Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-12-2021
Ran by tMt-user (15-12-2021 00:14:18)
Running from C:\aa
Microsoft Windows 10 Pro Version 21H1 19043.1415 (X64) (2020-10-12 01:48:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2866573575-4116515599-1814928747-500 - Administrator - Disabled)
android (S-1-5-21-2866573575-4116515599-1814928747-1005 - Limited - Enabled)
DefaultAccount (S-1-5-21-2866573575-4116515599-1814928747-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2866573575-4116515599-1814928747-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-2866573575-4116515599-1814928747-501 - Limited - Disabled)
tMt (S-1-5-21-2866573575-4116515599-1814928747-1002 - Administrator - Enabled) => C:\Users\tMt
tMt-steam (S-1-5-21-2866573575-4116515599-1814928747-1006 - Administrator - Enabled) => C:\Users\tMt-steam
tMt-user (S-1-5-21-2866573575-4116515599-1814928747-1003 - Administrator - Enabled) => C:\Users\tMt-user
WDAGUtilityAccount (S-1-5-21-2866573575-4116515599-1814928747-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: COMODO Firewall (Disabled) {A60587C6-B28F-3D1C-0869-12ED515CC3C3}
FW: COMODO Firewall (Enabled) {3D87FB90-B561-70B4-3B0B-BCEFE7656ABC}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Textures DLC (HKLM-x32\...\1815334487_is1) (Version: Patch 1 Hotfix 1 v2 - GOG.com)
7-Zip 21.06 (x64) (HKLM\...\7-Zip) (Version: 21.06 - Igor Pavlov)
A Plague Tale: Innocence (HKLM-x32\...\A Plague Tale: Innocence_is1) (Version:  - )
Adobe Acrobat 2017 (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E1108756300}) (Version: 17.011.30204 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version:  - Adobe)
Aliens: Fireteam Elite (HKLM-x32\...\Aliens: Fireteam Elite_is1) (Version:  - )
AMD OverDrive (HKLM-x32\...\{34D5220A-58D0-473C-90E4-15136C3FB0E3}) (Version: 4.3.1.0690 - Advanced Micro Devices, Inc.)
Apple Mobile Device Support (HKLM\...\{74CC99EB-7DC0-4CB0-847A-F8C2FE39690C}) (Version: 14.5.0.7 - Apple Inc.)
Arkham Horror: Mother's Embrace (HKLM-x32\...\1385646355_is1) (Version: MOM_PC64_master_885_5803 - GOG.com)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
ATLAS.ti 8.4 (HKLM-x32\...\{3e11c3c1-f6b7-474a-a36b-97a072eae2cd}) (Version: 8.4.25 - Scientific Software Development GmbH)
ATLAS.ti 8.4 (HKLM-x32\...\{A95DD9D8-A379-4015-95FD-03AC3843945E}) (Version: 8.4.25 - Scientific Software Development GmbH) Hidden
Audacity 3.0.2 (HKLM-x32\...\Audacity_is1) (Version: 3.0.2 - Audacity Team)
Audacity 3.1.2 (64bitový) (HKLM\...\Audacity_is1) (Version: 3.1.2 - Audacity Team)
AutoHotkey 1.1.33.10 (HKLM\...\AutoHotkey) (Version: 1.1.33.10 - Lexikos)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.10.2498 - Avast Software)
Backblaze (HKLM-x32\...\Backblaze) (Version:  - Backblaze, Inc)
balenaEtcher 1.7.1 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\d2f3b6c7-6f49-59e2-b8a5-f72e33900c2b) (Version: 1.7.1 - Balena Inc.)
Banner Saga 3 (HKLM-x32\...\1599390867_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Deluxe Edition Items (HKLM-x32\...\1954833607_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Eternal Arena (HKLM-x32\...\1552123654_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Kivi (HKLM-x32\...\1954301570_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Petrie Clan Ring (HKLM-x32\...\1219025267_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Sculptor's Tools (HKLM-x32\...\1520184657_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Shadow Walker (HKLM-x32\...\1936947648_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Shield Cleaver (HKLM-x32\...\2016659504_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Survival Mode (HKLM-x32\...\1399959690_is1) (Version: 2.60.22 - GOG.com)
BIAS AMP 2 Pack (64bit) (HKLM\...\{F31B6074-470B-43F4-B023-2FDB3CE03D4B}) (Version: 2.2.8.1409 - PositiveGrid)
BioShock 2 (HKLM-x32\...\BioShock 2_is1) (Version:  - 2K Games)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BootRacer 8.0 (HKLM-x32\...\{50EB4E13-A810-411E-8F1F-C22FE7841DA2}_is1) (Version: 8.0 - Greatis Software)
Breathedge (HKLM-x32\...\2104548474_is1) (Version: 1.0.0.2 - GOG.com)
calibre (HKLM-x32\...\{A82BE2C7-BF65-4806-A40D-944FF1CE9843}) (Version: 5.33.2 - Kovid Goyal)
Call Of Duty 4 Modern Warfare (HKLM-x32\...\Call Of Duty 4 Modern Warfare_is1) (Version: 1.7 - Activision Blizzard)
CCleaner (HKLM\...\CCleaner) (Version: 5.87 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP)
Citace PRO (HKLM-x32\...\{4919AF1F-25A4-418B-A59F-1B30C12113A3}) (Version: 3.3.0 - Citace.com)
Classic Menu for Office v9.25 (HKLM\...\{9A7CEBDF-37E2-4B63-A384-2A9FD5CE0A80}_is1) (Version: 9.25 - Addintools)
COMODO Firewall (HKLM\...\{A1E718A7-BB83-41B8-BA96-BC219C322B8E}) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.) Hidden
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.)
CrystalDiskInfo 8.12.4 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.12.4 - Crystal Dew World)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
DriverHub (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\DriverHub) (Version: 1.1.4.2315 - ROSTPAY LTD.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 138.3.2340 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.541.1 - Dropbox, Inc.) Hidden
Dual Monitor Tools (HKLM-x32\...\{5CE3BD1A-324F-4F87-96BB-30F08DB6E839}) (Version: 2.7.0.0 - GNE)
Duplicate Cleaner Free 4.1.0 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 4.1.0 - DigitalVolcano Software Ltd)
EPIM ArchiverDR (HKLM-x32\...\EPIM ArchiverDR) (Version: 7.5 - )
Everything 1.4.1.1009 (x64) (HKLM\...\Everything) (Version: 1.4.1.1009 - voidtools)
f.lux (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Flux) (Version:  - f.lux Software LLC)
Fallout: New Vegas (HKLM-x32\...\1454587428_is1) (Version: 1.4.0.525 - GOG.com)
Ferdi 5.6.0 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\94242274-14c2-5602-a6f6-ee657c0d1dc5) (Version: 5.6.0 - Amine Mouafik)
FlashFolder (HKLM\...\{92BF7CAE-D925-4868-8875-A154BE3CB26F}) (Version: 1.11.0.0 - zett42)
Font Xplorer 1.2.2  (HKLM-x32\...\Font Xplorer) (Version:  - )
FontForge verze 31-07-2017 (HKLM-x32\...\{56748B9C-19AE-4689-B8C5-5A45AE0A993A}_is1) (Version: 31-07-2017 - FontForgeBuilds)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
GameInput Redistributable (HKLM-x32\...\{5FAD63E8-8F1C-6687-0325-3BBF64B4FD89}) (Version: 10.1.19041.3918 - Microsoft Corporation)
Gameplay Time Tracker version 2.0.0 (HKLM-x32\...\Gameplay Time Tracker_is1) (Version: 2.0.0 - mik61)
Gameplay Time Tracker version 3.1 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Gameplay Time Tracker_is1) (Version: 3.1 - mik61)
GameSave Manager v3 (HKLM-x32\...\GameSaveManager_v3) (Version: 3.1.507.0 - InsaneMatt)
GCstar 1.6.1 (HKLM-x32\...\GCstar) (Version: 1.6.1 - Tian)
Gears Tactics (HKLM-x32\...\Gears Tactics_is1) (Version:  - )
Gihosoft Video Editor version 2.0.42.0 (HKLM-x32\...\{0161770A-0585-459B-AE9D-DE563BB4FBD3}_is1) (Version: 2.0.42.0 - HK JIHO CO., LIMITED)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.110 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\GrammarlyForWindows) (Version: 1.5.73 - Grammarly)
Grammarly for Microsoft® Office Suite (HKLM\...\{DE46CC28-5477-4CFB-9AE2-8C7C111E3EE7}) (Version: 6.8.261 - Grammarly) Hidden
Grammarly for Microsoft® Office Suite (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\{ee962c45-b827-4262-a720-3a939910ce37}) (Version: 6.8.261 - Grammarly)
Half Life Collection version 1.0.0.0 (HKLM-x32\...\Half Life Collection_is1) (Version: 1.0.0.0 - KNIGHT)
HandBrake 1.4.2 (HKLM-x32\...\HandBrake) (Version: 1.4.2 - )
HWiNFO64 Version 7.14 (HKLM\...\HWiNFO64_is1) (Version: 7.14 - Martin Malik - REALiX)
IconGroups (HKLM-x32\...\IconGroups) (Version:  - )
iMazing 2.13.10.0 (HKLM\...\iMazing_is1) (Version: 2.13.10.0 - DigiDNA SARL)
In Other Waters (HKLM-x32\...\1221608838_is1) (Version: 1.0.0 - GOG.com)
Inscryption (HKLM-x32\...\1224800338_is1) (Version: 1.08 - GOG.com)
Inscryption Soundtrack (HKLM-x32\...\2144248828_is1) (Version: 1.08 - GOG.com)
Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
iPod Support (HKLM\...\{DEC0F5DF-216B-4D66-B3DD-B1BDDC7A5BF8}) (Version: 12.11.3.7 - Apple Inc.)
Java 8 Update 311 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180311F0}) (Version: 8.0.3110.11 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kiwi for Gmail (HKLM\...\3617b6ca-2476-5662-80f9-6f2dce3199f1) (Version: 3.4.0 - Zive, Inc)
Kodi (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Kodi) (Version: 19.1.0.0 - XBMC Foundation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
LAV Filters 0.70.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.70.2 - Hendrik Leppkes)
Listen N Write Free 1.30.0.5 (HKLM-x32\...\{6BF5DC5F-35E2-4A22-96E6-C94CF1DA8823}_is1) (Version: 1.30.0.5 - Marcello Pietrelli & Gianni Baini)
LockHunter 3.2, 32/64 bit (HKLM\...\LockHunter_is1) (Version:  - Crystal Rich Ltd)
Logitech-kameraindstillinger (HKLM-x32\...\LogiUCDPP) (Version: 2.10.4.0 - Logitech Europe S.A.)
Lorelai (HKLM-x32\...\1128886553_is1) (Version: 1.0.4a - GOG.com)
Low Specs Experience Lite v9.10.6 (HKLM-x32\...\{A7897496-E34D-406F-AA19-7A247084578D}}_is1) (Version:  - Ragnotechpowered)
MediaInfo 21.09 (HKLM\...\MediaInfo) (Version: 21.09 - MediaArea.net)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.53 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 96.0.1054.53 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1002\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\OneDriveSetup.exe) (Version: 21.230.1107.0004 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1006\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Teams) (Version: 1.4.00.32771 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29914 (HKLM-x32\...\{43d1ce82-6f55-4860-a938-20e5deb28b98}) (Version: 14.28.29914.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.29.30037 (HKLM-x32\...\{dfea0fad-88b2-4a1f-8536-3f8f9391f4ef}) (Version: 14.29.30037.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.22 (x64) (HKLM-x32\...\{68de94b9-46ac-495e-a96b-de484c02f5b3}) (Version: 3.1.22.30721 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
MiniTool Partition Wizard Free 12 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Software Limited)
Mozilla Firefox (x64 cs) (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Mozilla Firefox 95.0 (x64 cs)) (Version: 95.0 - Mozilla)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 95.0 (x64 en-US)) (Version: 95.0 - Mozilla)
Mozilla Firefox 54.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 54.0.1 (x64 cs)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 95.0 - Mozilla)
MPC-BE x64 1.5.8.6302 (HKLM\...\{FE09AF6D-78B2-4093-B012-FCDAF78693CE}_is1) (Version: 1.5.8.6302 - MPC-BE Team)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: 5.2.2.8 - Native Instruments)
Native Instruments Guitar Rig 6 (HKLM-x32\...\Native Instruments Guitar Rig 6) (Version: 6.2.1.136 - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.6.0.137 - Native Instruments)
NVIDIA FrameView SDK 1.1.4923.29968894 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29968894 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.23.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.23.0.74 - NVIDIA Corporation)
NVIDIA GeForce NOW 2.0.19.78 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeforceNOW) (Version: 2.0.19.78 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.92 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 496.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 496.49 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 27.0.1 - OBS Project)
Observer (HKLM-x32\...\Observer_is1) (Version:  - )
Old Calculator for Windows 10 (HKLM-x32\...\OldCalcForWin10) (Version: 1.1 - hxxp://winaero.com)
Omen Exitio: Plague (HKLM\...\DARKSiDERS - Omen Exitio: Plague) (Version:  - DARKSiDERS)
Open Capture and Analytics Tool (OCAT) (HKLM-x32\...\{fbd1a398-e2f1-45b8-92dc-ac56a1399594}) (Version: 1.6.1.20401 - Advanced Micro Devices, Inc.)
Open Capture and Analytics Tool (OCAT) 1.6.1.20401 (HKLM\...\{90857B8E-4CDD-4A56-B120-D0488D0CE8F7}) (Version: 1.6.1.20401 - Advanced Micro Devices, Inc.) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenConnect-GUI (HKLM-x32\...\OpenConnect-GUI) (Version: 1.5.3 - OpenConnect-GUI Team)
Open-Shell (HKLM\...\{F4B6EE58-F183-4B0D-930B-4480673C0F5B}) (Version: 4.4.160 - The Open-Shell Team)
OpenShot Video Editor verze 2.6.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.6.1 - OpenShot Studios, LLC)
Opera Stable 82.0.4227.23 (HKLM-x32\...\Opera 82.0.4227.23) (Version: 82.0.4227.23 - Opera Software)
paint.net (HKLM\...\{91513DD9-5D06-4ABE-AB5A-BA90F426ED5F}) (Version: 4.3.4 - dotPDN LLC)
Papers, Please (HKLM-x32\...\1207659209_is1) (Version: 2.5.0.11 - GOG.com)
Parsec (HKLM-x32\...\Parsec) (Version: 150-36 - Parsec Cloud Inc.)
pCloud Drive (HKLM\...\{01BEFE8D-583C-481B-8DA2-CA2FB9D1D1B6}) (Version: 3.9.6.0 - pCloud AG) Hidden
pCloud Drive (HKLM-x32\...\{dd304319-ea6c-485b-bab7-456fb9cb2f04}) (Version: 3.9.6.0 - pCloud AG)
PDF-XChange Lite V6 Home (HKLM\...\{2AEAF904-5D25-493B-82F7-D094F760A82A}) (Version: 6.0.322.5 - Tracker Software Products (Canada) Ltd.)
Photolemur (HKLM\...\{F449674A-B2AB-4C85-BF45-E67377DE07B8}) (Version: 2.3.1.1931 - Photolemur) Hidden
Photolemur (HKLM-x32\...\{ff92c9da-ce28-49c3-8f74-032f843e6f00}) (Version: 2.3.1.1931 - Photolemur)
Photolemur 3 (HKLM\...\{22935808-B814-4884-85E7-D8C5CD5C7616}) (Version: 1.1.0.2388 - Skylum) Hidden
Photolemur 3 (HKLM-x32\...\{b136f907-af37-4697-9b5e-442173dd0895}) (Version: 1.1.0.2388 - Skylum)
PhotoPad Image Editor (HKLM-x32\...\PhotoPad) (Version: 6.59 - NCH Software)
PhotoSpills4 (HKLM-x32\...\ST6UNST #1) (Version:  - )
PhraseExpress v15.0.88 (HKLM-x32\...\PhraseExpress_is1) (Version: 15.0.88 - Bartels Media GmbH)
PicPick (HKLM-x32\...\PicPick) (Version: 5.2.0 - NGWIN)
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22589 - Microsoft Corporation)
ProtonVPN (HKLM-x32\...\{FBEC385C-5D3B-4827-9879-F157FA9E349F}) (Version: 1.24.2 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.24.2) (Version: 1.24.2 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{5DA710E2-1B81-4675-BFC5-76BAF63AE1F6}) (Version: 1.1.3 - Proton Technologies AG)
ProtonVPNTun (HKLM-x32\...\{C953D354-0C14-4CB5-AB42-0A9E40F55857}) (Version: 0.13.0 - Proton Technologies AG)
qBittorrent 4.3.9 (HKLM-x32\...\qBittorrent) (Version: 4.3.9 - The qBittorrent project)
QDA Miner Lite 2.0 (HKLM-x32\...\QDAMiner Lite_is1) (Version:  - Provalis Research)
Quest 5.8.0 (HKLM-x32\...\Quest_is1) (Version: 5.8.0 - Andy Joel)
Race for the Galaxy version 0.9.4 (HKLM-x32\...\{C067C316-4036-4E97-B013-21DCBE649F81}_is1) (Version: 0.9.4 - Keldon Jones)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.4 beta r3445 - Rainmeter)
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.14.15.1361 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.31.828.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.3.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.3.5 - VS Revo Group, Ltd.)
Revo Uninstaller Pro 3.1.2 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.2 - VS Revo Group, Ltd.)
Rise of the Tomb Raider (HKLM-x32\...\Rise of the Tomb Raider_is1) (Version:  - )
Sandboxie 5.51.3 (64-bit) (HKLM\...\Sandboxie) (Version: 5.51.3 - sandboxie-plus.com)
Sandboxie-Plus v0.9.3 (HKLM\...\Sandboxie-Plus_is1) (Version: 0.9.3 - hxxp://xanasoft.com/)
ScanTailor Advanced 2019.8.16 (HKLM-x32\...\ScanTailor Advanced) (Version: 2019.8.16 - 4lex4 <4lex49@zoho.com>)
Scribus 1.5.3 (64bit) (HKLM\...\Scribus 1.5.3) (Version: 1.5.3 - The Scribus Team)
Send To Toys v2.71 (HKLM\...\Send To Toys_is1) (Version:  - Gabriele Ponti)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Sigil 0.9.9 (HKLM\...\Sigil_is1) (Version:  - Sigil-Ebook)
Skype verze 8.79 (HKLM-x32\...\Skype_is1) (Version: 8.79 - Skype Technologies S.A.)
Star Wars™: X-Wing Alliance (HKLM-x32\...\1421404763_is1) (Version: 2.02 - GOG.com)
SteamWorld Quest: Hand of Gilgamech (HKLM-x32\...\1941294775_is1) (Version: 1.7 - GOG.com)
Sticky Password 8.4.3.728 (HKLM-x32\...\Sticky Password_is1) (Version: 8.4 - Lamantine Software)
Stirring Abyss (HKLM-x32\...\2143003765_is1) (Version: 1.00.00 - GOG.com)
SUPERHOT: MIND CONTROL DELETE (HKLM-x32\...\1823091894_is1) (Version: 1.0.0 - GOG.com)
SysTools EML Viewer v4.0 (HKLM-x32\...\{9039CEBE-CD3D-45FA-8366-1C969A1E1B1F}_is1) (Version:  - SysTools Software Pvt. Ltd.)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.24.5 - TeamViewer)
Telling Lies (HKLM-x32\...\1905966578_is1) (Version: 1.5 - GOG.com)
The 7th Guest: 25th Anniversary Edition (HKLM-x32\...\1270716073_is1) (Version: 1.1.5 - GOG.com)
The Blind Prophet (HKLM-x32\...\1726178326_is1) (Version: 1.20 - GOG.com)
The Darkside Detective (HKLM-x32\...\1244373161_is1) (Version: gog-6 Update 4 - GOG.com)
The Forest (HKLM-x32\...\The Forest) (Version:  - )
The Forgotten City (HKLM-x32\...\The Forgotten City_is1) (Version:  - )
The Sexy Brutale (HKLM-x32\...\1585259027_is1) (Version: gog-1 - GOG.com)
The Walking Dead: 400 Days (HKLM-x32\...\1432207890_is1) (Version: patch_1 - GOG.com)
The Walking Dead: Season 1 (HKLM-x32\...\1432207977_is1) (Version: patch_1 - GOG.com)
The Witcher 3 - Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 1.30.0.0 - GOG.com)
Thronebreaker (HKLM-x32\...\1297352383_is1) (Version: 1.0.0 - GOG.com)
Titan Quest - Anniversary Edition (HKLM-x32\...\1196955511_is1) (Version: 2.9 MP Hotfix - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH)
Twine 2.3.8 (HKLM\...\09757d2a-5a16-578f-a64f-297ed0213ec0) (Version: 2.3.8 - Chris Klimas)
Types (HKLM\...\Types) (Version: 2.6.5 - Evgeny Strunnikov)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VidCutter (HKLM\...\{CCDC440A-CC57-4BED-8CDE-1DA285976A64}_is1) (Version: 5.5.0.0 - Pete Alexandrou)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.4.12 - Black Tree Gaming Ltd.)
VPN Unlimited 8.5.3 (HKLM-x32\...\{DC24521E-872B-41AF-93EA-FE477902D6FB}_is1) (Version: 8.5.3 - KeepSolid Inc.)
WD Desktop App 2.1.0.246 (HKLM-x32\...\{efa29edd-d423-4291-b1d0-71428a78579f}) (Version: 2.1.0.246 - Western Digital Corporation) Hidden
WD Desktop App 2.1.0.246 (x64) (HKLM\...\{CA7F7232-526E-41BD-971A-47BE28C18516}) (Version: 2.1.0.246 - Western Digital Corporation) Hidden
WD Discovery (HKLM-x32\...\WDDiscovery) (Version: 3.6.163 - Western Digital Technologies, Inc.)
WD Drive Manager (x64) (HKLM\...\{94794BBD-1FB4-428B-8F2D-E368BEF2C237}) (Version: 2.116 - Western Digital)
WD Drive Utilities (HKLM-x32\...\{02CCBAB5-A2E6-448D-9489-7C888758EF2E}) (Version: 2.0.0.70 - Western Digital Technologies, Inc.) Hidden
WD Drive Utilities (HKLM-x32\...\{9d47e5b5-5394-4d59-8165-413d55dfa78d}) (Version: 2.0.0.70 - Western Digital Technologies, Inc.)
WD SES Driver Setup (HKLM-x32\...\{924A274D-38B6-4930-8859-F3F51CFA8DDD}) (Version: 1.1.0.25 - Western Digital) Hidden
What Remains of Edith Finch (HKLM-x32\...\1651927092_is1) (Version: 1.0.0.0 - GOG.com)
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs)
Wolfenstein - The New Order (HKLM-x32\...\Wolfenstein - The New Order_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
Wondershare MobileTrans ( Version 3.5.4 ) (HKLM-x32\...\{72289023-823E-4AF7-A65F-C608481758AC}_is1) (Version: 3.5.4 - Wondershare)
XMedia Recode 64bit verze 3.5.4.5 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.5.4.5 - XMedia Recode 64bit)
XnView 2.50.3 (HKLM-x32\...\XnView_is1) (Version: 2.50.3 - Gougelet Pierre-e)
YTD (pepak) (HKLM-x32\...\YTD_Pepak) (Version:  - )
Zoom (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\ZoomUMX) (Version: 5.8.4 (1736) - Zoom Video Communications, Inc.)
Zotero (HKLM-x32\...\Zotero 5.0.96.2 (x86 en-US)) (Version: 5.0.96.2 - Corporation for Digital Scholarship)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-07] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.12.41.0_x86__kgqvnymyfvs32 [2021-12-02] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.208.400.0_x86__kgqvnymyfvs32 [2021-12-08] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-02] (Microsoft Corporation)
Facebook -> C:\Program Files\WindowsApps\FACEBOOK.FACEBOOK_2021.927.1.0_neutral__8xx8rvfyw5nnt [2021-09-28] (Facebook Inc)
Gears Tactics -> C:\Program Files\WindowsApps\Microsoft.GanderBaseGame_1.0.151.0_x64__8wekyb3d8bbwe [2021-03-26] (Microsoft Studios)
Keeper - Password Manager & Secure File Storage -> C:\Program Files\WindowsApps\KeeperSecurityInc.Keeper_14.0.33.0_x64__kejf07qmg0jnm [2019-07-30] (Keeper Security Inc)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_6.1.16.0_x86__h6adky7gbf63m [2021-12-14] (Gameloft SE)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-10-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.11.12030.0_x64__8wekyb3d8bbwe [2021-12-10] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_51.10913.5796.0_x64__8wekyb3d8bbwe [2021-12-02] (Microsoft Corporation)
Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.18.203.0_x64__8wekyb3d8bbwe [2021-12-10] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-10-27] (NVIDIA Corp.)
Royal Revolt 2 -> C:\Program Files\WindowsApps\flaregamesGmbH.RoyalRevolt2_7.4.0.0_x86__g0q0z3kw54rap [2021-11-18] (flaregames GmbH)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-09-02] (Samsung Electronics Co. Ltd.)
Sea of Thieves -> C:\Program Files\WindowsApps\Microsoft.SeaofThieves_2.105.3872.2_x64__8wekyb3d8bbwe [2021-10-22] (ms-resource:PublisherDisplayName)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-12] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{04271989-C4D2-C812-CD38-8AC5BE5EB212} -> [OneDrive - Fakulta humanitních studií] => C:\Users\tMt-user\OneDrive - Fakulta humanitních studií [2017-12-10 10:25]
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21264.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{2AD206F1-152C-4F9D-A24E-6F93FE7A4AFC}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.261\BFDF9581B2\GrammarlyShim64.dll (Grammarly, Inc. -> CompanyName)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{4BE56754-B616-4998-B825-D16983AEE1B2}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.261\BFDF9581B2\Grammarly.AddIn.Connect.ActiveX.dll (Grammarly, Inc. -> Grammarly)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{55b0495e-5a1f-233d-9d87-b6e0e973750b}\localserver32 -> C:\Apps\ProtonVPN\ProtonVPN.exe (Proton Technologies AG -> )
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{9486aaf1-0930-362a-962d-8e6908739c817}\InprocServer32 -> 0x70AC6F9F5034D60170AC6F9F5034D601010000000900000000000000 => No File
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => E:\Dropbox [2018-05-12 20:08]
SSODL: WDFSMountNotificator-wdfsconnect2017 - {EF827576-5FD7-464B-8FAE-F897AC11289E} - C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL: CallbackTechMountNotificator-cbfsconnect2017 - {40976EC7-FDDB-40F4-A590-2CD94C79FD46} - C:\WINDOWS\system32\cbfsconnectMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
SSODL-x32: WDFSMountNotificator-wdfsconnect2017 - {EF827576-5FD7-464B-8FAE-F897AC11289E} - C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL-x32: CallbackTechMountNotificator-cbfsconnect2017 - {40976EC7-FDDB-40F4-A590-2CD94C79FD46} - C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects: Virtual Storage Mount Notification -> {40976EC7-FDDB-40F4-A590-2CD94C79FD46} => C:\WINDOWS\system32\cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects: Virtual Storage Mount Notification -> {EF827576-5FD7-464B-8FAE-F897AC11289E} => C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {40976EC7-FDDB-40F4-A590-2CD94C79FD46} => C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {EF827576-5FD7-464B-8FAE-F897AC11289E} => C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay01] -> {4F8A325E-9DAF-44B8-A825-1A14DFA0FA78} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay02] -> {0176BDDE-B59A-4A1E-808B-CAD461415CCA} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay03] -> {B65909D1-57AF-41F5-AB94-BEB733F62B35} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay04] -> {C6C2397D-8238-4332-8935-86C39C7C165F} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay05] -> {E7B3BCF9-0386-4B5F-AE6A-91B9F1423973} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay06] -> {564EA121-D9DA-485D-82C2-C2ED7BFCCEAD} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [    pCloudINPROGRESS] -> {D8BFAFBD-B670-4252-9C17-9CF1C64C2BAF} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudINSYNC] -> {8D0C0582-552A-4A6B-9455-DA63E1F329C0} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudNOSYNC] -> {3858ED1B-8F1C-42ED-A8A9-FDBF591E3C6B} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-05] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-05] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe Acrobat Pro 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-05] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [ContextMenuExtension] -> {a0b73fac-351f-3948-9d8a-1dad9d870193} => C:\Program Files\pCloud Drive\ContextMenuHandler.DLL [2020-03-04] (pCloud AG) [File not signed]
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers1: [WDDesktopContextMenu] -> {47625ad9-51e4-3519-92d0-07ecd5b8f771} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1: [WinCDEmu] -> {D0E37FD2-F675-426F-B09A-2CF37BA46FD5} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers2: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-05] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ContextMenuExtension] -> {a0b73fac-351f-3948-9d8a-1dad9d870193} => C:\Program Files\pCloud Drive\ContextMenuHandler.DLL [2020-03-04] (pCloud AG) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [WDDesktopContextMenu] -> {47625ad9-51e4-3519-92d0-07ecd5b8f771} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\nvshext.dll [2021-10-21] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe Acrobat Pro 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-05] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Apps\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2020-09-26] (Open-Shell) [File not signed]
ContextMenuHandlers6: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.i420] => C:\Windows\system32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [71680 2013-02-26] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2013-02-26] (Beepa P/L) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\tMt-user\AppData\Local\IconGroups\groups\files\GCstar.lnk -> C:\Apps\GCstar\bin\gcstar.bat ()
ShortcutWithArgument: C:\Users\tMt-user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\tMt-user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\CASA - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2021-04-10 14:52 - 2021-04-10 14:52 - 000026624 _____ () [File not signed] [File is in use] C:\Apps\Rainmeter\Plugins\UsageMonitor.DLL
2021-12-14 23:16 - 2021-12-14 23:16 - 001453056 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\5c8de24d-5b05-401f-8f64-b8067f06d801.tmp.node
2021-12-14 23:14 - 2021-12-14 23:14 - 000566272 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\6daa38f9-f1a3-472e-9b90-6304ec521a30.tmp.node
2021-12-14 23:16 - 2021-12-14 23:16 - 000570880 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\d9a2b4f2-0ad3-42ac-8bfb-918c9b677c4c.tmp.node
2021-12-14 23:14 - 2021-12-14 23:14 - 000571392 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\f6049fff-bc26-4fb6-a720-e22b1030d742.tmp.node
2021-12-14 23:14 - 2021-12-14 23:14 - 002906112 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\f9e53f5b-6922-4518-91a9-d7802dd0efbe.tmp.node
2014-12-20 19:25 - 2014-12-20 19:25 - 000245760 _____ () [File not signed] C:\Apps\IconGroups\x64\IconGroupsHook.dll
2017-07-12 16:24 - 2016-09-19 11:09 - 000813056 _____ () [File not signed] C:\Apps\Networx\sqlite.dll
2021-04-10 14:51 - 2021-04-10 14:51 - 000317952 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\ActionTimer.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000128000 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\CoreTemp.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000120832 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\SpeedFanPlugin.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000116736 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\SysInfo.DLL
2017-08-22 13:44 - 2020-06-22 07:37 - 000086528 _____ () [File not signed] C:\Apps\RBTray\RBHook.dll
2020-05-29 14:42 - 2020-05-29 14:42 - 002380288 _____ () [File not signed] C:\Program Files\pCloud Drive\pSyncLib.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 002679296 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\ffmpeg.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 000439296 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\libegl.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 007938048 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\libglesv2.dll
2019-01-14 09:31 - 2012-11-08 20:17 - 000052848 _____ (Ditto -> Ditto Utility Addin) [File not signed] C:\Apps\Ditto\Addins\DittoUtil.dll
2021-01-19 14:06 - 2021-01-19 14:06 - 001654784 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\MFC80U.DLL
2019-04-08 14:31 - 2019-04-08 14:31 - 000082944 _____ (Open Source Software community LGPL) [File not signed] C:\Program Files\pCloud Drive\pthreadVC2.dll
2020-09-26 12:47 - 2020-09-26 12:47 - 002659328 _____ (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenuDLL.dll
2018-07-23 21:59 - 2018-03-02 06:51 - 001149440 _____ (Robert Simpson, et al.) [File not signed] C:\Apps\Gameplay Time Tracker\x86\SQLite.Interop.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 000361984 _____ (The curl library, hxxps://curl.haxx.se/) [File not signed] C:\Apps\VPN Unlimited\libcurl.dll
2020-09-10 09:11 - 2020-09-10 09:11 - 000268288 _____ (The FreeType Project) [File not signed] C:\Apps\EssentialPIM Pro 9\wp_type1ttf.dll
2021-05-24 18:15 - 2015-12-07 16:51 - 001362944 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\PhraseExpress\libeay32.dll
2021-05-24 18:15 - 2015-12-07 16:51 - 000359424 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\PhraseExpress\ssleay32.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 002523136 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libcrypto-1_1.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 000530944 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libssl-1_1.dll
2017-10-23 17:28 - 2017-10-23 17:28 - 000342016 _____ (TODO: <Company name>) [File not signed] C:\Program Files\pCloud Drive\OverlayIcon64.dll
2020-09-10 09:11 - 2020-09-10 09:11 - 000116736 _____ (WPCubed GmbH) [File not signed] C:\Apps\EssentialPIM Pro 9\wpdecodejp.DLL
2020-09-10 09:11 - 2020-09-10 09:11 - 001264128 _____ (WPCubed GmbH) [File not signed] C:\Apps\EssentialPIM Pro 9\wPDFView04.dll
2012-07-21 20:55 - 2012-08-31 21:57 - 000629248 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439.dll
2012-07-21 21:05 - 2012-08-31 21:46 - 003306496 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439_64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:728B799F [372]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Apps\Open Shell\ClassicIEDLL_64.dll [2020-09-26] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Apps\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer32.dll [2020-09-26] (Open-Shell) [File not signed]
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\ssv.dll [2021-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\jp2ssv.dll [2021-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Apps\Open Shell\ClassicIEDLL_32.dll [2020-09-26] (Open-Shell) [File not signed]
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer32.dll [2020-09-26] (Open-Shell) [File not signed]
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Apps\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\sharepoint.com -> hxxps://cunicz-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-06-27 19:02 - 2021-05-09 20:40 - 000002480 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      fitgirlrepacks.in               # Fake FitGirl site
109.94.209.70      fitgirlrepacks.co               # Fake FitGirl site
109.94.209.70      fitgirl-repacks.cc              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.to              # Fake FitGirl site
109.94.209.70      fitgirl-repack.com              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.website         # Fake FitGirl site
109.94.209.70      fitgirlrepack.games             # Fake FitGirl site
109.94.209.70      www.fitgirlrepacks.co           # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.cc          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.to          # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.com          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.website     # Fake FitGirl site
109.94.209.70      ww9.fitgirl-repacks.xyz         # Fake FitGirl site
109.94.209.70      www.fitgirlrepack.games         # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      fitgirl-repacks.xyz             # Fake FitGirl site
109.94.209.70      fitgirl-repack.net              # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.net          # Fake FitGirl site
109.94.209.70      fitgirlpack.site                # Fake FitGirl site
109.94.209.70      www.fitgirlpack.site            # Fake FitGirl site

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;E:\Calibre2\;E:\Calibre\;C:\WINDOWS\System32\OpenSSH\;G:\Calibre\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-21-2866573575-4116515599-1814928747-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\Control Panel\Desktop\\Wallpaper -> c:\apps\_wp\_black_1650x1080.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1006\Control Panel\Desktop\\Wallpaper -> E:\steam-logo-big.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is disabled.

Network Binding:
=============
Připojení k místní síti: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Síťové připojení Bluetooth: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Ethernet 4: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Ethernet: COMODO Internet Security Firewall Driver -> inspect (enabled) 

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Opera Browser Assistant"
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\StartupApproved\Run: => "Clock Widget (HTC Home)"
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\StartupApproved\Run: => "SandboxieControl"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{1800D019-0C5B-4142-8A20-F59086DFD9D2}] => (Allow) C:\Apps\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4FE6B52B-7140-459C-A6BF-DF8BE6ABDF81}] => (Allow) C:\Apps\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5AEB0A7F-4A78-4BAD-8016-3FFA0B9775E2}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{C868D2D3-5441-478A-AC7F-448C4F487EEA}] => (Allow) C:\Program Files\Parsec\parsecd.exe (Parsec Cloud, Inc. -> Parsec)
FirewallRules: [{A7B747D9-F7FE-4A5F-8254-E85556AE1443}] => (Allow) C:\Program Files\pCloud Drive\pCloud.exe (pCloud AG -> pCloud AG)
FirewallRules: [{4E6C3C8B-0533-4801-B02B-3DD8AF3C0C8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2F1BFC3F-FC58-44AC-9638-47407718F8F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{929832E9-54D3-4D1A-B6CD-6CF9C29312B4}C:\apps - share\dcplusplus\dcplusplus.exe] => (Block) C:\apps - share\dcplusplus\dcplusplus.exe () [File not signed]
FirewallRules: [TCP Query User{6D6AEB7F-E80F-4AE3-B7CA-6149616A81C4}C:\apps - share\dcplusplus\dcplusplus.exe] => (Block) C:\apps - share\dcplusplus\dcplusplus.exe () [File not signed]
FirewallRules: [{70C9D6B6-4F71-4334-AA3C-103AA77D287A}] => (Allow) C:\Apps\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C9ADB41F-577D-4877-9B58-99E7755A60CD}] => (Allow) C:\Apps\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3982EF9B-C477-49B5-894A-2EDD2CEBC365}] => (Allow) C:\Apps\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0398C24B-DBD6-4FD8-BF04-6B3BB5376039}] => (Allow) C:\Apps\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{FB985F04-C053-4C00-9320-71C5513AAE1A}C:\apps\essentialpim pro 8\essentialpim.exe] => (Block) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [UDP Query User{F809C33E-F7B9-4365-BEC9-89D83E65919F}C:\apps\essentialpim pro 8\essentialpim.exe] => (Block) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [TCP Query User{AD78A009-1EC3-44D3-8194-D847B5CDFC19}C:\apps\essentialpim pro 8\essentialpim.exe] => (Allow) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [UDP Query User{A33208AA-F528-46C0-9D43-2EDE921C9EA9}C:\apps\essentialpim pro 8\essentialpim.exe] => (Allow) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [{361515C4-42B7-4716-AC26-446F694D561F}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{BEC7A040-EABA-47C0-A95C-142334268AF1}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{62B5F533-C52C-47D5-8A5C-6DE67D2A4FE0}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{57EAFAD9-6FB9-4B36-9B39-032AFCB668B1}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{A5D74A07-670F-4233-85E1-428091E2A322}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9382D2D1-A420-4AD2-BBF1-49DF30E6E802}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7311A993-4EA4-4B57-A5BC-BC62B2773B1C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9AFD1B18-6CA7-4615-9FE8-9504559EB939}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0CF51306-967D-483D-A7D4-56CE6C9F8298}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B20268CF-96D1-40C7-8DBE-8C86A2513FE0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0C555C65-6AF4-452C-AB5F-CC19557E866F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A0666E92-7E8C-4B84-8C03-080D5E4195CC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D129E8AB-4415-4E40-9F81-83531CFB41F9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{3B732349-2515-4732-B59A-38931DC10F6B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C2951979-BBCB-4820-8251-B3DF93AF14C2}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{DD62A061-449D-43F1-AD2A-2EEACC50976F}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FD0F5C46-9218-4E69-8FA2-474CD7BC72F0}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{9CCAC90C-093B-4AB1-98D0-163631DFD74B}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{95DB71EE-411A-49BA-A731-CB8A2F74BC17}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{D6811DD7-6238-4B1A-967D-F95DD188A133}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20B44AFA-9105-4534-A59F-DFDFB302FAC7}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9E3632AB-229A-402F-B3FB-C8681AE4AAE8}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{621EE567-2F7E-492B-B6F0-1138B98A55B8}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4B132C24-C85B-40CA-AEAC-D510015A87A9}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{945B6EB8-90D8-4B2C-AACE-1796ECEB8458}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1B052AB9-1AF2-474F-AE42-AF798ADC2222}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{2E6C29F0-5475-4124-8D14-429661BB0DAD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{76D426C6-A71C-44F8-8F99-F068D9DFB0A3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8DA73F52-560F-4BB8-972D-B65E9965B84F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{64FD2635-E8E0-48EA-876D-9BC5DD0B385A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{44218C9C-8744-4CE5-9527-9561286B49F3}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20E0726A-3A84-4FE2-B1D6-5722829224BC}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{38CC7DAD-F41D-4815-B2DD-C5054F714A12}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{EB2B0FEB-E85D-412E-AC83-B077B0820CF1}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2E5F75BA-FA35-4335-9A30-D5999D225484}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{B5F745BE-5586-4F9F-B02E-852603373D72}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{C684FA27-1DE3-4E44-9FC6-F8375FE1D789}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{EE12B768-6DFA-4485-95BF-1B191287C9D2}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{117D2473-215F-4D35-A9A5-BC336929576F}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{9BA7963C-4252-4672-933E-01D102948686}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{485D7C66-B044-4422-98A8-74C0DAE44916}] => (Allow) C:\Apps\Opera\81.0.4196.60\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{CB05A3B9-1319-432D-B0E2-7EA0D4409545}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7B75F966-CFA7-471D-AF2A-0C7FD29791BC}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7FA78A47-7EC4-422B-BD62-E71D4949D388}] => (Allow) C:\Apps\Opera\82.0.4227.23\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{3D86718C-D9C9-42BA-A35F-9007ABBD6DCE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9EC232AE-64D9-4FD4-A2C4-D8C36B1CC5C5}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BD1C2F11-8D76-4D6D-A358-5161945B312A}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{24E96687-C345-4D44-AA47-D284FA9C9917}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{89772403-68C4-4909-8086-C07BDEAC31D6}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{49DF74A7-A78B-4D02-9173-B5E4C799BDEF}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1F48E102-ACEB-45E1-A9BD-554A2CE4BEA0}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FE96EC2D-D746-4BF8-8C4C-9BDCE08E7981}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1C69543C-AA6D-46C5-8963-31588D1B7935}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{F5741693-D953-4CDC-966C-74F1BF12FB51}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{248EDD92-E95D-4D56-9B74-72C65FE5419F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1016BCD5-2A82-4C71-BDCE-F69B0385A7C5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{65856598-1C37-479A-A24E-2E5BA287B025}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{123C9AF4-2713-4B04-979E-9D5CFD06311D}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.53\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{274FC037-257D-4B7C-8690-48A34F93A3CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

14-12-2021 22:44:48 Instalační služba modulů systému Windows
14-12-2021 22:48:29 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

Name: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Description: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardní hostitelský řadič USB)
Service: 
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation. 


==================== Event log errors: ========================

Application errors:
==================
Error: (12/14/2021 11:14:08 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: TMT-DESKTOP)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (12/14/2021 11:14:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoAD.exe, verze: 1.0.0.0, časové razítko: 0x619df9a9
Název chybujícího modulu: SensorsSdk.dll, verze: 0.0.0.0, časové razítko: 0x61837544
Kód výjimky: 0xc0000409
Posun chyby: 0x00163f9f
ID chybujícího procesu: 0x3548
Čas spuštění chybující aplikace: 0x01d7f137d91986d3
Cesta k chybující aplikaci: C:\Apps\Wondershare\MobileTrans\AutoAD.exe
Cesta k chybujícímu modulu: C:\Apps\Wondershare\MobileTrans\SensorsSdk.dll
ID zprávy: bc1c4642-becc-4bb2-8cee-e4829a40b4a3
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/14/2021 11:11:50 PM) (Source: SecurityCenter) (EventID: 18) (User: )
Description: Službě Centrum zabezpečení Windows se nepodařilo načíst instance objektu FirewallProduct z úložiště dat.

Error: (12/14/2021 11:10:49 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (12/14/2021 11:10:49 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (12/14/2021 11:10:49 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (12/14/2021 11:10:49 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (12/14/2021 11:10:49 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]


System errors:
=============
Error: (12/14/2021 10:37:18 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (12/14/2021 08:03:09 PM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server {94269C4E-071A-4116-90E6-52E557067E4E} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/14/2021 07:59:15 PM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppX9s1cz53zc86xn39kwrb02jyft9ecn62r.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/14/2021 06:19:29 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (18:18:37, ‎14.‎12.‎2021) bylo neočekávané.

Error: (12/14/2021 01:59:32 AM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/14/2021 01:59:32 AM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/14/2021 01:59:32 AM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/14/2021 01:59:31 AM) (Source: DCOM) (EventID: 10010) (User: TMT-DESKTOP)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===============
Date: 2021-12-15 00:15:19
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2021-12-15 00:14:29
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\iseguard64.dll that did not meet the Microsoft signing level requirements.

Date: 2021-12-15 00:14:29
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-12-15 00:14:02
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. 2801 12/14/2015
Motherboard: ASUSTeK COMPUTER INC. A88XM-A
Processor: AMD Athlon(tm) X4 870K Quad Core Processor 
Percentage of memory in use: 49%
Total physical RAM: 16326.13 MB
Available physical RAM: 8312.3 MB
Total Virtual: 36566.13 MB
Available Virtual: 27193.34 MB

==================== Drives ================================

Drive c: (SYSTEM) (Fixed) (Total:221.81 GB) (Free:14.63 GB) NTFS
Drive e: (DROPBOX_SG) (Fixed) (Total:62.49 GB) (Free:22.45 GB) NTFS
Drive f: (GAMES_SG) (Fixed) (Total:195.31 GB) (Free:1.69 GB) NTFS
Drive g: (4TB_RPG_AUDIO) (Fixed) (Total:500 GB) (Free:17.55 GB) NTFS
Drive h: (MOVIES_SG) (Fixed) (Total:673.71 GB) (Free:30.88 GB) NTFS
Drive i: (4TB_ANT) (Fixed) (Total:678.01 GB) (Free:7.77 GB) NTFS
Drive k: (4TB_VERU) (Fixed) (Total:500 GB) (Free:20.05 GB) NTFS
Drive l: (ISO) (Fixed) (Total:931.51 GB) (Free:112.43 GB) NTFS
Drive p: (pCloud Drive) (Removable) (Total:7 GB) (Free:4.13 GB) exFAT
Drive q: (4TB_FOTO) (Fixed) (Total:2048 GB) (Free:28.39 GB) NTFS

\\?\Volume{041669bd-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{5a2f1b75-7cf3-dc65-6c28-27ec9b597b0b}\ () (Fixed) (Total:29.38 GB) (Free:0 GB) NTFS
\\?\Volume{041669bd-0000-0000-0000-e09237000000}\ () (Fixed) (Total:0.81 GB) (Free:0.38 GB) NTFS

==================== MBR & Partition Table ====================
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 4.

==================== End of Addition.txt =======================