Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Simicek
Návštěvník
Návštěvník
Příspěvky: 181
Registrován: 23 črc 2008 19:09

Prosím o kontrolu.

#1 Příspěvek od Simicek »

Zdravím, delší dobu jsem nečistil PC, tak bych poprosil o kontrolu. Jediný problém s Chromem, který blbne (od 16.05.2026) a objevují se hlášky na určitých webech.
Jiný prohlížeč nepoužívám. Vyzkoušel jsem v Edge, který je bez problému.

Typy chyb:
Kód chyby: STATUS_ACCESS_VIOLATION
Kód chyby: STATUS_STACK_BUFFER_OVERRUN

Addition a FRST jsem dal do přílohy, nevešlo se do zprávy.

Děkuji za Váš čas.
Přílohy
Addition_FRST.rar
(44.45 KiB) Staženo 3 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119930
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu.

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [Arc] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [751240 2026-03-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
S3 WinRing0_1_2_0; C:\Users\David Hynek\AppData\Local\Temp\7z5F60B2E0\WinRing0x64.sys [33176 2019-01-02] (NetEase(Hangzhou) Network Co. Ltd. -> ) <==== ATTENTION
SS4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys (No File)
S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys (No File)
Error Reading file: "C:\ProgramData\Desktop\Urban Rivals.lnk"
Error Reading file: "C:\ProgramData\Desktop\TeamSpeak 3 Client.lnk"
Error Reading file: "C:\ProgramData\Desktop\StreamElements SE.Live.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\Path of Exile.lnk"
Error Reading file: "C:\ProgramData\Desktop\Path of Exile 2.lnk"
Error Reading file: "C:\ProgramData\Desktop\OBS Studio.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Legacy Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\League of Legends PBE.lnk"
Error Reading file: "C:\ProgramData\Desktop\GOG Galaxy.lnk"
Error Reading file: "C:\ProgramData\Desktop\Epic Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\EA.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\CPUID HWMonitor.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bloody7.lnk"
Error Reading file: "C:\ProgramData\Desktop\Battlestate Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\Battle.net.lnk"
Error Reading file: "C:\ProgramData\Desktop\Avast Free Antivirus.lnk"
Error Reading file: "C:\ProgramData\Desktop\Ascension Launcher.lnk"
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\Users\David Hynek\AppData\Local\Microsoft\Teams\current\Teams.exe" --toast => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
ustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
AlternateDataStreams: C:\WINDOWS\tracing:? [16]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log:F107EE40EF [2594]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log_backup1:2DD1EC5C91 [2594]
AlternateDataStreams: C:\ProgramData\droidcam-client-options-v2:8329C6407A [2594]
AlternateDataStreams: C:\ProgramData\droidcam-settings:3FFAD04353 [2594]
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [2594]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log:AAE9D2281E [2594]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log_backup1:E79F04DA79 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log:5ACBC90093 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1:A416BDA264 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplayContainerWatchdog.log:204739A7F2 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplayContainerWatchdog.log_backup1:C3CA1050CA [2594]
AlternateDataStreams: C:\ProgramData\tmpstandard_currency_values.json:F4C74062FB [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player FREE.lnk:A5A4BED038 [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [2594]
FirewallRules: [{56AF4973-A23B-4591-90E5-8030FB6006E4}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{3AB4FFEA-274E-4618-9FD2-9F71F84B0DE0}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{B96AD29C-FC47-46E3-890A-55C944871F4E}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [UDP Query User{86A8832F-C937-4BE9-8FAE-D4CBDD64BB42}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [TCP Query User{94A2751F-8F53-4DE7-B83E-3CE17004D474}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe => No File
FirewallRules: [UDP Query User{55FC42C4-F2E2-4244-8675-B601713933CF}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe => No File
irewallRules: [{8CF11923-C1E0-4986-BC6C-51EF17DED07B}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{A302F09E-0896-4678-A772-56292339F8C2}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{913652B1-0A39-44AE-8518-BB9A4DCE2E7B}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{73DC99ED-9F82-4079-B5A5-C69FAC6E67AF}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [TCP Query User{F86CE947-79DC-4E0B-9087-CD0A4ECACDCB}E:\ascension launcher\ascension launcher.exe] => (Allow) E:\ascension launcher\ascension launcher.exe => No File
FirewallRules: [UDP Query User{8473DF1B-C4AB-4BA1-9793-315EEEA53EF1}E:\ascension launcher\ascension launcher.exe] => (Allow) E:\ascension launcher\ascension launcher.exe => No File
FirewallRules: [TCP Query User{3B5B674A-628E-479F-8E9D-DD785E2973B6}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe => No File
FirewallRules: [UDP Query User{DF25383A-8992-4A40-B3F4-810CE1745CB8}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe => No File
FirewallRules: [{E1973FEB-277D-43FD-B228-DF77C34083CF}] => (Allow) C:\Program Files\MuMuVMMVbox\Hypervisor\MuMuVMMSVC.exe => No File
FirewallRules: [{4E1CAA2B-9BC9-425D-9B1D-42B26C1C0DA9}] => (Allow) C:\Program Files\MuMuVMMVbox\Hypervisor\MuMuVMMHeadless.exe => No File
FirewallRules: [{4136BE0B-7CAF-4869-A14D-4FBBCBF03943}] => (Allow) E:\Program Files\Netease\MuMuPlayer\nx_main\MuMuNxMain.exe => No File
FirewallRules: [TCP Query User{AF699F81-F6EE-41CE-AE35-9F7F5FBC68FE}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe] => (Allow) E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe => No File
FirewallRules: [UDP Query User{2FE6F15A-9934-4C3A-BB75-B9A94DCBAF67}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe] => (Allow) E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe => No File
FirewallRules: [TCP Query User{367B5F1B-A08F-40BB-A77D-E3D11445755C}D:\tli tracker\易火-etor.exe] => (Allow) D:\tli tracker\易火-etor.exe => No File
FirewallRules: [UDP Query User{5799A021-AC91-4907-91CB-A834FC83E337}D:\tli tracker\易火-etor.exe] => (Allow) D:\tli tracker\易火-etor.exe => No File
FirewallRules: [TCP Query User{F9EE39D0-8F55-4D22-907E-8500D92A8E17}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe => No File
FirewallRules: [UDP Query User{488CBA19-FD99-4A18-B8AA-2330FF1F2493}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe => No File
FirewallRules: [TCP Query User{EA0251C3-6570-487C-BACC-6ADC59E5FCBA}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe] => (Block) C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe => No File
FirewallRules: [UDP Query User{CF252654-6BFE-41F8-B35E-E9E885938422}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe] => (Block) C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe => No File
FirewallRules: [{91DFF856-475D-488F-9676-C8438F641515}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\start_protected_game.exe => No File
FirewallRules: [{BDD5A781-14AB-4770-8ADA-B169F7424AB6}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\start_protected_game.exe => No File
FirewallRules: [TCP Query User{24F8A9A3-61E5-415E-8380-44EEFD08EF20}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe] => (Allow) C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe => No File
FirewallRules: [UDP Query User{9093BF77-5352-48C9-BBDD-9F4C96AB91EF}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe] => (Allow) C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe => No File
FirewallRules: [TCP Query User{436F6495-6D23-4AC3-A1C8-46386D7DC6EC}D:\tli test\易火-etor.exe] => (Allow) D:\tli test\易火-etor.exe => No File
FirewallRules: [UDP Query User{7689C40A-3C70-4D90-AA08-400EBCBFirewallRules: [{E770BC97-1FBC-4CB0-A89E-C0965984CCC6}] => (Allow) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{9DBB99F5-356A-4009-A723-0EDE22F8F800}] => (Allow) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{DDAA2D1A-8690-4999-BAA1-A3B0AFBFC816}] => (Block) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{644F641E-B5BE-4589-BFDE-4DFBEB0C12C3}] => (Block) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File03117}D:\tli test\易火-etor.exe] => (Allow) D:\tli test\易火-etor.exe => No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Simicek
Návštěvník
Návštěvník
Příspěvky: 181
Registrován: 23 črc 2008 19:09

Re: Prosím o kontrolu.

#3 Příspěvek od Simicek »

Fix result of Farbar Recovery Scan Tool (x64) Version: 17-05-2026
Ran by David Hynek (17-05-2026 22:42:44) Run:6
Running from C:\Users\David Hynek\Desktop
Loaded Profiles: David Hynek
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [Arc] => [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [751240 2026-03-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
S3 WinRing0_1_2_0; C:\Users\David Hynek\AppData\Local\Temp\7z5F60B2E0\WinRing0x64.sys [33176 2019-01-02] (NetEase(Hangzhou) Network Co. Ltd. -> ) <==== ATTENTION
SS4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys (No File)
S3 semav6msr64; \??\C:\WINDOWS\system32\drivers\semav6msr64.sys (No File)
Error Reading file: "C:\ProgramData\Desktop\Urban Rivals.lnk"
Error Reading file: "C:\ProgramData\Desktop\TeamSpeak 3 Client.lnk"
Error Reading file: "C:\ProgramData\Desktop\StreamElements SE.Live.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\Path of Exile.lnk"
Error Reading file: "C:\ProgramData\Desktop\Path of Exile 2.lnk"
Error Reading file: "C:\ProgramData\Desktop\OBS Studio.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Legacy Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\League of Legends PBE.lnk"
Error Reading file: "C:\ProgramData\Desktop\GOG Galaxy.lnk"
Error Reading file: "C:\ProgramData\Desktop\Epic Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\EA.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\CPUID HWMonitor.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bloody7.lnk"
Error Reading file: "C:\ProgramData\Desktop\Battlestate Games Launcher.lnk"
Error Reading file: "C:\ProgramData\Desktop\Battle.net.lnk"
Error Reading file: "C:\ProgramData\Desktop\Avast Free Antivirus.lnk"
Error Reading file: "C:\ProgramData\Desktop\Ascension Launcher.lnk"
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.217.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.223.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.229.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.227.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.225.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.221.3\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a}\localserver32 -> "C:\Users\David Hynek\AppData\Local\Microsoft\Teams\current\Teams.exe" --toast => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
ustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
AlternateDataStreams: C:\WINDOWS\tracing:? [16]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log:F107EE40EF [2594]
AlternateDataStreams: C:\ProgramData\DisplaySessionContainer1.log_backup1:2DD1EC5C91 [2594]
AlternateDataStreams: C:\ProgramData\droidcam-client-options-v2:8329C6407A [2594]
AlternateDataStreams: C:\ProgramData\droidcam-settings:3FFAD04353 [2594]
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [2594]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log:AAE9D2281E [2594]
AlternateDataStreams: C:\ProgramData\NvcDispCorePlugin.log_backup1:E79F04DA79 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log:5ACBC90093 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1:A416BDA264 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplayContainerWatchdog.log:204739A7F2 [2594]
AlternateDataStreams: C:\ProgramData\NVDisplayContainerWatchdog.log_backup1:C3CA1050CA [2594]
AlternateDataStreams: C:\ProgramData\tmpstandard_currency_values.json:F4C74062FB [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player FREE.lnk:A5A4BED038 [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [2594]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [2594]
FirewallRules: [{56AF4973-A23B-4591-90E5-8030FB6006E4}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{3AB4FFEA-274E-4618-9FD2-9F71F84B0DE0}] => (Allow) D:\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{B96AD29C-FC47-46E3-890A-55C944871F4E}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [UDP Query User{86A8832F-C937-4BE9-8FAE-D4CBDD64BB42}D:\overwatch\_retail_\overwatch.exe] => (Allow) D:\overwatch\_retail_\overwatch.exe => No File
FirewallRules: [TCP Query User{94A2751F-8F53-4DE7-B83E-3CE17004D474}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe => No File
FirewallRules: [UDP Query User{55FC42C4-F2E2-4244-8675-B601713933CF}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe => No File
irewallRules: [{8CF11923-C1E0-4986-BC6C-51EF17DED07B}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{A302F09E-0896-4678-A772-56292339F8C2}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{913652B1-0A39-44AE-8518-BB9A4DCE2E7B}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{73DC99ED-9F82-4079-B5A5-C69FAC6E67AF}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [TCP Query User{F86CE947-79DC-4E0B-9087-CD0A4ECACDCB}E:\ascension launcher\ascension launcher.exe] => (Allow) E:\ascension launcher\ascension launcher.exe => No File
FirewallRules: [UDP Query User{8473DF1B-C4AB-4BA1-9793-315EEEA53EF1}E:\ascension launcher\ascension launcher.exe] => (Allow) E:\ascension launcher\ascension launcher.exe => No File
FirewallRules: [TCP Query User{3B5B674A-628E-479F-8E9D-DD785E2973B6}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe => No File
FirewallRules: [UDP Query User{DF25383A-8992-4A40-B3F4-810CE1745CB8}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe] => (Allow) D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe => No File
FirewallRules: [{E1973FEB-277D-43FD-B228-DF77C34083CF}] => (Allow) C:\Program Files\MuMuVMMVbox\Hypervisor\MuMuVMMSVC.exe => No File
FirewallRules: [{4E1CAA2B-9BC9-425D-9B1D-42B26C1C0DA9}] => (Allow) C:\Program Files\MuMuVMMVbox\Hypervisor\MuMuVMMHeadless.exe => No File
FirewallRules: [{4136BE0B-7CAF-4869-A14D-4FBBCBF03943}] => (Allow) E:\Program Files\Netease\MuMuPlayer\nx_main\MuMuNxMain.exe => No File
FirewallRules: [TCP Query User{AF699F81-F6EE-41CE-AE35-9F7F5FBC68FE}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe] => (Allow) E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe => No File
FirewallRules: [UDP Query User{2FE6F15A-9934-4C3A-BB75-B9A94DCBAF67}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe] => (Allow) E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe => No File
FirewallRules: [TCP Query User{367B5F1B-A08F-40BB-A77D-E3D11445755C}D:\tli tracker\易火-etor.exe] => (Allow) D:\tli tracker\易火-etor.exe => No File
FirewallRules: [UDP Query User{5799A021-AC91-4907-91CB-A834FC83E337}D:\tli tracker\易火-etor.exe] => (Allow) D:\tli tracker\易火-etor.exe => No File
FirewallRules: [TCP Query User{F9EE39D0-8F55-4D22-907E-8500D92A8E17}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe => No File
FirewallRules: [UDP Query User{488CBA19-FD99-4A18-B8AA-2330FF1F2493}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe] => (Allow) E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe => No File
FirewallRules: [TCP Query User{EA0251C3-6570-487C-BACC-6ADC59E5FCBA}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe] => (Block) C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe => No File
FirewallRules: [UDP Query User{CF252654-6BFE-41F8-B35E-E9E885938422}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe] => (Block) C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe => No File
FirewallRules: [{91DFF856-475D-488F-9676-C8438F641515}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\start_protected_game.exe => No File
FirewallRules: [{BDD5A781-14AB-4770-8ADA-B169F7424AB6}] => (Allow) E:\SteamLibrary\steamapps\common\HeroSiege\bin\start_protected_game.exe => No File
FirewallRules: [TCP Query User{24F8A9A3-61E5-415E-8380-44EEFD08EF20}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe] => (Allow) C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe => No File
FirewallRules: [UDP Query User{9093BF77-5352-48C9-BBDD-9F4C96AB91EF}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe] => (Allow) C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe => No File
FirewallRules: [TCP Query User{436F6495-6D23-4AC3-A1C8-46386D7DC6EC}D:\tli test\易火-etor.exe] => (Allow) D:\tli test\易火-etor.exe => No File
FirewallRules: [UDP Query User{7689C40A-3C70-4D90-AA08-400EBCBFirewallRules: [{E770BC97-1FBC-4CB0-A89E-C0965984CCC6}] => (Allow) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{9DBB99F5-356A-4009-A723-0EDE22F8F800}] => (Allow) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{DDAA2D1A-8690-4999-BAA1-A3B0AFBFC816}] => (Block) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File
FirewallRules: [{644F641E-B5BE-4589-BFDE-4DFBEB0C12C3}] => (Block) D:\overwolf\0.296.3.3\OverwolfBrowser.exe => No File03117}D:\tli test\易火-etor.exe] => (Allow) D:\tli test\易火-etor.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Arc" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\System\CurrentControlSet\Services\WinRing0_1_2_0 => removed successfully
WinRing0_1_2_0 => service removed successfully
SS4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys (No File) => Error: No automatic fix found for this entry.
HKLM\System\CurrentControlSet\Services\semav6msr64 => removed successfully
semav6msr64 => service removed successfully
Error Reading file: "C:\ProgramData\Desktop\Urban Rivals.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\TeamSpeak 3 Client.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\StreamElements SE.Live.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Path of Exile.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Path of Exile 2.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\OBS Studio.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Legacy Games Launcher.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\League of Legends PBE.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\GOG Galaxy.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Epic Games Launcher.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\EA.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\desktop.ini" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\CPUID HWMonitor.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Bloody7.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Battlestate Games Launcher.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Battle.net.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Avast Free Antivirus.lnk" => Error: No automatic fix found for this entry.
Error Reading file: "C:\ProgramData\Desktop\Ascension Launcher.lnk" => Error: No automatic fix found for this entry.
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{03B29243-35DA-4858-920E-B70A007DF5AA} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{22D49062-B8D3-4DD5-B9C2-A044EA04D5CD} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{5E9DEE2B-5F44-4C87-84B8-D2E7B11D7017} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{674CB023-C9D4-4286-B1FF-A1FF76AD4B27} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{8DC94452-5748-435A-B24F-B0F57718821E} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{BCF99248-58CE-4562-B227-14D1E171B49D} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{d1b22d3d-8585-53a6-acb3-0e803c7e8d2a} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D} => removed successfully
HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31} => removed successfully
ustomCLSID: HKU\S-1-5-21-994775172-3552113607-2548991599-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\David Hynek\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File => Error: No automatic fix found for this entry.
C:\WINDOWS\tracing => ":?" ADS removed successfully
C:\ProgramData\DisplaySessionContainer1.log => ":F107EE40EF" ADS removed successfully
C:\ProgramData\DisplaySessionContainer1.log_backup1 => ":2DD1EC5C91" ADS removed successfully
C:\ProgramData\droidcam-client-options-v2 => ":8329C6407A" ADS removed successfully
C:\ProgramData\droidcam-settings => ":3FFAD04353" ADS removed successfully
C:\ProgramData\mntemp => ":8EAD8B3507" ADS removed successfully
C:\ProgramData\NvcDispCorePlugin.log => ":AAE9D2281E" ADS removed successfully
C:\ProgramData\NvcDispCorePlugin.log_backup1 => ":E79F04DA79" ADS removed successfully
C:\ProgramData\NVDisplay.ContainerLocalSystem.log => ":5ACBC90093" ADS removed successfully
C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 => ":A416BDA264" ADS removed successfully
C:\ProgramData\NVDisplayContainerWatchdog.log => ":204739A7F2" ADS removed successfully
C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 => ":C3CA1050CA" ADS removed successfully
C:\ProgramData\tmpstandard_currency_values.json => ":F4C74062FB" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\BS.Player FREE.lnk => ":A5A4BED038" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini => ":B1DA6C571C" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk => ":BE32D07BC5" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk => ":F20EF51E1F" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56AF4973-A23B-4591-90E5-8030FB6006E4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3AB4FFEA-274E-4618-9FD2-9F71F84B0DE0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B96AD29C-FC47-46E3-890A-55C944871F4E}D:\overwatch\_retail_\overwatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{86A8832F-C937-4BE9-8FAE-D4CBDD64BB42}D:\overwatch\_retail_\overwatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{94A2751F-8F53-4DE7-B83E-3CE17004D474}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{55FC42C4-F2E2-4244-8675-B601713933CF}C:\users\david hynek\appdata\local\microsoft\teams\current\teams.exe" => removed successfully
irewallRules: [{8CF11923-C1E0-4986-BC6C-51EF17DED07B}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A302F09E-0896-4678-A772-56292339F8C2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{913652B1-0A39-44AE-8518-BB9A4DCE2E7B}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{73DC99ED-9F82-4079-B5A5-C69FAC6E67AF}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F86CE947-79DC-4E0B-9087-CD0A4ECACDCB}E:\ascension launcher\ascension launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8473DF1B-C4AB-4BA1-9793-315EEEA53EF1}E:\ascension launcher\ascension launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3B5B674A-628E-479F-8E9D-DD785E2973B6}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{DF25383A-8992-4A40-B3F4-810CE1745CB8}D:\heroes of the storm\versions\base93810\heroesofthestorm_x64.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E1973FEB-277D-43FD-B228-DF77C34083CF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4E1CAA2B-9BC9-425D-9B1D-42B26C1C0DA9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4136BE0B-7CAF-4869-A14D-4FBBCBF03943}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{AF699F81-F6EE-41CE-AE35-9F7F5FBC68FE}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2FE6F15A-9934-4C3A-BB75-B9A94DCBAF67}E:\program files\netease\mumuplayer\nx_device\12.0\shell\mumunxdevice.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{367B5F1B-A08F-40BB-A77D-E3D11445755C}D:\tli tracker\易火-etor.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5799A021-AC91-4907-91CB-A834FC83E337}D:\tli tracker\易火-etor.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F9EE39D0-8F55-4D22-907E-8500D92A8E17}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{488CBA19-FD99-4A18-B8AA-2330FF1F2493}E:\steamlibrary\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\webviewsupport.cef904430\render.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EA0251C3-6570-487C-BACC-6ADC59E5FCBA}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CF252654-6BFE-41F8-B35E-E9E885938422}C:\users\david hynek\appdata\local\discord\app-1.0.9230\discord.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{91DFF856-475D-488F-9676-C8438F641515}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BDD5A781-14AB-4770-8ADA-B169F7424AB6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{24F8A9A3-61E5-415E-8380-44EEFD08EF20}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9093BF77-5352-48C9-BBDD-9F4C96AB91EF}C:\users\david hynek\appdata\local\temp\rar$exa21484.6309\易火-etor.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{436F6495-6D23-4AC3-A1C8-46386D7DC6EC}D:\tli test\易火-etor.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7689C40A-3C70-4D90-AA08-400EBCBFirewallRules: [{E770BC97-1FBC-4CB0-A89E-C0965984CCC6}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DBB99F5-356A-4009-A723-0EDE22F8F800}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DDAA2D1A-8690-4999-BAA1-A3B0AFBFC816}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{644F641E-B5BE-4589-BFDE-4DFBEB0C12C3}" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1268848061 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 842647843 B
Windows/system/drivers => 99320943 B
Edge => 757997675 B
Chrome => 1376881847 B
Firefox => 0 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 21041 B
systemprofile32 => 0 B
LocalService => 237048 B
NetworkService => 0 B
David Hynek => 7901628148 B

RecycleBin => 0 B
EmptyTemp: => 11.4 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 22:49:48 ====

Odpovědět