0A2996C59BD7}D:\games\world_of_tanks\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\win32\worldoftanks.exe
FirewallRules: [UDP Query User{37FAF99E-F3FC-44B6-8911-70B5B1052541}D:\games\world_of_tanks\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks\win32\worldoftanks.exe
FirewallRules: [TCP Query User{BE2FB31F-712F-4FDC-A77C-C994B1CF9D9A}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [UDP Query User{680AA6F5-C8AF-456E-BE81-3E5CE61EDCF9}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe
FirewallRules: [{69DE875C-CA82-400B-B66E-D054CF34BC66}] => (Allow) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/14/2021 12:23:44 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (05/14/2021 12:23:44 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (05/13/2021 08:17:30 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (05/13/2021 08:17:30 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (05/13/2021 08:17:30 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (05/13/2021 08:17:30 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (05/13/2021 04:30:42 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\msiexec.exe /V; Popis = Removed LastPass; Chyba = 0x80070422).

Error: (05/13/2021 04:30:38 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\msiexec.exe /V; Popis = Removed LastPass; Chyba = 0x80070422).

Error: (05/13/2021 11:06:23 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\srtasks.exe ExecuteScheduledSPPCreation; Popis = Naplánovaný kontrolní bod; Chyba = 0x80070422).

Error: (05/11/2021 08:02:56 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.985_none_e72c6fe7263b0fe4\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x80070422).


System errors:
=============
Error: (05/11/2021 05:36:19 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-4572A6I)
Description: Nelze spustit server DCOM: Microsoft.MicrosoftEdge_44.19041.964.0_neutral__8wekyb3d8bbwe!MicrosoftEdge jako Není k dispozici/Není k dispozici. Došlo k chybě: 
2147942402
při provádění příkazu: 
"C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe" -ServerName:MicrosoftEdge.AppXdnhjhccw3zf0j06tkg3jtqr00qdm0khc.mca

Error: (05/10/2021 07:02:22 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby SecurityHealthService s argumenty Není k dispozici za účelem spuštění serveru: 
{8C9C0DB7-2CBA-40F1-AFE0-C55740DD91A0}

Error: (05/10/2021 07:00:15 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby SecurityHealthService s argumenty Není k dispozici za účelem spuštění serveru: 
{8C9C0DB7-2CBA-40F1-AFE0-C55740DD91A0}

Error: (05/10/2021 09:40:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atillk64 neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:40:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atillk64 neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:40:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atidgllk neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:40:54 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atidgllk neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:39:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atillk64 neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:39:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atillk64 neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.

Error: (05/10/2021 09:39:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba atidgllk neuspěla při spuštění v důsledku následující chyby: 
Systém nemůže nalézt uvedený soubor.


CodeIntegrity:
===================================
  Date: 2021-03-20 19:04:36.9430000Z
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2021-03-18 08:58:32.0860000Z
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2021-03-18 08:12:46.0400000Z
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2021-03-18 07:23:22.7840000Z
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2021-03-17 21:05:32.3150000Z
  Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDLicense.dll that did not meet the Custom 3 / Antimalware signing level requirements.

  Date: 2021-03-17 20:54:44.4990000Z
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2021-03-17 20:54:40.6350000Z
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2021-03-17 20:39:17.7990000Z
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2021-03-17 20:39:08.6590000Z
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

  Date: 2021-03-17 20:23:09.1760000Z
  Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info =========================== 

Processor: AMD A10-6800K APU with Radeon(tm) HD Graphics 
Percentage of memory in use: 38%
Total physical RAM: 7356.11 MB
Available physical RAM: 4554.25 MB
Total Virtual: 14780.11 MB
Available Virtual: 12122.88 MB

==================== Drives ================================

Drive c: (Disk "C") (Fixed) (Total:232.25 GB) (Free:195.79 GB) NTFS
Drive d: (Disk "D") (Fixed) (Total:298.09 GB) (Free:229.85 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 413FC4E6)

Partition: GPT.

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 46606EA6)
Partition 1: (Active) - (Size=298.1 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================