Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Šmejdi

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Šmejdi

#1 Příspěvek od vcacky »

Všem hezký den, něco mi vlezlo do ntb a už nevím co s tím. Chrome jsem několikrát přeinstaloval, použil Malwarebytes a HitmanPro a furt to tam je. Viz obr. Zbavte mě toho :-)
Přílohy
šmejd1.jpg
šmejd1.jpg (22.56 KiB) Zobrazeno 1694 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#2 Příspěvek od Rudy »

Zdravím!
Dejte logy FRST+Addition: http://forum.viry.cz/viewtopic.php?f=24&t=132509 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#3 Příspěvek od vcacky »

Děkuji :-)
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-07-2020 01
Ran by vcack (16-07-2020 17:17:13)
Running from C:\Users\vcack\Downloads
Windows 10 Home Version 2004 19041.388 (X64) (2020-06-26 05:54:08)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4082645563-3176066660-1474954624-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4082645563-3176066660-1474954624-503 - Limited - Disabled)
Guest (S-1-5-21-4082645563-3176066660-1474954624-501 - Limited - Disabled)
vcack (S-1-5-21-4082645563-3176066660-1474954624-1001 - Administrator - Enabled) => C:\Users\vcack
WDAGUtilityAccount (S-1-5-21-4082645563-3176066660-1474954624-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.387 - Adobe)
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{06b2cd73-b5f5-47a1-9f49-23d0ef75d568}) (Version: 20.50.0 - Intel Corporation)
Backup and Sync from Google (HKLM\...\{01D33BEA-673C-439C-A7C7-DE5B236DB842}) (Version: 3.50.3166.0017 - Google, Inc.)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Dell Digital Delivery Service (HKLM-x32\...\{66E2407E-9001-483E-B2AA-7AEF97567143}) (Version: 3.6.1005.0 - Dell Products, LP)
Dell Mobile Connect Drivers (HKLM\...\{1E754E2C-CF3B-42CB-B36D-D560CEA96149}) (Version: 2.0.7811 - Screenovate Technologies Ltd.)
Dell SupportAssist (HKLM\...\{6D2933E3-DC42-44E5-B80E-DACDD64ADFF5}) (Version: 3.5.0.448 - Dell Inc.)
Dell SupportAssist Remediation (HKLM-x32\...\{8ce1a5ae-856e-4b8e-a0e8-27dd7a209276}) (Version: 3.3.0.4943 - Dell Inc.)
Dell Update - SupportAssist Update Plugin (HKLM\...\{EDE60887-F1EA-4304-A3E9-806D29EEE3FB}) (Version: 5.1.0.11858 - Dell Inc.) Hidden
Dell Update - SupportAssist Update Plugin (HKLM-x32\...\{9aec637d-a647-4f3b-998e-425f40e7dd50}) (Version: 5.1.0.11858 - Dell Inc.)
DellRegistryManager (HKLM\...\{BAF6686A-36D9-40D1-8B04-B78BBE88C808}) (Version: 21.50.0.0 - Intel Corporation) Hidden
Dropbox (HKLM-x32\...\Dropbox) (Version: 101.4.434 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
DSC/AA Factory Installer (HKLM\...\{F7A70D00-F283-45C8-B163-49EC365D7E27}) (Version: 2.0.6875.402 - PC-Doctor, Inc.) Hidden
ESET Security (HKLM\...\{6D46484B-0BE2-4060-9CD3-FA87ED960ED9}) (Version: 13.2.15.0 - ESET, spol. s r.o.)
Goodix Fingerprint Driver (HKLM\...\{60FAB781-18F2-4D2B-A8E7-B3AADD327955}_is1) (Version: 1.0.33.700 - Goodix, Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HitmanPro 3.8 (HKLM\...\HitmanPro38) (Version: 3.8.18.312 - SurfRight B.V.)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.4.10501.6067 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1932.12.0.1298 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.5017 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.5.0.1017 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.56.87.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{05817e4d-5f15-49b4-afec-7edb31fc7dd6}) (Version: 1.56.87.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000030-0200-1029-84C8-B8D95FA3C8C3}) (Version: 20.30.0 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{37942a92-9e3f-4d70-9b5c-5955cbc54505}) (Version: 10.1.18121.8164 - Intel(R) Corporation)
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation)
Intel® Software Installer (HKLM-x32\...\{87b96d86-07d6-4c0d-85b0-bcfb3a4550bb}) (Version: 21.70.0.6 - Intel Corporation) Hidden
IrfanView 4.53 (64-bit) (HKLM\...\IrfanView64) (Version: 4.53 - Irfan Skiljan)
Malwarebytes version 4.1.2.73 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.2.73 - Malwarebytes)
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4454.1004 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft OneDrive (HKLM-x32\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{650c9b4a-60ec-4e4e-8d8e-32d85ce3b7c5}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Mozilla Firefox 78.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 78.0.2 (x64 cs)) (Version: 78.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 78.0.2 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Need For Speed Underground 2 (HKLM-x32\...\Need For Speed Underground 2 1.1.0) (Version: 1.1.0 - Electronic Arts)
NVIDIA Ovladače grafiky 442.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 442.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PLed 3.1 (HKLM-x32\...\PLed 3.1) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8642 - Realtek Semiconductor Corp.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung M2070 Series (HKLM-x32\...\Samsung M2070 Series) (Version: 1.27 (21.07.2017) - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.1.6.02 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.32 - Samsung Electronics Co., Ltd.) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.7.23.0 - Samsung Electronics Co., Ltd.)
Smart View (HKLM-x32\...\{1800D8A5-F7B2-4C20-868E-1CF55CBBDF21}) (Version: 1.0.0.0 - Samsung )
SmartByte Drivers and Services (HKLM\...\{1E9AE03E-28AC-4FE3-A66B-F3147A47578B}) (Version: 3.0.863 - Název společnosti:)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\...\Wargaming.net Game Center) (Version: 20.3.3.826 - Wargaming.net)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)

Packages:
=========
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.10.5.0_x86__kgqvnymyfvs32 [2020-06-17] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.39.4.0_x86__kgqvnymyfvs32 [2020-06-26] (king.com)
Dell Customer Connect -> C:\Program Files\WindowsApps\DellInc.DellCustomerConnect_5.2.40.0_x64__htrsf667h5kn2 [2020-05-07] (Dell Inc)
Dell Digital Delivery -> C:\Program Files\WindowsApps\DellInc.DellDigitalDelivery_4.0.52.0_x64__htrsf667h5kn2 [2020-05-29] (Dell Inc)
Dell Mobile Connect -> C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0 [2020-07-15] (Screenovate Technologies) [Startup Task]
Dell Power Manager -> C:\Program Files\WindowsApps\DellInc.DellPowerManager_3.6.12.0_x64__htrsf667h5kn2 [2020-02-05] (Dell Inc)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.5.13.0_x64__htrsf667h5kn2 [2020-06-25] (Dell Inc)
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_3.1.99.0_x64__htrsf667h5kn2 [2020-05-09] (Dell Inc)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-20] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7082.0_x64__8wekyb3d8bbwe [2020-07-14] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
My Dell -> C:\Program Files\WindowsApps\DellInc.MyDell_1.4.22.0_x64__htrsf667h5kn2 [2020-04-16] (Dell Inc)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-15] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-23] (NVIDIA Corp.)
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6ctt [2020-06-09] (INTEL CORP) [Startup Task]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation)
Samsung Flow -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy [2020-07-10] (Samsung Electronics Co, Ltd.)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-12-27] (Samsung Electronics Co. Ltd.)
SmartByte -> C:\Program Files\WindowsApps\RivetNetworks.SmartByte_3.0.869.0_x64__rh07ty8m5nkag [2020-05-07] (Rivet Networks LLC)
Translator -> C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation)
Waves MaxxAudio Pro for Dell -> C:\Program Files\WindowsApps\WavesAudio.WavesMaxxAudioProforDell_1.1.131.0_x64__fh4rh281wavaa [2019-10-30] (Waves Audio)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\vcack\Dropbox [2019-11-10 12:08]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [File not signed]
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_4db2d1cf33f01d5b\nvshext.dll [2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-07-16 16:48 - 2020-07-16 16:48 - 000114176 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_ctypes.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000172544 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_elementtree.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 002250240 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_hashlib.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000032256 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_multiprocessing.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000046080 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_psutil_windows.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000047616 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_socket.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 002819584 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_ssl.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000026112 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\_yappi.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000080896 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\bz2.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000016384 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\common.time34.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000007680 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\hashobjs_ext.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000301568 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\PIL._imaging.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000168448 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\pyexpat.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 001084416 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\pysqlite2._sqlite.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000548864 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\pythoncom27.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 000137728 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\pywintypes27.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 000010752 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\select.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000020992 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\thumbnails_ext.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000689664 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\unicodedata.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000119808 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\usb_ext.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000128512 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32api.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000438784 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32com.shell.shell.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000011776 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32crypt.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000023040 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32event.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000149504 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32file.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000223232 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32gui.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000048128 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32inet.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000029696 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32pdh.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000027648 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32pipe.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000044032 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32process.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000020480 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32profile.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000136192 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32security.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000026624 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\win32ts.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000034816 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\windows.conditional.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000038400 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\windows.connectivity.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000071680 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\windows.device_monitor.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000109056 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\windows.volumes.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000020480 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\windows.winwrap.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 001325056 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._controls_.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 001489408 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._core_.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 001007104 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._gdi_.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000103424 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._html2.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 000916992 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._misc_.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 001039872 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wx._windows_.pyd
2020-07-16 16:48 - 2020-07-16 16:48 - 003043328 _____ (Python Software Foundation) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\python27.dll
2017-11-08 08:35 - 2017-11-08 08:35 - 000123904 _____ (Samsung Electronics Co., Ltd.) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\SmartScreenPrint\CDAKEYMonitor64.dll
2020-07-15 13:53 - 2020-07-15 13:53 - 008830464 _____ (Screenovate Technologies Ltd.) [File not signed] C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\core.uwp.dll
2020-07-15 13:53 - 2020-07-15 13:53 - 045840384 _____ (Screenovate Technologies Ltd.) [File not signed] C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\DellMobileConnectUniversalClient.dll
2020-05-03 05:13 - 2020-05-03 05:13 - 001899008 _____ (SQLite Development Team) [File not signed] C:\Program Files\Dell\SupportAssistAgent\bin\x64\sqlite3.dll
2018-05-18 10:57 - 2018-05-18 10:57 - 003696128 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\ScanFax2PC\CDAScan2PCMonitor64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxbase30u_net_vc90_x64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxbase30u_vc90_x64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxmsw30u_adv_vc90_x64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxmsw30u_core_vc90_x64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxmsw30u_html_vc90_x64.dll
2020-07-16 16:48 - 2020-07-16 16:48 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI89082\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{04A5D615-DD5D-40CD-BF39-8D090D99757C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\ESM.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9AD7502B-434C-42A0-AC0D-3244F57BF5AA}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{84493E65-3953-4551-BC04-066C8FFC234D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{3DA2F64F-90B1-4395-A16C-082151603411}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{703B173E-568A-40B0-A8EB-E906E4DD4FB4}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{D336E64B-2BD0-499C-8C34-FC899850DBE0}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{A2B68068-2753-44FA-A731-BE09D866943E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{18A4F8F7-91DE-4A64-A6B9-C7D47D1BE3E7}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [UDP Query User{5021B337-C74E-497F-A34D-18E3136C4449}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{9A47CF94-9EFB-4396-885C-8CC27DD631B3}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{F740270E-8B54-4866-A36A-A8A806F822F4}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [TCP Query User{9557FED1-0014-4EB5-8954-D07AD78122DF}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [UDP Query User{22B683C5-E82B-4D3A-A2A1-EBE906699F77}D:\games\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{B6F1E8ED-BF02-44FB-B6AC-256D25CC0A88}D:\games\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{DF0CFE5E-B0C2-4633-A341-341F7DB86450}D:\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{4D13B4CF-6C80-408E-8A35-D460E65BA336}D:\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{05C284DE-258E-48E1-9114-E72565ADE06C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{31BC07F9-F5ED-4DAF-A728-679152FDA21B}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{A3B9C14A-04C8-483A-93B8-60CA2AC0F7D0}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{ABF39DEA-CF1A-4697-B4D8-32A2FEEA02EE}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{5FC4D194-9A1F-4D2E-89E1-5F45B793009C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{56356D9C-53F4-499F-B010-D2E59E235AB3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{A104C452-53DF-4CF2-8E91-81E76109614B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{C8009C04-D9C5-480F-9657-12AC5AB3DD77}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{89A10F8D-9E2E-4698-A9B9-AF1F38920FFB}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{D61AC7D9-0F0C-48FC-AE6F-7F1381B41E1F}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\WebInstallAgent\SPNTInst.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{2E1E1BF0-CA45-4878-95D6-0D5B412DCC45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [File not signed]
FirewallRules: [{193D3291-F485-4FDB-9126-1D15D0D96BB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [File not signed]
FirewallRules: [{823BA505-1A85-4EAB-9142-E9232DF43204}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20344.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ECE7825D-354B-44DE-904A-C306A270A30A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C017E160-C376-4216-8783-FAFC0C16C244}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{26377833-83A7-4542-A781-B69E8FC79DBA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8FA480FF-0E55-4C32-B9BA-158B52D6BD02}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{270A865B-68B5-4366-98C6-B573ABA9B95F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D67307AE-3BA2-4FCC-A18D-1F20AA9BADFF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{4E39BCFF-44CF-4C60-8B89-5BF9352BDDDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{5473A6AC-4A2C-4A33-9246-A81C4B90AA98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{8929826E-A441-41D4-82F6-26B0B0151C4E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{571171E2-A385-4DDE-A68C-BC45AD549F98}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{C922AA45-E306-4C6A-BE77-AC4DE66E9757}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{33C02C0D-084B-4BAC-9B0E-DE132935A8D0}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{8FCB357F-6934-44CC-867F-7A078E4C5884}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{A312F30A-37FB-4921-A43D-3C79A968E9E8}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{7F2FE2F3-6F4C-487D-BE22-459053329060}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{F202E20C-27D8-4966-91B2-F62F337F59B7}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [TCP Query User{E631CC95-B24A-4312-83F3-F4F9BCB70614}D:\smart view.exe] => (Allow) D:\smart view.exe () [File not signed]
FirewallRules: [UDP Query User{B87C9D60-EF67-429F-B8B9-95F307896C21}D:\smart view.exe] => (Allow) D:\smart view.exe () [File not signed]
FirewallRules: [{4F243DD4-547A-47D7-A0CC-5BABACB44E63}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\67.0.3575.53\opera.exe => No File
FirewallRules: [{EB7E0FBE-FF36-4927-A85C-59D89FB9B56F}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\68.0.3618.173\opera.exe => No File
FirewallRules: [{3A40BFB8-95FA-4CEC-8609-E6CFE99ECEE6}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{14C65CCF-F15A-4056-9008-8EB185CBD2BB}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:105.14 GB) (Free:7.47 GB) (7%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 02:36:33 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002


System errors:
=============
Error: (07/16/2020 04:50:02 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Dell SupportAssist Remediation neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/16/2020 04:47:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba RAPSService neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/16/2020 04:47:59 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SmartByte Network Service x64 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/16/2020 04:47:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (15:45:07, ‎16.‎07.‎2020) bylo neočekávané.

Error: (07/16/2020 04:17:05 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (07/16/2020 03:47:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Dell SupportAssist Remediation neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/16/2020 03:45:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba RAPSService neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/16/2020 03:45:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SmartByte Network Service x64 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.


CodeIntegrity:
===================================

Date: 2020-07-16 16:52:45.0230000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:52:45.0190000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:52:44.9950000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:50:10.6120000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:50:10.6040000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:50:10.5900000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:50:02.2120000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-16 16:50:00.9240000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Dell Inc. 1.12.0 02/13/2020
Motherboard: Dell Inc. 0JGKPC
Processor: Intel(R) Core(TM) i7-8750H CPU @ 2.20GHz
Percentage of memory in use: 73%
Total physical RAM: 8051.57 MB
Available physical RAM: 2107.23 MB
Total Virtual: 13939.57 MB
Available Virtual: 5728.73 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:105.14 GB) (Free:7.47 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.39 GB) (Free:882.5 GB) NTFS

\\?\Volume{faab8bac-5ab0-40e8-a39d-17074dfbf890}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.4 GB) NTFS
\\?\Volume{b9908b53-93a9-40c4-bc7f-c1000a73c77f}\ (Image) (Fixed) (Total:11.2 GB) (Free:0.17 GB) NTFS
\\?\Volume{00bc2869-80f6-43f5-9dc6-1ff9706e9e61}\ (DELLSUPPORT) (Fixed) (Total:1.16 GB) (Free:0.41 GB) NTFS
\\?\Volume{d605bbce-1dac-436a-be3c-9cc66fd70112}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.56 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 074FD677)

Partition: GPT.

==========================================================
Disk: 1 (Size: 119.2 GB) (Disk ID: 074FDEC2)

Partition: GPT.

==================== End of Addition.txt =======================

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#4 Příspěvek od vcacky »

FRST.rar
(28.41 KiB) Staženo 65 x

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#5 Příspěvek od vcacky »

Doufám, že je to správně :-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#6 Příspěvek od Rudy »

Je to OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
C:\Users\vcack\AppData\Local\Temp
FirewallRules: [UDP Query User{F740270E-8B54-4866-A36A-A8A806F822F4}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [TCP Query User{9557FED1-0014-4EB5-8954-D07AD78122DF}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [{5FC4D194-9A1F-4D2E-89E1-5F45B793009C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{56356D9C-53F4-499F-B010-D2E59E235AB3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{A104C452-53DF-4CF2-8E91-81E76109614B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{C8009C04-D9C5-480F-9657-12AC5AB3DD77}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{4F243DD4-547A-47D7-A0CC-5BABACB44E63}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\67.0.3575.53\opera.exe => No File
FirewallRules: [{EB7E0FBE-FF36-4927-A85C-59D89FB9B56F}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\68.0.3618.173\opera.exe => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat
Task: {5A8E611B-3E4E-4998-9D94-4FB0145E4835} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-08] (Google Inc -> Google LLC)
Task: {AD9C7F08-D2B5-40E4-A3B0-ABE7BC56D40B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-08] (Google Inc -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte do C:\Users\vcack\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#7 Příspěvek od vcacky »

Diky moc ale radeji až rano, jsem na pivu tak by to mohlo dopadnout blbě. 😆

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#8 Příspěvek od Rudy »

OK. Budu tu i zítra. :D
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#9 Příspěvek od vcacky »

Fix result of Farbar Recovery Scan Tool (x64) Version: 08-07-2020 01
Ran by vcack (17-07-2020 08:09:45) Run:2
Running from C:\Users\vcack\Downloads
Loaded Profiles: vcack
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\vcack\AppData\Local\Microsoft\OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll => No File
C:\Users\vcack\AppData\Local\Temp
FirewallRules: [UDP Query User{F740270E-8B54-4866-A36A-A8A806F822F4}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [TCP Query User{9557FED1-0014-4EB5-8954-D07AD78122DF}D:\samsung dex\samsungdex.exe] => (Allow) D:\samsung dex\samsungdex.exe => No File
FirewallRules: [{5FC4D194-9A1F-4D2E-89E1-5F45B793009C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{56356D9C-53F4-499F-B010-D2E59E235AB3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe => No File
FirewallRules: [{A104C452-53DF-4CF2-8E91-81E76109614B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{C8009C04-D9C5-480F-9657-12AC5AB3DD77}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe => No File
FirewallRules: [{4F243DD4-547A-47D7-A0CC-5BABACB44E63}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\67.0.3575.53\opera.exe => No File
FirewallRules: [{EB7E0FBE-FF36-4927-A85C-59D89FB9B56F}] => (Allow) C:\Users\vcack\AppData\Local\Programs\Opera\68.0.3618.173\opera.exe => No File
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat
Task: {5A8E611B-3E4E-4998-9D94-4FB0145E4835} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-08] (Google Inc -> Google LLC)
Task: {AD9C7F08-D2B5-40E4-A3B0-ABE7BC56D40B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-08] (Google Inc -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => not found
HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => not found
HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => not found
C:\Users\vcack\AppData\Local\Temp => moved successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F740270E-8B54-4866-A36A-A8A806F822F4}D:\samsung dex\samsungdex.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9557FED1-0014-4EB5-8954-D07AD78122DF}D:\samsung dex\samsungdex.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5FC4D194-9A1F-4D2E-89E1-5F45B793009C}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56356D9C-53F4-499F-B010-D2E59E235AB3}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A104C452-53DF-4CF2-8E91-81E76109614B}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C8009C04-D9C5-480F-9657-12AC5AB3DD77}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4F243DD4-547A-47D7-A0CC-5BABACB44E63}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB7E0FBE-FF36-4927-A85C-59D89FB9B56F}" => not found
"Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A8E611B-3E4E-4998-9D94-4FB0145E4835}" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD9C7F08-D2B5-40E4-A3B0-ABE7BC56D40B}" => not found
"C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 11821056 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12721831 B
Java, Flash, Steam htmlcache => 10116156 B
Windows/system/drivers => 25861 B
Edge => 7363493 B
Chrome => 0 B
Firefox => 43180941 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 14864 B
NetworkService => 14864 B
vcack => 78029 B

RecycleBin => 0 B
EmptyTemp: => 81.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 08:10:07 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#11 Příspěvek od vcacky »

Šmejd.png
Šmejd.png (52.08 KiB) Zobrazeno 1656 x
Moc ne.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#12 Příspěvek od Rudy »

Přes příkazový řádek příkazem:
msconfig
spusťte konfigurační okno. Na záložce "Po spuštění" odstraňte zaržítko u C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat. Nastavení uložte a restartujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#13 Příspěvek od vcacky »

Asi mi to nedělá co by mělo. Podle tvého popisu to mám nějaký jiný.
Šmejd 3.jpg
Šmejd 3.jpg (27.82 KiB) Zobrazeno 1651 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Šmejdi

#14 Příspěvek od Rudy »

OK. Dejte tedy nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vcacky
Návštěvník
Návštěvník
Příspěvky: 13
Registrován: 16 črc 2020 14:17

Re: Šmejdi

#15 Příspěvek od vcacky »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-07-2020 01
Ran by vcack (17-07-2020 22:22:37)
Running from C:\Users\vcack\Downloads
Windows 10 Home Version 2004 19041.388 (X64) (2020-06-26 05:54:08)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-4082645563-3176066660-1474954624-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-4082645563-3176066660-1474954624-503 - Limited - Disabled)
Guest (S-1-5-21-4082645563-3176066660-1474954624-501 - Limited - Disabled)
vcack (S-1-5-21-4082645563-3176066660-1474954624-1001 - Administrator - Enabled) => C:\Users\vcack
WDAGUtilityAccount (S-1-5-21-4082645563-3176066660-1474954624-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.009.20074 - Adobe Systems Incorporated)
Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.387 - Adobe)
Aplikace Intel® PROSet/Wireless (HKLM-x32\...\{06b2cd73-b5f5-47a1-9f49-23d0ef75d568}) (Version: 20.50.0 - Intel Corporation)
Backup and Sync from Google (HKLM\...\{01D33BEA-673C-439C-A7C7-DE5B236DB842}) (Version: 3.50.3166.0017 - Google, Inc.)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Dell Digital Delivery Service (HKLM-x32\...\{66E2407E-9001-483E-B2AA-7AEF97567143}) (Version: 3.6.1005.0 - Dell Products, LP)
Dell Mobile Connect Drivers (HKLM\...\{1E754E2C-CF3B-42CB-B36D-D560CEA96149}) (Version: 2.0.7811 - Screenovate Technologies Ltd.)
Dell SupportAssist (HKLM\...\{6D2933E3-DC42-44E5-B80E-DACDD64ADFF5}) (Version: 3.5.0.448 - Dell Inc.)
Dell SupportAssist Remediation (HKLM-x32\...\{8ce1a5ae-856e-4b8e-a0e8-27dd7a209276}) (Version: 3.3.0.4943 - Dell Inc.)
Dell Update - SupportAssist Update Plugin (HKLM\...\{EDE60887-F1EA-4304-A3E9-806D29EEE3FB}) (Version: 5.1.0.11858 - Dell Inc.) Hidden
Dell Update - SupportAssist Update Plugin (HKLM-x32\...\{9aec637d-a647-4f3b-998e-425f40e7dd50}) (Version: 5.1.0.11858 - Dell Inc.)
DellRegistryManager (HKLM\...\{BAF6686A-36D9-40D1-8B04-B78BBE88C808}) (Version: 21.50.0.0 - Intel Corporation) Hidden
Dropbox (HKLM-x32\...\Dropbox) (Version: 101.4.434 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.295.1 - Dropbox, Inc.) Hidden
DSC/AA Factory Installer (HKLM\...\{F7A70D00-F283-45C8-B163-49EC365D7E27}) (Version: 2.0.6875.402 - PC-Doctor, Inc.) Hidden
ESET Security (HKLM\...\{6D46484B-0BE2-4060-9CD3-FA87ED960ED9}) (Version: 13.2.15.0 - ESET, spol. s r.o.)
Goodix Fingerprint Driver (HKLM\...\{60FAB781-18F2-4D2B-A8E7-B3AADD327955}_is1) (Version: 1.0.33.700 - Goodix, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 84.0.4147.89 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HitmanPro 3.8 (HKLM\...\HitmanPro38) (Version: 3.8.18.312 - SurfRight B.V.)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.4.10501.6067 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1932.12.0.1298 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 23.20.16.5017 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.5.0.1017 - Intel Corporation)
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.56.87.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{05817e4d-5f15-49b4-afec-7edb31fc7dd6}) (Version: 1.56.87.0 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000030-0200-1029-84C8-B8D95FA3C8C3}) (Version: 20.30.0 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{37942a92-9e3f-4d70-9b5c-5955cbc54505}) (Version: 10.1.18121.8164 - Intel(R) Corporation)
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{2D79E334-B178-45B9-A2A6-7A60A084C268}) (Version: 16.8.0.1000 - Intel Corporation)
Intel® Software Installer (HKLM-x32\...\{87b96d86-07d6-4c0d-85b0-bcfb3a4550bb}) (Version: 21.70.0.6 - Intel Corporation) Hidden
IrfanView 4.53 (64-bit) (HKLM\...\IrfanView64) (Version: 4.53 - Irfan Skiljan)
Malwarebytes version 4.1.2.73 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.1.2.73 - Malwarebytes)
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4454.1004 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft OneDrive (HKLM-x32\...\OneDriveSetup.exe) (Version: 20.084.0426.0007 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{650c9b4a-60ec-4e4e-8d8e-32d85ce3b7c5}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Mozilla Firefox 78.0.2 (x64 cs) (HKLM\...\Mozilla Firefox 78.0.2 (x64 cs)) (Version: 78.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 78.0.2 - Mozilla)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Need For Speed Underground 2 (HKLM-x32\...\Need For Speed Underground 2 1.1.0) (Version: 1.1.0 - Electronic Arts)
NVIDIA Ovladače grafiky 442.23 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 442.23 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PLed 3.1 (HKLM-x32\...\PLed 3.1) (Version: - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8642 - Realtek Semiconductor Corp.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung M2070 Series (HKLM-x32\...\Samsung M2070 Series) (Version: 1.27 (21.07.2017) - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.1.6.02 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: 1.01.00:04(2013-04-22) - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.32 - Samsung Electronics Co., Ltd.) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.7.23.0 - Samsung Electronics Co., Ltd.)
Smart View (HKLM-x32\...\{1800D8A5-F7B2-4C20-868E-1CF55CBBDF21}) (Version: 1.0.0.0 - Samsung )
SmartByte Drivers and Services (HKLM\...\{1E9AE03E-28AC-4FE3-A66B-F3147A47578B}) (Version: 3.0.863 - Název společnosti:)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Vulkan Run Time Libraries 1.1.70.0 (HKLM\...\VulkanRT1.1.70.0) (Version: 1.1.70.0 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\...\Wargaming.net Game Center) (Version: 20.3.4.1077 - Wargaming.net)
WinRAR 5.71 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.71.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)

Packages:
=========
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.10.5.0_x86__kgqvnymyfvs32 [2020-06-17] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.39.4.0_x86__kgqvnymyfvs32 [2020-06-26] (king.com)
Dell Customer Connect -> C:\Program Files\WindowsApps\DellInc.DellCustomerConnect_5.2.40.0_x64__htrsf667h5kn2 [2020-05-07] (Dell Inc)
Dell Digital Delivery -> C:\Program Files\WindowsApps\DellInc.DellDigitalDelivery_4.0.52.0_x64__htrsf667h5kn2 [2020-05-29] (Dell Inc)
Dell Mobile Connect -> C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0 [2020-07-15] (Screenovate Technologies) [Startup Task]
Dell Power Manager -> C:\Program Files\WindowsApps\DellInc.DellPowerManager_3.6.12.0_x64__htrsf667h5kn2 [2020-02-05] (Dell Inc)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\DellInc.DellSupportAssistforPCs_3.5.13.0_x64__htrsf667h5kn2 [2020-06-25] (Dell Inc)
Dell Update -> C:\Program Files\WindowsApps\DellInc.DellUpdate_3.1.99.0_x64__htrsf667h5kn2 [2020-05-09] (Dell Inc)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-11-20] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\microsoft.advertising.xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.7082.0_x64__8wekyb3d8bbwe [2020-07-14] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-25] (Microsoft Corporation) [MS Ad]
My Dell -> C:\Program Files\WindowsApps\DellInc.MyDell_1.4.22.0_x64__htrsf667h5kn2 [2020-04-16] (Dell Inc)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-07-15] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-23] (NVIDIA Corp.)
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2731.0_x64__8j3eq9eme6ctt [2020-06-09] (INTEL CORP) [Startup Task]
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation)
Samsung Flow -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy [2020-07-10] (Samsung Electronics Co, Ltd.)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2019-12-27] (Samsung Electronics Co. Ltd.)
SmartByte -> C:\Program Files\WindowsApps\RivetNetworks.SmartByte_3.0.869.0_x64__rh07ty8m5nkag [2020-05-07] (Rivet Networks LLC)
Translator -> C:\Program Files\WindowsApps\Microsoft.BingTranslator_5.6.0.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation)
Waves MaxxAudio Pro for Dell -> C:\Program Files\WindowsApps\WavesAudio.WavesMaxxAudioProforDell_1.1.131.0_x64__fh4rh281wavaa [2019-10-30] (Waves Audio)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4082645563-3176066660-1474954624-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\vcack\Dropbox [2019-11-10 12:08]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2020-06-15] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [File not signed] [File is in use]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2018-12-03] () [File not signed] [File is in use]
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2020-06-15] (Google LLC -> Google)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.084.0426.0007\amd64\FileSyncShell64.dll [2020-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.43.0.dll [2020-07-08] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_4db2d1cf33f01d5b\nvshext.dll [2020-06-22] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => D:\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-07-09] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2020-07-16] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-04-27] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\vcack\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2020-07-17 21:56 - 2020-07-17 21:56 - 000114176 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_ctypes.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000172544 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_elementtree.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 002250240 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_hashlib.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000032256 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_multiprocessing.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000046080 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_psutil_windows.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000047616 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_socket.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 002819584 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_ssl.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000026112 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\_yappi.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000080896 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\bz2.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000016384 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\common.time34.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000007680 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\hashobjs_ext.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000301568 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\PIL._imaging.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000168448 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\pyexpat.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 001084416 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\pysqlite2._sqlite.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000548864 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\pythoncom27.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 000137728 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\pywintypes27.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 000010752 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\select.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000020992 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\thumbnails_ext.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000689664 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\unicodedata.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000119808 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\usb_ext.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000128512 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32api.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000438784 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32com.shell.shell.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000011776 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32crypt.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000023040 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32event.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000149504 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32file.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000223232 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32gui.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000048128 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32inet.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000029696 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32pdh.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000027648 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32pipe.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000044032 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32process.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000020480 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32profile.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000136192 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32security.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000026624 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\win32ts.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000034816 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\windows.conditional.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000038400 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\windows.connectivity.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000071680 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\windows.device_monitor.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000109056 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\windows.volumes.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000020480 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\windows.winwrap.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 001325056 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._controls_.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 001489408 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._core_.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 001007104 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._gdi_.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000103424 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._html2.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 000916992 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._misc_.pyd
2020-07-17 21:56 - 2020-07-17 21:56 - 001039872 _____ () [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wx._windows_.pyd
2019-11-25 19:17 - 2019-02-21 18:00 - 000078336 _____ (Igor Pavlov) [File not signed] D:\7-Zip\7-zip.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 003043328 _____ (Python Software Foundation) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\python27.dll
2017-11-08 08:35 - 2017-11-08 08:35 - 000123904 _____ (Samsung Electronics Co., Ltd.) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\SmartScreenPrint\CDAKEYMonitor64.dll
2020-07-15 13:53 - 2020-07-15 13:53 - 008830464 _____ (Screenovate Technologies Ltd.) [File not signed] C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\core.uwp.dll
2020-07-15 13:53 - 2020-07-15 13:53 - 045840384 _____ (Screenovate Technologies Ltd.) [File not signed] C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\DellMobileConnectUniversalClient.dll
2020-05-03 05:13 - 2020-05-03 05:13 - 001899008 _____ (SQLite Development Team) [File not signed] C:\Program Files\Dell\SupportAssistAgent\bin\x64\sqlite3.dll
2018-05-18 10:57 - 2018-05-18 10:57 - 003696128 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\ScanFax2PC\CDAScan2PCMonitor64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxbase30u_net_vc90_x64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxbase30u_vc90_x64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxmsw30u_adv_vc90_x64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxmsw30u_core_vc90_x64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxmsw30u_html_vc90_x64.dll
2020-07-17 21:56 - 2020-07-17 21:56 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\vcack\AppData\Local\Temp\_MEI143802\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-4082645563-3176066660-1474954624-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img1.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{04A5D615-DD5D-40CD-BF39-8D090D99757C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\ESM.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9AD7502B-434C-42A0-AC0D-3244F57BF5AA}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{84493E65-3953-4551-BC04-066C8FFC234D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{3DA2F64F-90B1-4395-A16C-082151603411}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{703B173E-568A-40B0-A8EB-E906E4DD4FB4}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP Printing Korea Co., Ltd.)
FirewallRules: [{D336E64B-2BD0-499C-8C34-FC899850DBE0}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> )
FirewallRules: [{A2B68068-2753-44FA-A731-BE09D866943E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{18A4F8F7-91DE-4A64-A6B9-C7D47D1BE3E7}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [UDP Query User{5021B337-C74E-497F-A34D-18E3136C4449}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{9A47CF94-9EFB-4396-885C-8CC27DD631B3}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{22B683C5-E82B-4D3A-A2A1-EBE906699F77}D:\games\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{B6F1E8ED-BF02-44FB-B6AC-256D25CC0A88}D:\games\world_of_tanks_eu\win32\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win32\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{DF0CFE5E-B0C2-4633-A341-341F7DB86450}D:\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{4D13B4CF-6C80-408E-8A35-D460E65BA336}D:\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [{05C284DE-258E-48E1-9114-E72565ADE06C}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{31BC07F9-F5ED-4DAF-A728-679152FDA21B}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [TCP Query User{A3B9C14A-04C8-483A-93B8-60CA2AC0F7D0}C:\program files (x86)\common files\scan process machine\imageeng.exe] => (Allow) C:\program files (x86)\common files\scan process machine\imageeng.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{ABF39DEA-CF1A-4697-B4D8-32A2FEEA02EE}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{89A10F8D-9E2E-4698-A9B9-AF1F38920FFB}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{D61AC7D9-0F0C-48FC-AE6F-7F1381B41E1F}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Diagnostics\SEInstall\SPD\WebInstallAgent\SPNTInst.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{2E1E1BF0-CA45-4878-95D6-0D5B412DCC45}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [File not signed]
FirewallRules: [{193D3291-F485-4FDB-9126-1D15D0D96BB9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Spintires\SpinTires.exe (Oovee Ltd.) [File not signed]
FirewallRules: [{823BA505-1A85-4EAB-9142-E9232DF43204}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.12130.20344.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ECE7825D-354B-44DE-904A-C306A270A30A}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C017E160-C376-4216-8783-FAFC0C16C244}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{26377833-83A7-4542-A781-B69E8FC79DBA}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8FA480FF-0E55-4C32-B9BA-158B52D6BD02}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{270A865B-68B5-4366-98C6-B573ABA9B95F}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{D67307AE-3BA2-4FCC-A18D-1F20AA9BADFF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{4E39BCFF-44CF-4C60-8B89-5BF9352BDDDD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{5473A6AC-4A2C-4A33-9246-A81C4B90AA98}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{8929826E-A441-41D4-82F6-26B0B0151C4E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{571171E2-A385-4DDE-A68C-BC45AD549F98}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{C922AA45-E306-4C6A-BE77-AC4DE66E9757}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation -> )
FirewallRules: [{33C02C0D-084B-4BAC-9B0E-DE132935A8D0}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{8FCB357F-6934-44CC-867F-7A078E4C5884}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{A312F30A-37FB-4921-A43D-3C79A968E9E8}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{7F2FE2F3-6F4C-487D-BE22-459053329060}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [{F202E20C-27D8-4966-91B2-F62F337F59B7}] => (Allow) C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCoLtd.SamsungFlux_4.6.13.0_x64__wyx1vj98g3asy\DesktopApp\SamsungFlowDesktop.exe () [File not signed]
FirewallRules: [TCP Query User{E631CC95-B24A-4312-83F3-F4F9BCB70614}D:\smart view.exe] => (Allow) D:\smart view.exe () [File not signed]
FirewallRules: [UDP Query User{B87C9D60-EF67-429F-B8B9-95F307896C21}D:\smart view.exe] => (Allow) D:\smart view.exe () [File not signed]
FirewallRules: [{3A40BFB8-95FA-4CEC-8609-E6CFE99ECEE6}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{14C65CCF-F15A-4056-9008-8EB185CBD2BB}] => (Allow) C:\Program Files\WindowsApps\ScreenovateTechnologies.DellMobileConnect_3.1.9518.0_x64__0vhbc3ng4wbp0\app\DellMobileConnectClient.exe (SCREENOVATE TECHNOLOGIES LTD. -> Screenovate Technologies Ltd.)
FirewallRules: [{5CA6BCEE-F0FA-4C79-A34B-F4CE6E92614A}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:105.14 GB) (Free:7.24 GB) (7%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (07/16/2020 06:28:28 PM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002


System errors:
=============
Error: (07/17/2020 01:43:10 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (07/17/2020 01:15:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Dell SupportAssist Remediation neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/17/2020 01:13:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba RAPSService neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/17/2020 01:13:55 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SmartByte Network Service x64 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/17/2020 08:34:49 AM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (07/17/2020 08:15:29 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Dell SupportAssist Remediation neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/17/2020 08:13:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba RAPSService neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/17/2020 08:13:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SmartByte Network Service x64 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.


CodeIntegrity:
===================================

Date: 2020-07-17 16:06:32.6000000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 16:06:32.5960000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 16:06:32.5810000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 15:50:21.5530000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 15:50:21.5170000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 15:50:21.4670000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 13:29:44.7630000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-07-17 13:29:44.7590000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume5\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Dell Inc. 1.12.0 02/13/2020
Motherboard: Dell Inc. 0JGKPC
Processor: Intel(R) Core(TM) i7-8750H CPU @ 2.20GHz
Percentage of memory in use: 72%
Total physical RAM: 8051.57 MB
Available physical RAM: 2186.28 MB
Total Virtual: 13939.57 MB
Available Virtual: 5810.54 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:105.14 GB) (Free:7.24 GB) NTFS
Drive d: (DATA) (Fixed) (Total:931.39 GB) (Free:882.5 GB) NTFS

\\?\Volume{faab8bac-5ab0-40e8-a39d-17074dfbf890}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.4 GB) NTFS
\\?\Volume{b9908b53-93a9-40c4-bc7f-c1000a73c77f}\ (Image) (Fixed) (Total:11.2 GB) (Free:0.17 GB) NTFS
\\?\Volume{00bc2869-80f6-43f5-9dc6-1ff9706e9e61}\ (DELLSUPPORT) (Fixed) (Total:1.16 GB) (Free:0.41 GB) NTFS
\\?\Volume{d605bbce-1dac-436a-be3c-9cc66fd70112}\ (ESP) (Fixed) (Total:0.63 GB) (Free:0.56 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 074FD677)

Partition: GPT.

==========================================================
Disk: 1 (Size: 119.2 GB) (Disk ID: 074FDEC2)

Partition: GPT.

==================== End of Addition.txt =======================

Zamčeno