Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-12-2021
Ran by tMt-user (15-12-2021 17:32:47)
Running from C:\Users\tMt-user\OneDrive - Univerzita Karlova\Plocha
Microsoft Windows 10 Pro Version 21H1 19043.1415 (X64) (2020-10-12 01:48:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2866573575-4116515599-1814928747-500 - Administrator - Disabled)
android (S-1-5-21-2866573575-4116515599-1814928747-1005 - Limited - Enabled)
DefaultAccount (S-1-5-21-2866573575-4116515599-1814928747-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-2866573575-4116515599-1814928747-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-2866573575-4116515599-1814928747-501 - Limited - Disabled)
tMt (S-1-5-21-2866573575-4116515599-1814928747-1002 - Administrator - Enabled) => C:\Users\tMt
tMt-steam (S-1-5-21-2866573575-4116515599-1814928747-1006 - Administrator - Enabled) => C:\Users\tMt-steam
tMt-user (S-1-5-21-2866573575-4116515599-1814928747-1003 - Administrator - Enabled) => C:\Users\tMt-user
WDAGUtilityAccount (S-1-5-21-2866573575-4116515599-1814928747-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
FW: COMODO Firewall (Disabled) {A60587C6-B28F-3D1C-0869-12ED515CC3C3}
FW: COMODO Firewall (Enabled) {3D87FB90-B561-70B4-3B0B-BCEFE7656ABC}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Textures DLC (HKLM-x32\...\1815334487_is1) (Version: Patch 1 Hotfix 1 v2 - GOG.com)
7-Zip 21.06 (x64) (HKLM\...\7-Zip) (Version: 21.06 - Igor Pavlov)
A Plague Tale: Innocence (HKLM-x32\...\A Plague Tale: Innocence_is1) (Version:  - )
Adobe Acrobat 2017 (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E1108756300}) (Version: 17.011.30204 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version:  - Adobe)
Aliens: Fireteam Elite (HKLM-x32\...\Aliens: Fireteam Elite_is1) (Version:  - )
AMD OverDrive (HKLM-x32\...\{34D5220A-58D0-473C-90E4-15136C3FB0E3}) (Version: 4.3.1.0690 - Advanced Micro Devices, Inc.)
Apple Mobile Device Support (HKLM\...\{74CC99EB-7DC0-4CB0-847A-F8C2FE39690C}) (Version: 14.5.0.7 - Apple Inc.)
Arkham Horror: Mother's Embrace (HKLM-x32\...\1385646355_is1) (Version: MOM_PC64_master_885_5803 - GOG.com)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
ATLAS.ti 8.4 (HKLM-x32\...\{3e11c3c1-f6b7-474a-a36b-97a072eae2cd}) (Version: 8.4.25 - Scientific Software Development GmbH)
ATLAS.ti 8.4 (HKLM-x32\...\{A95DD9D8-A379-4015-95FD-03AC3843945E}) (Version: 8.4.25 - Scientific Software Development GmbH) Hidden
Audacity 3.0.2 (HKLM-x32\...\Audacity_is1) (Version: 3.0.2 - Audacity Team)
Audacity 3.1.2 (64bitový) (HKLM\...\Audacity_is1) (Version: 3.1.2 - Audacity Team)
AutoHotkey 1.1.33.10 (HKLM\...\AutoHotkey) (Version: 1.1.33.10 - Lexikos)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Backblaze (HKLM-x32\...\Backblaze) (Version:  - Backblaze, Inc)
balenaEtcher 1.7.1 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\d2f3b6c7-6f49-59e2-b8a5-f72e33900c2b) (Version: 1.7.1 - Balena Inc.)
Banner Saga 3 (HKLM-x32\...\1599390867_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Deluxe Edition Items (HKLM-x32\...\1954833607_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Eternal Arena (HKLM-x32\...\1552123654_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Kivi (HKLM-x32\...\1954301570_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Petrie Clan Ring (HKLM-x32\...\1219025267_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Sculptor's Tools (HKLM-x32\...\1520184657_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Shadow Walker (HKLM-x32\...\1936947648_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Shield Cleaver (HKLM-x32\...\2016659504_is1) (Version: 2.60.22 - GOG.com)
Banner Saga 3: Survival Mode (HKLM-x32\...\1399959690_is1) (Version: 2.60.22 - GOG.com)
BIAS AMP 2 Pack (64bit) (HKLM\...\{F31B6074-470B-43F4-B023-2FDB3CE03D4B}) (Version: 2.2.8.1409 - PositiveGrid)
BioShock 2 (HKLM-x32\...\BioShock 2_is1) (Version:  - 2K Games)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BootRacer 8.0 (HKLM-x32\...\{50EB4E13-A810-411E-8F1F-C22FE7841DA2}_is1) (Version: 8.0 - Greatis Software)
Breathedge (HKLM-x32\...\2104548474_is1) (Version: 1.0.0.2 - GOG.com)
calibre (HKLM-x32\...\{A82BE2C7-BF65-4806-A40D-944FF1CE9843}) (Version: 5.33.2 - Kovid Goyal)
Call Of Duty 4 Modern Warfare (HKLM-x32\...\Call Of Duty 4 Modern Warfare_is1) (Version: 1.7 - Activision Blizzard)
CCleaner (HKLM\...\CCleaner) (Version: 5.87 - Piriform)
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP)
Citace PRO (HKLM-x32\...\{4919AF1F-25A4-418B-A59F-1B30C12113A3}) (Version: 3.3.0 - Citace.com)
Classic Menu for Office v9.25 (HKLM\...\{9A7CEBDF-37E2-4B63-A384-2A9FD5CE0A80}_is1) (Version: 9.25 - Addintools)
COMODO Firewall (HKLM\...\{A1E718A7-BB83-41B8-BA96-BC219C322B8E}) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.) Hidden
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.)
CrystalDiskInfo 8.12.4 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.12.4 - Crystal Dew World)
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
DriverHub (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\DriverHub) (Version: 1.1.4.2315 - ROSTPAY LTD.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 138.3.2340 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.541.1 - Dropbox, Inc.) Hidden
Dual Monitor Tools (HKLM-x32\...\{5CE3BD1A-324F-4F87-96BB-30F08DB6E839}) (Version: 2.7.0.0 - GNE)
Duplicate Cleaner Free 4.1.0 (HKLM-x32\...\Duplicate Cleaner Free) (Version: 4.1.0 - DigitalVolcano Software Ltd)
EPIM ArchiverDR (HKLM-x32\...\EPIM ArchiverDR) (Version: 7.5 - )
Everything 1.4.1.1009 (x64) (HKLM\...\Everything) (Version: 1.4.1.1009 - voidtools)
f.lux (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Flux) (Version:  - f.lux Software LLC)
Fallout: New Vegas (HKLM-x32\...\1454587428_is1) (Version: 1.4.0.525 - GOG.com)
Ferdi 5.6.0 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\94242274-14c2-5602-a6f6-ee657c0d1dc5) (Version: 5.6.0 - Amine Mouafik)
FlashFolder (HKLM\...\{92BF7CAE-D925-4868-8875-A154BE3CB26F}) (Version: 1.11.0.0 - zett42)
Font Xplorer 1.2.2  (HKLM-x32\...\Font Xplorer) (Version:  - )
FontForge verze 31-07-2017 (HKLM-x32\...\{56748B9C-19AE-4689-B8C5-5A45AE0A993A}_is1) (Version: 31-07-2017 - FontForgeBuilds)
Fraps (remove only) (HKLM-x32\...\Fraps) (Version:  - )
GameInput Redistributable (HKLM-x32\...\{5FAD63E8-8F1C-6687-0325-3BBF64B4FD89}) (Version: 10.1.19041.3918 - Microsoft Corporation)
Gameplay Time Tracker version 2.0.0 (HKLM-x32\...\Gameplay Time Tracker_is1) (Version: 2.0.0 - mik61)
Gameplay Time Tracker version 3.1 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Gameplay Time Tracker_is1) (Version: 3.1 - mik61)
GameSave Manager v3 (HKLM-x32\...\GameSaveManager_v3) (Version: 3.1.507.0 - InsaneMatt)
GCstar 1.6.1 (HKLM-x32\...\GCstar) (Version: 1.6.1 - Tian)
Gears Tactics (HKLM-x32\...\Gears Tactics_is1) (Version:  - )
Gihosoft Video Editor version 2.0.42.0 (HKLM-x32\...\{0161770A-0585-459B-AE9D-DE563BB4FBD3}_is1) (Version: 2.0.42.0 - HK JIHO CO., LIMITED)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.110 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.123 - Google Inc.) Hidden
Grammarly (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\GrammarlyForWindows) (Version: 1.5.73 - Grammarly)
Grammarly for Microsoft® Office Suite (HKLM\...\{DE46CC28-5477-4CFB-9AE2-8C7C111E3EE7}) (Version: 6.8.261 - Grammarly) Hidden
Grammarly for Microsoft® Office Suite (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\{ee962c45-b827-4262-a720-3a939910ce37}) (Version: 6.8.261 - Grammarly)
Half Life Collection version 1.0.0.0 (HKLM-x32\...\Half Life Collection_is1) (Version: 1.0.0.0 - KNIGHT)
HandBrake 1.4.2 (HKLM-x32\...\HandBrake) (Version: 1.4.2 - )
HWiNFO64 Version 7.14 (HKLM\...\HWiNFO64_is1) (Version: 7.14 - Martin Malik - REALiX)
IconGroups (HKLM-x32\...\IconGroups) (Version:  - )
iMazing 2.13.10.0 (HKLM\...\iMazing_is1) (Version: 2.13.10.0 - DigiDNA SARL)
In Other Waters (HKLM-x32\...\1221608838_is1) (Version: 1.0.0 - GOG.com)
Inscryption (HKLM-x32\...\1224800338_is1) (Version: 1.08 - GOG.com)
Inscryption Soundtrack (HKLM-x32\...\2144248828_is1) (Version: 1.08 - GOG.com)
Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
iPod Support (HKLM\...\{DEC0F5DF-216B-4D66-B3DD-B1BDDC7A5BF8}) (Version: 12.11.3.7 - Apple Inc.)
Java 8 Update 311 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180311F0}) (Version: 8.0.3110.11 - Oracle Corporation)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kiwi for Gmail (HKLM\...\3617b6ca-2476-5662-80f9-6f2dce3199f1) (Version: 3.4.0 - Zive, Inc)
Kodi (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Kodi) (Version: 19.1.0.0 - XBMC Foundation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
LAV Filters 0.70.2 (HKLM-x32\...\lavfilters_is1) (Version: 0.70.2 - Hendrik Leppkes)
Listen N Write Free 1.30.0.5 (HKLM-x32\...\{6BF5DC5F-35E2-4A22-96E6-C94CF1DA8823}_is1) (Version: 1.30.0.5 - Marcello Pietrelli & Gianni Baini)
LockHunter 3.2, 32/64 bit (HKLM\...\LockHunter_is1) (Version:  - Crystal Rich Ltd)
Logitech-kameraindstillinger (HKLM-x32\...\LogiUCDPP) (Version: 2.10.4.0 - Logitech Europe S.A.)
Lorelai (HKLM-x32\...\1128886553_is1) (Version: 1.0.4a - GOG.com)
Low Specs Experience Lite v9.10.6 (HKLM-x32\...\{A7897496-E34D-406F-AA19-7A247084578D}}_is1) (Version:  - Ragnotechpowered)
MediaInfo 21.09 (HKLM\...\MediaInfo) (Version: 21.09 - MediaArea.net)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.53 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 96.0.1054.53 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1002\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\OneDriveSetup.exe) (Version: 21.230.1107.0004 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2866573575-4116515599-1814928747-1006\...\OneDriveSetup.exe) (Version: 17.3.6998.0830 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Teams) (Version: 1.4.00.32771 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29914 (HKLM-x32\...\{43d1ce82-6f55-4860-a938-20e5deb28b98}) (Version: 14.28.29914.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.29.30037 (HKLM-x32\...\{dfea0fad-88b2-4a1f-8536-3f8f9391f4ef}) (Version: 14.29.30037.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.22 (x64) (HKLM-x32\...\{68de94b9-46ac-495e-a96b-de484c02f5b3}) (Version: 3.1.22.30721 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
MiniTool Partition Wizard Free 12 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Software Limited)
Mozilla Firefox (x64 cs) (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\Mozilla Firefox 95.0 (x64 cs)) (Version: 95.0 - Mozilla)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox 95.0 (x64 en-US)) (Version: 95.0 - Mozilla)
Mozilla Firefox 54.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 54.0.1 (x64 cs)) (Version: 54.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 95.0 - Mozilla)
MPC-BE x64 1.5.8.6302 (HKLM\...\{FE09AF6D-78B2-4093-B012-FCDAF78693CE}_is1) (Version: 1.5.8.6302 - MPC-BE Team)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Native Instruments Guitar Rig 5 (HKLM-x32\...\Native Instruments Guitar Rig 5) (Version: 5.2.2.8 - Native Instruments)
Native Instruments Guitar Rig 6 (HKLM-x32\...\Native Instruments Guitar Rig 6) (Version: 6.2.1.136 - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.6.0.137 - Native Instruments)
NVIDIA FrameView SDK 1.1.4923.29968894 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29968894 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.23.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.23.0.74 - NVIDIA Corporation)
NVIDIA GeForce NOW 2.0.19.78 (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeforceNOW) (Version: 2.0.19.78 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.92 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 496.49 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 496.49 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 27.0.1 - OBS Project)
Observer (HKLM-x32\...\Observer_is1) (Version:  - )
Old Calculator for Windows 10 (HKLM-x32\...\OldCalcForWin10) (Version: 1.1 - hxxp://winaero.com)
Omen Exitio: Plague (HKLM\...\DARKSiDERS - Omen Exitio: Plague) (Version:  - DARKSiDERS)
Open Capture and Analytics Tool (OCAT) (HKLM-x32\...\{fbd1a398-e2f1-45b8-92dc-ac56a1399594}) (Version: 1.6.1.20401 - Advanced Micro Devices, Inc.)
Open Capture and Analytics Tool (OCAT) 1.6.1.20401 (HKLM\...\{90857B8E-4CDD-4A56-B120-D0488D0CE8F7}) (Version: 1.6.1.20401 - Advanced Micro Devices, Inc.) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version:  - )
OpenConnect-GUI (HKLM-x32\...\OpenConnect-GUI) (Version: 1.5.3 - OpenConnect-GUI Team)
Open-Shell (HKLM\...\{F4B6EE58-F183-4B0D-930B-4480673C0F5B}) (Version: 4.4.160 - The Open-Shell Team)
OpenShot Video Editor verze 2.6.1 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.6.1 - OpenShot Studios, LLC)
Opera Stable 82.0.4227.23 (HKLM-x32\...\Opera 82.0.4227.23) (Version: 82.0.4227.23 - Opera Software)
paint.net (HKLM\...\{91513DD9-5D06-4ABE-AB5A-BA90F426ED5F}) (Version: 4.3.4 - dotPDN LLC)
Papers, Please (HKLM-x32\...\1207659209_is1) (Version: 2.5.0.11 - GOG.com)
Parsec (HKLM-x32\...\Parsec) (Version: 150-36 - Parsec Cloud Inc.)
pCloud Drive (HKLM\...\{01BEFE8D-583C-481B-8DA2-CA2FB9D1D1B6}) (Version: 3.9.6.0 - pCloud AG) Hidden
pCloud Drive (HKLM-x32\...\{dd304319-ea6c-485b-bab7-456fb9cb2f04}) (Version: 3.9.6.0 - pCloud AG)
PDF-XChange Lite V6 Home (HKLM\...\{2AEAF904-5D25-493B-82F7-D094F760A82A}) (Version: 6.0.322.5 - Tracker Software Products (Canada) Ltd.)
Photolemur (HKLM\...\{F449674A-B2AB-4C85-BF45-E67377DE07B8}) (Version: 2.3.1.1931 - Photolemur) Hidden
Photolemur (HKLM-x32\...\{ff92c9da-ce28-49c3-8f74-032f843e6f00}) (Version: 2.3.1.1931 - Photolemur)
Photolemur 3 (HKLM\...\{22935808-B814-4884-85E7-D8C5CD5C7616}) (Version: 1.1.0.2388 - Skylum) Hidden
Photolemur 3 (HKLM-x32\...\{b136f907-af37-4697-9b5e-442173dd0895}) (Version: 1.1.0.2388 - Skylum)
PhotoPad Image Editor (HKLM-x32\...\PhotoPad) (Version: 6.59 - NCH Software)
PhotoSpills4 (HKLM-x32\...\ST6UNST #1) (Version:  - )
PhraseExpress v15.0.88 (HKLM-x32\...\PhraseExpress_is1) (Version: 15.0.88 - Bartels Media GmbH)
PicPick (HKLM-x32\...\PicPick) (Version: 5.2.0 - NGWIN)
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22589 - Microsoft Corporation)
ProtonVPN (HKLM-x32\...\{FBEC385C-5D3B-4827-9879-F157FA9E349F}) (Version: 1.24.2 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.24.2) (Version: 1.24.2 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{5DA710E2-1B81-4675-BFC5-76BAF63AE1F6}) (Version: 1.1.3 - Proton Technologies AG)
ProtonVPNTun (HKLM-x32\...\{C953D354-0C14-4CB5-AB42-0A9E40F55857}) (Version: 0.13.0 - Proton Technologies AG)
qBittorrent 4.3.9 (HKLM-x32\...\qBittorrent) (Version: 4.3.9 - The qBittorrent project)
QDA Miner Lite 2.0 (HKLM-x32\...\QDAMiner Lite_is1) (Version:  - Provalis Research)
Quest 5.8.0 (HKLM-x32\...\Quest_is1) (Version: 5.8.0 - Andy Joel)
Race for the Galaxy version 0.9.4 (HKLM-x32\...\{C067C316-4036-4E97-B013-21DCBE649F81}_is1) (Version: 0.9.4 - Keldon Jones)
Rainmeter (HKLM-x32\...\Rainmeter) (Version: 4.4 beta r3445 - Rainmeter)
Razer Cortex (HKLM-x32\...\Razer Cortex_is1) (Version: 9.14.15.1361 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.31.828.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.3.5 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.3.5 - VS Revo Group, Ltd.)
Revo Uninstaller Pro 3.1.2 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 3.1.2 - VS Revo Group, Ltd.)
Rise of the Tomb Raider (HKLM-x32\...\Rise of the Tomb Raider_is1) (Version:  - )
Sandboxie 5.51.3 (64-bit) (HKLM\...\Sandboxie) (Version: 5.51.3 - sandboxie-plus.com)
Sandboxie-Plus v0.9.3 (HKLM\...\Sandboxie-Plus_is1) (Version: 0.9.3 - hxxp://xanasoft.com/)
ScanTailor Advanced 2019.8.16 (HKLM-x32\...\ScanTailor Advanced) (Version: 2019.8.16 - 4lex4 <4lex49@zoho.com>)
Scribus 1.5.3 (64bit) (HKLM\...\Scribus 1.5.3) (Version: 1.5.3 - The Scribus Team)
Send To Toys v2.71 (HKLM\...\Send To Toys_is1) (Version:  - Gabriele Ponti)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version:  - Microsoft)
Sigil 0.9.9 (HKLM\...\Sigil_is1) (Version:  - Sigil-Ebook)
Skype verze 8.79 (HKLM-x32\...\Skype_is1) (Version: 8.79 - Skype Technologies S.A.)
Star Wars™: X-Wing Alliance (HKLM-x32\...\1421404763_is1) (Version: 2.02 - GOG.com)
SteamWorld Quest: Hand of Gilgamech (HKLM-x32\...\1941294775_is1) (Version: 1.7 - GOG.com)
Sticky Password 8.4.3.728 (HKLM-x32\...\Sticky Password_is1) (Version: 8.4 - Lamantine Software)
Stirring Abyss (HKLM-x32\...\2143003765_is1) (Version: 1.00.00 - GOG.com)
SUPERHOT: MIND CONTROL DELETE (HKLM-x32\...\1823091894_is1) (Version: 1.0.0 - GOG.com)
SysTools EML Viewer v4.0 (HKLM-x32\...\{9039CEBE-CD3D-45FA-8366-1C969A1E1B1F}_is1) (Version:  - SysTools Software Pvt. Ltd.)
TAP-Windows 9.21.2 (HKLM\...\TAP-Windows) (Version: 9.21.2 - )
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.24.5 - TeamViewer)
Telling Lies (HKLM-x32\...\1905966578_is1) (Version: 1.5 - GOG.com)
The 7th Guest: 25th Anniversary Edition (HKLM-x32\...\1270716073_is1) (Version: 1.1.5 - GOG.com)
The Blind Prophet (HKLM-x32\...\1726178326_is1) (Version: 1.20 - GOG.com)
The Darkside Detective (HKLM-x32\...\1244373161_is1) (Version: gog-6 Update 4 - GOG.com)
The Forest (HKLM-x32\...\The Forest) (Version:  - )
The Forgotten City (HKLM-x32\...\The Forgotten City_is1) (Version:  - )
The Sexy Brutale (HKLM-x32\...\1585259027_is1) (Version: gog-1 - GOG.com)
The Walking Dead: 400 Days (HKLM-x32\...\1432207890_is1) (Version: patch_1 - GOG.com)
The Walking Dead: Season 1 (HKLM-x32\...\1432207977_is1) (Version: patch_1 - GOG.com)
The Witcher 3 - Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 1.30.0.0 - GOG.com)
Thronebreaker (HKLM-x32\...\1297352383_is1) (Version: 1.0.0 - GOG.com)
Titan Quest - Anniversary Edition (HKLM-x32\...\1196955511_is1) (Version: 2.9 MP Hotfix - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH)
Twine 2.3.8 (HKLM\...\09757d2a-5a16-578f-a64f-297ed0213ec0) (Version: 2.3.8 - Chris Klimas)
Types (HKLM\...\Types) (Version: 2.6.5 - Evgeny Strunnikov)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Universal Adb Driver (HKLM-x32\...\{C0E08D8D-6076-4117-B644-2AF34F35B757}) (Version: 1.0.4 - ClockworkMod)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VidCutter (HKLM\...\{CCDC440A-CC57-4BED-8CDE-1DA285976A64}_is1) (Version: 5.5.0.0 - Pete Alexandrou)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.4.12 - Black Tree Gaming Ltd.)
VPN Unlimited 8.5.3 (HKLM-x32\...\{DC24521E-872B-41AF-93EA-FE477902D6FB}_is1) (Version: 8.5.3 - KeepSolid Inc.)
WD Desktop App 2.1.0.246 (HKLM-x32\...\{efa29edd-d423-4291-b1d0-71428a78579f}) (Version: 2.1.0.246 - Western Digital Corporation) Hidden
WD Desktop App 2.1.0.246 (x64) (HKLM\...\{CA7F7232-526E-41BD-971A-47BE28C18516}) (Version: 2.1.0.246 - Western Digital Corporation) Hidden
WD Discovery (HKLM-x32\...\WDDiscovery) (Version: 3.6.163 - Western Digital Technologies, Inc.)
WD Drive Manager (x64) (HKLM\...\{94794BBD-1FB4-428B-8F2D-E368BEF2C237}) (Version: 2.116 - Western Digital)
WD Drive Utilities (HKLM-x32\...\{02CCBAB5-A2E6-448D-9489-7C888758EF2E}) (Version: 2.0.0.70 - Western Digital Technologies, Inc.) Hidden
WD Drive Utilities (HKLM-x32\...\{9d47e5b5-5394-4d59-8165-413d55dfa78d}) (Version: 2.0.0.70 - Western Digital Technologies, Inc.)
WD SES Driver Setup (HKLM-x32\...\{924A274D-38B6-4930-8859-F3F51CFA8DDD}) (Version: 1.1.0.25 - Western Digital) Hidden
What Remains of Edith Finch (HKLM-x32\...\1651927092_is1) (Version: 1.0.0.0 - GOG.com)
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs)
Wolfenstein - The New Order (HKLM-x32\...\Wolfenstein - The New Order_R.G. Mechanics_is1) (Version:  - R.G. Mechanics, spider91)
Wondershare MobileTrans ( Version 3.5.4 ) (HKLM-x32\...\{72289023-823E-4AF7-A65F-C608481758AC}_is1) (Version: 3.5.4 - Wondershare)
XMedia Recode 64bit verze 3.5.4.5 (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.5.4.5 - XMedia Recode 64bit)
XnView 2.50.3 (HKLM-x32\...\XnView_is1) (Version: 2.50.3 - Gougelet Pierre-e)
YTD (pepak) (HKLM-x32\...\YTD_Pepak) (Version:  - )
Zoom (HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\ZoomUMX) (Version: 5.8.4 (1736) - Zoom Video Communications, Inc.)
Zotero (HKLM-x32\...\Zotero 5.0.96.2 (x86 en-US)) (Version: 5.0.96.2 - Corporation for Digital Scholarship)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-07] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.12.41.0_x86__kgqvnymyfvs32 [2021-12-02] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.208.400.0_x86__kgqvnymyfvs32 [2021-12-08] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-02] (Microsoft Corporation)
Facebook -> C:\Program Files\WindowsApps\FACEBOOK.FACEBOOK_2021.927.1.0_neutral__8xx8rvfyw5nnt [2021-09-28] (Facebook Inc)
Gears Tactics -> C:\Program Files\WindowsApps\Microsoft.GanderBaseGame_1.0.151.0_x64__8wekyb3d8bbwe [2021-03-26] (Microsoft Studios)
Keeper - Password Manager & Secure File Storage -> C:\Program Files\WindowsApps\KeeperSecurityInc.Keeper_14.0.33.0_x64__kejf07qmg0jnm [2019-07-30] (Keeper Security Inc)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_6.1.16.0_x86__h6adky7gbf63m [2021-12-14] (Gameloft SE)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-10-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-01-15] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.11.12030.0_x64__8wekyb3d8bbwe [2021-12-10] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_51.10913.5796.0_x64__8wekyb3d8bbwe [2021-12-02] (Microsoft Corporation)
Minecraft for Windows 10 -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.18.203.0_x64__8wekyb3d8bbwe [2021-12-10] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-10-27] (NVIDIA Corp.)
Royal Revolt 2 -> C:\Program Files\WindowsApps\flaregamesGmbH.RoyalRevolt2_7.4.0.0_x86__g0q0z3kw54rap [2021-11-18] (flaregames GmbH)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-09-02] (Samsung Electronics Co. Ltd.)
Sea of Thieves -> C:\Program Files\WindowsApps\Microsoft.SeaofThieves_2.105.3872.2_x64__8wekyb3d8bbwe [2021-10-22] (ms-resource:PublisherDisplayName)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-12] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{04271989-C4D2-C812-CD38-8AC5BE5EB212} -> [OneDrive - Fakulta humanitních studií] => C:\Users\tMt-user\OneDrive - Fakulta humanitních studií [2017-12-10 10:25]
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21264.3\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{2AD206F1-152C-4F9D-A24E-6F93FE7A4AFC}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.261\BFDF9581B2\GrammarlyShim64.dll (Grammarly, Inc. -> CompanyName)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{4BE56754-B616-4998-B825-D16983AEE1B2}\InprocServer32 -> C:\Users\tMt-user\AppData\Local\Grammarly\Grammarly for Microsoft Office Suite\6.8.261\BFDF9581B2\Grammarly.AddIn.Connect.ActiveX.dll (Grammarly, Inc. -> Grammarly)
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{55b0495e-5a1f-233d-9d87-b6e0e973750b}\localserver32 -> C:\Apps\ProtonVPN\ProtonVPN.exe (Proton Technologies AG -> )
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{9486aaf1-0930-362a-962d-8e6908739c817}\InprocServer32 -> 0x70AC6F9F5034D60170AC6F9F5034D601010000000900000000000000 => No File
CustomCLSID: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => E:\Dropbox [2018-05-12 20:08]
SSODL: WDFSMountNotificator-wdfsconnect2017 - {EF827576-5FD7-464B-8FAE-F897AC11289E} - C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL: CallbackTechMountNotificator-cbfsconnect2017 - {40976EC7-FDDB-40F4-A590-2CD94C79FD46} - C:\WINDOWS\system32\cbfsconnectMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
SSODL-x32: WDFSMountNotificator-wdfsconnect2017 - {EF827576-5FD7-464B-8FAE-F897AC11289E} - C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL-x32: CallbackTechMountNotificator-cbfsconnect2017 - {40976EC7-FDDB-40F4-A590-2CD94C79FD46} - C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects: Virtual Storage Mount Notification -> {40976EC7-FDDB-40F4-A590-2CD94C79FD46} => C:\WINDOWS\system32\cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects: Virtual Storage Mount Notification -> {EF827576-5FD7-464B-8FAE-F897AC11289E} => C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {40976EC7-FDDB-40F4-A590-2CD94C79FD46} => C:\WINDOWS\SysWOW64\cbfsconnectMntNtf2017.dll [2019-10-07] (Callback Technologies, Inc. -> Callback Technologies, Inc.)
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {EF827576-5FD7-464B-8FAE-F897AC11289E} => C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay01] -> {4F8A325E-9DAF-44B8-A825-1A14DFA0FA78} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay02] -> {0176BDDE-B59A-4A1E-808B-CAD461415CCA} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay03] -> {B65909D1-57AF-41F5-AB94-BEB733F62B35} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay04] -> {C6C2397D-8238-4332-8935-86C39C7C165F} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay05] -> {E7B3BCF9-0386-4B5F-AE6A-91B9F1423973} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [        WDDesktopIconOverlay06] -> {564EA121-D9DA-485D-82C2-C2ED7BFCCEAD} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [    pCloudINPROGRESS] -> {D8BFAFBD-B670-4252-9C17-9CF1C64C2BAF} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudINSYNC] -> {8D0C0582-552A-4A6B-9455-DA63E1F329C0} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [    pCloudNOSYNC] -> {3858ED1B-8F1C-42ED-A8A9-FDBF591E3C6B} => C:\Program Files\pCloud Drive\OverlayIcon64.dll [2017-10-23] (TODO: <Company name>) [File not signed]
ShellIconOverlayIdentifiers: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-15] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
ShellIconOverlayIdentifiers-x32: [   DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [   DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-15] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe Acrobat Pro 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [ContextMenuExtension] -> {a0b73fac-351f-3948-9d8a-1dad9d870193} => C:\Program Files\pCloud Drive\ContextMenuHandler.DLL [2020-03-04] (pCloud AG) [File not signed]
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers1: [WDDesktopContextMenu] -> {47625ad9-51e4-3519-92d0-07ecd5b8f771} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1: [WinCDEmu] -> {D0E37FD2-F675-426F-B09A-2CF37BA46FD5} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers2: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [ContextMenuExtension] -> {a0b73fac-351f-3948-9d8a-1dad9d870193} => C:\Program Files\pCloud Drive\ContextMenuHandler.DLL [2020-03-04] (pCloud AG) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2017-07-20] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers4: [WDDesktopContextMenu] -> {47625ad9-51e4-3519-92d0-07ecd5b8f771} => C:\Program Files\WD Desktop App\kda.DLL [2019-07-08] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.51.0.dll [2021-09-25] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_44dc4eefedc0d082\nvshext.dll [2021-10-21] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2021-11-24] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Apps\Adobe Acrobat Pro 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast\ashShell.dll [2021-12-15] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Apps\Revo Uninstaller Pro\RUExt.dll [2012-12-29] (VS Revo Group -> VS Revo Group)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2020-09-26] (Open-Shell) [File not signed]
ContextMenuHandlers6: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Apps\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.i420] => C:\Windows\system32\lvcod64.dll [175392 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\system32\frapsv64.dll [71680 2013-02-26] (Beepa P/L) [File not signed]
HKLM\...\Drivers32: [vidc.i420] => C:\Windows\SysWOW64\lvcodec2.dll [305000 2012-10-26] (Logitech, Inc. -> Logitech Inc.)
HKLM\...\Drivers32: [VIDC.FPS1] => C:\Windows\SysWOW64\frapsvid.dll [65536 2013-02-26] (Beepa P/L) [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\tMt-user\AppData\Local\IconGroups\groups\files\GCstar.lnk -> C:\Apps\GCstar\bin\gcstar.bat ()
ShortcutWithArgument: C:\Users\tMt-user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
ShortcutWithArgument: C:\Users\tMt-user\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\CASA - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2021-04-10 14:52 - 2021-04-10 14:52 - 000026624 _____ () [File not signed] [File is in use] C:\Apps\Rainmeter\Plugins\UsageMonitor.DLL
2021-12-15 14:05 - 2021-12-15 14:05 - 000566272 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\39bcc67e-4481-4f42-991b-bb9a2ee00c0a.tmp.node
2021-12-15 14:05 - 2021-12-15 14:05 - 000571392 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\788aa69b-b8e4-4032-ad77-8322e84f374f.tmp.node
2021-12-15 14:05 - 2021-12-15 14:05 - 002906112 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\871dd514-0d77-40de-9707-e322468b8485.tmp.node
2021-12-15 14:05 - 2021-12-15 14:05 - 000570880 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\8ec5b394-7040-4075-b1c5-b9b0c12d9906.tmp.node
2021-12-15 14:05 - 2021-12-15 14:05 - 001453056 _____ () [File not signed] \\?\C:\Users\tMt-user\AppData\Local\Temp\d3bff32f-6419-488d-bb25-200184e3dee4.tmp.node
2009-06-26 11:03 - 2009-06-26 11:03 - 000050176 _____ () [File not signed] C:\Apps\EssentialPIM Pro 9\hunspelldll.dll
2014-12-20 19:25 - 2014-12-20 19:25 - 000245760 _____ () [File not signed] C:\Apps\IconGroups\x64\IconGroupsHook.dll
2017-07-12 16:24 - 2016-09-19 11:09 - 000813056 _____ () [File not signed] C:\Apps\Networx\sqlite.dll
2021-04-10 14:51 - 2021-04-10 14:51 - 000317952 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\ActionTimer.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000128000 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\CoreTemp.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000120832 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\SpeedFanPlugin.DLL
2021-04-10 14:51 - 2021-04-10 14:51 - 000116736 _____ () [File not signed] C:\Apps\Rainmeter\Plugins\SysInfo.DLL
2017-08-22 13:44 - 2020-06-22 07:37 - 000086528 _____ () [File not signed] C:\Apps\RBTray\RBHook.dll
2020-05-29 14:42 - 2020-05-29 14:42 - 002380288 _____ () [File not signed] C:\Program Files\pCloud Drive\pSyncLib.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 002679296 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\ffmpeg.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 000439296 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\libegl.dll
2021-11-09 08:33 - 2021-07-18 16:21 - 007938048 _____ () [File not signed] C:\Users\tMt-user\AppData\Local\Programs\ferdi\libglesv2.dll
2019-01-14 09:31 - 2012-11-08 20:17 - 000052848 _____ (Ditto -> Ditto Utility Addin) [File not signed] C:\Apps\Ditto\Addins\DittoUtil.dll
2017-02-15 07:57 - 2017-02-15 07:57 - 000975360 _____ (Firebird Project) [File not signed] C:\Apps\EssentialPIM Pro 9\gds32.dll
2014-12-04 06:18 - 2014-12-04 06:18 - 000420864 _____ (IBM Corporation and others) [File not signed] C:\Apps\EssentialPIM Pro 9\icudt30.dll
2014-12-04 06:18 - 2014-12-04 06:18 - 000323584 _____ (IBM Corporation and others) [File not signed] C:\Apps\EssentialPIM Pro 9\icuuc30.dll
2021-01-19 14:06 - 2021-01-19 14:06 - 001654784 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\WinSxS\amd64_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_8448b2bd328df189\MFC80U.DLL
2019-04-08 14:31 - 2019-04-08 14:31 - 000082944 _____ (Open Source Software community LGPL) [File not signed] C:\Program Files\pCloud Drive\pthreadVC2.dll
2020-09-26 12:47 - 2020-09-26 12:47 - 002659328 _____ (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenuDLL.dll
2018-07-23 21:59 - 2018-03-02 06:51 - 001149440 _____ (Robert Simpson, et al.) [File not signed] C:\Apps\Gameplay Time Tracker\x86\SQLite.Interop.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 000361984 _____ (The curl library, hxxps://curl.haxx.se/) [File not signed] C:\Apps\VPN Unlimited\libcurl.dll
2020-09-10 09:11 - 2020-09-10 09:11 - 000268288 _____ (The FreeType Project) [File not signed] C:\Apps\EssentialPIM Pro 9\wp_type1ttf.dll
2020-03-19 09:32 - 2020-03-19 09:32 - 000601088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\EssentialPIM Pro 9\libeay32.dll
2020-03-19 09:32 - 2020-03-19 09:32 - 000159744 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\EssentialPIM Pro 9\ssleay32.dll
2021-05-24 18:15 - 2015-12-07 16:51 - 001362944 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\PhraseExpress\libeay32.dll
2021-05-24 18:15 - 2015-12-07 16:51 - 000359424 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Apps\PhraseExpress\ssleay32.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 002523136 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libcrypto-1_1.dll
2021-11-24 22:53 - 2021-07-22 13:11 - 000530944 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Apps\VPN Unlimited\libssl-1_1.dll
2017-10-23 17:28 - 2017-10-23 17:28 - 000342016 _____ (TODO: <Company name>) [File not signed] C:\Program Files\pCloud Drive\OverlayIcon64.dll
2020-09-10 09:11 - 2020-09-10 09:11 - 000116736 _____ (WPCubed GmbH) [File not signed] C:\Apps\EssentialPIM Pro 9\wpdecodejp.DLL
2020-09-10 09:11 - 2020-09-10 09:11 - 001264128 _____ (WPCubed GmbH) [File not signed] C:\Apps\EssentialPIM Pro 9\wPDFView04.dll
2012-07-21 20:55 - 2012-08-31 21:57 - 000629248 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439.dll
2012-07-21 21:05 - 2012-08-31 21:46 - 003306496 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439_64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:728B799F [372]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Apps\Open Shell\ClassicIEDLL_64.dll [2020-09-26] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Apps\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer32.dll [2020-09-26] (Open-Shell) [File not signed]
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\ssv.dll [2021-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_311\bin\jp2ssv.dll [2021-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Apps\Open Shell\ClassicIEDLL_32.dll [2020-09-26] (Open-Shell) [File not signed]
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer64.dll [2020-09-26] (Open-Shell) [File not signed]
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer32.dll [2020-09-26] (Open-Shell) [File not signed]
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Apps\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\sharepoint.com -> hxxps://cunicz-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-06-27 19:02 - 2021-05-09 20:40 - 000002480 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      fitgirlrepacks.in               # Fake FitGirl site
109.94.209.70      fitgirlrepacks.co               # Fake FitGirl site
109.94.209.70      fitgirl-repacks.cc              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.to              # Fake FitGirl site
109.94.209.70      fitgirl-repack.com              # Fake FitGirl site
109.94.209.70      fitgirl-repacks.website         # Fake FitGirl site
109.94.209.70      fitgirlrepack.games             # Fake FitGirl site
109.94.209.70      www.fitgirlrepacks.co           # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.cc          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.to          # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.com          # Fake FitGirl site
109.94.209.70      www.fitgirl-repacks.website     # Fake FitGirl site
109.94.209.70      ww9.fitgirl-repacks.xyz         # Fake FitGirl site
109.94.209.70      www.fitgirlrepack.games         # Fake FitGirl site
109.94.209.70      *.fitgirl-repacks.xyz           # Fake FitGirl site
109.94.209.70      fitgirl-repacks.xyz             # Fake FitGirl site
109.94.209.70      fitgirl-repack.net              # Fake FitGirl site
109.94.209.70      www.fitgirl-repack.net          # Fake FitGirl site
109.94.209.70      fitgirlpack.site                # Fake FitGirl site
109.94.209.70      www.fitgirlpack.site            # Fake FitGirl site

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;E:\Calibre2\;E:\Calibre\;C:\WINDOWS\System32\OpenSSH\;G:\Calibre\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-21-2866573575-4116515599-1814928747-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\Control Panel\Desktop\\Wallpaper -> c:\apps\_wp\_black_1650x1080.jpg
HKU\S-1-5-21-2866573575-4116515599-1814928747-1006\Control Panel\Desktop\\Wallpaper -> E:\steam-logo-big.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is disabled.

Network Binding:
=============
Připojení k místní síti: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Síťové připojení Bluetooth: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Ethernet 4: COMODO Internet Security Firewall Driver -> inspect (enabled) 
Ethernet: COMODO Internet Security Firewall Driver -> inspect (enabled) 

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Opera Browser Assistant"
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\StartupApproved\Run: => "Clock Widget (HTC Home)"
HKU\S-1-5-21-2866573575-4116515599-1814928747-1003\...\StartupApproved\Run: => "SandboxieControl"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{1800D019-0C5B-4142-8A20-F59086DFD9D2}] => (Allow) C:\Apps\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4FE6B52B-7140-459C-A6BF-DF8BE6ABDF81}] => (Allow) C:\Apps\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5AEB0A7F-4A78-4BAD-8016-3FFA0B9775E2}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{C868D2D3-5441-478A-AC7F-448C4F487EEA}] => (Allow) C:\Program Files\Parsec\parsecd.exe (Parsec Cloud, Inc. -> Parsec)
FirewallRules: [{A7B747D9-F7FE-4A5F-8254-E85556AE1443}] => (Allow) C:\Program Files\pCloud Drive\pCloud.exe (pCloud AG -> pCloud AG)
FirewallRules: [{4E6C3C8B-0533-4801-B02B-3DD8AF3C0C8B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{2F1BFC3F-FC58-44AC-9638-47407718F8F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{929832E9-54D3-4D1A-B6CD-6CF9C29312B4}C:\apps - share\dcplusplus\dcplusplus.exe] => (Block) C:\apps - share\dcplusplus\dcplusplus.exe () [File not signed]
FirewallRules: [TCP Query User{6D6AEB7F-E80F-4AE3-B7CA-6149616A81C4}C:\apps - share\dcplusplus\dcplusplus.exe] => (Block) C:\apps - share\dcplusplus\dcplusplus.exe () [File not signed]
FirewallRules: [{70C9D6B6-4F71-4334-AA3C-103AA77D287A}] => (Allow) C:\Apps\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C9ADB41F-577D-4877-9B58-99E7755A60CD}] => (Allow) C:\Apps\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{3982EF9B-C477-49B5-894A-2EDD2CEBC365}] => (Allow) C:\Apps\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0398C24B-DBD6-4FD8-BF04-6B3BB5376039}] => (Allow) C:\Apps\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{FB985F04-C053-4C00-9320-71C5513AAE1A}C:\apps\essentialpim pro 8\essentialpim.exe] => (Block) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [UDP Query User{F809C33E-F7B9-4365-BEC9-89D83E65919F}C:\apps\essentialpim pro 8\essentialpim.exe] => (Block) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [TCP Query User{AD78A009-1EC3-44D3-8194-D847B5CDFC19}C:\apps\essentialpim pro 8\essentialpim.exe] => (Allow) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [UDP Query User{A33208AA-F528-46C0-9D43-2EDE921C9EA9}C:\apps\essentialpim pro 8\essentialpim.exe] => (Allow) C:\apps\essentialpim pro 8\essentialpim.exe => No File
FirewallRules: [{361515C4-42B7-4716-AC26-446F694D561F}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{BEC7A040-EABA-47C0-A95C-142334268AF1}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{62B5F533-C52C-47D5-8A5C-6DE67D2A4FE0}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{57EAFAD9-6FB9-4B36-9B39-032AFCB668B1}] => (Allow) C:\Users\tMt-user\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{A5D74A07-670F-4233-85E1-428091E2A322}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9382D2D1-A420-4AD2-BBF1-49DF30E6E802}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7311A993-4EA4-4B57-A5BC-BC62B2773B1C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9AFD1B18-6CA7-4615-9FE8-9504559EB939}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0CF51306-967D-483D-A7D4-56CE6C9F8298}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{B20268CF-96D1-40C7-8DBE-8C86A2513FE0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{0C555C65-6AF4-452C-AB5F-CC19557E866F}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A0666E92-7E8C-4B84-8C03-080D5E4195CC}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D129E8AB-4415-4E40-9F81-83531CFB41F9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{3B732349-2515-4732-B59A-38931DC10F6B}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{C2951979-BBCB-4820-8251-B3DF93AF14C2}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{DD62A061-449D-43F1-AD2A-2EEACC50976F}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FD0F5C46-9218-4E69-8FA2-474CD7BC72F0}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{9CCAC90C-093B-4AB1-98D0-163631DFD74B}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{95DB71EE-411A-49BA-A731-CB8A2F74BC17}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{D6811DD7-6238-4B1A-967D-F95DD188A133}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20B44AFA-9105-4534-A59F-DFDFB302FAC7}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9E3632AB-229A-402F-B3FB-C8681AE4AAE8}] => (Allow) C:\Apps\OpenShot Video Editor\openshot-qt.exe (OpenShot Studios, LLC) [File not signed]
FirewallRules: [{621EE567-2F7E-492B-B6F0-1138B98A55B8}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{4B132C24-C85B-40CA-AEAC-D510015A87A9}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{945B6EB8-90D8-4B2C-AACE-1796ECEB8458}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1B052AB9-1AF2-474F-AE42-AF798ADC2222}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{2E6C29F0-5475-4124-8D14-429661BB0DAD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{76D426C6-A71C-44F8-8F99-F068D9DFB0A3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8DA73F52-560F-4BB8-972D-B65E9965B84F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{64FD2635-E8E0-48EA-876D-9BC5DD0B385A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{44218C9C-8744-4CE5-9527-9561286B49F3}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20E0726A-3A84-4FE2-B1D6-5722829224BC}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{38CC7DAD-F41D-4815-B2DD-C5054F714A12}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{EB2B0FEB-E85D-412E-AC83-B077B0820CF1}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2E5F75BA-FA35-4335-9A30-D5999D225484}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{B5F745BE-5586-4F9F-B02E-852603373D72}] => (Allow) C:\Apps\VPN Unlimited\vpn-unlimited.exe (KeepSolid Inc. -> KeepSolid Inc.)
FirewallRules: [{C684FA27-1DE3-4E44-9FC6-F8375FE1D789}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{EE12B768-6DFA-4485-95BF-1B191287C9D2}] => (Allow) C:\Apps\VPN Unlimited\openvpn.exe (The OpenVPN Project) [File not signed]
FirewallRules: [{117D2473-215F-4D35-A9A5-BC336929576F}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{9BA7963C-4252-4672-933E-01D102948686}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{485D7C66-B044-4422-98A8-74C0DAE44916}] => (Allow) C:\Apps\Opera\81.0.4196.60\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{CB05A3B9-1319-432D-B0E2-7EA0D4409545}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7B75F966-CFA7-471D-AF2A-0C7FD29791BC}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7FA78A47-7EC4-422B-BD62-E71D4949D388}] => (Allow) C:\Apps\Opera\82.0.4227.23\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{3D86718C-D9C9-42BA-A35F-9007ABBD6DCE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9EC232AE-64D9-4FD4-A2C4-D8C36B1CC5C5}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BD1C2F11-8D76-4D6D-A358-5161945B312A}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{24E96687-C345-4D44-AA47-D284FA9C9917}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{89772403-68C4-4909-8086-C07BDEAC31D6}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{49DF74A7-A78B-4D02-9173-B5E4C799BDEF}] => (Allow) C:\Apps\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1F48E102-ACEB-45E1-A9BD-554A2CE4BEA0}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FE96EC2D-D746-4BF8-8C4C-9BDCE08E7981}] => (Allow) C:\Apps\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1C69543C-AA6D-46C5-8963-31588D1B7935}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{F5741693-D953-4CDC-966C-74F1BF12FB51}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{248EDD92-E95D-4D56-9B74-72C65FE5419F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1016BCD5-2A82-4C71-BDCE-F69B0385A7C5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{65856598-1C37-479A-A24E-2E5BA287B025}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{123C9AF4-2713-4B04-979E-9D5CFD06311D}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.53\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{274FC037-257D-4B7C-8690-48A34F93A3CD}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{3347EECF-B73E-41A2-9070-3AE09EAF384E}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{4ADDF839-9359-43CA-AEAD-6D224D39F98D}] => (Block) C:\Program Files\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)

==================== Restore Points =========================

14-12-2021 22:44:48 Instalační služba modulů systému Windows
14-12-2021 22:48:29 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (12/15/2021 02:04:36 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: TMT-DESKTOP)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (12/15/2021 02:04:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoAD.exe, verze: 1.0.0.0, časové razítko: 0x619df9a9
Název chybujícího modulu: SensorsSdk.dll, verze: 0.0.0.0, časové razítko: 0x61837544
Kód výjimky: 0xc0000409
Posun chyby: 0x00163f9f
ID chybujícího procesu: 0x3238
Čas spuštění chybující aplikace: 0x01d7f1b43d29d5bd
Cesta k chybující aplikaci: C:\Apps\Wondershare\MobileTrans\AutoAD.exe
Cesta k chybujícímu modulu: C:\Apps\Wondershare\MobileTrans\SensorsSdk.dll
ID zprávy: 641439c4-884d-44a5-8733-74f81105934a
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/15/2021 02:04:09 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoAD.exe, verze: 1.0.0.0, časové razítko: 0x619df9a9
Název chybujícího modulu: SensorsSdk.dll, verze: 0.0.0.0, časové razítko: 0x61837544
Kód výjimky: 0xc0000409
Posun chyby: 0x00163f9f
ID chybujícího procesu: 0x1f30
Čas spuštění chybující aplikace: 0x01d7f1b438d91af5
Cesta k chybující aplikaci: C:\Apps\Wondershare\MobileTrans\AutoAD.exe
Cesta k chybujícímu modulu: C:\Apps\Wondershare\MobileTrans\SensorsSdk.dll
ID zprávy: 46c29d3c-0bb6-4dac-a7dd-e51e45c1bdde
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/15/2021 02:02:54 PM) (Source: SecurityCenter) (EventID: 18) (User: )
Description: Službě Centrum zabezpečení Windows se nepodařilo načíst instance objektu FirewallProduct z úložiště dat.

Error: (12/15/2021 09:33:23 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: TMT-DESKTOP)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (12/15/2021 09:32:59 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoAD.exe, verze: 1.0.0.0, časové razítko: 0x619df9a9
Název chybujícího modulu: SensorsSdk.dll, verze: 0.0.0.0, časové razítko: 0x61837544
Kód výjimky: 0xc0000409
Posun chyby: 0x00163f9f
ID chybujícího procesu: 0x49a0
Čas spuštění chybující aplikace: 0x01d7f18e595b5a74
Cesta k chybující aplikaci: C:\Apps\Wondershare\MobileTrans\AutoAD.exe
Cesta k chybujícímu modulu: C:\Apps\Wondershare\MobileTrans\SensorsSdk.dll
ID zprávy: ca7a6b9c-f290-437d-8b06-a529658e0aff
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/15/2021 09:32:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AutoAD.exe, verze: 1.0.0.0, časové razítko: 0x619df9a9
Název chybujícího modulu: SensorsSdk.dll, verze: 0.0.0.0, časové razítko: 0x61837544
Kód výjimky: 0xc0000409
Posun chyby: 0x00163f9f
ID chybujícího procesu: 0x252c
Čas spuštění chybující aplikace: 0x01d7f18e56b11e15
Cesta k chybující aplikaci: C:\Apps\Wondershare\MobileTrans\AutoAD.exe
Cesta k chybujícímu modulu: C:\Apps\Wondershare\MobileTrans\SensorsSdk.dll
ID zprávy: cee73605-87bb-45ed-8aac-530699b1af52
Úplný název chybujícího balíčku: 
ID aplikace související s chybujícím balíčkem:

Error: (12/15/2021 01:31:30 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 15516


System errors:
=============
Error: (12/15/2021 01:28:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba VPN Unlimited Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (12/15/2021 01:28:34 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Apple Mobile Device Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (12/15/2021 01:20:45 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba RzKLService byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/15/2021 01:20:44 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba WD Drive Manager byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/15/2021 01:20:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Wondershare Application Update Service 3.0 byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/15/2021 01:20:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba WD Drive Manager Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/15/2021 01:20:43 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Razer Central Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/15/2021 01:20:43 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.


CodeIntegrity:
===============
Date: 2021-12-15 17:34:29
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Windows\System32\iseguard64.dll that did not meet the Microsoft signing level requirements.

Date: 2021-12-15 17:34:29
Description: 
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-12-15 17:33:09
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info =========================== 

BIOS: American Megatrends Inc. 2801 12/14/2015
Motherboard: ASUSTeK COMPUTER INC. A88XM-A
Processor: AMD Athlon(tm) X4 870K Quad Core Processor 
Percentage of memory in use: 47%
Total physical RAM: 16326.13 MB
Available physical RAM: 8562.83 MB
Total Virtual: 36566.13 MB
Available Virtual: 26803.58 MB

==================== Drives ================================

Drive c: (SYSTEM) (Fixed) (Total:221.81 GB) (Free:13.79 GB) NTFS
Drive e: (DROPBOX_SG) (Fixed) (Total:62.49 GB) (Free:22.41 GB) NTFS
Drive f: (GAMES_SG) (Fixed) (Total:195.31 GB) (Free:1.68 GB) NTFS
Drive g: (4TB_RPG_AUDIO) (Fixed) (Total:500 GB) (Free:17.55 GB) NTFS
Drive h: (MOVIES_SG) (Fixed) (Total:673.71 GB) (Free:30.88 GB) NTFS
Drive i: (4TB_ANT) (Fixed) (Total:678.01 GB) (Free:7.32 GB) NTFS
Drive k: (4TB_VERU) (Fixed) (Total:500 GB) (Free:20.05 GB) NTFS
Drive l: (ISO) (Fixed) (Total:931.51 GB) (Free:112.43 GB) NTFS
Drive p: (pCloud Drive) (Removable) (Total:7 GB) (Free:4.13 GB) exFAT
Drive q: (4TB_FOTO) (Fixed) (Total:2048 GB) (Free:28.39 GB) NTFS

\\?\Volume{041669bd-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{5a2f1b75-7cf3-dc65-6c28-27ec9b597b0b}\ () (Fixed) (Total:29.38 GB) (Free:0 GB) NTFS
\\?\Volume{041669bd-0000-0000-0000-e09237000000}\ () (Fixed) (Total:0.81 GB) (Free:0.38 GB) NTFS

==================== MBR & Partition Table ====================
Attempted reading MBR returned 0 bytes.
 Could not read MBR for disk 4.

==================== End of Addition.txt =======================