Fix result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by dmorp (10-02-2020 17:06:19) Run:1
Running from C:\Users\dmorp\Desktop
Loaded Profiles: dmorp (Available Profiles: dmorp)
Boot Mode: Normal
==============================================

fixlist content:
*****************
CreateRestorePoint:
CloseProcesses:
Hosts:
RemoveProxy:
C:\Program Files (x86)\RelevantKnowledge
Task: {155185B0-5BFB-4688-AAC4-92DF91EB0C2F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [7192192 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
C:\Program Files (x86)\Spybot - Search & Destroy
R2 RelevantKnowledge; C:\Program Files (x86)\RelevantKnowledge\rlservice.exe [169840 2019-03-06] (TMRG, Inc. -> TMRG, Inc.) <==== ATTENTION
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [3892256 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [3943664 2018-04-20] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [233712 2018-02-06] (Safer-Networking Ltd. -> Safer-Networking Ltd.)
2020-02-09 15:01 - 2020-02-10 05:33 - 000000000 ____D C:\Program Files (x86)\RelevantKnowledge
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-01-26 01:26 - 2020-01-26 01:26 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-01-25 09:58 - 2020-01-25 09:58 - 000000000 ____D C:\WINDOWS\system32\Tasks\R@1n-KMS
2020-02-09 15:15 - 2019-10-18 17:37 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
FirewallRules: [{19DDE2D0-B3B5-4509-A5C7-B6377AA22F54}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exe No File
FirewallRules: [{28B0C489-3C07-456E-BFDA-44985AC1440C}] => (Allow) C:\WINDOWS\AutoKMS\AutoKMS.exe No File
FirewallRules: [{98954E59-4E2C-4B3C-9AFB-AAB6A5D8A892}] => (Allow) C:\Windows\KMS-R@1n.exe No File
FirewallRules: [{FC91E56B-83E4-4C2F-983C-E55F84E1631B}] => (Allow) C:\Windows\KMS-R@1n.exe No File
C:\WINDOWS\AutoKMS
FirewallRules: [{8697BE5A-94BD-4438-8B34-DB1C78BC8F43}] => (Block) E:\softwares\snappy driver installer\sdi_x64_r1909.exe (www.SamLab.ws) [File not signed]
FirewallRules: [{929E8CD9-F7F4-4853-8492-0A3EE332B28D}] => (Block) E:\softwares\snappy driver installer\sdi_x64_r1909.exe (www.SamLab.ws) [File not signed]
FirewallRules: [{30F26FD6-2F3C-48FA-96A1-3572CFF75250}] => (Allow) C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (TMRG, Inc. -> TMRG, Inc.)
FirewallRules: [{C6D8DF65-F02F-443A-831B-0738E94A3AFE}] => (Allow) C:\Program Files (x86)\RelevantKnowledge\rlvknlg.exe (TMRG, Inc. -> TMRG, Inc.)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service
EmptyTemp:
cmd: ipconfig /flushdns

*****************

Restore point was successfully created.
Processes closed successfully.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

========= RemoveProxy: =========

"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully
"HKU\S-1-5-21-1015049050-2488466067-2492053717-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings" => removed successfully
"HKU\S-1-5-21-1015049050-2488466067-2492053717-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings" => removed successfully


========= End of RemoveProxy: =========

C:\Program Files (x86)\RelevantKnowledge => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{155185B0-5BFB-4688-AAC4-92DF91EB0C2F}" => not found
"C:\WINDOWS\System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Safer-Networking\Spybot - Search and Destroy\Refresh immunization" => not found
"C:\Program Files (x86)\Spybot - Search & Destroy" => not found
HKLM\System\CurrentControlSet\Services\RelevantKnowledge => removed successfully
RelevantKnowledge => service removed successfully
SDScannerService => service not found.
SDUpdateService => service not found.
SDWSCService => service not found.
"C:\Program Files (x86)\RelevantKnowledge" => not found
C:\WINDOWS\system32\DrtmAuth9.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth8.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth7.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth6.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth5.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth4.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth3.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth2.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth12.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth11.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth10.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth1.bin => moved successfully
C:\WINDOWS\system32\Tasks\R@1n-KMS => moved successfully
C:\Program Files (x86)\Spybot - Search & Destroy 2 => moved successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{19DDE2D0-B3B5-4509-A5C7-B6377AA22F54}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{28B0C489-3C07-456E-BFDA-44985AC1440C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{98954E59-4E2C-4B3C-9AFB-AAB6A5D8A892}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FC91E56B-83E4-4C2F-983C-E55F84E1631B}" => removed successfully
C:\WINDOWS\AutoKMS => moved successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8697BE5A-94BD-4438-8B34-DB1C78BC8F43}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{929E8CD9-F7F4-4853-8492-0A3EE332B28D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{30F26FD6-2F3C-48FA-96A1-3572CFF75250}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C6D8DF65-F02F-443A-831B-0738E94A3AFE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" => not found

========= ipconfig /flushdns =========


Configuration IP de Windows

Cache de r‚solution DNS vid‚.

========= End of CMD: =========


=========== EmptyTemp: ==========

BITS transfer queue => 8937472 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 33892385 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 475625 B
Edge => 130564109 B
Chrome => 0 B
Firefox => 1140782570 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 147 B
LocalService => 147 B
NetworkService => 61467 B
dmorp => 378923472 B

RecycleBin => 14077038707 B
EmptyTemp: => 14.7 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:08:42 ====