Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Uživatelský avatar
tinozv
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 27 kvě 2007 09:28
Bydliště: Zvolen,Slovenská Republika
Kontaktovat uživatele:

Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#1 Příspěvek od tinozv »

Dobrý deň dnes sa mi z ničoho nič po zapnutí NB vytvorilo lokálne konto s názvom Martin ako užívateľské.Prihlásil som sa následne svojim kontom administrátora a v položke kontá - rodina a ostatný používatelia a konto som odstránil včetne nastavení.Konto zmizlo, ale následne sa po pár minútach , alebo reštarte objaví znovu? Situácia sa opakuje.Dalšia vec prišiel mi mail od Este-Antitheft,že sa niekto prihlásil do zariadenia fantómovým účtom a ak nepoznám poloho zariadenia mám kliknúť na odkaz v maili,neklikal som,ďalšia vec,mizne mi z plochy ikona ochrany platieb ESET.Viete niekto poradiť ako sa toho zbaviť? ďakujem za všetky rady.

Prikladám logy z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-01-2021
Ran by mtuha (administrator) on LAPTOP-ILN0UIV4 (HUAWEI HN-WX9X) (05-01-2021 16:22:04)
Running from C:\Users\mtuha\OneDrive\Počítač
Loaded Profiles: mtuha
Platform: Windows 10 Home Version 20H2 19042.685 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\Adobe Installer.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0354848.inf_amd64_86d575f2dce20eb8\B354291\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0354848.inf_amd64_86d575f2dce20eb8\B354291\atiesrxx.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.) C:\Program Files\Huawei\HwLcdEnhancement\LCD_Service.exe
(Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.) C:\Program Files\Huawei\PCManager\MateBookService.exe
(Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe
(Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Huawei Technologies Co., Ltd. -> ) C:\Windows\System32\RPC\OSD\osdservice.exe
(Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2011.11613.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2011.16.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\drivers\SessionService.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <3>
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1000736 2019-10-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [175504 2020-11-11] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1667208 2020-11-24] (Logitech Inc -> Logitech, Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2095672 2020-11-08] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [114824 2020-11-08] (Adobe Inc. -> )
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Run: [Adobe Acrobat Synchronizer] => "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe"
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5491248 2020-12-07] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\MountPoints2: {34d05eec-0ca0-11eb-aa78-1cbfc01aaaa2} - "E:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-03] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {083F1625-627C-4208-B706-89E5BCAE8EA1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {239B891D-D1A6-4B8E-A775-658A6122BB0A} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [2776440 2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {24BA8B3A-5C3E-4C49-8C1F-B4D88F34D49A} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [66952 2019-03-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {50D09B4B-0A0B-43A2-B246-BDEB3B86B5B1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.)
Task: {5244F489-A403-4D4D-BDAC-6D3BBCAA28C4} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2708457579-3479844245-1170529563-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-12-01] (Microsoft Windows -> )
Task: {6725D6FD-C4A8-4681-A694-C95589BBE937} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
Task: {801DEEF4-D383-4E9E-99CE-622650C1A892} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2020-12-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {8456F193-DDB9-48A5-A76A-66CA9D17AF84} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {908668C1-2D22-4D04-8FE1-867F940255F8} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [58760 2019-03-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {91F36F6F-96F8-42C9-9A3C-308CFA96B7DF} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {BBE2DE19-3087-44D4-A84D-CC9622A83BCB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2020-12-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {CB6CA3A5-9632-4A38-84DF-FA3FB28E4D7A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
Task: {EA327D75-302D-4625-8862-104D98CD7B35} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2708457579-3479844245-1170529563-1001 => C:\Users\mtuha\AppData\Local\MEGAsync\MEGAupdater.exe [1818360 2020-12-08] (Mega Limited -> Mega Limited)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{264947a1-1507-4086-aeb7-09c14280cfd2}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{9da3645d-87c1-429e-aa0e-5cdfddac4c0b}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{c905d1a2-a6ba-4c40-8349-577dde604a68}: [DhcpNameServer] 192.168.42.129

Edge:
======
DownloadDir: C:\Users\mtuha\Downloads
Edge Profile: C:\Users\mtuha\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-05]
Edge DownloadDir: C:\Users\mtuha\Downloads

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-10-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-11-08] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-10-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-11-08] (Adobe Inc. -> Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default [2021-01-05]
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentácie) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-11-17]
CHR Extension: (Just Black) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aghfnjkcakhmadgdomlmlhhaocbkloab [2020-11-17]
CHR Extension: (Dokumenty) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-11-17]
CHR Extension: (Disk Google) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-17]
CHR Extension: (MEGA) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2020-12-18]
CHR Extension: (YouTube) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-11-17]
CHR Extension: (Adobe Acrobat) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-12-15]
CHR Extension: (Tabuľky) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-11-17]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-17]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-11-17]
CHR Extension: (Gmail) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-17]
CHR Extension: (Chrome Media Router) - C:\Users\mtuha\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-20]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [852024 2020-11-08] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1641416 2019-05-07] (Dolby Laboratories, Inc. -> )
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2595360 2020-11-11] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2595360 2020-11-11] (ESET, spol. s r.o. -> ESET)
S3 FileSyncHelper; C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\FileSyncHelper.exe [2191224 2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [360320 2019-09-05] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2020-12-05] (Huawei Technologies Co., Ltd. -> )
R2 Huawei_OSDServer; C:\WINDOWS\System32\RPC\OSD\osdservice.exe [222672 2019-05-17] (Huawei Technologies Co., Ltd. -> )
R2 LCD_Service; C:\Program Files\Huawei\HwLcdEnhancement\LCD_Service.exe [24840 2020-11-05] (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
R2 MBAMainService; C:\Program Files\Huawei\PCManager\MateBookService.exe [673032 2020-11-05] (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
S3 OneDrive Updater Service; C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\OneDriveUpdaterService.exe [2556280 2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
R2 SessionSvc; C:\WINDOWS\System32\drivers\SessionService.exe [33920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13273104 2020-10-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-11] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited -> Windscribe Limited)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Dokan1; C:\Program Files\Huawei\PCManager\dokan1.sys [131784 2020-11-05] (ADAPP SASU -> Dokan Project)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [160992 2020-11-11] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [109360 2020-11-11] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15288 2020-10-12] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [190464 2020-11-11] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [43720 2020-11-11] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [70048 2020-11-11] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [107784 2020-11-11] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 Huawei; C:\WINDOWS\System32\drivers\osd_driver.sys [39384 2019-05-17] (Huawei Technologies Co., Ltd. -> )
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429288 2020-11-11] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-11] (Microsoft Windows -> Microsoft Corporation)
R3 WDTDrv; C:\WINDOWS\System32\Drivers\WDTDrv.sys [55600 2019-10-31] (Huaqin Telecom Technology Co.,LTD -> )

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-01-05 16:21 - 2021-01-05 16:22 - 000000000 ____D C:\FRST
2021-01-01 20:07 - 2021-01-01 20:08 - 068531857 _____ C:\Users\mtuha\Downloads\PCManager_Setup_10.0.5.51.zip
2021-01-01 12:09 - 2021-01-05 14:08 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\PCManager
2021-01-01 11:57 - 2021-01-05 15:24 - 000000000 ____D C:\Users\mtuha\PCManger
2021-01-01 11:57 - 2021-01-01 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HUAWEI
2021-01-01 10:51 - 2020-11-19 04:08 - 000000000 ____D C:\Users\mtuha\Downloads\PCManager_Setup_11.0.3.88(C001)
2021-01-01 10:50 - 2021-01-01 10:51 - 083878140 _____ C:\Users\mtuha\Downloads\PCManager_Setup_11.0.3.88(C001).zip
2020-12-29 13:31 - 2020-12-29 13:31 - 015461008 _____ C:\Users\mtuha\Downloads\tixati-2.78-1.win64-install.exe
2020-12-27 19:15 - 2020-12-27 19:15 - 010095273 _____ C:\Users\mtuha\Downloads\Batch download Pasazier_23.epub etc.zip
2020-12-25 11:00 - 2020-12-25 11:00 - 001195332 _____ C:\Users\mtuha\Downloads\00001(1).vcf
2020-12-16 21:08 - 2020-12-16 21:08 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiSuite
2020-12-16 21:08 - 2020-12-16 21:08 - 000000000 ____D C:\Program Files (x86)\HiSuite
2020-12-14 18:14 - 2020-12-14 18:14 - 000096060 _____ C:\Users\mtuha\OneDrive\Dokumenty\Dom Slatina.pdf
2020-12-13 19:16 - 2020-12-13 19:16 - 000000993 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Bridge 2021.lnk
2020-12-09 16:55 - 2020-12-09 16:55 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-12-09 16:55 - 2020-12-09 16:55 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-12-09 16:55 - 2020-12-09 16:55 - 000010912 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-12-08 13:18 - 2020-12-08 13:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Multi-Tool
2020-12-08 08:14 - 2020-12-08 08:14 - 000001052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic.lnk
2020-12-08 08:10 - 2020-12-08 08:10 - 000001074 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Rush 1.5.lnk
2020-12-08 08:07 - 2020-12-08 08:07 - 000001017 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom.lnk
2020-12-08 08:05 - 2020-12-08 08:05 - 000001031 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2021.lnk

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-01-05 16:22 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-01-05 16:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-01-05 16:15 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-01-05 16:13 - 2020-06-06 13:46 - 000000000 ____D C:\ProgramData\Goodix
2021-01-05 16:06 - 2020-10-10 04:45 - 000848374 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-05 16:02 - 2020-11-08 13:10 - 000000000 ___RD C:\Users\mtuha\Creative Cloud Files
2021-01-05 16:01 - 2020-10-10 04:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-05 16:01 - 2020-10-10 04:38 - 000008192 ___SH C:\DumpStack.log.tmp
2021-01-05 16:01 - 2020-10-10 04:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-05 16:01 - 2020-10-09 16:38 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-01-05 16:01 - 2020-06-06 13:49 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-01-05 16:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-01-05 15:56 - 2020-06-06 13:54 - 000000000 ____D C:\ProgramData\HwSynergy
2021-01-05 15:35 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-01-05 15:34 - 2020-06-06 13:38 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-01-05 15:34 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-01-05 15:34 - 2019-12-07 10:03 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2021-01-05 15:06 - 2020-10-09 16:27 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\tixati
2021-01-05 14:32 - 2020-06-06 15:16 - 000000000 ____D C:\Users\mtuha\AppData\Local\D3DSCache
2021-01-05 14:19 - 2020-10-09 16:27 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\vlc
2021-01-05 13:57 - 2020-10-09 16:56 - 000000526 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2021-01-05 10:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-01-05 09:25 - 2020-10-10 04:39 - 000000000 ____D C:\Users\mtuha
2021-01-05 09:23 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-01-05 09:22 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-01-04 19:17 - 2020-06-06 15:18 - 000000000 ___RD C:\Users\mtuha\OneDrive
2021-01-01 19:38 - 2020-06-06 15:18 - 000000000 ____D C:\Users\mtuha\AppData\Local\PlaceholderTileLogoFolder
2021-01-01 11:57 - 2020-06-06 13:53 - 000000000 ____D C:\ProgramData\Comms
2021-01-01 11:57 - 2020-06-06 13:53 - 000000000 ____D C:\Program Files\Huawei
2021-01-01 10:51 - 2020-10-09 14:58 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\HwSynergy
2020-12-31 06:20 - 2020-06-06 13:43 - 000000000 ____D C:\ProgramData\Realtek
2020-12-29 16:19 - 2020-06-06 13:54 - 000000000 ____D C:\Program Files\Microsoft Office
2020-12-29 13:32 - 2020-10-09 16:27 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Tixati
2020-12-29 13:32 - 2020-10-09 16:27 - 000000000 ____D C:\Program Files\tixati
2020-12-25 11:37 - 2020-11-08 19:53 - 000000000 ____D C:\Users\mtuha\OneDrive\Dokumenty\HiSuite
2020-12-21 18:38 - 2020-06-06 15:16 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\Adobe
2020-12-20 09:42 - 2020-10-23 15:10 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-12-16 21:09 - 2020-10-09 16:25 - 000000000 ____D C:\Users\mtuha\AppData\Local\HiSuite
2020-12-13 19:16 - 2020-10-10 08:09 - 000000000 ____D C:\Program Files\Common Files\Adobe
2020-12-13 19:14 - 2020-10-10 08:09 - 000000000 ____D C:\Program Files\Adobe
2020-12-09 17:42 - 2020-11-08 14:42 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-12-09 17:01 - 2020-10-09 14:44 - 000000000 ____D C:\Program Files (x86)\Microsoft OneDrive
2020-12-09 17:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-12-09 17:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-12-09 16:56 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-12-09 16:49 - 2020-10-09 17:35 - 000000000 ___HD C:\$WinREAgent
2020-12-08 13:18 - 2020-10-09 17:28 - 000000000 ____D C:\Users\mtuha\AppData\Roaming\Multi-Tool 8
2020-12-08 13:12 - 2020-10-09 16:28 - 000000000 ____D C:\Users\mtuha\AppData\Local\MEGAsync
2020-12-08 08:04 - 2020-10-09 20:45 - 000000000 ____D C:\ProgramData\Adobe
2020-12-07 17:34 - 2020-11-28 19:24 - 000000000 ____D C:\Users\mtuha\OneDrive\Dokumenty\Zamestnanie-náramok

==================== Files in the root of some directories ========

2020-10-09 17:10 - 2020-10-09 17:10 - 000000001 _____ () C:\Users\mtuha\AppData\Local\llftool.4.40.agreement
2020-10-09 17:10 - 2020-10-09 17:10 - 000000019 _____ () C:\Users\mtuha\AppData\Local\llftool.license
2020-10-16 08:45 - 2020-10-16 08:45 - 000000000 _____ () C:\Users\mtuha\AppData\Local\oobelibMkey.log
2020-10-09 21:35 - 2020-10-09 21:35 - 000007605 _____ () C:\Users\mtuha\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================





Additional Log:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-01-2021
Ran by mtuha (05-01-2021 16:23:27)
Running from C:\Users\mtuha\OneDrive\Počítač
Windows 10 Home Version 20H2 19042.685 (X64) (2020-10-10 03:46:31)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2708457579-3479844245-1170529563-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2708457579-3479844245-1170529563-503 - Limited - Disabled)
Guest (S-1-5-21-2708457579-3479844245-1170529563-501 - Limited - Disabled)
Martin (S-1-5-21-2708457579-3479844245-1170529563-1009 - Limited - Enabled)
mtuha (S-1-5-21-2708457579-3479844245-1170529563-1001 - Administrator - Enabled) => C:\Users\mtuha
WDAGUtilityAccount (S-1-5-21-2708457579-3479844245-1170529563-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}
FW: ESET Firewall (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

„Microsoft 365“ - lt-lt (HKLM\...\O365HomePremRetail - lt-lt) (Version: 16.0.13426.20404 - Microsoft Corporation)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 20.013.20074 - Adobe Systems Incorporated)
Adobe Bridge 2021 (HKLM-x32\...\KBRG_11_0) (Version: 11.0 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.3.1.470 - Adobe Inc.)
Adobe Lightroom (HKLM-x32\...\LRCC_4_1) (Version: 4.1 - Adobe Inc.)
Adobe Lightroom Classic (HKLM-x32\...\LTRM_10_1) (Version: 10.1 - Adobe Inc.)
Adobe Photoshop 2021 (HKLM-x32\...\PHSP_22_1) (Version: 22.1.0.94 - Adobe Inc.)
Adobe Premiere Rush (HKLM-x32\...\RUSH_1_5_40) (Version: 1.5.40 - Adobe Inc.)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2019.0306.0007.231 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.30.15 - Advanced Micro Devices, Inc.)
Branding64 (HKLM\...\{604D1295-E1F1-428E-8AE5-45445FEF6034}) (Version: 1.00.0005 - Advanced Micro Devices, Inc.) Hidden
ESET Security (HKLM\...\{99F57F1E-F93B-44A6-A802-2FDBF356D1D9}) (Version: 14.0.22.0 - ESET, spol. s r.o.)
Free ISO Creator version 1.0 (HKLM-x32\...\{FBEF93EA-D52F-45B5-91D3-ABEACE4C7615}_is1) (Version: 1.0 - freeisocreator.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Hard Disk Low Level Format Tool 4.40 (HKLM-x32\...\Hard Disk Low Level Format Tool_is1) (Version: - HDDGURU)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.500 - Huawei Technologies Co., Ltd.)
Huawei OSD (HKLM\...\HwOsd) (Version: 9.0.15.0 - Huawei Technologies Co., Ltd.)
Logitech Options (HKLM\...\LogiOptions) (Version: 8.36.86 - Logitech)
MEGAsync (HKLM-x32\...\MEGAsync) (Version: - Mega Limited)
Microsoft 365 - ar-sa (HKLM\...\O365HomePremRetail - ar-sa) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - bg-bg (HKLM\...\O365HomePremRetail - bg-bg) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - el-gr (HKLM\...\O365HomePremRetail - el-gr) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - et-ee (HKLM\...\O365HomePremRetail - et-ee) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - fr-fr (HKLM\...\O365HomePremRetail - fr-fr) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - he-il (HKLM\...\O365HomePremRetail - he-il) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - hr-hr (HKLM\...\O365HomePremRetail - hr-hr) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - ko-kr (HKLM\...\O365HomePremRetail - ko-kr) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - lv-lv (HKLM\...\O365HomePremRetail - lv-lv) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - ms-my (HKLM\...\O365HomePremRetail - ms-my) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - nl-nl (HKLM\...\O365HomePremRetail - nl-nl) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - pl-pl (HKLM\...\O365HomePremRetail - pl-pl) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - ro-ro (HKLM\...\O365HomePremRetail - ro-ro) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - sl-si (HKLM\...\O365HomePremRetail - sl-si) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - sr-latn-rs (HKLM\...\O365HomePremRetail - sr-latn-rs) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - uk-ua (HKLM\...\O365HomePremRetail - uk-ua) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - zh-cn (HKLM\...\O365HomePremRetail - zh-cn) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft 365 - zh-tw (HKLM\...\O365HomePremRetail - zh-tw) (Version: 16.0.13426.20404 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.66 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.59 - )
Microsoft OneDrive (HKLM-x32\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Multi-Tool 8 (HKLM-x32\...\{A46F89B2-C476-4100-BF2E-1A98C0F18AEF}) (Version: 0.8.9 - Team MT)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0401-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0404-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0408-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040C-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-040D-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0412-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0413-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0418-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-041A-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0422-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0426-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0427-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0804-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-241A-1000-0000000FF1CE}) (Version: 16.0.13426.20404 - Microsoft Corporation) Hidden
PC Manager (HKLM\...\PC Manager) (Version: 11.0.3.88 - Huawei Device Co., Ltd.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8825.1 - Realtek Semiconductor Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.11.6 - TeamViewer)
Tixati (HKLM-x32\...\tixati) (Version: - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Wargaming.net Game Center (HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Wargaming.net Game Center) (Version: 20.7.1.2675 - Wargaming.net)
Windscribe (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 1.83 Build 20 - Windscribe Limited)
WinRAR 5.91 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)

Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2020-11-08] (Adobe Systems Incorporated)
Adobe Photoshop Express: Image Editor, Adjustments, Filters, Effects, Borders -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobePhotoshopExpress_3.4.8.0_x64__ynb6jyjzte8ga [2020-11-28] (Adobe Inc.)
AMD Radeon™ Settings Lite -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.59462344778C5_10.19.10006.0_x64__0a9344xs7nr4m [2021-01-05] (Advanced Micro Devices Inc.)
Asphalt 9: Legends -> C:\Program Files\WindowsApps\A278AB0D.Asphalt9_2.6.300.2_x86__h6adky7gbf63m [2020-12-16] (Gameloft SE)
Dolby Atmos -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAtmos_3.20402.409.0_x64__rz1tebttyb220 [2021-01-05] (Dolby Laboratories)
Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-10-09] (Microsoft Corporation)
Huawei Keyboard Hotkeys -> C:\Program Files\WindowsApps\HuaweiPC.HuaweiKeyboardHotkeys_9.0.15.0_x64__amfdc1pkdnmaa [2021-01-05] (Huawei Technologies Co., Ltd.) [Startup Task]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2021-01-05] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.34.33581.0_x64__8wekyb3d8bbwe [2020-12-28] (Microsoft Corporation) [Startup Task]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2020-10-10] (Netflix, Inc.)
Reader Notification Client -> C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2020-11-08] (Adobe Systems Incorporated)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.7.199.0_x64__dt26b99r8h8gj [2021-01-05] (Realtek Semiconductor Corp)
Rozšírenie pre video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-01-05] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0 [2020-12-13] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-03] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-03] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-03] (Adobe Inc. -> )
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-03] (Adobe Inc. -> )
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-11-11] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [HwShareMenu] -> {9557F42F-BD61-4E26-9752-33A8A20FC9F9} => C:\Program Files\Huawei\PCManager\ShareMenu.dll [2020-11-05] (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-08-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-08-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-11-11] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\mtuha\AppData\Local\MEGAsync\ShellExtX64.dll [2020-12-08] (Mega Limited -> )
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files (x86)\Microsoft OneDrive\20.201.1005.0009\amd64\FileSyncShell64.dll [2020-12-03] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-03-06] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2020-12-03] (Adobe Inc. -> )
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-11-11] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-08-25] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-08-25] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-01-08 19:45 - 2019-01-08 19:45 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2019-01-08 19:45 - 2019-01-08 19:45 - 003598336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000414208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000516608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 001441280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2019-03-06 08:05 - 2019-03-06 08:05 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-01-08 19:44 - 2019-01-08 19:44 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2019-01-08 19:45 - 2019-01-08 19:45 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=NMTE
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.msn.com/?pc=NMTE
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-10-09] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-12-09] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-10-09 16:37 - 2020-10-09 16:37 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2020-10-09 16:56 - 2021-01-05 13:57 - 000000526 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
192.168.137.247 HUAWEI_P40_Pro-82de4ed74f.mshome.net # 2021 1 2 12 12 57 59 398
192.168.137.1 LAPTOP-ILN0UIV4.mshome.net # 2026 1 0 4 12 57 59 398

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\Control Panel\Desktop\\Wallpaper -> D:\Photoshop a Lightroom\Untitled Export\sd.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{0F8AB28F-73D8-474C-9B02-211401AF801B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{4F5B8108-2E0C-414B-98A6-55B628E8AA8F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{7759CF07-1695-4181-9194-23CC15C811D6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{29FBA3DA-E06F-4E9E-9F49-6BD097A82EC5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{9993CEE4-86C0-476B-BEFB-9C68691B4446}] => (Allow) D:\Install Games\Steam\steamapps\common\SovietRepublic\SETUPAPPLICATION SOVIET.exe (3DIVISION) [File not signed]
FirewallRules: [{3C63EABA-1F22-4B85-BC98-AE1EAE198420}] => (Allow) D:\Install Games\Steam\steamapps\common\SovietRepublic\SETUPAPPLICATION SOVIET.exe (3DIVISION) [File not signed]
FirewallRules: [{9AEBEBBD-D888-436D-BEF9-6BF18B7F2054}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{63FA8CD8-39FC-43CB-AE0B-78F08B897002}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A91951E1-92B5-42A5-B3DC-BF8F5B551DE3}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{2D3834A3-FDA8-4E4A-AB8C-696023160AB4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{754F85ED-2DCF-4160-BD27-2A5D0F7E1A0C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{F86EFA05-0DC6-4432-8F69-BD6833C11CFB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{24641520-7294-4CDB-9DB5-84B53F188BB8}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{0CEE3C19-F0C8-4CFD-910C-509EDAD9988D}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{EC574F0B-FB20-4227-A4DE-07EBFC3DE7D0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5FB5364E-8D8E-4BA2-AEF7-795D693FA834}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{66096DDB-2AB7-4342-B903-A3F98EBE961D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D3569988-CE6B-4D98-973C-9C4F4DDC201C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{92095992-6389-4F5B-B9EE-B1108AFB568F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CDC18420-EF8A-4956-9748-B566822171D5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4B7B1939-2AEC-40A4-ABD8-B10B7B20DBAE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B2C72E24-99FE-4A9D-A6AD-B23D221D98BA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{561FEDB8-49B1-4191-A9F8-3332B65EE40B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{D66AB04F-C3E3-429C-921C-73FA731F488C}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{7C9E50A4-1F7E-4A81-BD40-857A82136B08}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{419EE7CA-FCF8-464F-9CAB-2CED3F666094}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{DBA81F1F-559A-41F0-BA19-60D86D2F552E}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{22C0981B-A3FD-45DB-8A1A-A37C68FBDFF3}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5784D1DB-7AFB-4F49-97F2-1262AF6BAF23}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F6569E87-356C-4DB9-B7A8-00BB9396603E}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{B1E89CAD-CADA-4CC0-939A-9327323EAD31}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{B17C5F22-6BB0-4B62-A98E-AD5B28FCCADA}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F1A0812F-69B8-43DA-ABC1-12743A07A48D}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E46F4642-914E-4593-B35B-F98B10F58108}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{B3323483-DF9E-4BC8-84E4-F4BD6745EE4A}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{6333AB5C-96AF-4134-BB1C-0EEBD5C6FCEA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{4221911B-C5B8-4772-B589-CA52743ABBD0}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{8DA335C5-33F3-4CC3-AD4D-79F13356B91A}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{BA25505C-FE6A-4133-BC61-B63F7D9C41F9}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F1DD6BF1-CA84-4DF8-891D-AFE02193E309}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{5317DA80-E6D0-41FE-8C0C-1C0B1A9C05A5}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E0019E49-E665-4186-89AC-9176AC4AA179}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C144872C-BCCB-4A65-ADAF-E3056BF69B4D}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F967884F-E2CE-48F6-9D97-71539BF1D0B0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CC201BE1-8E8E-4393-9868-C8761BB55535}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BEECC1FE-959D-41D6-87FD-5920178AA4EB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D15319CF-EE55-458A-A457-FB8F37281F0D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{92C13BD5-F6AD-4B2B-A97E-A8CB563623F6}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{8DA1DF20-7191-488F-9D30-F23B476FF47B}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{0040B509-78A7-4A4A-82C0-5881FEB9B915}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{30CD07B3-0E3C-480F-AB10-365B9988900F}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{CC646807-B692-483F-9802-53C8B8A5817A}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{2C35717F-FD50-41A2-B32D-1FF5849793D5}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{4438A58E-4815-4784-B24D-D635F39A4CB0}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{15357780-78D8-4386-9F08-D0851B1CF211}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{D9138CC9-D220-4426-ADCC-A5FBB0A2657C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{A49BD069-4E46-48B0-940A-668044246101}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{5F88CBC5-FA61-4CE9-AE49-B0C1EAA003F1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{01D3FAEE-AB4D-41FA-A207-D66817E64218}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{46E82E24-C9D0-487C-9C3E-B99BE0389916}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{A30C877B-D65E-43C7-8F4E-84D0F30F84B1}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{4F8A9962-7D7B-458A-BAB4-33EB1FBB75D8}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{3DA8082C-08AD-45B5-8DD3-57520BD5E528}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{79066AF6-51D5-49A8-8492-E5631C5E7559}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{853472B6-C048-4CF7-BEA3-F523274D5F8D}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C51E1529-67F8-4731-9799-67CF880E86EE}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{97BEF71D-9583-4660-83D8-8BCB97B7571F}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{5825822B-A2D6-409D-B148-EED4CA83FDD8}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{D5F754C5-807A-4A4E-B503-B5796FB200BE}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{46034E85-C9D6-49C2-8B62-85E14D1F33E4}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{464320AF-55B6-4041-A550-E14A2D2F2C39}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{A966A0CA-BB1A-4174-8C3B-7EFBE54993C8}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C7EAEC15-44B5-4605-9126-C1A3625D01EC}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{5C0AC9CD-5479-4669-8719-C2EF1B99023B}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{78F0B93A-7C15-4A80-9E9C-12444A8B24AE}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{ADA1030B-D08F-4C91-B1CD-B72C906A0C29}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{8C10DBAB-E091-4F66-8D53-57B95D179A93}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{43CB375E-A9D6-4937-9DA3-41CA0EE07639}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{AA309CAC-54C4-4FD6-9C58-FBDDD30554D1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{447A6842-E4D1-4566-8CD0-0B0B051236CC}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{103BBB80-EE27-4618-883C-A5C38522C95E}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{7C87AA32-99DB-4D23-A9D2-FA583336D3E7}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{3542429E-06EE-4FC6-87F6-CE616A518CDF}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{63E67F85-DBA0-4311-B258-D5755C776AC2}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{B448B9EA-995C-40CE-B84E-C495054D1B4D}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{99F475B2-5D4B-4B57-A535-3B82B60CC3DC}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{70098D1F-CEAF-46A9-ABD0-05C318ADA0E2}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{6DF8B1C2-1362-4591-8E9B-44841D15CEF8}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{CDA5CE9E-B3B1-4640-BDCD-3CC78B2CCBAC}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{71E9A7A1-A11B-4E5B-BBEF-DAB5BF2D2DCA}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{6B836FDC-199E-4A6C-885D-4FF8DA69A77C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C896C0B7-22B2-4F69-8E26-532890C816B7}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{6F25B61B-A9A7-4982-9391-0A9D18DD44EE}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{00B6CC7E-4C98-4F6D-BBD0-03CB24059348}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{31B1358C-07DA-43F4-BC5B-AA44D58036A1}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{55E7A76A-AF15-42C2-91A1-01D91F4ACAF5}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{3319E72D-1BDF-4390-993E-9CA8981841A8}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{AEEC5EBD-279F-4409-9DCB-FFD52D8E4BC4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{B9B84C00-D423-439E-9334-25987520AAD3}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{12223CE9-2BC0-4B16-BD9F-298793F15FF4}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{2B995726-CA9A-40FA-B0CA-DD3468C17CBF}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{8825765B-A734-4ECB-A929-FDCB48860E81}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{15F6D48F-CFA3-4171-AF02-7336AA74101D}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{04121A1F-BEC1-4F47-93C4-AF6ECCF9B840}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{4E2A85A9-B237-4ACC-BCE1-31F8A121D0CF}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F4ED651F-DFE4-4EB6-8588-274569E8D86E}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{FAA379BA-D78C-4E2E-B4B0-DA47B4646845}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{CAEAAFBE-8691-4217-ADBB-5A040F347D5F}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{61F8E332-AFF0-47B7-8CD0-85DBC7DBD3B9}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{33009135-077A-45F1-89AC-0B52AFD930B0}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{8C68CFCD-ED88-4816-8683-BA7B42B99D89}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F1357652-CCDE-48C1-8702-C724A87A3AF9}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{3C548F90-33B4-4E2B-A84F-5081DEAF4848}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3A8FBAE8-0869-43C6-90E5-12C24E07CF7F}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{6559EA74-D48F-436B-98EC-8D8EBEFBCEE6}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{330C74CE-ACBB-4612-BE08-614B93BDD7B4}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{83D344F8-AEB5-40B3-995C-7949D8B03032}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{2D03A627-CFF1-4F47-8CAF-216C75C534E8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{8899EB96-D0C6-4CE6-8132-A94D8F21A4C5}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{EB2952A3-4809-455A-AD7D-368E150EBBFB}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{11F92CFE-BF0C-4F71-8AEB-A1376C42B8B0}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{EC290B7C-D55E-4642-9181-CC7BA2BBEBAA}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{14007E82-0D07-4FDC-8877-5574C6396411}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{6C9501F6-6F8F-4908-96A0-9052017DA358}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{E25C9F77-C087-4EE9-8C7C-29812DA13465}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{85EAFD07-7A6B-4033-83F3-11D4B1AAF5C2}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E953B337-A931-4D13-BEA5-5D60266CD1AB}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{2BE76093-A181-4B9C-948F-A7F5F3C98079}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{DB50E5CE-D103-471C-B7D3-36FB75BB982D}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{EEACBF8A-1331-4EAB-9F7F-FB59F603DBB8}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{7089F520-60F3-47C2-A48E-B44C5AD2782F}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{D6629D00-8CAD-4396-8868-06E211584D39}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{A6C9148C-366E-4D91-BF1E-D837EFE4E632}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{8AC10E74-0E36-40A3-AA83-3420C2FD81BD}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{1B8E0ECA-3C66-41D8-B08D-4BCE74AEAB6C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E239DB95-DB4F-4BC7-B55D-56F99FC90CF5}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{0AA25E26-99AB-42FF-B557-CF2DE9A49110}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{84283175-42AA-4B53-BDA9-A1AA0AB2FA74}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{092A60A9-932A-4DCF-B5BF-2243EDFCD02D}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{EE4F918A-735B-4A28-AC0F-8D0179B26316}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C62ABE2A-E824-479B-BCB0-515843796F30}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{3DCA8DC5-EAB9-4C74-B719-EF4D90A24A24}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{2289A732-31BA-400A-A69B-A9138CD55D80}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{3AA15D69-B185-48E8-91AA-8252DED62CF1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{B8A2CFE8-0EB3-4F59-9664-C90EEC916862}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{84943839-2CE0-420F-9EF3-62E42CA8BA2C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{35AF88A2-26FA-4F84-89A7-91542B877587}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{29CBB77D-DBA3-4B69-97CE-3C477A71C8D8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{543FEC7D-947A-4773-B1BF-A87F78AD43A4}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{105B31FA-4E86-416E-A2DC-C43805DA8490}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{4DA162EF-9C1E-463E-A4C2-174D498111FA}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E222C898-A3BA-4EF2-8EDA-1CDA426F4B60}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{75EE6406-FC4C-4E78-AAAB-A2D44F63F8E4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{AB510DC7-C83D-4358-B69F-2A13B8CD94DB}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{C65E7B45-B38C-468E-B7C3-80D20902A3C7}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{602722EF-6692-4456-B89E-7154AB8B328B}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{D55E8AB9-4D9D-4AC6-850C-B6FB94A14025}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{4B33EFAE-2467-4DC0-B22D-B3293F857552}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{7773FE43-3FB2-483D-B97A-5AA4F62C7CFA}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{83F1BB79-6172-4F39-98D6-3095C39757D9}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{51D78D0F-C6E6-437D-9D77-16677BF10D4C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{FBA891FF-C25A-40A5-A5AD-302366B23627}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{DB2608A5-5E66-4338-AE49-009802549783}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{745EEACA-45E2-49B2-B20D-2E5164329B6B}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{AFBB5DA1-FA50-4D07-AB14-0B9795779C9C}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{59E6B2F2-2C2C-461A-A0C8-F7106FF4B6D3}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{8612886A-C64C-4F01-B1B1-D91A55AD010E}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{AC0B3FC1-A6D4-4BE1-A5A8-9655649E5CD2}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{79009E9A-F657-4485-898E-7F5CEE5B0883}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{6FC5D8C2-E661-439E-946C-9097024D1A60}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{D5242A1A-A570-4F53-9495-3FA55B9132E6}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{6271393E-08AE-44F7-856F-1DDACD57FE0E}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{DEBDB148-53F1-4848-8C7D-6387B2E33D86}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{07724BA0-C545-43DD-9D75-BB85DD0E7F8A}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{AE02F7D4-32E5-4B02-B2E3-E315C2B1A1F6}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E5A22EA3-18F5-4A53-9792-0D6D5D4EF680}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{D1A5A790-A78C-4730-9640-0323D6F0F0AC}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{5A9479FA-20C8-4EA8-BAC1-4E2C967FF6BA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{621D13B0-FB12-48B2-A1A4-F9C9C63E17E0}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{70B0EF0F-9DC4-4C6D-BDBF-A1E9F2423B62}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{14FE8FD4-0AC3-4D71-BD6D-C38951B0CC82}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{20B92FB5-6957-4713-9516-D95BD3C48723}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{A049C9D0-173B-4EBE-B76B-8D04C28FEF51}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A5FE0C5D-8318-4BF0-B77A-E7DAE0B2FB5D}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)
FirewallRules: [{8C497D63-7CEA-4A17-A183-15FDE0464686}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{67351D1A-A289-401D-A2E5-26CACEE38AE4}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{F0FA8FCE-ECA2-4A56-8530-956F80C00F73}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{38296131-5BA0-40D1-9B53-D5FE81CA4490}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A265A2B8-EE96-41CD-A95B-4F948ABC5BE3}] => (Allow) C:\Program Files\Huawei\PCManager\HwMirror.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{269F75E6-E7A5-4D05-8D8F-675B6E839AB4}] => (Allow) C:\Program Files\Huawei\PCManager\distributedfileservice.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{E3E69341-300D-4D5D-B1F3-C2ECBAEFBB10}] => (Allow) C:\Program Files\Huawei\PCManager\HWVCR.exe (Huawei Device Co., Ltd. -> Huawei Technologies Co., Ltd.)
FirewallRules: [{DD792231-3E7C-4498-9B95-6C049D684C27}] => (Allow) C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe (Huawei Device Co., Ltd. -> Huawei Device Co., Ltd.)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:120 GB) (Free:51.17 GB) (43%)

==================== Faulty Device Manager Devices ============

Name: Insyde Windows IO Driver
Description: Insyde Windows IO Driver
Class Guid: {4d36e97d-e325-11ce-bfc1-08002be10318}
Manufacturer: Insyde
Service: segwindrv
Problem: : Windows cannot start this hardware device because its configuration information (in the registry) is incomplete or damaged. (Code 19)
Resolution: A registry problem was detected.
This can occur when more than one service is defined for a device, if there is a failure opening the service subkey, or if the driver name cannot be obtained from the service subkey. Try these options:
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
Click "Uninstall", and then click "Scan for hardware changes" to load a usable driver.


==================== Event log errors: ========================

Application errors:
==================
Error: (01/05/2021 04:13:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: MBAMessageCenter.exe, verzia: 11.0.0.0, časová značka: 0x5f55e5c9
Názov chybujúceho modulu: DuiLib.dll, verzia: 0.0.0.0, časová značka: 0x5f55e5c9
Kód výnimky: 0xc000041d
Odstup chyby: 0x0000000000078999
Identifikácia chybujúceho procesu: 0x15cc
Čas spustenia chybujúcej aplikácie: 0x01d6e373aed4b317
Cesta chybujúcej aplikácie: C:\Program Files\Huawei\PCManager\MBAMessageCenter.exe
Cesta chybujúceho modulu: C:\Program Files\Huawei\PCManager\DuiLib.dll
Identifikácia hlásenia: a8941f6f-86f2-4f32-b430-6eef453f8665
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (01/05/2021 04:01:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: LCD_Service.exe, verzia: 1.0.1.0, časová značka: 0xc0652c40
Názov chybujúceho modulu: ntdll.dll, verzia: 10.0.19041.662, časová značka: 0x27bfa5f0
Kód výnimky: 0xc0000374
Odstup chyby: 0x00000000000ff0f9
Identifikácia chybujúceho procesu: 0x1140
Čas spustenia chybujúcej aplikácie: 0x01d6e373ae6e650c
Cesta chybujúcej aplikácie: C:\Program Files\Huawei\HwLcdEnhancement\LCD_Service.exe
Cesta chybujúceho modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Identifikácia hlásenia: 2a0347b3-a4a9-411c-a93d-5849ba58220c
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (01/05/2021 03:35:17 PM) (Source: ESENT) (EventID: 522) (User: )
Description: StartMenuExperienceHost (14648,P,98) TILEREPOSITORYS-1-5-21-2708457579-3479844245-1170529563-1008: An attempt to open the device with name "\\.\C:" containing "C:\" failed with system error 5 (0x00000005): "Access is denied. ". The operation will fail with error -1032 (0xfffffbf8).

Error: (01/05/2021 01:55:07 PM) (Source: ESENT) (EventID: 522) (User: )
Description: StartMenuExperienceHost (1720,P,98) TILEREPOSITORYS-1-5-21-2708457579-3479844245-1170529563-1006: An attempt to open the device with name "\\.\C:" containing "C:\" failed with system error 5 (0x00000005): "Access is denied. ". The operation will fail with error -1032 (0xfffffbf8).

Error: (01/05/2021 09:45:21 AM) (Source: Microsoft Security Client) (EventID: 3002) (User: )
Description: Event-ID 3002

Error: (01/05/2021 09:45:21 AM) (Source: Microsoft Security Client) (EventID: 2002) (User: )
Description: Event-ID 2002

Error: (01/05/2021 09:45:21 AM) (Source: Microsoft Security Client) (EventID: 2003) (User: )
Description: Event-ID 2003

Error: (01/05/2021 09:23:48 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: RadeonSettings.exe, verzia: 10.1.2.1761, časová značka: 0x5c7f5516
Názov chybujúceho modulu: RadeonSettings.exe, verzia: 10.1.2.1761, časová značka: 0x5c7f5516
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000020f770
Identifikácia chybujúceho procesu: 0x1db8
Čas spustenia chybujúcej aplikácie: 0x01d6e33bd2456675
Cesta chybujúcej aplikácie: C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
Cesta chybujúceho modulu: C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
Identifikácia hlásenia: aacfa491-4d22-43c5-869a-164df9cbd1b1
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:


System errors:
=============
Error: (01/05/2021 04:01:57 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Huawei LCD_Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 1000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (01/05/2021 04:01:41 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 15:59:35 on ‎5. ‎1. ‎2021 was unexpected.

Error: (01/05/2021 03:55:03 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Miniport Remote NDIS based Internet Sharing Device, {40e7ff54-eddc-4d67-b0eb-0a86f260fe15}, had event 76

Error: (01/05/2021 03:36:56 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.19041.423_neutral_neutral_cw5n1h2txyewy!Windows.Networking.BackgroundTransfer.Internal.BackgroundTransferTask.ClassId.1 did not register with DCOM within the required timeout.

Error: (01/05/2021 03:36:56 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.19041.423_neutral_neutral_cw5n1h2txyewy!Windows.Networking.BackgroundTransfer.Internal.BackgroundTransferTask.ClassId.1 did not register with DCOM within the required timeout.

Error: (01/05/2021 03:36:56 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.19041.423_neutral_neutral_cw5n1h2txyewy!Windows.Networking.BackgroundTransfer.Internal.BackgroundTransferTask.ClassId.1 did not register with DCOM within the required timeout.

Error: (01/05/2021 03:36:56 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.19041.423_neutral_neutral_cw5n1h2txyewy!Windows.Networking.BackgroundTransfer.Internal.BackgroundTransferTask.ClassId.1 did not register with DCOM within the required timeout.

Error: (01/05/2021 03:36:56 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server Microsoft.Windows.ContentDeliveryManager_10.0.19041.423_neutral_neutral_cw5n1h2txyewy!Windows.Networking.BackgroundTransfer.Internal.BackgroundTransferTask.ClassId.1 did not register with DCOM within the required timeout.


Windows Defender:
===================================
Date: 2020-10-10 05:51:22.8720000Z
Description:
Microsoft Defender Antivirus has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Program:Win32/VulnInsydeDriver.A
ID: 258247
Severity: Nízka
Category: Potenciálne nežiaduci softvér
Path: driver:_segwindrv; file:_C:\WINDOWS\System32\drivers\segwindrvx64.sys
Detection Origin: Local machine
Detection Type: Concrete
Detection Source: System
Process Name: Unknown
Security intelligence Version: AV: 1.325.463.0, AS: 1.325.463.0, NIS: 1.325.463.0
Engine Version: AM: 1.1.17500.4, NIS: 1.1.17500.4

CodeIntegrity:
===================================

Date: 2021-01-05 16:05:45.4130000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:05:45.4070000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:05:45.3960000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:03:46.8910000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:03:46.8730000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:03:46.7140000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 16:03:46.7070000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2021-01-05 15:38:37.9520000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: HUAWEI 1.13 09/04/2020
Motherboard: HUAWEI HN-WX9X-PCB
Processor: AMD Ryzen 5 3500U with Radeon Vega Mobile Gfx
Percentage of memory in use: 60%
Total physical RAM: 7105.01 MB
Available physical RAM: 2832.85 MB
Total Virtual: 11457.01 MB
Available Virtual: 5623.53 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:120 GB) (Free:51.17 GB) NTFS
Drive d: (Data) (Fixed) (Total:337.33 GB) (Free:89.55 GB) NTFS

\\?\Volume{3dea8e81-1f5f-47b5-a90e-d94a3877f026}\ (WINPE) (Fixed) (Total:0.5 GB) (Free:0.12 GB) FAT32
\\?\Volume{874bd8c5-c8a7-421d-8e09-2e8de92c50d5}\ (Onekey) (Fixed) (Total:18 GB) (Free:3.43 GB) NTFS
\\?\Volume{d44c3b1c-3e5c-414e-8e6c-6e71b9edf88e}\ (WinRE) (Fixed) (Total:1 GB) (Free:0.54 GB) NTFS
\\?\Volume{62f9a61f-87a9-457c-bb21-31bffcbccc17}\ (SYSTEM) (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: DD6EF0AF)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118308
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
tinozv
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 27 kvě 2007 09:28
Bydliště: Zvolen,Slovenská Republika
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#3 Příspěvek od tinozv »

Nech sa páči vkladám LOG:

# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build: 10-08-2020
# Database: 2020-12-21.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-05-2021
# Duration: 00:00:01
# OS: Windows 10 Home
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1406 octets] - [05/01/2021 16:58:48]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118308
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\MountPoints2: {34d05eec-0ca0-11eb-aa78-1cbfc01aaaa2} - "E:\HiSuiteDownLoader.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {6725D6FD-C4A8-4681-A694-C95589BBE937} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
Task: {CB6CA3A5-9632-4A38-84DF-FA3FB28E4D7A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
FirewallRules: [{7759CF07-1695-4181-9194-23CC15C811D6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{29FBA3DA-E06F-4E9E-9F49-6BD097A82EC5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{22C0981B-A3FD-45DB-8A1A-A37C68FBDFF3}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{6333AB5C-96AF-4134-BB1C-0EEBD5C6FCEA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{92C13BD5-F6AD-4B2B-A97E-A8CB563623F6}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{4438A58E-4815-4784-B24D-D635F39A4CB0}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5F88CBC5-FA61-4CE9-AE49-B0C1EAA003F1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3DA8082C-08AD-45B5-8DD3-57520BD5E528}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{D5F754C5-807A-4A4E-B503-B5796FB200BE}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5C0AC9CD-5479-4669-8719-C2EF1B99023B}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{AA309CAC-54C4-4FD6-9C58-FBDDD30554D1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{63E67F85-DBA0-4311-B258-D5755C776AC2}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{00B6CC7E-4C98-4F6D-BBD0-03CB24059348}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{AEEC5EBD-279F-4409-9DCB-FFD52D8E4BC4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{15F6D48F-CFA3-4171-AF02-7336AA74101D}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{CAEAAFBE-8691-4217-ADBB-5A040F347D5F}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3C548F90-33B4-4E2B-A84F-5081DEAF4848}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{2D03A627-CFF1-4F47-8CAF-216C75C534E8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{6C9501F6-6F8F-4908-96A0-9052017DA358}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{2BE76093-A181-4B9C-948F-A7F5F3C98079}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A6C9148C-366E-4D91-BF1E-D837EFE4E632}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{84283175-42AA-4B53-BDA9-A1AA0AB2FA74}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3AA15D69-B185-48E8-91AA-8252DED62CF1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{29CBB77D-DBA3-4B69-97CE-3C477A71C8D8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{75EE6406-FC4C-4E78-AAAB-A2D44F63F8E4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{4B33EFAE-2467-4DC0-B22D-B3293F857552}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{DB2608A5-5E66-4338-AE49-009802549783}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{79009E9A-F657-4485-898E-7F5CEE5B0883}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5A9479FA-20C8-4EA8-BAC1-4E2C967FF6BA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A049C9D0-173B-4EBE-B76B-8D04C28FEF51}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{38296131-5BA0-40D1-9B53-D5FE81CA4490}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File

EmptyTemp:
End
Uložte do C:\Users\mtuha\OneDrive\Počítač jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
tinozv
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 27 kvě 2007 09:28
Bydliště: Zvolen,Slovenská Republika
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#5 Příspěvek od tinozv »

Takže problém vyriešený jedná sa o fantómový účet ESET Anti-Theft. Je to v poriadku tu je link: https://servis.eset.cz/Knowledgebase/Ar ... _SazthKjic

Je potrebné ešte vykonať krok s použitím Fix FRST, ktorý ste mi poslali o post vyššie?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118308
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#6 Příspěvek od Rudy »

Tak můžete, položky jsou zbytečnosti, které v PC být nemusí. Díky za informaci.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Uživatelský avatar
tinozv
Návštěvník
Návštěvník
Příspěvky: 60
Registrován: 27 kvě 2007 09:28
Bydliště: Zvolen,Slovenská Republika
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#7 Příspěvek od tinozv »

Ja ďakujem veľmi pekne za spoluprácu a promtnosť :)

Pre istotu zasielam Log.

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-01-2021
Ran by mtuha (05-01-2021 18:57:11) Run:1
Running from C:\Users\mtuha\OneDrive
Loaded Profiles: mtuha
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\...\MountPoints2: {34d05eec-0ca0-11eb-aa78-1cbfc01aaaa2} - "E:\HiSuiteDownLoader.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {6725D6FD-C4A8-4681-A694-C95589BBE937} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
Task: {CB6CA3A5-9632-4A38-84DF-FA3FB28E4D7A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-17] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
CustomCLSID: HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\mtuha\AppData\Local\Microsoft\OneDrive\20.169.0823.0006\MicrosoftListSync.exe => No File
FirewallRules: [{7759CF07-1695-4181-9194-23CC15C811D6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{29FBA3DA-E06F-4E9E-9F49-6BD097A82EC5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{22C0981B-A3FD-45DB-8A1A-A37C68FBDFF3}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{6333AB5C-96AF-4134-BB1C-0EEBD5C6FCEA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{92C13BD5-F6AD-4B2B-A97E-A8CB563623F6}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{4438A58E-4815-4784-B24D-D635F39A4CB0}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5F88CBC5-FA61-4CE9-AE49-B0C1EAA003F1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3DA8082C-08AD-45B5-8DD3-57520BD5E528}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{D5F754C5-807A-4A4E-B503-B5796FB200BE}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5C0AC9CD-5479-4669-8719-C2EF1B99023B}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{AA309CAC-54C4-4FD6-9C58-FBDDD30554D1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{63E67F85-DBA0-4311-B258-D5755C776AC2}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{00B6CC7E-4C98-4F6D-BBD0-03CB24059348}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{AEEC5EBD-279F-4409-9DCB-FFD52D8E4BC4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{15F6D48F-CFA3-4171-AF02-7336AA74101D}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{CAEAAFBE-8691-4217-ADBB-5A040F347D5F}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3C548F90-33B4-4E2B-A84F-5081DEAF4848}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{2D03A627-CFF1-4F47-8CAF-216C75C534E8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{6C9501F6-6F8F-4908-96A0-9052017DA358}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{2BE76093-A181-4B9C-948F-A7F5F3C98079}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A6C9148C-366E-4D91-BF1E-D837EFE4E632}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{84283175-42AA-4B53-BDA9-A1AA0AB2FA74}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{3AA15D69-B185-48E8-91AA-8252DED62CF1}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{29CBB77D-DBA3-4B69-97CE-3C477A71C8D8}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{75EE6406-FC4C-4E78-AAAB-A2D44F63F8E4}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{4B33EFAE-2467-4DC0-B22D-B3293F857552}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{DB2608A5-5E66-4338-AE49-009802549783}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{79009E9A-F657-4485-898E-7F5CEE5B0883}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{5A9479FA-20C8-4EA8-BAC1-4E2C967FF6BA}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{A049C9D0-173B-4EBE-B76B-8D04C28FEF51}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File
FirewallRules: [{38296131-5BA0-40D1-9B53-D5FE81CA4490}] => (Allow) C:\Program Files\Huawei\PCManager\HwExScreen.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge" => removed successfully
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{34d05eec-0ca0-11eb-aa78-1cbfc01aaaa2} => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6725D6FD-C4A8-4681-A694-C95589BBE937}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6725D6FD-C4A8-4681-A694-C95589BBE937}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CB6CA3A5-9632-4A38-84DF-FA3FB28E4D7A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CB6CA3A5-9632-4A38-84DF-FA3FB28E4D7A}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1} => removed successfully
HKU\S-1-5-21-2708457579-3479844245-1170529563-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7759CF07-1695-4181-9194-23CC15C811D6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{29FBA3DA-E06F-4E9E-9F49-6BD097A82EC5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{22C0981B-A3FD-45DB-8A1A-A37C68FBDFF3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6333AB5C-96AF-4134-BB1C-0EEBD5C6FCEA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{92C13BD5-F6AD-4B2B-A97E-A8CB563623F6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4438A58E-4815-4784-B24D-D635F39A4CB0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5F88CBC5-FA61-4CE9-AE49-B0C1EAA003F1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3DA8082C-08AD-45B5-8DD3-57520BD5E528}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D5F754C5-807A-4A4E-B503-B5796FB200BE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5C0AC9CD-5479-4669-8719-C2EF1B99023B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AA309CAC-54C4-4FD6-9C58-FBDDD30554D1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63E67F85-DBA0-4311-B258-D5755C776AC2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{00B6CC7E-4C98-4F6D-BBD0-03CB24059348}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AEEC5EBD-279F-4409-9DCB-FFD52D8E4BC4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{15F6D48F-CFA3-4171-AF02-7336AA74101D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CAEAAFBE-8691-4217-ADBB-5A040F347D5F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3C548F90-33B4-4E2B-A84F-5081DEAF4848}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2D03A627-CFF1-4F47-8CAF-216C75C534E8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6C9501F6-6F8F-4908-96A0-9052017DA358}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2BE76093-A181-4B9C-948F-A7F5F3C98079}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A6C9148C-366E-4D91-BF1E-D837EFE4E632}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{84283175-42AA-4B53-BDA9-A1AA0AB2FA74}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3AA15D69-B185-48E8-91AA-8252DED62CF1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{29CBB77D-DBA3-4B69-97CE-3C477A71C8D8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{75EE6406-FC4C-4E78-AAAB-A2D44F63F8E4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4B33EFAE-2467-4DC0-B22D-B3293F857552}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DB2608A5-5E66-4338-AE49-009802549783}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{79009E9A-F657-4485-898E-7F5CEE5B0883}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5A9479FA-20C8-4EA8-BAC1-4E2C967FF6BA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A049C9D0-173B-4EBE-B76B-8D04C28FEF51}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{38296131-5BA0-40D1-9B53-D5FE81CA4490}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7626752 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 2929531509 B
Java, Flash, Steam htmlcache => 36074249 B
Windows/system/drivers => 78990664 B
Edge => 1019368 B
Chrome => 509320168 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 1676 B
LocalService => 179546 B
NetworkService => 195390 B
mtuha => 951249957 B

RecycleBin => 0 B
EmptyTemp: => 4.2 GB temporary data Removed.

================================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118308
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Neustále vyváranie lokálneho účtu Windows 10 v NB,miznutie ikony ochrany platieb ESET a upozornenie mailom

#8 Příspěvek od Rudy »

Bylo smazáno. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno