Addition
Addition
(Only the adware programs with "Hidden" flag could be added to the fixlist to
unhide them. The adware programs should be uninstalled manually.)
Packages:
=========
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-01-06] (Advanced
Micro Devices Inc.)
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\
AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-12-15] (INTEL
CORP) [Startup Task]
Cooking Simulator Windows -> C:\Program Files\WindowsApps\
BigCheeseStudio.CookingSimulatorWindows_1.0.11.0_x64__j479vfd09vc9j [2024-12-31]
(Big Cheese Studio)
Mafia: Definitive Edition -> C:\Program Files\WindowsApps\
79ACB67D.132527212B564_1.0.9.0_x64__yn88nk35a38zw [2024-12-31] (2K)
MSI Center -> C:\Program Files\WindowsApps\9426MICRO-
STARINTERNATION.MSICenter_2.0.47.0_x64__kzh8wxbdkxb8p [2025-01-04] (MICRO-STAR
INTERNATIONAL CO., LTD) [Startup Task]
OP Auto Clicker - Auto Tap -> C:\Program Files\WindowsApps\
38458AutoClicker.OPAutoClicker-AutoTap_4.1.0.0_x64__5e1qkq7gw5abm [2024-11-12]
(Auto Clicker)
Persona 3 Reload -> C:\Program Files\WindowsApps\
SEGAofAmericaInc.L0cb6b3aea_1.0.185.0_x64__s751p9cej88mt [2025-01-07] (SEGA of
America, Inc.)
Realtek Audio Control -> C:\Program Files\WindowsApps\
RealtekSemiconductorCorp.RealtekAudioControl_1.51.347.0_x64__dt26b99r8h8gj [2024-
12-13] (Realtek Semiconductor Corp)
Totally Accurate Battle Simulator -> C:\Program Files\WindowsApps\
LandfallGames.TotallyAccurateBattleSimulator_1.0.7692.0_x64__r2vq7k2y0v9ct [2025-
01-04] (Landfall Games)
Turnip Boy Robs a Bank -> C:\Program Files\WindowsApps\
GraffitiGames.TurnipBoyRobsaBank_1.0.17.0_x64__zs4fqap7s3pxa [2024-12-31] (Graffiti
Games)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\
MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.311.2039.0_x64__8wekyb3d8bbwe
[2024-11-16] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\
MicrosoftCorporationII.WinAppRuntime.Singleton_6000.318.2304.0_x64__8wekyb3d8bbwe
[2024-11-22] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2024-05-24] (win.rar GmbH)
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3703966402-4285444198-4034977268-1001_Classes\CLSID\
{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\
Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3703966402-4285444198-4034977268-1001_Classes\CLSID\
{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\
Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
ContextMenuHandlers1-x32: [DrwMenuHandlers] -> {E7593602-124B-47C9-9F73-
A69308EDC973} => C:\Program Files\DrWeb\drwsxtn.dll [2025-01-08] (Doctor Web Ltd. -
> Doctor Web, Ltd.)
ContextMenuHandlers1: [DrwMenuHandlers64] -> {035B18F9-A217-44D5-91C9-B682C33C1078}
=> C:\Program Files\DrWeb\drwsxtn64.dll [2025-01-08] (Doctor Web Ltd. -> Doctor
Web, Ltd.)
ContextMenuHandlers6-x32: [DrwMenuHandlers] -> {E7593602-124B-47C9-9F73-
A69308EDC973} => C:\Program Files\DrWeb\drwsxtn.dll [2025-01-08] (Doctor Web Ltd. -
> Doctor Web, Ltd.)
ContextMenuHandlers6: [DrwMenuHandlers64] -> {035B18F9-A217-44D5-91C9-B682C33C1078}
=> C:\Program Files\DrWeb\drwsxtn64.dll [2025-01-08] (Doctor Web Ltd. -> Doctor
Web, Ltd.)
2024-05-24 20:46 - 2024-01-27 01:04 - 007470592 _____ () [File not signed] C:\
Program Files (x86)\Steam\aom.dll
2024-05-24 20:46 - 2024-01-27 01:04 - 001066496 _____ () [File not signed] C:\
Program Files (x86)\Steam\dav1d.dll
2024-09-19 07:18 - 2024-07-11 05:46 - 000701952 _____ () [File not signed] C:\
Program Files (x86)\Steam\libavif-16.dll
2024-12-21 15:38 - 2024-12-21 15:38 - 000449536 _____ () [File not signed] D:\
SteamLibrary\steamapps\common\Leaf Blower Revolution\Steamworks_x64.dll
2023-04-07 15:49 - 2023-04-07 15:49 - 000061928 _____ (Eyeware Tech SA -> ) [File
not signed] C:\Program Files\AMD\AMD Privacy View\ewvcam\APV\x64\eyeware_vcam.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 005378048 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libavcodec-61.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 000875008 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libavfilter-10.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 001674240 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libavformat-61.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 001640960 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libavutil-59.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 000630272 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libswresample-5.dll
2024-11-06 17:07 - 2024-12-04 00:40 - 001092608 _____ (FFmpeg Project) [File not
signed] C:\Program Files (x86)\Steam\libswscale-8.dll
(If an entry is included in the fixlist, only the ADS will be removed.)
(If an entry is included in the fixlist, it will be removed from the registry. The
"AlternateShell" will be restored.)
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
Network Binding:
=============
Wi-Fi: Intel(R) Wi-Fi 6E AX211 160MHz -> Netwtw14.sys
Ethernet: Intel(R) Ethernet Controller (3) I225-V -> e2f.sys
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
Application errors:
==================
Error: (01/18/2025 10:21:38 AM) (Source: Software Protection Platform Service)
(EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x80004005
Command-line arguments:
RuleId=502ff3ba-669a-4674-bbb1-
601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-
d6ec3f16059f;SkuId=2de67392-b7a7-462a-b1ca-
108dd189f588;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (01/18/2025 10:21:37 AM) (Source: MsiInstaller) (EventID: 11720) (User: WIN-
50V81QFEUO2)
Description: Product: Super Calendar 1.0.0.0 -- Error 1720. There is a problem with
this Windows Installer package. A script required for this install to complete
could not be run. Contact your support personnel or package vendor. Custom action
RF2dyH script error -2147012894, JavaScript runtime error: The operation timed out
Line 9, Column 5,
Error: (01/17/2025 05:22:54 PM) (Source: Application Hang) (EventID: 1002) (User:
NT AUTHORITY)
Description: The program SystemSettings.exe version 10.0.26100.2454 stopped
interacting with Windows and was closed. To see if more information about the
problem is available, check the problem history in the Security and Maintenance
control panel.
System errors:
=============
Error: (01/18/2025 08:52:45 AM) (Source: DCOM) (EventID: 10010) (User: NT
AUTHORITY)
Description: The server {4991D34B-80A1-4291-83B6-3328366B9097} did not register
with DCOM within the required timeout.
Error: (01/18/2025 07:43:53 AM) (Source: DCOM) (EventID: 10010) (User: WIN-
50V81QFEUO2)
Description: The server {4991D34B-80A1-4291-83B6-3328366B9097} did not register
with DCOM within the required timeout.
Error: (01/18/2025 07:41:53 AM) (Source: DCOM) (EventID: 10010) (User: WIN-
50V81QFEUO2)
Description: The server {4991D34B-80A1-4291-83B6-3328366B9097} did not register
with DCOM within the required timeout.
Windows Defender:
================
Date: 2025-01-08 12:32:35
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
CodeIntegrity:
===============
Date: 2025-01-18 16:03:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\
SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\
DrWeb\drwamsi64.dll that did not meet the Windows signing level requirements.#
Drive c: (Windows 11) (Fixed) (Total:465.65 GB) (Free:96.68 GB) (Model: KINGSTON
SNV2S500G) NTFS
Drive d: (New Volume) (Fixed) (Total:1907.71 GB) (Free:1481.2 GB) (Model: TEAM
TM8FP6002T) NTFS
==========================================================
Disk: 0 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 1907.7 GB) (Disk ID: 00000000)
Partition: GPT.