Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

problemy s antivirusom - Blokovanie

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
marsell2607
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 21 led 2014 01:35

problemy s antivirusom - Blokovanie

#1 Příspěvek od marsell2607 »

ahojte,
včera mi vyhodilo vírus nejakého trojana vo windows defender a všimol som si že moj ESET bol neaktívny, pýtal si restart po aktualizacii, to som spravil. Ale antivirus bol stale neaktivny a stale mi pisalo ze je neaktivny.
Tak som ho preinstaloval, aktivoval, aktualizoval a po restarte mi nejde vobec uz spustit. Snažil som sa ešte opraviť inštaláciu ale niečo mi blokuje DLL súbory.

Priládám log, prosím o pomoc a kontrolu.

Dakujem.

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-03-2021
Ran by Marcel (26-03-2021 07:39:45)
Running from C:\Users\Marcel\OneDrive\Počítač
Windows 10 Pro Version 2004 19041.867 (X64) (2020-10-01 12:49:53)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1514861923-3393839258-3891969025-500 - Administrator - Enabled) => C:\Users\Administrator
DefaultAccount (S-1-5-21-1514861923-3393839258-3891969025-503 - Limited - Disabled)
Guest (S-1-5-21-1514861923-3393839258-3891969025-501 - Limited - Disabled)
marce (S-1-5-21-1514861923-3393839258-3891969025-1002 - Limited - Disabled)
Marcel (S-1-5-21-1514861923-3393839258-3891969025-1001 - Administrator - Enabled) => C:\Users\Marcel
WDAGUtilityAccount (S-1-5-21-1514861923-3393839258-3891969025-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Internet Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {D426EE12-AE7E-4602-F40F-BBCA8137EB0B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Ace Combat 7 - Skies Unknown (HKLM-x32\...\{F0E0FFCA-FCC6-4584-8940-DB5EDCD55AFB}_is1) (Version: - BANDAI NAMCO)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: - Adobe)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_1) (Version: 20.0.1 - Adobe Systems Incorporated)
Adobe Reader 9 (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-A90000000001}) (Version: 9.0.0 - Adobe Systems Incorporated)
Age of Empires III Definitive Edition (HKLM-x32\...\Age of Empires III Definitive Edition_is1) (Version: - )
Android Studio (HKLM\...\Android Studio) (Version: 3.3 - Google LLC)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.54.1 - Asmedia Technology)
Assassins Creed III Remastered (HKLM-x32\...\Assassins Creed III Remastered_is1) (Version: - )
Assassin's Creed Odyssey (HKLM-x32\...\{B7EC622B-1979-450E-8281-C5648506DB83}_is1) (Version: - Ubisoft)
Assassins Creed Valhalla (HKLM-x32\...\Assassins Creed Valhalla_is1) (Version: - )
Asterix & Obelix XXL 2 (HKLM-x32\...\1858508334_is1) (Version: XXL 2 v0.41 - GOG.com)
Batman Arkham Knight (HKLM-x32\...\{0F4673C2-B7F4-4771-96FD-1AB79B1C1923}_is1) (Version: - Rocksteady Studios)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ V (HKLM-x32\...\{e26b382f-e945-4f70-9318-121b683f1d61}) (Version: 1.0.64.43202 - Electronic Arts)
Bethesda.net Launcher (HKLM-x32\...\{3448917E-E4FE-4E30-9502-9FD52EABB6F5}_is1) (Version: 1.48.2 - Bethesda Softworks)
Black Mesa (HKLM-x32\...\Black Mesa_is1) (Version: - )
Booking (HKLM-x32\...\{13D4CD54-EA09-4FDB-B979-8B2BC0F020CA}_is1) (Version: 2.0.701 - Booking)
Call of Duty Black Ops 4 (HKLM-x32\...\Call of Duty Black Ops 4) (Version: - Blizzard Entertainment)
Call of Duty Black Ops Cold War (HKLM-x32\...\Call of Duty Black Ops Cold War) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
Canon MF Toolbox 4.9.1.1.mf18 (HKLM-x32\...\{6767DFEE-8909-453A-B553-C7693912B2EB}) (Version: 4.9.1.1.mf18 - CANON INC.)
Canon MF4700 Series (HKLM\...\{47A8DB42-4E21-4d55-9931-D4F44CC3F03B}) (Version: 4.1.0.1 - CANON INC.)
cFosSpeed v10.27 (HKLM\...\cFosSpeed) (Version: 10.27 - cFos Software GmbH, Bonn)
CPUID CPU-Z MSI 1.86 (HKLM\...\CPUID CPU-Z MSI_is1) (Version: 1.86 - CPUID, Inc.)
CPUID HWMonitor 1.43 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.43 - CPUID, Inc.)
Crash Bandicoot N Sane Trilogy (HKLM-x32\...\Crash Bandicoot N Sane Trilogy_is1) (Version: - )
CrystalDiskInfo 7.6.0 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.6.0 - Crystal Dew World)
CrystalDiskMark 5.5.0 (HKLM\...\CrystalDiskMark5_is1) (Version: 5.5.0 - Crystal Dew World)
Cyberpunk 2077 (HKLM-x32\...\Cyberpunk 2077_is1) (Version: - )
Death Stranding (HKLM-x32\...\{86861D6D-1293-421A-8853-2C7EF85CF5B6}_is1) (Version: - KOJIMA PRODUCTIONS)
Discord (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Dragon Center (HKLM-x32\...\{B252FABF-9582-4824-B02B-6D2DC93685C7}}_is1) (Version: 1.0.0.21 - MSI)
DS502 GAMING Headset (HKLM-x32\...\{71B53BA8-4BE3-49AF-BC3E-07F392006620}) (Version: 1.00.0019 - MSI Co., LTD)
E.M.Total Video Converter 3.20 3.20 (HKLM-x32\...\E.M.Total Video Converter 3.20 3.20) (Version: - )
Epic Games Launcher (HKLM-x32\...\{0E63B233-DC24-442C-BD38-0B91D90FEC5B}) (Version: 1.1.167.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESET Security (HKLM\...\{B489BC2D-0079-4631-97BF-CA2378299D43}) (Version: 11.0.159.9 - ESET, spol. s r.o.)
Far Cry New Dawn (HKLM-x32\...\Far Cry New Dawn_is1) (Version: - )
FastShare.cz verzia 2.3.1 (HKLM-x32\...\FastShare.cz_is1) (Version: 2.3.1 - )
FlixiCam 1.3.1 (HKLM-x32\...\FlixiCam) (Version: 1.3.1 - FlixiCam)
Forza Horizon 4 Ultimate Edition MULTi16 - ElAmigos verze 1.332.904.2 (HKLM-x32\...\{236DFCEC-29C2-4C1B-8598-32308D2B7BAB}_is1) (Version: 1.332.904.2 - Microsoft)
Futuremark SystemInfo (HKLM-x32\...\{2B738B9D-A2E2-457E-B2B3-2810D65B1F0D}) (Version: 5.15.699.0 - Futuremark)
Gaming Mouse (HKLM-x32\...\Gaming Mouse 3) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 89.0.4389.90 - Google LLC)
Grand Theft Auto V (HKLM-x32\...\{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.2189.0 - Rockstar Games)
Heavy Rain (HKLM-x32\...\{EE94E976-82B0-470C-97A8-ADF41EF11F2A}_is1) (Version: - Quantic Dream)
Hitman 2 (HKLM-x32\...\{F7E0BCEB-1F73-468C-BC5B-CFD39EC31149}_is1) (Version: - IO Interactive)
Hitman 3 (HKLM-x32\...\Hitman 3_is1) (Version: - )
Horizon Zero Dawn (HKLM-x32\...\Horizon Zero Dawn_is1) (Version: - )
HyperX NGenuity Software (HKLM-x32\...\{28211B6A-65EE-4713-8677-E8D41349A122}_is1) (Version: 5.2.8.0 - HyperX)
Chrome Remote Desktop Host (HKLM-x32\...\{2E2C5B04-0539-43B0-BC16-EF1B7DFF03A5}) (Version: 89.0.4389.25 - Google LLC)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1842.12.0.1168 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.7.0.1006 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{99ee3c29-c7cd-450f-8db9-d43cc49de1c7}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000070-0200-1033-84C8-B8D95FA3C8C3}) (Version: 20.70.0 - Intel Corporation)
Intel® Hardware Accelerated Execution Manager (HKLM\...\{73250D12-B600-4ED6-AFC0-10D9D8EDA745}) (Version: 7.3.2 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{c30dc778-ac13-4f91-9045-fea2331ceb2e}) (Version: 10.1.17711.8088 - Intel(R) Corporation) Hidden
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{AA90D357-23D3-44C1-954D-7105B0C08F38}) (Version: 17.7.0.1006 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{f8c930bd-0a68-425f-8c11-87723d1e2c97}) (Version: 20.90.0 - Intel Corporation)
Java 8 Update 271 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180271F0}) (Version: 8.0.2710.9 - Oracle Corporation)
Java SE Development Kit 7 Update 80 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170800}) (Version: 1.7.0.800 - Oracle)
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lazesoft Recover My Password version 4.3 Home Edition (HKLM-x32\...\LS-C4DC987A-47E2-487C-9F63-7E1DB5F88FC3_is1) (Version: 4.3 - Lazesoft)
MAMP & MAMP PRO version 3.3.1 (HKLM-x32\...\{A62E77D4-9B74-4CA0-A254-EFE711F7A298}_is1) (Version: 3.3.1 - appsolute Gmbh)
Marvels Avengers (HKLM-x32\...\{D32797BD-CECF-41EE-ADAB-300B757C75AF}_is1) (Version: - Square Enix)
Metro Exodus (HKLM-x32\...\{F25D08D9-EBE0-4C15-AAD2-50B446E85B17}_is1) (Version: - 4A Games)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 89.0.774.57 - Microsoft Corporation)
Microsoft Office 2016 Professional Plus - sk-sk (HKLM\...\ProPlusRetail - sk-sk) (Version: 16.0.13801.20360 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\OneDriveSetup.exe) (Version: 21.030.0211.0002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1514861923-3393839258-3891969025-500\...\OneDriveSetup.exe) (Version: 21.030.0211.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Monster Hunter World (HKLM-x32\...\Monster Hunter World_is1) (Version: - )
Mortal Shell (HKLM-x32\...\Mortal Shell_is1) (Version: - )
Mozilla Firefox 76.0.1 (x64 sk) (HKLM\...\Mozilla Firefox 76.0.1 (x64 sk)) (Version: 76.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 76.0.1 - Mozilla)
MSI MysticLight (HKLM-x32\...\{93874B70-6C5E-446A-AF4D-E5AC776A0386}}_is1) (Version: 3.0.0.46 - MSI)
MX vs ATV All Out 2020 AMA Pro Motocross Championship (HKLM-x32\...\MX vs ATV All Out 2020 AMA Pro Motocross Championship_is1) (Version: - )
NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles)
Next Car Game Wreckfest MULTi12 - ElAmigos version 1.268578 (HKLM-x32\...\{82B09F3C-8719-4BFB-9E5C-1A4E0FDDECEF}_is1) (Version: 1.268578 - THQ Nordic)
NVIDIA FrameView SDK 1.1.4923.29548709 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29548709 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.21.0.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.21.0.36 - NVIDIA Corporation)
NVIDIA Grafický ovládač 461.92 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 461.92 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.38.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.40 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NVIDIA USBC Driver 1.46.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.46.831.832 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 24.0.3 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13801.20274 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13801.20274 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13801.20360 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.90.45798 - Electronic Arts, Inc.)
PC Building Simulator Razer Workshop (HKLM-x32\...\PC Building Simulator Razer Workshop_is1) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.8 - Google, Inc.)
PingPlotter 5 (HKLM-x32\...\{36813793-6997-4A21-A284-D80DA10F80F9}) (Version: 5.18.3.8189 - Pingman Tools, LLC) Hidden
PingPlotter 5 (HKLM-x32\...\PingPlotter 5 5.18.3.8189) (Version: 5.18.3.8189 - Pingman Tools, LLC)
ProtonVPN (HKLM-x32\...\{B351FE8E-8AA4-4E66-91C2-2082C21F9086}) (Version: 1.13.4 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.13.4) (Version: 1.13.4 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{C23BCE3A-FD25-48BA-948E-2CE94576F983}) (Version: 1.0.1 - ProtonVPN AG)
PUBG Lite (HKLM-x32\...\PUBG Lite_is1) (Version: 1.0.0.7 - )
qBittorrent 4.3.1 (HKLM-x32\...\qBittorrent) (Version: 4.3.1 - The qBittorrent project)
RAGE 2 (HKLM-x32\...\RAGE 2_is1) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8581 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2) (Version: 1.0.1355.18 - Rockstar Games)
Remnant From The Ashes (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\Remnant From The Ashes) (Version: - HOODLUM)
RIDE 3 (HKLM-x32\...\RIDE 3_is1) (Version: - )
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.33.319 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.7.5 - Rockstar Games)
Sekiro Shadows Die Twice (HKLM-x32\...\Sekiro Shadows Die Twice_is1) (Version: - )
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Speedtest by Ookla (HKLM\...\{CFF1450F-71E9-4286-82AE-99E6D797CAD3}) (Version: 1.1.23.001 - Ookla)
Star Wars Jedi Fallen Order (HKLM-x32\...\Star Wars Jedi Fallen Order_is1) (Version: - )
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Streamlabs OBS 0.11.11 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.11.11 - General Workings, Inc.)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH)
Tom Clancys Ghost Recon Wildlands MULTi16 - ElAmigos verze 1.29 (HKLM-x32\...\{C1B8475A-9A07-4043-B95E-4A06FEA79F0C}_is1) (Version: 1.29 - Ubisoft)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.50 - Ghisler Software GmbH)
Total Video Converter 3.21 090220 (HKLM-x32\...\Total Video Converter 3.21_is1) (Version: - EffectMatrix Inc.)
Twitch (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\{DEE70742-F4E9-44CA-B2B9-EE95DCF37295}) (Version: 8.0.0 - Twitch Interactive, Inc.)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 50.0 - Ubisoft)
Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb)
V Rally 4 (HKLM-x32\...\V Rally 4_is1) (Version: - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Wargaming.net Game Center (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\Wargaming.net Game Center) (Version: 21.1.1.4281 - Wargaming.net)
WebAdvisor od McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.582 - McAfee, LLC)
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Wolfenstein: Youngblood (International Version) (HKLM-x32\...\Wolfenstein: Youngblood (International Version)) (Version: - Bethesda Softworks)
World of Tanks Classic (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\WOTCL.WW.PRODUCTION) (Version: - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
WWE 2K19 (HKLM-x32\...\WWE 2K19_is1) (Version: - )
Xvid Video Codec (HKLM-x32\...\Xvid Video Codec 1.3.2) (Version: 1.3.2 - Xvid Team)

Packages:
=========
Age of Empires: Definitive Edition -> C:\Program Files\WindowsApps\Microsoft.MSDallas_1.3.19864.2_x64__8wekyb3d8bbwe [2019-03-06] (0)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.7.2028.0_x64__rz1tebttyb220 [2021-03-19] (Dolby Laboratories)
EasyMail for Gmail -> C:\Program Files\WindowsApps\61545TimGrabinat.wAPPerforGmail_2.5.9.0_x64__rcb0qdgx4z9ca [2019-02-10] (0)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2018-12-28] (Fitbit)
Forza Horizon 4 -> D:\Games\Forza Horizon 4 Ultimate Edition\Fh4 [2020-09-14] (Microsoft Studios)
Forza Horizon 4 Fortune Island -> D:\Games\Forza Horizon 4 Ultimate Edition\FH4_FortuneIsland [2020-09-14] (Microsoft Studios)
Forza Horizon 4 LEGO Speed Champions -> D:\Games\Forza Horizon 4 Ultimate Edition\FH4_Lego [2020-09-14] (Microsoft Studios)
MELCloud -> C:\Program Files\WindowsApps\MITSUBISHIELECTRICEUROPEB.MELCloud_1.19.0.8_neutral__9nshrcbqnjy6c [2019-12-01] (MITSUBISHI ELECTRIC EUROPE B.V.)
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt [2021-03-17] (Facebook Inc) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-21] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-03-26] (Microsoft Studios) [MS Ad]
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_21.10208.5605.0_x64__8wekyb3d8bbwe [2021-03-10] (Microsoft Corporation)
Microsoft Wireless Display Adapter -> C:\Program Files\WindowsApps\Microsoft.SurfaceWirelessDisplayAdapter_4.227.139.0_x64__8wekyb3d8bbwe [2020-11-26] (Microsoft Corporation) [Startup Task]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-15] (Netflix, Inc.)
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_3.27.1.0_x64__nfy108tqq3p12 [2021-02-21] (Thumbmunkeys Ltd)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.19.234.0_x64__dt26b99r8h8gj [2021-03-26] (Realtek Semiconductor Corp)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1514861923-3393839258-3891969025-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\Marcel\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-1514861923-3393839258-3891969025-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems Incorporated -> Adobe Systems)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-08-07] (Intel(R) Rapid Storage Technology -> )
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-03-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-03-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-08-07] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers3: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2021-03-11] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-03-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [UnlockerShellExtension] -> {DDE4BEEB-DDE6-48fd-8EB5-035C09923F83} => C:\Program Files\Unlocker\UnlockerCOM.dll [2010-07-15] (Empty Loop -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\system32\xvidvfw.dll [255488 2011-05-30] () [File not signed]
HKLM\...\Drivers32: [vidc.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [240640 2011-05-30] () [File not signed]

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikácie Chrome\Vzdialená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp

==================== Loaded Modules (Whitelisted) =============

2021-03-17 17:03 - 2021-03-17 17:03 - 055265280 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\addon.node
2021-03-17 17:03 - 2021-03-17 17:03 - 000762880 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\keytar.node
2021-03-17 17:03 - 2021-03-17 17:03 - 000750080 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\logging.node
2020-09-16 18:34 - 2020-09-16 18:34 - 001037824 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\spellchecker_win.node
2021-03-17 17:03 - 2021-03-17 17:03 - 001218560 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\systeminfo.node
2020-09-16 18:34 - 2020-09-16 18:34 - 000614912 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\windows.applicationmodel.node
2020-09-16 18:34 - 2020-09-16 18:34 - 000202240 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\windows.networking.pushnotifications.node
2020-09-16 18:34 - 2020-09-16 18:34 - 001144832 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\windows.storage.node
2020-09-16 18:34 - 2020-09-16 18:34 - 000681984 _____ () [File not signed] \\?\C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_950.7.118.0_x64__8xx8rvfyw5nnt\app\resources\app.asar.unpacked\build\windows.ui.notifications.node
2019-01-04 19:06 - 2009-06-23 04:42 - 000043008 _____ () [File not signed] C:\Program Files (x86)\FastShare\libgcc_s_dw2-1.dll
2019-01-04 19:06 - 2009-01-10 20:32 - 000011362 _____ () [File not signed] C:\Program Files (x86)\FastShare\mingwm10.dll
2020-09-22 16:09 - 2016-07-26 14:10 - 000084992 _____ () [File not signed] C:\Program Files (x86)\HyperX\NGenuity\HidDevice.dll
2019-01-26 17:44 - 2017-08-02 14:48 - 000237568 _____ () [File not signed] C:\Program Files (x86)\MSI\MysticLight\LEDControl.dll
2019-01-11 16:10 - 2014-11-10 03:53 - 000247296 ____N (C-MEDIA Electronics INC.) [File not signed] C:\Program Files\DS502 GAMING Headset\CPL\Driver\x64\vista\osConfLib.dll
2019-01-04 19:06 - 2012-11-26 13:55 - 000288256 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\FastShare\plugins\imageformats\qjpeg4.dll
2019-01-04 19:06 - 2013-05-20 16:11 - 002892800 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\FastShare\QtCore4.dll
2019-01-04 19:06 - 2012-11-26 10:46 - 010153984 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\FastShare\QtGui4.dll
2019-01-04 19:06 - 2012-11-26 10:23 - 001306624 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\FastShare\QtNetwork4.dll
2019-01-04 19:06 - 2012-11-26 11:04 - 004023808 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\FastShare\QtXmlPatterns4.dll
2010-04-04 23:08 - 2010-04-04 23:08 - 001253376 _____ (Florian Gilles) [File not signed] C:\Program Files\NetSpeedMonitor\nsm.dll
2018-12-28 03:50 - 2020-03-16 14:05 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-12-21 15:54 - 2020-03-16 14:06 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-12-21 15:54 - 2020-01-29 18:38 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2021-01-14 21:10 - 2020-01-29 18:38 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll
2019-01-26 17:44 - 2016-10-03 13:43 - 000399872 _____ (TODO: <公司名稱>) [File not signed] C:\Program Files (x86)\MSI\MysticLight\Lib\SDKDLL.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\S-1-5-21-1514861923-3393839258-3891969025-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2021-03-26] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\ssv.dll [2020-11-08] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2021-03-26] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_271\bin\jp2ssv.dll [2020-11-08] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-03-05] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 08:31 - 2018-09-15 08:31 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1514861923-3393839258-3891969025-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Marcel\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg
HKU\S-1-5-21-1514861923-3393839258-3891969025-500\Control Panel\Desktop\\Wallpaper -> C:\Users\Administrator\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img0.jpg
DNS Servers: 192.168.3.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

Network Binding:
=============
Ethernet 2: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
Ethernet: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)
Wi-Fi: cFosSpeed for faster Internet connections (NDIS 6) -> cfosspeed (enabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{5A956F9F-E979-4807-9D1A-0B0A27C65ED5}] => (Allow) C:\Program Files (x86)\PingPlotter 5\PingPlotter.exe (Pingman Tools -> )
FirewallRules: [{C9C733D9-A07F-4C95-9EC7-214CD8B277DF}] => (Allow) C:\Program Files (x86)\PingPlotter 5\PingPlotter.exe (Pingman Tools -> )
FirewallRules: [{DD33C96E-2061-4CA0-875F-D06CA044B230}] => (Allow) D:\Games\CS GO\steamapps\common\Fall Guys\FallGuys_client.exe => No File
FirewallRules: [{6E5DDB83-3281-46A8-BFFA-5C7BDFE603AB}] => (Allow) D:\Games\CS GO\steamapps\common\Fall Guys\FallGuys_client.exe => No File
FirewallRules: [{7D28D554-B7FA-4349-A331-AA52C9284F0A}] => (Allow) D:\Games\CS GO\steamapps\common\Grounded\Grounded.exe => No File
FirewallRules: [{E312FDC9-02C4-49AB-AC2C-D336109723AE}] => (Allow) D:\Games\CS GO\steamapps\common\Grounded\Grounded.exe => No File
FirewallRules: [{B78E0AB6-8D2A-4BE5-B419-0504943CAAE4}] => (Allow) D:\Games\CS GO\steamapps\common\The Forest\TheForestVR.exe => No File
FirewallRules: [{4DBCE70D-0418-4838-9B9B-02582F22AFC0}] => (Allow) D:\Games\CS GO\steamapps\common\The Forest\TheForestVR.exe => No File
FirewallRules: [{3EE85E4B-9FE3-4C03-9C34-78A28404F915}] => (Allow) D:\Games\CS GO\steamapps\common\The Forest\TheForest.exe => No File
FirewallRules: [{FB84400F-634B-4789-A2FC-8D3B2D792C3E}] => (Allow) D:\Games\CS GO\steamapps\common\The Forest\TheForest.exe => No File
FirewallRules: [{B914156B-1301-47E7-B6F2-55D2690C4AEF}] => (Allow) D:\Games\CS GO\steamapps\common\RoadRedemption\RoadRedemption.exe => No File
FirewallRules: [{565DFE09-0B49-4E94-B7F6-577FC279B2B7}] => (Allow) D:\Games\CS GO\steamapps\common\RoadRedemption\RoadRedemption.exe => No File
FirewallRules: [{1F8DA3D6-9F80-4745-8F36-9073764DAB04}] => (Allow) D:\Games\CS GO\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe => No File
FirewallRules: [{9B46B274-EA66-44C1-BFD9-687465E869E2}] => (Allow) D:\Games\CS GO\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe => No File
FirewallRules: [{659DD04D-3B7D-4BD2-AA13-C001D56D6E98}] => (Allow) E:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{3A094159-0E62-4528-A241-7DCE7F6590FF}] => (Allow) E:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{D36A95E6-405F-4C8B-A457-9FEAE759720A}] => (Allow) E:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{3588E09E-F4B7-4677-B8F1-4F6FA113404F}] => (Allow) E:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{4E280D24-C01D-48AB-8801-4C77EDC7CACD}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{BA7D7673-B103-4711-973F-D78859671C5E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{F51BADD4-6291-4B29-886A-09BA37A713F0}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{410DEF37-0C9B-4834-AFCF-5F845E06F062}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{376DE3B6-B8DA-4991-9C6D-71E4CA2E8770}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{4635854F-4405-40E9-9F9E-006509C95995}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{4AC6BD3B-73B5-41EB-BE45-38304C72AB50}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{325ECFD1-65BD-4DF5-A569-71F9E36FA06E}] => (Allow) E:\Games\FIFA 19\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{8C749871-75B7-4100-B489-84915A520834}] => (Allow) E:\Games\FIFA 19\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{B4841CC0-CDDE-47A1-9F7E-38C60B4FE22B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{060CF8D5-A61B-4335-9FA4-425BC888C6E0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AA3DAFF2-2DC0-4F37-A12F-35A8DF6F7F4B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{F77BF968-BF7C-48D9-BE0B-967C2B0EFAF8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{AD6DA623-01B1-497B-8DB3-314A46F3B33B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{1EAF4A0F-AF1B-4656-A9DA-A6ACE8E6C1EF}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{49938E99-7314-4EE2-9496-C7D5482EFF46}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{68D37953-7382-492D-B39D-B2875EE89B72}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{A1598D4F-80BB-4319-A1A1-5F9BAA93E564}] => (Allow) E:\Games\The Forest\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{97D6F4C0-118F-42E7-ACE4-EA026FA871C0}] => (Allow) E:\Games\The Forest\steamapps\common\The Forest\TheForest.exe () [File not signed]
FirewallRules: [{8B9B98E2-BE60-4EC8-A835-E7431B177613}] => (Allow) E:\Games\The Forest\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [{E53025C9-F459-4797-B4B2-A8B9523BF271}] => (Allow) E:\Games\The Forest\steamapps\common\The Forest\TheForestVR.exe () [File not signed]
FirewallRules: [{16986E0A-D801-47C7-85A5-3904CE620470}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{80C10D29-7E4C-4139-B8AC-D88A8B4D8311}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{48733285-2CED-4A0F-98CA-3C7848856DB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [{E39A9295-3C65-4991-A729-5D42AFD1F6FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x86\3DMark.exe => No File
FirewallRules: [{2A4A6687-6C42-4F4B-B358-248F01D23E99}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{FE41F130-F70C-4761-8FBF-19DAF17EA082}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\3DMark\bin\x64\3DMark.exe => No File
FirewallRules: [{B3356506-9423-4E46-9ECC-5689E4369341}] => (Allow) C:\Program Files (x86)\TorrentEasy\TorrentEasy.exe => No File
FirewallRules: [{2CA2927D-175C-4AB3-BA51-76025EC20888}] => (Allow) C:\Program Files (x86)\TorrentEasy\TorrentEasy.exe => No File
FirewallRules: [{A56AC488-0F71-4AE6-AB18-D236BB447F76}] => (Allow) E:\Games\Apex\EasyAntiCheat_launcher.exe => No File
FirewallRules: [{66513FFB-E81F-4A18-A0F1-1B646A39DAC9}] => (Allow) E:\Games\Apex\EasyAntiCheat_launcher.exe => No File
FirewallRules: [{F9AE25CF-5F20-4A1D-B5FB-5E8E6E3DFEA4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E4FEE959-F02A-48DA-8B9C-C281D50951C8}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3739CCB5-9574-47D0-AC11-0816A0B376B6}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\TQ_DX11.exe => No File
FirewallRules: [{068372FF-D318-42B0-8039-535C51D13346}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\TQ_DX11.exe => No File
FirewallRules: [{6C8DB6B9-F5C4-4338-ACB4-CAC80FCE7D69}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\TQ.exe () [File not signed]
FirewallRules: [{F7DC6466-DFB5-414D-8238-C398150A1B71}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\TQ.exe () [File not signed]
FirewallRules: [{64EE3DA9-E0E7-458D-9015-8A1C916F9F30}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe (Nordic Games) [File not signed]
FirewallRules: [{D77090D5-C80D-4887-AA6C-D18F0EDA187E}] => (Allow) E:\Games\Titan Quest\steamapps\common\Titan Quest Anniversary Edition\WorkshopTool\TQWorkshopTool.exe (Nordic Games) [File not signed]
FirewallRules: [{4DA43D19-D7A2-4782-8622-7506E22321E5}] => (Allow) C:\Users\Marcel\AppData\Local\Programs\Opera\67.0.3575.53\opera.exe => No File
FirewallRules: [{4FE5ACBB-BB24-4BD9-9104-2840B73E54EB}] => (Allow) C:\Users\Marcel\AppData\Local\Programs\Opera\71.0.3770.198\opera.exe => No File
FirewallRules: [{B0D936C9-739F-4D54-9F88-C28D4771C5A4}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Mortal Kombat 11\Binaries\Retail\MK11.exe (WB Games, Inc.) [File not signed]
FirewallRules: [{D293DFF2-EAFB-4C3B-8934-282F8EEC73FF}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Mortal Kombat 11\Binaries\Retail\MK11.exe (WB Games, Inc.) [File not signed]
FirewallRules: [{24696365-6664-4284-B8D1-EA757D8F640E}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Mortal Kombat 11\Binaries\Retail\MK11_DX12.exe (WB Games, Inc.) [File not signed]
FirewallRules: [{CA1A03D6-F560-48EA-95F1-8DB2D4F7CAD5}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Mortal Kombat 11\Binaries\Retail\MK11_DX12.exe (WB Games, Inc.) [File not signed]
FirewallRules: [{2BBE54F4-5BE2-459B-B1AA-B65C68EB9AC6}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{11FFA65E-735D-41D5-9A8E-B30123813344}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{D440200B-22CF-416C-A3EC-63DF1B48478B}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\FarCry5\bin\FarCry5.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{38A39E44-0ABD-41D0-B984-3E497561F3A6}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\FarCry5\bin\FarCry5.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{01FC9E25-BA9F-4BEE-B246-EA53C9EC4960}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\FarCry5\bin\ArcadeEditor64.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{EA2512B1-EE10-460F-971A-76309020C2B3}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\FarCry5\bin\ArcadeEditor64.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
FirewallRules: [{C6F0E180-526E-4C6C-B1A1-2BD618871326}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{71049D21-3684-4918-B4E3-CF3A90E6EE27}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Raft\Raft.exe () [File not signed]
FirewallRules: [{FF7ECF05-B808-4C3D-A1BD-F837E039474F}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Raft\Raft.exe () [File not signed]
FirewallRules: [{3CAC4CCF-2D22-434C-9B7F-1D81F15476E1}] => (Allow) G:\Star wars\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{D0BCF957-AB25-42C3-91CA-79103BAF9B77}] => (Allow) G:\Star wars\STAR WARS Battlefront II\starwarsbattlefrontii_trial.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{D4BF0531-8C79-4515-A60B-F908D3115B93}] => (Allow) G:\Star wars\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{73B1DF5D-E358-4C63-BE7C-AB84A6FDEDA4}] => (Allow) G:\Star wars\STAR WARS Battlefront II\starwarsbattlefrontii.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{F5435700-29EA-45AD-9F5D-2FF29CE58C41}] => (Allow) E:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{84D5943C-D3A0-48D0-A5F7-86414AE100E3}] => (Allow) E:\Games\Battlefield V\bfvTrial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{843335F1-6AB5-459B-8475-343E9B74E5A1}] => (Allow) E:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{0B483FAC-34C6-486B-96ED-777321A4BCFF}] => (Allow) E:\Games\Battlefield V\bfv.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{8A0A61B9-BADB-4AD8-AD17-96746B0ED953}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DD0AE24E-42CA-4531-A8EE-79E6B58A4C04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{363C152E-D92B-48C7-9458-CEF580E0F71A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{853DB7AE-C799-44B1-A60C-16CF993F717C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{30FFF2F6-12E8-4691-9957-CD904D360DCE}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\BloonsTD6\BloonsTD6.exe () [File not signed]
FirewallRules: [{F33BB033-0285-4CA9-8BD7-648EEA73EDB0}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\BloonsTD6\BloonsTD6.exe () [File not signed]
FirewallRules: [{224803E2-F994-47D2-8A85-01676FA3C5E0}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\89.0.4389.25\remoting_host.exe (Google LLC -> Google LLC)
FirewallRules: [{C56A53F9-E29D-4943-9A2C-314CE934A924}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2A01DC51-DC9A-4A16-88DF-0E79EE88669C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{AD59CC33-243C-4958-85CF-5B8EEA76A64D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E896667D-4860-4F56-B192-5548E5E72991}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B20D4E7A-14E2-44D2-8B4D-5C993C938DAE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C50C4BBB-EB07-4BD4-B04A-11CA3FEF9712}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{249FF0D2-58C9-422B-AA30-2C33B12998EC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{900A1893-6E4F-4ED8-80AC-1A5DE3E3139A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.154.592.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C51A9D1E-BD41-4EAB-B85E-EFBCF4DF3D24}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{6886C102-FEA5-4415-B91D-8A8754F9E780}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{389CC11A-125B-4997-9877-02C5D857607C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FD05E2AB-2BD5-42F9-B6AA-EC2929D27386}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{DCA4738A-164C-4EC2-92D5-87D16DC82571}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{030E6172-0846-45E1-B089-59CFEDE71A27}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Fall Guys\FallGuys_client.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{C8FF3B41-798B-4E07-B055-6B9D53A6DB74}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Fall Guys\FallGuys_client.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{DC42E8BB-3F8F-4A98-B0C1-849B30A68A61}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [{C5262BB4-E336-4AE2-8911-C3AFCDA6362E}] => (Allow) D:\Games\Mortal Kombat 11\steamapps\common\Fall Guys\FallGuys_client_game.exe () [File not signed]
FirewallRules: [TCP Query User{0D0E2DC6-3E54-49E0-84E9-8D76ED00F9C1}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{60EDA928-8EE3-48F4-86A0-3D174A8D09A1}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{59BB4054-BD2C-45F8-AD7F-1BF5632441B8}] => (Allow) LPort=26820
FirewallRules: [{553B54FA-1FB4-483C-8B4F-7FB04C9AE118}] => (Allow) LPort=26822

==================== Restore Points =========================

19-03-2021 08:22:55 Inštalátor modulov systému Windows

==================== Faulty Device Manager Devices ============

Name: Intel(R) Wireless-AC 9560
Description: Intel(R) Wireless-AC 9560
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Intel Corporation
Service: Netwtw08
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.


==================== Event log errors: ========================

Application errors:
==================
Error: (03/26/2021 07:31:54 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-profile-l1-1-0.dll.

Error: (03/26/2021 07:31:54 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-processthreads-l1-1-1.dll.

Error: (03/26/2021 07:31:53 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-processthreads-l1-1-0.dll.

Error: (03/26/2021 07:31:53 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-processenvironment-l1-1-0.dll.

Error: (03/26/2021 07:31:53 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-namedpipe-l1-1-0.dll.

Error: (03/26/2021 07:31:53 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-memory-l1-1-0.dll.

Error: (03/26/2021 07:31:52 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-localization-l1-2-0.dll.

Error: (03/26/2021 07:31:50 AM) (Source: MsiInstaller) (EventID: 11321) (User: DESKTOP-843F9OM)
Description: Product: ESET Security -- Chyba 1321. Inštalačná služba nemôže z dôvodu nedostatočných oprávnení upraviť súbor C:\Program Files\ESET\ESET Security\api-ms-win-core-libraryloader-l1-1-0.dll.


System errors:
=============
Error: (03/26/2021 07:37:14 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: 61545TimGrabinat.wAPPerforGmail_2.5.9.0_x64__rcb0qdgx4z9ca!App.AppX9f2ahs5rcq0q5h1gjrdbxbpfe40g0ez8.mca as Unavailable/Unavailable. The error:
"2147958106"
Happened while starting this command:
"C:\Program Files\WindowsApps\61545TimGrabinat.wAPPerforGmail_2.5.9.0_x64__rcb0qdgx4z9ca\EasyMailReLaunch.exe" -ServerName:App.AppXwqs3gyqv6xqhk5yctw8tnsjf4g2qs4cf.mca

Error: (03/26/2021 07:32:27 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXjytc7c0yvwb8n3cw0r82k4364sd1s7bv.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca

Error: (03/26/2021 07:31:30 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppX360dyffbd5crx5cph6sy881bkkccrbr0.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca

Error: (03/26/2021 07:31:24 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXjytc7c0yvwb8n3cw0r82k4364sd1s7bv.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca

Error: (03/26/2021 07:31:24 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppX360dyffbd5crx5cph6sy881bkkccrbr0.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\system32\backgroundTaskHost.exe" -ServerName:CortanaUI.AppXy7vb4pc2dr3kc93kfc509b1d0arkfb2x.mca

Error: (03/26/2021 07:31:22 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca

Error: (03/26/2021 07:31:09 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: 61545TimGrabinat.wAPPerforGmail_2.5.9.0_x64__rcb0qdgx4z9ca!App.AppX9f2ahs5rcq0q5h1gjrdbxbpfe40g0ez8.mca as Unavailable/Unavailable. The error:
"2147958106"
Happened while starting this command:
"C:\Program Files\WindowsApps\61545TimGrabinat.wAPPerforGmail_2.5.9.0_x64__rcb0qdgx4z9ca\EasyMailReLaunch.exe" -ServerName:App.AppXwqs3gyqv6xqhk5yctw8tnsjf4g2qs4cf.mca

Error: (03/26/2021 07:30:52 AM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-843F9OM)
Description: Unable to start a DCOM Server: Microsoft.Windows.Cortana_1.11.6.17763_neutral_neutral_cw5n1h2txyewy!CortanaUI.AppXynb3eakad12451rv00qxextfnce9sxb8.mca as Unavailable/Unavailable. The error:
"2147958031"
Happened while starting this command:
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca


Windows Defender:
================
Date: 2021-03-25 21:08:00
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Glupteba!ml
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\setup.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.333.1249.0, AS: 1.333.1249.0, NIS: 1.333.1249.0
Engine Version: AM: 1.1.17900.7, NIS: 1.1.17900.7

Date: 2021-03-25 21:07:50
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Glupteba!ml
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\setup.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.333.1249.0, AS: 1.333.1249.0, NIS: 1.333.1249.0
Engine Version: AM: 1.1.17900.7, NIS: 1.1.17900.7

Date: 2021-03-25 21:07:44
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Glupteba!ml
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\setup.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.333.1249.0, AS: 1.333.1249.0, NIS: 1.333.1249.0
Engine Version: AM: 1.1.17900.7, NIS: 1.1.17900.7

Date: 2021-03-25 21:07:41
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Glupteba!ml
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\setup.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.333.1249.0, AS: 1.333.1249.0, NIS: 1.333.1249.0
Engine Version: AM: 1.1.17900.7, NIS: 1.1.17900.7

Date: 2021-03-25 21:07:24
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Glupteba!ml
Severity: Závažná
Category: Trójsky kôň
Path: file:_H:\setup.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Security intelligence Version: AV: 1.333.1249.0, AS: 1.333.1249.0, NIS: 1.333.1249.0
Engine Version: AM: 1.1.17900.7, NIS: 1.1.17900.7

CodeIntegrity:
===============
Date: 2021-03-26 07:27:32
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.

Date: 2021-03-26 07:25:44
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume8\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.

Date: 2021-03-26 07:25:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume8\Program Files\ESET\ESET Security\vcruntime140.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2021-03-26 07:25:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume8\Program Files\ESET\ESET Security\msvcp140.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 1.00 09/07/2018
Motherboard: Micro-Star International Co., Ltd. MEG Z390 ACE (MS-7B12)
Processor: Intel(R) Core(TM) i7-9700K CPU @ 3.60GHz
Percentage of memory in use: 36%
Total physical RAM: 32697.02 MB
Available physical RAM: 20916.23 MB
Total Virtual: 37561.02 MB
Available Virtual: 22685.95 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.16 GB) (Free:271.79 GB) NTFS
Drive d: (SSD 1TB) (Fixed) (Total:931.5 GB) (Free:68.97 GB) NTFS
Drive e: (Nový zväzok) (Fixed) (Total:1863 GB) (Free:319.43 GB) NTFS
Drive g: (Msata) (Fixed) (Total:1863.01 GB) (Free:1270.38 GB) NTFS

\\?\Volume{84137028-56bb-4c79-b175-ffe32344640e}\ (Obnovenie) (Fixed) (Total:0.49 GB) (Free:0.07 GB) NTFS
\\?\Volume{37ced62e-90bf-4ad9-9cdb-d16a8c5c892a}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 0DD90BB1)

Partition: GPT.

==========================================================
Disk: 1 (Size: 1863 GB) (Disk ID: F674A8E6)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 0DD98BB2)

Partition: GPT.

==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 0DD9EBB2)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: problemy s antivirusom - Blokovanie

#2 Příspěvek od JaRon »

ahoj,
doporucujem:
1. odinstalovat ESET unistallerom od ESET-u v núdzovom rezime PC
2. vycistit PC s AVPTool
3. nainstalovat ESET s admin. pravami
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

marsell2607
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 21 led 2014 01:35

Re: problemy s antivirusom - Blokovanie

#3 Příspěvek od marsell2607 »

ahoj
1. odinstalovené cez eset unninstaller v núdzovom režime
2. vyčistené cez KVRT, našlo jedného trojského, trvalo to cca 90min
3. nainstaloval som to cez ,,spustiť ako správca'' spustilo sa to, dal som aktualizáciu a po reštarte zase to isté Eset sa nesputí a ani nejde spustiť. Antivirus je stiahnuty z esetu 64 bit verzia, v system tray nie je ani ikona, že vobec nejaký este mám.


Dakujem.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: problemy s antivirusom - Blokovanie

#4 Příspěvek od JaRon »

1. vycisti PC s CCleanerom, vcetne registrov
restart
2. ak bude mat ESET nadalej problem, vloz oba logy FRST - aktualne
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

marsell2607
Návštěvník
Návštěvník
Příspěvky: 26
Registrován: 21 led 2014 01:35

Re: problemy s antivirusom - Blokovanie

#5 Příspěvek od marsell2607 »

ahoj,
vyčistil som to a teraz mi to funguje.

Dakujem moc, ostatné veci by už mali byť ok?

dakujem.

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15213
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: problemy s antivirusom - Blokovanie

#6 Příspěvek od JaRon »

Malo by to byt OK
Rado sa stalo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno