Stránka 1 z 2
chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 06 dub 2020 10:21
od harrissonvolvo
dobrý den,
při zapnutí PC vyskakují tyto dvě hlášky, zároveň nemohu spustit ani znovu nainstalovat ESET.
Prosím o pomoc, logy přikládám. Děkuji
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 06 dub 2020 12:47
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner
https://malwarebytes.com/adwcleaner/ nebo
http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 06 dub 2020 17:10
od harrissonvolvo
Dobrý večer,
přikládám a děkuji:
# -------------------------------
# Malwarebytes AdwCleaner 8.0.4.0
# -------------------------------
# Build: 04-03-2020
# Database: 2020-04-03.1 (Cloud)
# Support:
https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 04-06-2020
# Duration: 00:00:15
# OS: Windows 10 Home
# Scanned: 32067
# Detected: 0
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
No Preinstalled Software found.
AdwCleaner[S00].txt - [1881 octets] - [06/04/2020 10:44:09]
AdwCleaner[C00].txt - [1977 octets] - [06/04/2020 10:46:09]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 06 dub 2020 18:08
od Rudy
Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {77cf13b4-f934-11e6-aa2d-4ccc6a6be1f4} - "F:\WD Drive Unlock.exe" autoplay=true
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {9262f213-083e-11ea-aa97-4ccc6a6be1f4} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {f27e32b0-5adc-11ea-aaa2-4ccc6a6be1f4} - "E:\HiSuiteDownLoader.exe"
Task: {5F7C8825-1E3C-4CC0-B281-3CBB7141BEB3} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {7C8BB0BA-BF01-4B96-92C7-15E04AA95DF0} - System32\Tasks\Microsoft\Windows\Wininet\Winlogui => winlogui.exe <==== ATTENTION
Task: {880A86A7-7402-400E-A348-A2D9E118AAE0} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {A907691B-23B9-4E0D-953F-6EC89C8747CB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-26] (Google LLC -> Google LLC)
Task: {AC7C2C12-0A4D-4189-A890-C6DDC9E5DEBC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-26] (Google LLC -> Google LLC)
Task: {C9C82DB7-C90B-4010-9F73-2D86C8EE78B1} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\winrmsrv => winrmsrv.exe <==== ATTENTION
Task: {E795F9BB-46BE-414F-9F4A-F015640EC7D9} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
S3 wuauserv; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 wuauserv; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
FirewallRules: [{D6B9BAC4-8EF8-4453-839D-80A19AB8A4EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Just Cause 4\JustCause4.exe No File
FirewallRules: [{957787F4-A5C2-4540-A081-03D9956F2255}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Just Cause 4\JustCause4.exe No File
FirewallRules: [UDP Query User{8566C1A6-506D-45F6-8D29-B6D7ABEBCC9E}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [TCP Query User{75A72DAC-136B-4B20-9DAD-9A8F9230BA33}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [UDP Query User{B361002F-EE40-4E70-8928-D23FBCCFAB9F}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [TCP Query User{DFE1633C-BD2D-4B04-8981-8757871E6BEC}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [UDP Query User{46EAB097-767B-4E2C-887D-92DD7AE40D5B}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [TCP Query User{25CF627D-CB14-4B61-87F5-F6C47C8830FD}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [{39E79C96-9BA6-463B-A804-CB2452B54A94}] => (Block) %ProgramFiles% (x86)\Watch_Dogs 2\bin\WatchDogs2.exe No File
FirewallRules: [{5F46EF8E-24BF-4750-A40A-93A52AADC1CD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{4858704B-DC84-4F9A-A3D1-E979C25CED52}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{A512BFA6-E0F9-4C4D-8BA4-B14DD04FC124}] => (Block) %ProgramFiles% (x86)\Wolfenstein II The New Colossus\NewColossus_x64vk.exe No File
FirewallRules: [{EE4A03BA-ABEE-49DE-9BF9-5C1BAAC841A1}] => (Block) D:\Games\The Evil Within 2\TEW2.exe (Zenimax Asia K.K.) [File not signed]
FirewallRules: [{EE59409B-4FFC-4BF3-9B79-789C9680FFA0}] => (Block) %ProgramFiles% (x86)\Bethesda Softworks\The Evil Within\EvilWithin.exe No File
FirewallRules: [{C34559D0-83A2-4489-AFF0-0C3E8B938E6D}] => (Block) D:\Games\Outlast 2\Binaries\Win64\Outlast2.exe No File
FirewallRules: [UDP Query User{29753CEA-1458-4FCA-A216-F220FE94511C}C:\program files (x86)\resident evil 6\bh6.exe] => (Block) C:\program files (x86)\resident evil 6\bh6.exe No File
FirewallRules: [TCP Query User{68C36D2B-E31E-43B2-B642-ADBB3943EE09}C:\program files (x86)\resident evil 6\bh6.exe] => (Block) C:\program files (x86)\resident evil 6\bh6.exe No File
FirewallRules: [UDP Query User{2CD7BCFF-A45F-48F5-B1F2-74EBEF70854E}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [TCP Query User{9AC572B9-8A1A-45CD-A656-6CD6F59F381C}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [UDP Query User{402BD3CC-3705-44E8-A7AB-EDF8A4C7706A}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Block) C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe No File
FirewallRules: [TCP Query User{8082FA0E-1399-4DA9-B83F-28F33C855E20}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Block) C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe No File
FirewallRules: [{6E6D1737-1945-4634-AA88-8ED90FDE7727}] => (Block) %ProgramFiles%\Dishonored 2\Dishonored2.exe No File
FirewallRules: [{8A3E636F-C278-4324-BBCA-39A44AC033F7}] => (Block) %ProgramFiles%\Dishonored 2\Dishonored2.exe No File
FirewallRules: [{8C6F844E-702E-4F5C-82F4-8FD438943EB5}] => (Block) %SystemDrive%\GetEven\Binaries\Win64\GetEven.exe No File
FirewallRules: [UDP Query User{7F044603-9197-4D17-A5BA-E7978422A041}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored\binaries\win32\dishonored.exe No File
FirewallRules: [TCP Query User{0514A006-BDCA-4BA2-8F44-4D89E7A3EE39}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored\binaries\win32\dishonored.exe No File
FirewallRules: [{E4CF8F3C-5FC7-4ED4-9EBF-CE82D8FB2817}] => (Block) %ProgramFiles% (x86)\Prey\Binaries\Danielle\x64\Release\Prey.exe No File
FirewallRules: [{4B360380-6BEB-4CF4-8133-4A499F97C3F9}] => (Block) %SystemDrive%\GOG Games\The Witcher 3 - Wild Hunt\bin\x64\witcher3.exe No File
FirewallRules: [{E765595F-E402-4D04-9D0E-508FC3D4BE45}] => (Block) %ProgramFiles% (x86)\Resident Evil 7 Biohazard\re7.exe No File
FirewallRules: [{17DB8689-4BDD-45A7-A971-2AE76ADD7C6C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe No File
FirewallRules: [{2D7CB72A-A480-49BE-9B42-7C92E0308D9A}] => (Allow) C:\Program Files (x86)\WTFast\WTFast.exe (AAA Internet Publishing, Inc. -> AAA Internet Publishing, Inc.)
FirewallRules: [{8232E619-8BEE-42CB-AD76-D1981CF791D6}] => (Block) %ProgramFiles% (x86)\Doom\DOOMx64.exe No File
FirewallRules: [{0C49F794-331A-4399-8CD3-731F14616B75}] => (Block) D:\Games\XCOM 2\Binaries\Win64\XCom2.exe No File
FirewallRules: [TCP Query User{D95BB442-8FB1-426B-80A1-35F7B0B3CAC3}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [UDP Query User{1BC102F7-064B-4292-860D-185762295101}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [{0F158B71-31AA-4BDD-A92F-B51F87B7C1FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe No File
FirewallRules: [TCP Query User{6AE4C03C-8A69-44FC-9643-1969C76E1D40}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{4630F4E0-9BF7-42A2-BDAD-466AAB6E9E4D}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{922E641F-4499-4C95-BB6D-BC814A561FE1}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{CA49F608-B017-4120-ACE9-2435269535F3}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{64C1050C-7886-4D12-967F-35BB522BDF75}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{2FB0E2BB-67A1-4353-91FE-EF3B027644CF}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{05AD9FAB-A299-4501-9FC0-97E0401EE4B2}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe] => (Allow) C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{C0D56486-CEC8-41EC-90A6-864B97E2F054}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe] => (Allow) C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{0E279810-1FD8-4501-8307-AE6EFF027F47}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{26CF9D23-2DC7-4A98-ADF3-AF24935A9313}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{2AE7CBDC-83AA-48EA-9D62-9BBF80820B96}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [UDP Query User{4616977D-0F96-4A19-AF2B-6C7F05089164}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [{13B7FCF9-292C-493B-9CDC-3EA955F33032}] => (Block) %ProgramFiles% (x86)\Watch_Dogs 2\bin\WatchDogs2.exe No File
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
FirewallRules: [{44B6FB0C-AD91-4A74-9CF1-C16282CA034A}] => (Block) D:\Games\Forza.Horizon.4.Ultimate.Edition-LOOTBOX\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe.exe No File
FirewallRules: [{D6D31DB7-0E7B-47B7-B1C4-1FA986B6817F}] => (Block) D:\Games\Forza.Horizon.4.Ultimate.Edition-LOOTBOX\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe.exe No File
FirewallRules: [{A81A1242-09A3-4989-8F9E-B665848B3558}] => (Block) D:\Games\Age of Wonders Planetfall\AowPF.exe () [File not signed]
FirewallRules: [{585EF05F-D1A6-48DC-A567-4C9F1ED7C18F}] => (Block) D:\Games\Control\Control.exe No File
FirewallRules: [{BBFE5A0D-AA14-4F45-9727-5C910869B40F}] => (Block) D:\Games\Control\Control_DX12.exe No File
FirewallRules: [{1EA8D38D-1029-413E-AFCD-2D21C46CABB7}] => (Block) D:\Remnant From The Ashes\Remnant.exe No File
FirewallRules: [{4EF574CE-CF1A-4D93-B870-4DF417F0CC29}] => (Block) D:\Games\Deliver Us The Moon\MoonMan.exe No File
FirewallRules: [{CC7A3D0C-3B4F-406A-9EC6-76EEDC820B59}] => (Block) D:\Games\Moons of Madness\MoonsOfMadness.exe No File
FirewallRules: [TCP Query User{75FD4A73-BAC8-449A-9555-371170CF1A6B}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe] => (Block) C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe No File
FirewallRules: [UDP Query User{65E4F858-3007-47FD-BF4A-E8DB3F08569D}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe] => (Block) C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe No File
FirewallRules: [TCP Query User{AC03F118-B2B3-4280-9155-747E59CF573F}C:\windows\system32\winrmsrv.exe] => (Block) C:\windows\system32\winrmsrv.exe No File
FirewallRules: [UDP Query User{CBFDC59D-272C-479A-9F80-B93D309FEB6F}C:\windows\system32\winrmsrv.exe] => (Block) C:\windows\system32\winrmsrv.exe No File
H:\CODEX\AowPF_Debug.exe
EmptyTemp:
End
Uložte do C:\Users\Robert\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:07
od harrissonvolvo
Provedeno, po restartu se hláška již neobjevila, nicméně instalace ESETu stále nelze, hlásí chybu kvůli možné infiltraci počítače. Výsledný log:
Fix result of Farbar Recovery Scan Tool (x64) Version: 05-04-2020
Ran by Robert (07-04-2020 09:58:26) Run:1
Running from C:\Users\Robert\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\TempState\Downloads
Loaded Profiles: Robert (Available Profiles: Robert & petra & DevToolsUser)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {77cf13b4-f934-11e6-aa2d-4ccc6a6be1f4} - "F:\WD Drive Unlock.exe" autoplay=true
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {9262f213-083e-11ea-aa97-4ccc6a6be1f4} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\...\MountPoints2: {f27e32b0-5adc-11ea-aaa2-4ccc6a6be1f4} - "E:\HiSuiteDownLoader.exe"
Task: {5F7C8825-1E3C-4CC0-B281-3CBB7141BEB3} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {7C8BB0BA-BF01-4B96-92C7-15E04AA95DF0} - System32\Tasks\Microsoft\Windows\Wininet\Winlogui => winlogui.exe <==== ATTENTION
Task: {880A86A7-7402-400E-A348-A2D9E118AAE0} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Task: {A907691B-23B9-4E0D-953F-6EC89C8747CB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-26] (Google LLC -> Google LLC)
Task: {AC7C2C12-0A4D-4189-A890-C6DDC9E5DEBC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-03-26] (Google LLC -> Google LLC)
Task: {C9C82DB7-C90B-4010-9F73-2D86C8EE78B1} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\winrmsrv => winrmsrv.exe <==== ATTENTION
Task: {E795F9BB-46BE-414F-9F4A-F015640EC7D9} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
S3 wuauserv; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 wuauserv; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET NOD32 Antivirus\shellExt.dll -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
FirewallRules: [{D6B9BAC4-8EF8-4453-839D-80A19AB8A4EB}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Just Cause 4\JustCause4.exe No File
FirewallRules: [{957787F4-A5C2-4540-A081-03D9956F2255}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Just Cause 4\JustCause4.exe No File
FirewallRules: [UDP Query User{8566C1A6-506D-45F6-8D29-B6D7ABEBCC9E}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [TCP Query User{75A72DAC-136B-4B20-9DAD-9A8F9230BA33}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [UDP Query User{B361002F-EE40-4E70-8928-D23FBCCFAB9F}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [TCP Query User{DFE1633C-BD2D-4B04-8981-8757871E6BEC}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [UDP Query User{46EAB097-767B-4E2C-887D-92DD7AE40D5B}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [TCP Query User{25CF627D-CB14-4B61-87F5-F6C47C8830FD}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [{39E79C96-9BA6-463B-A804-CB2452B54A94}] => (Block) %ProgramFiles% (x86)\Watch_Dogs 2\bin\WatchDogs2.exe No File
FirewallRules: [{5F46EF8E-24BF-4750-A40A-93A52AADC1CD}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{4858704B-DC84-4F9A-A3D1-E979C25CED52}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{A512BFA6-E0F9-4C4D-8BA4-B14DD04FC124}] => (Block) %ProgramFiles% (x86)\Wolfenstein II The New Colossus\NewColossus_x64vk.exe No File
FirewallRules: [{EE4A03BA-ABEE-49DE-9BF9-5C1BAAC841A1}] => (Block) D:\Games\The Evil Within 2\TEW2.exe (Zenimax Asia K.K.) [File not signed]
FirewallRules: [{EE59409B-4FFC-4BF3-9B79-789C9680FFA0}] => (Block) %ProgramFiles% (x86)\Bethesda Softworks\The Evil Within\EvilWithin.exe No File
FirewallRules: [{C34559D0-83A2-4489-AFF0-0C3E8B938E6D}] => (Block) D:\Games\Outlast 2\Binaries\Win64\Outlast2.exe No File
FirewallRules: [UDP Query User{29753CEA-1458-4FCA-A216-F220FE94511C}C:\program files (x86)\resident evil 6\bh6.exe] => (Block) C:\program files (x86)\resident evil 6\bh6.exe No File
FirewallRules: [TCP Query User{68C36D2B-E31E-43B2-B642-ADBB3943EE09}C:\program files (x86)\resident evil 6\bh6.exe] => (Block) C:\program files (x86)\resident evil 6\bh6.exe No File
FirewallRules: [UDP Query User{2CD7BCFF-A45F-48F5-B1F2-74EBEF70854E}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [TCP Query User{9AC572B9-8A1A-45CD-A656-6CD6F59F381C}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe] => (Block) D:\games\dead island riptide definitive edition\deadislandriptidegame.exe No File
FirewallRules: [UDP Query User{402BD3CC-3705-44E8-A7AB-EDF8A4C7706A}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Block) C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe No File
FirewallRules: [TCP Query User{8082FA0E-1399-4DA9-B83F-28F33C855E20}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe] => (Block) C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe No File
FirewallRules: [{6E6D1737-1945-4634-AA88-8ED90FDE7727}] => (Block) %ProgramFiles%\Dishonored 2\Dishonored2.exe No File
FirewallRules: [{8A3E636F-C278-4324-BBCA-39A44AC033F7}] => (Block) %ProgramFiles%\Dishonored 2\Dishonored2.exe No File
FirewallRules: [{8C6F844E-702E-4F5C-82F4-8FD438943EB5}] => (Block) %SystemDrive%\GetEven\Binaries\Win64\GetEven.exe No File
FirewallRules: [UDP Query User{7F044603-9197-4D17-A5BA-E7978422A041}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored\binaries\win32\dishonored.exe No File
FirewallRules: [TCP Query User{0514A006-BDCA-4BA2-8F44-4D89E7A3EE39}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe] => (Block) C:\program files (x86)\dishonored\binaries\win32\dishonored.exe No File
FirewallRules: [{E4CF8F3C-5FC7-4ED4-9EBF-CE82D8FB2817}] => (Block) %ProgramFiles% (x86)\Prey\Binaries\Danielle\x64\Release\Prey.exe No File
FirewallRules: [{4B360380-6BEB-4CF4-8133-4A499F97C3F9}] => (Block) %SystemDrive%\GOG Games\The Witcher 3 - Wild Hunt\bin\x64\witcher3.exe No File
FirewallRules: [{E765595F-E402-4D04-9D0E-508FC3D4BE45}] => (Block) %ProgramFiles% (x86)\Resident Evil 7 Biohazard\re7.exe No File
FirewallRules: [{17DB8689-4BDD-45A7-A971-2AE76ADD7C6C}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe No File
FirewallRules: [{2D7CB72A-A480-49BE-9B42-7C92E0308D9A}] => (Allow) C:\Program Files (x86)\WTFast\WTFast.exe (AAA Internet Publishing, Inc. -> AAA Internet Publishing, Inc.)
FirewallRules: [{8232E619-8BEE-42CB-AD76-D1981CF791D6}] => (Block) %ProgramFiles% (x86)\Doom\DOOMx64.exe No File
FirewallRules: [{0C49F794-331A-4399-8CD3-731F14616B75}] => (Block) D:\Games\XCOM 2\Binaries\Win64\XCom2.exe No File
FirewallRules: [TCP Query User{D95BB442-8FB1-426B-80A1-35F7B0B3CAC3}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [UDP Query User{1BC102F7-064B-4292-860D-185762295101}C:\users\robert\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\robert\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [{0F158B71-31AA-4BDD-A92F-B51F87B7C1FF}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe No File
FirewallRules: [TCP Query User{6AE4C03C-8A69-44FC-9643-1969C76E1D40}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{4630F4E0-9BF7-42A2-BDAD-466AAB6E9E4D}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{922E641F-4499-4C95-BB6D-BC814A561FE1}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{CA49F608-B017-4120-ACE9-2435269535F3}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{64C1050C-7886-4D12-967F-35BB522BDF75}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{2FB0E2BB-67A1-4353-91FE-EF3B027644CF}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{05AD9FAB-A299-4501-9FC0-97E0401EE4B2}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe] => (Allow) C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{C0D56486-CEC8-41EC-90A6-864B97E2F054}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe] => (Allow) C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{0E279810-1FD8-4501-8307-AE6EFF027F47}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe No File
FirewallRules: [UDP Query User{26CF9D23-2DC7-4A98-ADF3-AF24935A9313}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe] => (Allow) C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe No File
FirewallRules: [TCP Query User{2AE7CBDC-83AA-48EA-9D62-9BBF80820B96}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [UDP Query User{4616977D-0F96-4A19-AF2B-6C7F05089164}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe] => (Block) D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe No File
FirewallRules: [{13B7FCF9-292C-493B-9CDC-3EA955F33032}] => (Block) %ProgramFiles% (x86)\Watch_Dogs 2\bin\WatchDogs2.exe No File
FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
FirewallRules: [{44B6FB0C-AD91-4A74-9CF1-C16282CA034A}] => (Block) D:\Games\Forza.Horizon.4.Ultimate.Edition-LOOTBOX\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe.exe No File
FirewallRules: [{D6D31DB7-0E7B-47B7-B1C4-1FA986B6817F}] => (Block) D:\Games\Forza.Horizon.4.Ultimate.Edition-LOOTBOX\FH4\Microsoft.SunriseBaseGame_1.332.904.2_x64__8wekyb3d8bbwe.exe.exe No File
FirewallRules: [{A81A1242-09A3-4989-8F9E-B665848B3558}] => (Block) D:\Games\Age of Wonders Planetfall\AowPF.exe () [File not signed]
FirewallRules: [{585EF05F-D1A6-48DC-A567-4C9F1ED7C18F}] => (Block) D:\Games\Control\Control.exe No File
FirewallRules: [{BBFE5A0D-AA14-4F45-9727-5C910869B40F}] => (Block) D:\Games\Control\Control_DX12.exe No File
FirewallRules: [{1EA8D38D-1029-413E-AFCD-2D21C46CABB7}] => (Block) D:\Remnant From The Ashes\Remnant.exe No File
FirewallRules: [{4EF574CE-CF1A-4D93-B870-4DF417F0CC29}] => (Block) D:\Games\Deliver Us The Moon\MoonMan.exe No File
FirewallRules: [{CC7A3D0C-3B4F-406A-9EC6-76EEDC820B59}] => (Block) D:\Games\Moons of Madness\MoonsOfMadness.exe No File
FirewallRules: [TCP Query User{75FD4A73-BAC8-449A-9555-371170CF1A6B}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe] => (Block) C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe No File
FirewallRules: [UDP Query User{65E4F858-3007-47FD-BF4A-E8DB3F08569D}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe] => (Block) C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe No File
FirewallRules: [TCP Query User{AC03F118-B2B3-4280-9155-747E59CF573F}C:\windows\system32\winrmsrv.exe] => (Block) C:\windows\system32\winrmsrv.exe No File
FirewallRules: [UDP Query User{CBFDC59D-272C-479A-9F80-B93D309FEB6F}C:\windows\system32\winrmsrv.exe] => (Block) C:\windows\system32\winrmsrv.exe No File
H:\CODEX\AowPF_Debug.exe
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{77cf13b4-f934-11e6-aa2d-4ccc6a6be1f4} => removed successfully
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{9262f213-083e-11ea-aa97-4ccc6a6be1f4} => removed successfully
HKU\S-1-5-21-2062836954-3303181262-3440189187-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f27e32b0-5adc-11ea-aaa2-4ccc6a6be1f4} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F7C8825-1E3C-4CC0-B281-3CBB7141BEB3}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Application Experience\StartupCheckLibrary" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7C8BB0BA-BF01-4B96-92C7-15E04AA95DF0}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\Wininet\Winlogui" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Wininet\Winlogui" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{880A86A7-7402-400E-A348-A2D9E118AAE0}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\WDI\SrvHost" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WDI\SrvHost" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A907691B-23B9-4E0D-953F-6EC89C8747CB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A907691B-23B9-4E0D-953F-6EC89C8747CB}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AC7C2C12-0A4D-4189-A890-C6DDC9E5DEBC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC7C2C12-0A4D-4189-A890-C6DDC9E5DEBC}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C9C82DB7-C90B-4010-9F73-2D86C8EE78B1}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\Windows Error Reporting\winrmsrv" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Error Reporting\winrmsrv" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E795F9BB-46BE-414F-9F4A-F015640EC7D9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E795F9BB-46BE-414F-9F4A-F015640EC7D9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
HKLM\System\CurrentControlSet\Services\wuauserv => removed successfully
wuauserv => service removed successfully
wuauserv => service not found.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ESET Security Shell => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\ESET Security Shell => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6B9BAC4-8EF8-4453-839D-80A19AB8A4EB}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{957787F4-A5C2-4540-A081-03D9956F2255}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8566C1A6-506D-45F6-8D29-B6D7ABEBCC9E}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{75A72DAC-136B-4B20-9DAD-9A8F9230BA33}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B361002F-EE40-4E70-8928-D23FBCCFAB9F}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DFE1633C-BD2D-4B04-8981-8757871E6BEC}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{46EAB097-767B-4E2C-887D-92DD7AE40D5B}C:\users\robert\appdata\roaming\utorrent\utorrent.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{25CF627D-CB14-4B61-87F5-F6C47C8830FD}C:\users\robert\appdata\roaming\utorrent\utorrent.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{39E79C96-9BA6-463B-A804-CB2452B54A94}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5F46EF8E-24BF-4750-A40A-93A52AADC1CD}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4858704B-DC84-4F9A-A3D1-E979C25CED52}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A512BFA6-E0F9-4C4D-8BA4-B14DD04FC124}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE4A03BA-ABEE-49DE-9BF9-5C1BAAC841A1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE59409B-4FFC-4BF3-9B79-789C9680FFA0}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C34559D0-83A2-4489-AFF0-0C3E8B938E6D}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{29753CEA-1458-4FCA-A216-F220FE94511C}C:\program files (x86)\resident evil 6\bh6.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{68C36D2B-E31E-43B2-B642-ADBB3943EE09}C:\program files (x86)\resident evil 6\bh6.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2CD7BCFF-A45F-48F5-B1F2-74EBEF70854E}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9AC572B9-8A1A-45CD-A656-6CD6F59F381C}D:\games\dead island riptide definitive edition\deadislandriptidegame.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{402BD3CC-3705-44E8-A7AB-EDF8A4C7706A}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8082FA0E-1399-4DA9-B83F-28F33C855E20}C:\program files (x86)\deadfall adventures\binaries\win32\advgame-win32-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6E6D1737-1945-4634-AA88-8ED90FDE7727}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8A3E636F-C278-4324-BBCA-39A44AC033F7}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8C6F844E-702E-4F5C-82F4-8FD438943EB5}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7F044603-9197-4D17-A5BA-E7978422A041}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0514A006-BDCA-4BA2-8F44-4D89E7A3EE39}C:\program files (x86)\dishonored\binaries\win32\dishonored.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E4CF8F3C-5FC7-4ED4-9EBF-CE82D8FB2817}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4B360380-6BEB-4CF4-8133-4A499F97C3F9}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E765595F-E402-4D04-9D0E-508FC3D4BE45}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{17DB8689-4BDD-45A7-A971-2AE76ADD7C6C}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2D7CB72A-A480-49BE-9B42-7C92E0308D9A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8232E619-8BEE-42CB-AD76-D1981CF791D6}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0C49F794-331A-4399-8CD3-731F14616B75}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D95BB442-8FB1-426B-80A1-35F7B0B3CAC3}C:\users\robert\appdata\roaming\utorrent\utorrent.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1BC102F7-064B-4292-860D-185762295101}C:\users\robert\appdata\roaming\utorrent\utorrent.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0F158B71-31AA-4BDD-A92F-B51F87B7C1FF}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6AE4C03C-8A69-44FC-9643-1969C76E1D40}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4630F4E0-9BF7-42A2-BDAD-466AAB6E9E4D}C:\users\robert\appdata\local\temp\rar$exa0.788\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{922E641F-4499-4C95-BB6D-BC814A561FE1}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CA49F608-B017-4120-ACE9-2435269535F3}C:\users\robert\appdata\local\temp\rar$exa0.791\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{64C1050C-7886-4D12-967F-35BB522BDF75}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2FB0E2BB-67A1-4353-91FE-EF3B027644CF}C:\users\robert\appdata\local\temp\rar$exa0.363\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{05AD9FAB-A299-4501-9FC0-97E0401EE4B2}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C0D56486-CEC8-41EC-90A6-864B97E2F054}C:\users\robert\desktop\fotky mobil\nová složka\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0E279810-1FD8-4501-8307-AE6EFF027F47}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{26CF9D23-2DC7-4A98-ADF3-AF24935A9313}C:\users\robert\appdata\local\temp\rar$exa0.880\msiproductreghelper.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2AE7CBDC-83AA-48EA-9D62-9BBF80820B96}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4616977D-0F96-4A19-AF2B-6C7F05089164}D:\games\might and magic heroes vii\binaries\win64\mmh7game-win64-shipping.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{13B7FCF9-292C-493B-9CDC-3EA955F33032}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\OpenSSH-Server-In-TCP" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{44B6FB0C-AD91-4A74-9CF1-C16282CA034A}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6D31DB7-0E7B-47B7-B1C4-1FA986B6817F}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A81A1242-09A3-4989-8F9E-B665848B3558}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{585EF05F-D1A6-48DC-A567-4C9F1ED7C18F}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BBFE5A0D-AA14-4F45-9727-5C910869B40F}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1EA8D38D-1029-413E-AFCD-2D21C46CABB7}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4EF574CE-CF1A-4D93-B870-4DF417F0CC29}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CC7A3D0C-3B4F-406A-9EC6-76EEDC820B59}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{75FD4A73-BAC8-449A-9555-371170CF1A6B}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{65E4F858-3007-47FD-BF4A-E8DB3F08569D}C:\users\robert\appdata\local\packages\microsoft.microsoftedge_8wekyb3d8bbwe\tempstate\downloads\anydesk (1).exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{AC03F118-B2B3-4280-9155-747E59CF573F}C:\windows\system32\winrmsrv.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CBFDC59D-272C-479A-9F80-B93D309FEB6F}C:\windows\system32\winrmsrv.exe" => not found
"H:\CODEX\AowPF_Debug.exe" => not found
=========== EmptyTemp: ==========
BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 420756345 B
Java, Flash, Steam htmlcache => 366299839 B
Windows/system/drivers => 11692425 B
Edge => 34170098 B
Chrome => 352940516 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 48914 B
NetworkService => 48914 B
Robert => 82741835 B
petra => 84035534 B
DevToolsUser => 84035534 B
RecycleBin => 0 B
EmptyTemp: => 1.3 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 10:01:51 ====
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:11
od Rudy
Vše smazáno. Pokud není nějaký další problém, je to z mé strany vše.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:13
od harrissonvolvo
Moc Vám děkuji, jen ta instalace ESETu pořád nelze, hlásí chybu z důvodu možné infiltrace PC.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:23
od Rudy
Udělejte kompletní sken AVPTool:
http://www.viry.cz/forum/viewtopic.php?f=29&t=58179 . Utilitu stáhněte, spusťte, newchte pracovat a po skončení akce smažte vše, co najde. Potom Utilitu smažte a zkuste novou instalaci ESETu.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:23
od Rudy
. Nemáte zatím zač!

Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 09:30
od harrissonvolvo
Provedu a výsledek sem hodím

Jen tak čistě pro info, co stálo za tím mým problémem? (abych se toho mohl propříště vyvarovat)
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 16:07
od Rudy
Toho se těžko vyvarujete, on to není klasický virus (AV na něj nereaguje). Natáhl jste si ho z nějakéh webu. Jda o toto:
Task: {5F7C8825-1E3C-4CC0-B281-3CBB7141BEB3} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {880A86A7-7402-400E-A348-A2D9E118AAE0} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== ATTENTION
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 16:28
od harrissonvolvo
Díky za odpověď. Jinak Kasperskym jsem projel, vše v pořádku. Jestli bych mohl poprosit ještě o jednu radu - instalačka Esetu nefunguje pořád. Hází kod chyby MSI.1723. Všimnul jsem si, že mi tam po předevčerejším odinstalu ještě nějaké složky ESET zbyly, tak nevím, jestli třeba nebrání nové instalaci? Nebo je problém jinde, v nějaké další DLL či windows installeru?
Ještě jednou díky za Vaši pomoc a trpělivost

Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 07 dub 2020 16:54
od Rudy
Zkuste projet PC odinstalátorem ESETu:
https://servis.eset.cz/knowledgebase/ar ... oyiJGDgowk a pak znovu zkuste instalovat.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 08 dub 2020 07:39
od harrissonvolvo
vyzkoušeno, bohužel nic k odstranění nenašel, instalace stále není možná... každopádně se eset objevil v CC cleaneru, při pokusu o odinstal vyskočila hláška: S balíčkem služby Windows Installer jsou potíže. Knihovna DLL, požadovaná k dokončení této instalace, nemůže být spuštěna.
Re: chybějící winscomrssrv.dll a start upchecklibrary.dll
Napsal: 08 dub 2020 09:27
od Rudy