Fix 'Get-AppxPackage' popup on login


Thanks, could please disable ESET from starting at login?

Code:
C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe" -NonInteractive -Command if (((Get-AppxPackage -Name 'EsetContextMenu').length -ne '1') -Or ((Get-AppxPackage -Name 'EsetContextMenu').version -ne '10.39.35.0')) { Get-AppxPackage -Name 'EsetContextMenu' | Remove-AppxPackage; Add-AppxPackage -Path 'C:\Program Files\ESET\ESET Security\EsetContextMenu.msix' -ExternalLocation 'C:\Program Files\ESET\ESET Security\' }

Let me know if that makes any difference.
 

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon
I paused ESET and here is the result:

opyright (C) Microsoft Corporation. All rights reserved.

Install the latest PowerShell for new features and improvements! Migrating from Windows PowerShell 5.1 to PowerShell 7 - PowerShell

PS C:\WINDOWS\system32> C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe" -NonInteractive -Command if (((Get-AppxPackage -Name 'EsetContextMenu').length -ne '1') -Or ((Get-AppxPackage -Name 'EsetContextMenu').version -ne '10.39.35.0')) { Get-AppxPackage -Name 'EsetContextMenu' | Remove-AppxPackage; Add-AppxPackage -Path 'C:\Program Files\ESET\ESET Security\EsetContextMenu.msix' -ExternalLocation 'C:\Program Files\ESET\ESET Security\' }
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
I still get the same pop up with ESET paused.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
You need to stop it from loading at login, I'm not sure what you mean exactly by "paused"?

Code:
reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui /f

Please reboot the computer and then run the following command to ensure that it is gone:

Code:
reg query HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
 

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon
I’ll do this when I have access to PC later today.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
First command results:
indows PowerShell
Copyright (C) Microsoft Corporation. All rights reserved.

Install the latest PowerShell for new features and improvements! Migrating from Windows PowerShell 5.1 to PowerShell 7 - PowerShell

PS C:\WINDOWS\system32> reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui /f
>>
ERROR: Access is denied.
PS C:\WINDOWS\system32>
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
I think there's a driver involved in denying access. Can I disable the eset service with autoruns64.exe?
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
I used autorun to stop service (unchecked) and ran command.

Copyright (C) Microsoft Corporation. All rights reserved.

Install the latest PowerShell for new features and improvements! Migrating from Windows PowerShell 5.1 to PowerShell 7 - PowerShell

PS C:\WINDOWS\system32> C:\WINDOWS\System32\WindowsPowerShell\v1.0\powershell.exe" -NonInteractive -Command if (((Get-AppxPackage -Name 'EsetContextMenu').length -ne '1') -Or ((Get-AppxPackage -Name 'EsetContextMenu').version -ne '10.39.35.0')) { Get-AppxPackage -Name 'EsetContextMenu' | Remove-AppxPackage; Add-AppxPackage -Path 'C:\Program Files\ESET\ESET Security\EsetContextMenu.msix' -ExternalLocation 'C:\Program Files\ESET\ESET Security\'

Now I will reboot.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
THat did not fix the issue of the pop up window.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
Windows PowerShell
Copyright (C) Microsoft Corporation. All rights reserved.

Install the latest PowerShell for new features and improvements! Migrating from Windows PowerShell 5.1 to PowerShell 7 - PowerShell

PS C:\WINDOWS\system32> reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui /f
ERROR: Access is denied.
PS C:\WINDOWS\system32> reg delete HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui /f
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
FRST Fix
NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
1. Please download Farbar Recovery Scan Tool and save it to your Desktop.
Note: You need to run the 64-bit Version so please ensure you download that one.
2. Download the attached fixlist.txt and save it to the Desktop.
Note. It's important that both files, FRST64 and fixlist.txt are in the same location or the fix will not work (in this case...the desktop).
3. Run FRST64 by Right-Clicking on the file and choosing Run as administrator.
4. Press the Fix button just once and wait.
5. When finished FRST64 will generate a log on the Desktop (Fixlog.txt). Please post the contents of it in your reply.
 

Attachments

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon
I don't see a fixlist.txt to download. Never mind! You mean the one you provided. Sorry.
 

Attachments

  • Screenshot 2024-02-04 142438.png
    Screenshot 2024-02-04 142438.png
    66.8 KB · Views: 2
Last edited:

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
Here it is. (I think I ran it twice).
 

Attachments

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
Hmm, looks like ESET has protected that key so it can't be deleted. Could you please boot into Safe Mode and then run the FRST script from there or disable ESET from running at startup, there may be a setting within ESET itself which should control that.
 

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon
I’ll check the GUI again for a place to stop from running at startup. I’m assuming safe mode in windows 11 is similar to 10.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
I already tried to uncheck the real time protection. That didn't made a difference. I don't see any other option in the app itself.

I ran the FRST script in safe mode. Attached is the results.
 

Attachments

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
I did try a shut down and then restarted the system just to see, I still have the pop up window.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
Thanks, it looks like that the value was successfully removed, however, let's just double check to see it hasn't been added back after you booted up.

Code:
reg query  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui
 

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon
indows PowerShell
Copyright (C) Microsoft Corporation. All rights reserved.

Install the latest PowerShell for new features and improvements! Migrating from Windows PowerShell 5.1 to PowerShell 7 - PowerShell

PS C:\WINDOWS\system32> reg query HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run /v egui

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run
egui REG_SZ "C:\Program Files\ESET\ESET Security\ecmdS.exe" /run /hide /proxy

PS C:\WINDOWS\system32>
PS C:\WINDOWS\system32>
 

My Computers

System One System Two

  • OS
    Windows 11 Pro
    Computer type
    Laptop
    Manufacturer/Model
    Acer Aspire 7 A715-55EP GTX1050
    CPU
    Intel Core i5 @ 2.30GHz 38 °C Coffee Lake 14nm Tech.
    Motherboard
    CFL Charmeleon_CFS (U3E1)
    Memory
    8.0 GB
    Graphics Card(s)
    Intel UHD Graphics 630. 4095MB NVIDIA GeForce GTX 1050
    Sound Card
    Realtek High Definition Audio
    Monitor(s) Displays
    Generic PnP Monitor (1920x1080@60Hz)
    Screen Resolution
    1536x824 pixels
    Hard Drives
    119GB Hitachi HFS128G39TND-N210A (SATA (SSD)) 31 °C 931GB Western Digital WDC WD10SPZX-21Z10T0 (SATA (SSD)) 24 °C
    Mouse
    Touchpad, Wireless Logetech M325
    Internet Speed
    Telus Smart Hub (15 to 25)
    Browser
    Chrome
    Antivirus
    Windows Security. Malwarebytes Premium
  • Operating System
    Windows 11 Pro
    Computer type
    PC/Desktop
    Manufacturer/Model
    MEMORY EXPRESS
    CPU
    13th Gen Intel Core i7-13700
    Motherboard
    PRIME B760M-A AX, ASUSTeK COMPUTER INC.
    Memory
    32MB
    Graphics card(s)
    Intel(R) UHD Graphics 770 (1.00 GB)
    Sound Card
    Realtek High Definition Audio.
    Monitor(s) Displays
    BenQ GW2480
    Screen Resolution
    1920x1080 pixels
    Hard Drives
    MSI M371 1TB, 931 GB (1,000,202,273,280 byte) SSD
    Mouse
    Wireless Logetech M510
    Keyboard
    Wave Keyboard K350 Logetech
    Internet Speed
    Currently 27.4 Mbps (Telus Smart Hub 25)
    Browser
    Chrome
    Antivirus
    Eset Antivirus software. Malwarebytes Premium
It looks like ESET has added that registry value back, which I suspected would be the case, please remove ESET completely - at least for troubleshooting purposes - using the ESET removal tool: [KB2289] Manually uninstall your ESET product using the ESET uninstaller tool

Once that has run, please reboot the machine and then check for the same registry value again using the command posted in post #39. If it still exists, then please run the FRST script from earlier in Safe Mode and then reboot back into Windows as you normally would.
 

My Computer

System One

  • OS
    Windows 11, Windows 10, Linux Fedora Cinnamon

Latest Support Threads

Back
Top Bottom