Addition
Addition
(Only the adware programs with "Hidden" flag could be added to the fixlist to
unhide them. The adware programs should be uninstalled manually.)
Packages:
=========
AppleInc.iCloud -> C:\Program Files\WindowsApps\
AppleInc.iCloud_14.2.108.0_x64__nzyj5cx40ttqa [2023-07-30] (Apple Inc.) [Startup
Task]
Cortana -> C:\Program Files\WindowsApps\
Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-08-10] (Microsoft
Corporation)
Fish Game For Cats -> C:\Program Files\WindowsApps\
11282SimplyAdvanced.FishGameForCats_1.0.0.0_neutral__1zsx0rfr60t8w [2023-08-28]
(Simply Advanced)
FTP Manager Pro -> C:\Program Files\WindowsApps\
DeskShare.FTPManagerPro_1.1.0.0_x64__13ddgfpts17ng [2023-06-30] (DeskShare)
[Startup Task]
HP Smart -> C:\Program Files\WindowsApps\
AD2F1837.HPPrinterControl_148.2.1069.0_x64__v10z8vjag6ke6 [2023-08-09] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\
AD2F1837.HPSupportAssistant_9.28.34.0_x64__v10z8vjag6ke6 [2023-08-02] (HP Inc.)
Microsoft.MPEG2VideoExtension -> C:\Program Files\WindowsApps\
Microsoft.MPEG2VideoExtension_1.0.61931.0_x64__8wekyb3d8bbwe [2023-08-30]
(Microsoft Corporation)
Microsoft.WindowsAppRuntime.CBS -> C:\WINDOWS\SystemApps\
Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2023-08-12] (Microsoft Corporation)
Photos Add-on -> C:\Program Files\WindowsApps\
Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-04-
25] (Microsoft Corporation)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\
Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-04-25] (Microsoft
Corporation)
SQLite Trek -> C:\Program Files\WindowsApps\
22697TenSouthStudios.SQLiteTrek_1.0.4.0_x86__fkkp4b62q2qwm [2023-07-30]
(10SouthStudios)
Windows Feature Experience Pack -> C:\WINDOWS\SystemApps\
MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2023-08-12] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2023-07-23] (win.rar GmbH)
XLS Viewer Free -> C:\Program Files\WindowsApps\
62307pauljohn.XLSViewerFree_1.1.0.1_x86__7sv5v3m8wq0b2 [2022-12-17] (pauljohn)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1720479435-1288462160-2483743075-1001_Classes\CLSID\
{1046DF82-20AA-4E74-9A95-80DA448284F1} -> [iCloud Photos] => C:\Users\mahoj\
Pictures\iCloud Photos\Photos [2023-07-20 21:23]
CustomCLSID: HKU\S-1-5-21-1720479435-1288462160-2483743075-1001_Classes\CLSID\
{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\mahoj\AppData\
Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare
Technology Group Co.,Ltd -> Wondershare)
CustomCLSID: HKU\S-1-5-21-1720479435-1288462160-2483743075-1001_Classes\CLSID\
{7D76D56A-6E13-4569-B284-1B833D1ACC88} -> [iCloud Drive] => C:\Users\mahoj\
iCloudDrive [2023-07-20 21:23]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C}
=> C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-
08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-
C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-
AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-
2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-
7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-
95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-
24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-
2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.169.0813.0001\
FileSyncShell64.dll [2023-08-31] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>
C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-08-
31] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-
18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\
ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems
Inc.)
ContextMenuHandlers1: [HitmanPro] -> {D7CF1AF8-E2AD-4DA4-ACE5-77F8A58AB71D} => C:\
Program Files\HitmanPro\hmpshext.dll [2023-07-27] (SurfRight B.V. -> SurfRight
B.V.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\
Program Files\WinRAR\rarext.dll [2023-01-17] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>
C:\Program Files\WinRAR\rarext32.dll [2023-01-17] (win.rar GmbH -> Alexander
Roshal)
ContextMenuHandlers2: [{C95FFEAE-A32E-4122-A5C4-49B5BFB69795}] -> {C95FFEAE-A32E-
4122-A5C4-49B5BFB69795} => C:\Program Files\Common Files\Adobe\Adobe Drive CS4\
ADFSMenu.dll [2008-08-14] (Adobe Systems Incorporated -> Adobe Systems
Incorporated)
ContextMenuHandlers3: [{C95FFEAE-A32E-4122-A5C4-49B5BFB69795}] -> {C95FFEAE-A32E-
4122-A5C4-49B5BFB69795} => C:\Program Files\Common Files\Adobe\Adobe Drive CS4\
ADFSMenu.dll [2008-08-14] (Adobe Systems Incorporated -> Adobe Systems
Incorporated)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>
C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-08-
31] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [HitmanPro] -> {D7CF1AF8-E2AD-4DA4-ACE5-77F8A58AB71D} => C:\
Program Files\HitmanPro\hmpshext.dll [2023-07-27] (SurfRight B.V. -> SurfRight
B.V.)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} =>
C:\Program Files\Recuva\RecuvaShell64.dll [2023-06-02] (PIRIFORM SOFTWARE LIMITED -
> Piriform Software Ltd)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>
C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncShell64.dll [2023-08-
31] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No
File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\
WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_75270bfe0aa96c3b\
igfxDTCM.dll [2020-10-06] (Microsoft Windows Hardware Compatibility Publisher ->
Intel Corporation)
ContextMenuHandlers5: [{C95FFEAE-A32E-4122-A5C4-49B5BFB69795}] -> {C95FFEAE-A32E-
4122-A5C4-49B5BFB69795} => C:\Program Files\Common Files\Adobe\Adobe Drive CS4\
ADFSMenu.dll [2008-08-14] (Adobe Systems Incorporated -> Adobe Systems
Incorporated)
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-
18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat Elements\
ContextMenuShim64.dll [2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems
Inc.)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} =>
C:\Program Files\Recuva\RecuvaShell64.dll [2023-06-02] (PIRIFORM SOFTWARE LIMITED -
> Piriform Software Ltd)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\
Program Files\WinRAR\rarext.dll [2023-01-17] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} =>
C:\Program Files\WinRAR\rarext32.dll [2023-01-17] (win.rar GmbH -> Alexander
Roshal)
ContextMenuHandlers2_S-1-5-21-1720479435-1288462160-2483743075-1001: [AgentRansack]
-> {2AE9D6D8-E348-4853-B266-C78844D31B97} => C:\Program Files\Mythicsoft\Agent
Ransack\ShellExt.dll [2022-03-23] (MYTHICSOFT LIMITED -> Mythicsoft Ltd)
ContextMenuHandlers4_S-1-5-21-1720479435-1288462160-2483743075-1001: [AgentRansack]
-> {2AE9D6D8-E348-4853-B266-C78844D31B97} => C:\Program Files\Mythicsoft\Agent
Ransack\ShellExt.dll [2022-03-23] (MYTHICSOFT LIMITED -> Mythicsoft Ltd)
ContextMenuHandlers5_S-1-5-21-1720479435-1288462160-2483743075-1001: [AgentRansack]
-> {2AE9D6D8-E348-4853-B266-C78844D31B97} => C:\Program Files\Mythicsoft\Agent
Ransack\ShellExt.dll [2022-03-23] (MYTHICSOFT LIMITED -> Mythicsoft Ltd)
ContextMenuHandlers6_S-1-5-21-1720479435-1288462160-2483743075-1001: [AgentRansack]
-> {2AE9D6D8-E348-4853-B266-C78844D31B97} => C:\Program Files\Mythicsoft\Agent
Ransack\ShellExt.dll [2022-03-23] (MYTHICSOFT LIMITED -> Mythicsoft Ltd)
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
(If an entry is included in the fixlist, it will be removed from the registry. The
file will not be moved unless listed separately.)
Application errors:
==================
Error: (09/03/2023 04:38:32 AM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: msteamsupdate.exe, version:
23231.411.2342.9597, time stamp: 0x64ed3548
Faulting module name: ucrtbase.dll, version: 10.0.22621.608, time stamp: 0xf5fc15a3
Exception code: 0xc0000409
Fault offset: 0x000000000007f61e
Faulting process id: 0x0xc300
Faulting application start time: 0x0x1d9de5b272ffbc9
Faulting application path: C:\Program Files\WindowsApps\
MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteamsupdate.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: 0407d24d-6f7c-4e0e-a440-cd18ed707d97
Faulting package full name: MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe
Faulting package-relative application ID: msteamsupdate
Error: (09/01/2023 05:11:07 AM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: SideSync.exe, version: 4.7.5.203, time
stamp: 0x59f216bb
Faulting module name: unknown, version: 0.0.0.0, time stamp: 0x00000000
Exception code: 0xc0000005
Fault offset: 0xd85cb0dd
Faulting process id: 0x0x2fdc
Faulting application start time: 0x0x1d9ccf37cf80768
Faulting application path: C:\Program Files (x86)\Samsung\SideSync4\SideSync.exe
Faulting module path: unknown
Report Id: 1dbecafd-1c1a-481e-b0ee-e7d0adf9cee8
Faulting package full name:
Faulting package-relative application ID:
Error: (08/30/2023 04:37:56 PM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: msteamsupdate.exe, version:
23231.411.2342.9597, time stamp: 0x64ed3548
Faulting module name: ucrtbase.dll, version: 10.0.22621.608, time stamp: 0xf5fc15a3
Exception code: 0xc0000409
Fault offset: 0x000000000007f61e
Faulting process id: 0x0x972c
Faulting application start time: 0x0x1d9db9b008381d4
Faulting application path: C:\Program Files\WindowsApps\
MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe\msteamsupdate.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: f5e99deb-1654-4965-aef5-5cd955ee7e39
Faulting package full name: MicrosoftTeams_23231.411.2342.9597_x64__8wekyb3d8bbwe
Faulting package-relative application ID: msteamsupdate
Error: (08/30/2023 12:37:56 PM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: msteamsupdate.exe, version:
23216.905.2334.6698, time stamp: 0x64e799a8
Faulting module name: ucrtbase.dll, version: 10.0.22621.608, time stamp: 0xf5fc15a3
Exception code: 0xc0000409
Fault offset: 0x000000000007f61e
Faulting process id: 0x0xa6e0
Faulting application start time: 0x0x1d9db79794976a7
Faulting application path: C:\Program Files\WindowsApps\
MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe\msteamsupdate.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: 2b4e7008-cc74-4fe8-8da6-e5b299bb4189
Faulting package full name: MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe
Faulting package-relative application ID: msteamsupdate
Error: (08/30/2023 12:37:55 AM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: msteamsupdate.exe, version:
23216.905.2334.6698, time stamp: 0x64e799a8
Faulting module name: ucrtbase.dll, version: 10.0.22621.608, time stamp: 0xf5fc15a3
Exception code: 0xc0000409
Fault offset: 0x000000000007f61e
Faulting process id: 0x0x83ac
Faulting application start time: 0x0x1d9db14e394511d
Faulting application path: C:\Program Files\WindowsApps\
MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe\msteamsupdate.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: 806dc02e-4c44-45ff-8ec4-58e04d08af54
Faulting package full name: MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe
Faulting package-relative application ID: msteamsupdate
Error: (08/29/2023 06:37:57 PM) (Source: Application Error) (EventID: 1000) (User:
PANASONIC)
Description: Faulting application name: msteamsupdate.exe, version:
23216.905.2334.6698, time stamp: 0x64e799a8
Faulting module name: ucrtbase.dll, version: 10.0.22621.608, time stamp: 0xf5fc15a3
Exception code: 0xc0000409
Fault offset: 0x000000000007f61e
Faulting process id: 0x0x9bc0
Faulting application start time: 0x0x1d9dae298c5dc39
Faulting application path: C:\Program Files\WindowsApps\
MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe\msteamsupdate.exe
Faulting module path: C:\WINDOWS\System32\ucrtbase.dll
Report Id: 67e96233-53ec-4253-b551-24f1ed044858
Faulting package full name: MicrosoftTeams_23216.905.2334.6698_x64__8wekyb3d8bbwe
Faulting package-relative application ID: msteamsupdate
System errors:
=============
Error: (09/03/2023 11:52:35 PM) (Source: DCOM) (EventID: 10010) (User: PANASONIC)
Description: The server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} did not register
with DCOM within the required timeout.
Windows Defender:
================
Date: 2023-09-02 13:46:14
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
CodeIntegrity:
===============
Date: 2023-09-03 19:15:13
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\
Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe) attempted to
load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\
igdlh64.inf_amd64_75270bfe0aa96c3b\igd10iumd64.dll that did not meet the Custom 3 /
Antimalware signing level requirements.#
==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 259B6197)
Partition: GPT.