Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý NB

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Pomalý NB

#1 Příspěvek od ferenc77 »

Preinštaloval som windows a NB aj tak nejde nejako rýchlo.

https://uloz.to/file/iYmA81Srg0kl/log-txt

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Prosim, logy vkladat priamo na forum do prispevkov/odpovedi (ak by sa nezmestil, je mozne log rozdelit do viacerych prispevkov, alebo zabalit do archivu a poslat ako prilohu k prispevku).

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Spustit skenovani a pockaj na dokoncenie
  • V pripade nalezov nechaj vsetky nalezy oznacene a klikni na Karantena (ak nie su ziadne nalezy, tak na Spustit zakladni opravu)
  • V pripade, ze sa detekuje aj "predinstalovany software", tieto programy mozes, ale nemusis zmazat (toto nie su skodlive programy, ale iba zbytocnosti)
  • Potvrd vyzvu, pockaj na dokoncenie a potvrd restartovanie PC
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah skopiruj a vloz do dalsej odpovede
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#3 Příspěvek od ferenc77 »

# -------------------------------
# Malwarebytes AdwCleaner 8.0.9.1
# -------------------------------
# Build: 01-20-2021
# Database: 2021-01-26.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-14-2021
# Duration: 00:00:18
# OS: Windows 10 Home
# Cleaned: 6
# Awaiting reboot:2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

Deleted C:\Windows\System32\Tasks_Migrated\App Explorer

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1
Needs Reboot Preinstalled.LenovoIMController Folder C:\Users\casua\AppData\Local\LENOVO\IMCONTROLLER
Needs Reboot Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

***** Reboot Required to Complete *****


***** [ Folders ] *****

Cleaning failed C:\Users\casua\AppData\Local\LENOVO\IMCONTROLLER
Cleaning failed C:\Windows\LENOVO\IMCONTROLLER

*************************

AdwCleaner[S00].txt - [1915 octets] - [14/02/2021 09:04:20]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#4 Příspěvek od Conder »

Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#5 Příspěvek od ferenc77 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-02-2021 01
Ran by casua (administrator) on LAPTOP-QAN6RVD0 (LENOVO 81D1) (21-02-2021 19:55:43)
Running from C:\Users\casua\OneDrive\Počítač
Loaded Profiles: casua
Platform: Windows 10 Home Version 20H2 19042.804 (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_523d41b353d185cf\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHeciSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(Intel(R) System Usage Report -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20688.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <7>
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [971256 2019-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [286064 2021-01-25] (IDSA Production signing key 2021 -> Intel)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {016A4DBB-6A3C-4E4B-875C-085C16682ABD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {0C043269-E34D-4320-8FAA-13EF534C40D3} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe
Task: {1108BF79-25C7-43A4-80B1-139885E5360C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d4796e50-089a-4ead-ad1c-923809b8c2c5 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {1EA87A82-A5EC-4648-876B-4AD76CBAF43E} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {23E7A971-068D-403E-B6FE-9DDE17D2FE59} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {51D00A26-B457-465C-BBCA-65F4E31773A7} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9bc47a16-1abf-4c3f-abae-3affad32c848 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {6D2203A3-C0A2-42B6-ABFD-A81EBC2889D8} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {74CDF648-E170-4AD9-96E6-7D83D2AB6303} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {7B09C2D3-65E8-4079-9957-A5B6BDD57AF9} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {886A360C-6237-4409-B587-5950339F24DE} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
Task: {A961DCD7-376E-40BC-B81D-A64B38AB289A} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {C26092C8-B358-4F6D-A180-E3104B450C4F} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {C860AFF7-EDFD-45A0-9BA8-5C3B8E207B58} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {CA6F329A-F307-4F74-9E4F-252AE41B3FCE} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {CB8DE8A5-320A-40D5-BDD9-017F54F1194A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\299daa3b-7770-47c6-88b4-01137527c7ab => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {E03BC41C-8B2A-402E-ABB5-F2A51489444F} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\ScheduleEventAction.exe
Task: {F257C5A5-6F2A-411C-9819-96D8DBEEB120} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\03318681-ba11-4792-b9ad-0e841ff6d39c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0d82e113-8304-4f0a-b79b-f21609811a35}: [DhcpNameServer] 150.201.1.2
Tcpip\..\Interfaces\{66ab52eb-fa83-4bb6-8941-9c2da4d06973}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-21]
Edge DownloadDir: C:\Users\casua\OneDrive\Počítač
Edge HomePage: Default -> hxxp://www.google.sk/
Edge Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-01-30]

FireFox:
========
FF DefaultProfile: qwjwxy0a.default
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\qwjwxy0a.default [2021-02-13]
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release [2021-02-21]
FF DownloadDir: C:\Users\casua\OneDrive\Počítač
FF Homepage: Mozilla\Firefox\Profiles\3gs0gdpk.default-release -> www.google.sk
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-02-13]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> )
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-15] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 LenovoVantageService; "C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\LenovoVantageService.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R2 ekbdflt; C:\WINDOWS\System32\drivers\ekbdflt.sys [43720 2020-10-27] (ESET, spol. s r.o. -> ESET)
S3 usbscan; C:\WINDOWS\System32\drivers\usbscan.sys [49152 2019-12-07] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-21 19:55 - 2021-02-21 19:56 - 000000000 ____D C:\FRST
2021-02-21 19:32 - 2021-02-21 19:32 - 000000000 ____D C:\ProgramData\Apple Computer
2021-02-21 19:31 - 2021-02-21 19:31 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 06:25 - 2021-02-19 06:25 - 000000000 ____D C:\Users\casua\AppData\Local\CEF
2021-02-19 06:14 - 2021-02-21 19:49 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-14 16:19 - 2021-02-14 16:19 - 000000000 ____D C:\Users\casua\AppData\Roaming\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Program Files\WinRAR
2021-02-14 09:03 - 2021-02-14 09:07 - 000000000 ____D C:\AdwCleaner
2021-02-13 22:23 - 2021-02-13 22:26 - 000000000 ____D C:\rsit
2021-02-13 22:23 - 2021-02-13 22:23 - 000000000 ____D C:\Program Files\trend micro
2021-02-13 22:15 - 2021-02-21 19:52 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-13 22:15 - 2021-02-21 19:51 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Local\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-13 22:14 - 2021-02-13 22:15 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-12 21:25 - 2021-02-12 21:25 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 21:25 - 2021-02-12 21:25 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-07 21:18 - 2021-02-07 21:18 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-07 20:47 - 2021-02-07 20:47 - 000000000 ___HD C:\$WinREAgent
2021-02-02 20:10 - 2021-02-02 20:10 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-01-30 19:52 - 2021-02-12 21:40 - 000795802 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-30 19:52 - 2021-01-30 19:52 - 000000000 _SHDL C:\Documents and Settings
2021-01-30 19:51 - 2021-01-30 19:51 - 000022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-01-30 19:39 - 2021-01-30 19:39 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-01-30 19:37 - 2021-02-21 19:36 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-01-30 19:37 - 2021-02-09 16:50 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-01-30 19:37 - 2021-02-09 16:50 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-01-30 19:19 - 2021-02-21 19:49 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-01-30 19:19 - 2021-01-30 19:19 - 000000000 ____D C:\Program Files\Common Files\Dolby
2021-01-30 19:18 - 2021-02-21 19:49 - 000000000 ____D C:\Intel
2021-01-30 19:18 - 2021-01-30 19:44 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc
2021-01-30 19:18 - 2021-01-30 19:18 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-01-30 19:18 - 2021-01-30 12:23 - 000000000 ____D C:\ProgramData\Intel
2021-01-30 19:17 - 2021-02-12 19:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-01-30 19:16 - 2021-02-21 19:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-30 19:16 - 2021-02-21 19:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-30 19:15 - 2021-02-21 19:49 - 000008192 ___SH C:\DumpStack.log.tmp
2021-01-30 19:15 - 2021-02-12 21:36 - 000258088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-01-30 19:15 - 2021-01-30 19:16 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-01-30 13:30 - 2021-02-19 05:51 - 000000000 ____D C:\Users\casua\AppData\Roaming\vlc
2021-01-30 13:14 - 2021-01-30 13:14 - 000000000 ____D C:\Users\casua\AppData\Local\Apple
2021-01-30 13:10 - 2021-02-21 19:34 - 000000000 ____D C:\Program Files\Common Files\Apple
2021-01-30 13:07 - 2021-01-30 13:14 - 000000000 ____D C:\ProgramData\Apple
2021-01-30 12:29 - 2021-01-30 12:29 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2021-01-30 12:25 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\PlaceholderTileLogoFolder
2021-01-30 12:17 - 2021-01-30 12:17 - 000000000 ____D C:\Users\casua\AppData\Local\Comms
2021-01-30 12:03 - 2021-02-21 19:50 - 000000000 __SHD C:\Users\casua\IntelGraphicsProfiles
2021-01-30 12:02 - 2021-01-30 12:02 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Intel
2021-01-30 11:56 - 2021-01-30 12:34 - 000000000 ____D C:\Users\casua\AppData\Local\Lenovo
2021-01-30 11:56 - 2021-01-30 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2021-01-30 11:54 - 2021-01-30 11:54 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2021-01-30 11:52 - 2021-02-14 12:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-01-30 11:51 - 2021-01-30 11:52 - 000000869 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2021-01-30 11:51 - 2021-01-30 11:51 - 000000764 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-01-30 11:40 - 2021-01-30 11:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2021-01-30 11:29 - 2021-01-30 12:46 - 000000000 ____D C:\Users\casua\AppData\Local\Intel
2021-01-30 11:29 - 2021-01-30 11:29 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2021-01-30 11:29 - 2021-01-30 11:29 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2021-01-30 11:29 - 2021-01-30 11:29 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2021-01-30 11:29 - 2020-12-15 14:37 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2021-01-30 11:26 - 2021-01-30 11:28 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2021-01-30 11:23 - 2021-01-30 13:04 - 000000000 ____D C:\Users\casua\AppData\Local\D3DSCache
2021-01-30 11:19 - 2021-01-30 11:19 - 000000000 ___HD C:\OneDriveTemp
2021-01-30 11:18 - 2021-02-09 17:01 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3271678830-734790740-3617327906-1001
2021-01-30 11:18 - 2021-02-09 17:00 - 000000000 ___RD C:\Users\casua\OneDrive
2021-01-30 11:16 - 2021-02-11 05:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-01-30 11:10 - 2021-01-30 11:10 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-01-30 11:08 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Publishers
2021-01-30 11:07 - 2021-02-21 19:31 - 000000000 ____D C:\ProgramData\Packages
2021-01-30 11:07 - 2021-01-30 11:07 - 000000000 ___RD C:\Users\casua\3D Objects
2021-01-30 11:06 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Packages
2021-01-30 11:06 - 2021-01-30 12:24 - 000000000 ____D C:\Users\casua\AppData\Local\ConnectedDevicesPlatform
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Roaming\Adobe
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Local\VirtualStore
2021-01-30 11:03 - 2021-02-21 19:37 - 000000000 ____D C:\Users\casua
2021-01-30 11:03 - 2021-02-09 17:00 - 000002358 _____ C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-01-30 11:03 - 2021-01-30 11:03 - 000000020 ___SH C:\Users\casua\ntuser.ini
2021-01-30 10:05 - 2015-04-28 19:06 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2021-01-30 10:03 - 2021-01-30 19:53 - 000000000 ____D C:\WINDOWS\Panther
2021-01-30 09:49 - 2021-01-30 09:49 - 000000000 ____D C:\ProgramData\ssh
2021-01-30 09:39 - 2021-01-30 09:39 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-01-30 09:37 - 2021-01-30 09:37 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-01-30 09:37 - 2021-01-30 09:37 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-01-30 09:36 - 2021-01-30 09:36 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-01-30 09:35 - 2021-01-30 09:35 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-01-30 09:35 - 2021-01-30 09:35 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-01-30 09:34 - 2021-01-30 09:34 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-01-30 09:33 - 2021-01-30 09:33 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-01-30 09:32 - 2021-01-30 09:32 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-01-30 09:31 - 2021-01-30 09:31 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-01-30 09:31 - 2021-01-30 09:31 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-01-30 09:31 - 2021-01-30 09:31 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-01-30 09:13 - 2019-10-15 13:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2021-01-30 09:13 - 2019-04-18 18:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2021-01-30 09:04 - 2021-01-30 09:04 - 000000000 ____D C:\WINDOWS\Firmware
2021-01-30 09:02 - 2021-01-30 09:02 - 000000000 ____D C:\WINDOWS\Lenovo
2021-01-30 08:57 - 2021-01-30 08:57 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-01-30 08:26 - 2021-01-30 10:06 - 000000000 ___HD C:\$SysReset

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-21 19:52 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-21 19:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-02-21 19:48 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-02-21 19:37 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-21 19:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-02-21 19:35 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-02-19 06:19 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-02-14 09:10 - 2018-07-04 20:54 - 000000000 ____D C:\ProgramData\Lenovo
2021-02-14 09:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 21:32 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-12 21:30 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-11 18:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-03 06:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-01-30 19:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration
2021-01-30 19:44 - 2019-12-07 15:38 - 000000000 ____D C:\WINDOWS\OCR
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help
2021-01-30 19:43 - 2018-07-04 20:19 - 000000000 ____D C:\WINDOWS\Favicon_ICON
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-01-30 19:41 - 2018-07-04 20:50 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-01-30 19:41 - 2018-07-04 20:11 - 000000000 ___HD C:\UserGuidePDF
2021-01-30 19:40 - 2018-07-04 20:25 - 000000000 ____D C:\DRIVER
2021-01-30 19:18 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-01-30 12:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-01-30 12:22 - 2018-07-04 20:54 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-01-30 12:03 - 2018-07-04 20:29 - 000000000 ____D C:\Program Files (x86)\Intel
2021-01-30 12:03 - 2018-07-04 20:26 - 000000000 ____D C:\Program Files\Intel
2021-01-30 11:45 - 2018-07-04 20:25 - 000000000 ____D C:\ProgramData\Package Cache
2021-01-30 11:24 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-01-30 11:10 - 2017-10-03 17:48 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-01-30 11:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-01-30 11:01 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-01-30 10:02 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-01-30 09:47 - 2019-12-07 15:39 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-01-30 09:47 - 2019-12-07 15:39 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#6 Příspěvek od ferenc77 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-02-2021 01
Ran by casua (21-02-2021 20:04:51)
Running from C:\Users\casua\OneDrive\Počítač
Windows 10 Home Version 20H2 19042.804 (X64) (2021-01-30 18:53:45)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3271678830-734790740-3617327906-500 - Administrator - Disabled)
casua (S-1-5-21-3271678830-734790740-3617327906-1001 - Administrator - Enabled) => C:\Users\casua
DefaultAccount (S-1-5-21-3271678830-734790740-3617327906-503 - Limited - Disabled)
Guest (S-1-5-21-3271678830-734790740-3617327906-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3271678830-734790740-3617327906-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Intel Driver && Support Assistant (HKLM-x32\...\{F0E9774D-C5A1-4C83-89F9-191E1334D476}) (Version: 21.1.5.2 - Intel) Hidden
Intel(R) Computing Improvement Program (HKLM\...\{848F0123-CF5D-4192-90EC-A6574D8B1796}) (Version: 2.4.06522 - Intel Corporation)
Intel(R) Graphics Driver Software (HKLM-x32\...\{d0e4f33b-f383-4c75-8d81-ec92db2939eb}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{9154f79b-8fb8-46ef-b7a6-95f136391303}) (Version: 10.1.17479.8054 - Intel(R) Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1743.4.0.1217 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{3f5ceda7-9b48-4fa4-af57-8feaf8ab1e46}) (Version: 21.1.5.2 - Intel)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.4.16.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.74 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.141.59 - )
Microsoft OneDrive (HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\OneDriveSetup.exe) (Version: 21.002.0104.0005 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 85.0.2 (x64 sk) (HKLM\...\Mozilla Firefox 85.0.2 (x64 sk)) (Version: 85.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 85.0.2 - Mozilla)
Podpora Apple aplikácií (32-bit) (HKLM-x32\...\{80B42CAA-28C0-4FBD-A46E-D61F45E2F9FC}) (Version: 7.2 - Apple Inc.)
Podpora Apple aplikácií(64-bit) (HKLM\...\{466D00D0-E7DE-47C2-8FE5-54A8009F5850}) (Version: 7.2 - Apple Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.12 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
WinRAR 6.00 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
Dolby Audio -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyaudio_3.20500.501.0_x64__rz1tebttyb220 [2021-01-30] (Dolby Laboratories)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa [2021-02-21] (Apple Inc.) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2101.29.0_x64__k1h2ywk1493x8 [2021-02-09] (LENOVO INC.)
LenovoUtility -> C:\Program Files\WindowsApps\e0469640.lenovoutility_3.2.1.0_x64__5grkq8ppsgwt4 [2021-01-30] (LENOVO INC) [Startup Task]
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2021-01-30] (LinkedIn)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-01-30] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2021-02-13] (Netflix, Inc.)
Ovládacie centrum pre grafiku Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt [2021-01-30] (INTEL CORP) [Startup Task]
Power2Go for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.power2goforlenovo_8.0.11322.0_x86__m916jedk64snt [2021-01-30] (CYBERLINKCOM CORPORATION) [Startup Task]
PowerDVD for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.powerdvdforlenovo_14.2.2520.0_x86__m916jedk64snt [2021-01-30] (CYBERLINKCOM CORPORATION)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.7.195.0_x64__dt26b99r8h8gj [2021-01-30] (Realtek Semiconductor Corp)
Rozšírenie pre video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-01-30] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3271678830-734790740-3617327906-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key 2021 -> Intel)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2021-01-30 12:07 - 2021-01-30 12:08 - 042499072 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\IGCC.dll
2020-12-15 14:37 - 2020-12-15 14:37 - 001950208 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\iCLS\;C:\Program Files\Intel\TXE Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Intel Driver & Support Assistant"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EA58D66B-61D8-475B-A426-07BC56E9D9B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{702B2014-9222-4AD2-A2E7-291F15DD6C6A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{15057885-23EA-4E71-9145-93AF7957FC9C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0BAAEC9D-DF7D-4568-9642-C1301170BFD0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{629F4F9D-30FB-4E72-9579-470994013C17}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{86B6D4B6-5404-4620-92A3-A6F853C67108}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{1EB44AF1-D144-44B1-8726-04AF5A58975A}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{7EB32991-27D8-4BA0-9E95-1E04EDF21DBF}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{211911B4-3D20-48BC-BEF5-F3409BA2FBC8}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BCF7C096-2886-4A76-B5B6-0926C841D1B8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{67CAB1DF-812F-43B1-B4B4-AC9032320679}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E34E53F6-78DE-4B35-A83C-08C0DEB60B7D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0B1AE2C0-CE84-4C3B-B724-F194C9E118C3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4AD3DD22-8888-47F9-BAAC-509557723953}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EF40018E-732F-48DF-A41D-15D2CFEA137D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{64DD9369-78C5-47EE-A5A4-E572AC11CBFB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{89AC5F5E-3D24-4567-8BA3-23B99B999348}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8B55E36B-A477-4E64-83D2-A7244A7EBAEB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{43144ECC-C0C3-4753-8130-099E37EE4D73}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2C70C4A8-E73E-4E7B-82C2-5213EBD13AE3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)

==================== Restore Points =========================

21-02-2021 19:33:08 Removed Apple Mobile Device Support
21-02-2021 19:35:08 Removed Apple Software Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/21/2021 07:54:36 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/21/2021 07:44:48 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/21/2021 07:38:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (02/21/2021 07:21:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WWAHost.exe version 10.0.19041.789 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 1a48

Start Time: 01d7087dfb4b8fd7

Termination Time: 4294967295

Application Path: C:\Windows\System32\WWAHost.exe

Report Id: cae55423-f9be-481a-a927-b0dccf7d0aa6

Faulting package full name: 4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8

Faulting package-relative application ID: Netflix.App

Hang type: Quiesce

Error: (02/21/2021 07:18:13 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/17/2021 05:44:38 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.546 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 1a80

Start Time: 01d702a8ea534485

Termination Time: 4294967295

Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

Report Id: c2b21882-54e6-46f7-b326-f876f972ead8

Faulting package full name: Microsoft.Windows.Search_1.14.0.19041_neutral_neutral_cw5n1h2txyewy

Faulting package-relative application ID: CortanaUI

Hang type: Quiesce

Error: (02/16/2021 11:00:59 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Windows (C:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (02/15/2021 07:16:24 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WWAHost.exe version 10.0.19041.789 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 2608

Start Time: 01d70361b5aa5e56

Termination Time: 4294967295

Application Path: C:\Windows\System32\WWAHost.exe

Report Id: 9181bccc-0eba-4e46-84e5-4f3ee763904d

Faulting package full name: 4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8

Faulting package-relative application ID: Netflix.App

Hang type: Quiesce


System errors:
=============
Error: (02/21/2021 08:05:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby LenovoVantageService zlyhalo kvôli nasledujúcej chybe:
The system cannot find the file specified.

Error: (02/21/2021 07:51:30 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby LenovoVantageService zlyhalo kvôli nasledujúcej chybe:
The system cannot find the file specified.

Error: (02/21/2021 07:51:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby LenovoVantageService zlyhalo kvôli nasledujúcej chybe:
The system cannot find the file specified.

Error: (02/21/2021 07:50:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby LenovoVantageService zlyhalo kvôli nasledujúcej chybe:
The system cannot find the file specified.

Error: (02/21/2021 07:49:38 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby LenovoVantageService zlyhalo kvôli nasledujúcej chybe:
The system cannot find the file specified.

Error: (02/21/2021 07:48:31 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Energy Server Service queencreek sa po prijatí ovládacieho príkazu pred vypnutím nevypla správne.

Error: (02/21/2021 07:48:15 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Avast Antivirus sa po prijatí ovládacieho príkazu pred vypnutím nevypla správne.

Error: (02/21/2021 07:48:11 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : The embedded controller (EC) did not respond within the specified timeout period. This may indicate that there is an error in the EC hardware or firmware or that the BIOS is accessing the EC incorrectly. You should check with your computer manufacturer for an upgraded BIOS. In some situations, this error may cause the computer to function incorrectly.


Windows Defender:
================
Date: 2021-02-18 20:06:47
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-16 19:12:21
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-12 19:18:39
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-11 22:10:34
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-09 17:20:06
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===============
Date: 2021-02-21 19:43:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2021-02-21 19:41:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 7XCN38WW 06/23/2020
Motherboard: LENOVO LNVNB161216
Processor: Intel(R) Celeron(R) N4000 CPU @ 1.10GHz
Percentage of memory in use: 90%
Total physical RAM: 3918.57 MB
Available physical RAM: 376.85 MB
Total Virtual: 6222.57 MB
Available Virtual: 2020.83 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:464.51 GB) (Free:144.63 GB) NTFS

\\?\Volume{0f49ae9f-2fe1-4928-bcb9-aee148d821f1}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.48 GB) NTFS
\\?\Volume{f4193deb-79d4-49f0-9fbb-4a0a96b287a5}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32

==================== MBR & Partition Table ====================

==================== End of Addition.txt =======================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#7 Příspěvek od Conder »

Ospravedlnujem sa za oneskorenu reakciu. Vzhladom na uplynuly cas poprosim este raz o obidva nove/aktualne logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#8 Příspěvek od ferenc77 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-02-2021
Ran by casua (administrator) on LAPTOP-QAN6RVD0 (LENOVO 81D1) (27-02-2021 14:03:32)
Running from C:\Users\casua\OneDrive\Počítač
Loaded Profiles: casua
Platform: Windows 10 Home Version 20H2 19042.804 (X64) Language: Slovenčina (Slovensko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(IDSA Production signing key 2021 -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_0b214be229a13e84\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_8a301c120b987c01\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_523d41b353d185cf\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_233e086e960c2400\IntelCpHeciSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{090392BF-22A3-4F53-A01A-25B95F7A7E27}\MicrosoftEdge_X64_88.0.705.81_88.0.705.74.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Temp\EDGEMITMP_5565D.tmp\setup.exe <2>
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2101.10.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.740_none_e752aa59261f271f\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\NisSrv.exe
(Qualcomm Atheros -> Qualcomm Technologies Inc.) C:\Windows\System32\drivers\QcomWlanSrvx64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [971256 2019-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [286064 2021-01-25] (IDSA Production signing key 2021 -> Intel)
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Uninstall 21.002.0104.0005\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\21.002.0104.0005\amd64"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\RunOnce: [Uninstall 21.002.0104.0005] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\casua\AppData\Local\Microsoft\OneDrive\21.002.0104.0005"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {016A4DBB-6A3C-4E4B-875C-085C16682ABD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {0C043269-E34D-4320-8FAA-13EF534C40D3} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe
Task: {1108BF79-25C7-43A4-80B1-139885E5360C} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d4796e50-089a-4ead-ad1c-923809b8c2c5 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {1EA87A82-A5EC-4648-876B-4AD76CBAF43E} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {23E7A971-068D-403E-B6FE-9DDE17D2FE59} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {4388A143-12BE-4F48-BE47-081243D06662} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51D00A26-B457-465C-BBCA-65F4E31773A7} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9bc47a16-1abf-4c3f-abae-3affad32c848 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {693AEB92-7CA2-4C8D-9D1C-A83AD117BAA5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6D2203A3-C0A2-42B6-ABFD-A81EBC2889D8} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {74CDF648-E170-4AD9-96E6-7D83D2AB6303} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {7B09C2D3-65E8-4079-9957-A5B6BDD57AF9} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {886A360C-6237-4409-B587-5950339F24DE} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation)
Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
Task: {A961DCD7-376E-40BC-B81D-A64B38AB289A} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
Task: {BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {C26092C8-B358-4F6D-A180-E3104B450C4F} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {C860AFF7-EDFD-45A0-9BA8-5C3B8E207B58} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [677344 2021-02-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {CA6F329A-F307-4F74-9E4F-252AE41B3FCE} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {CB8DE8A5-320A-40D5-BDD9-017F54F1194A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\299daa3b-7770-47c6-88b4-01137527c7ab => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {E03BC41C-8B2A-402E-ABB5-F2A51489444F} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\ScheduleEventAction.exe
Task: {E6218C2F-3D20-4449-9C72-9F99AD8E4CFC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F0D4D47F-D2B3-4204-A366-69C2BBF79B12} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F257C5A5-6F2A-411C-9819-96D8DBEEB120} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\03318681-ba11-4792-b9ad-0e841ff6d39c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{0d82e113-8304-4f0a-b79b-f21609811a35}: [DhcpNameServer] 150.201.1.2
Tcpip\..\Interfaces\{66ab52eb-fa83-4bb6-8941-9c2da4d06973}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-27]
Edge DownloadDir: C:\Users\casua\OneDrive\Počítač
Edge HomePage: Default -> hxxp://www.google.sk/
Edge Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\casua\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-01-30]

FireFox:
========
FF DefaultProfile: qwjwxy0a.default
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\qwjwxy0a.default [2021-02-13]
FF ProfilePath: C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release [2021-02-27]
FF DownloadDir: C:\Users\casua\OneDrive\Počítač
FF Homepage: Mozilla\Firefox\Profiles\3gs0gdpk.default-release -> www.google.sk
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\casua\AppData\Roaming\Mozilla\Firefox\Profiles\3gs0gdpk.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-02-13]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> )
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-15] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 LenovoVantageService; "C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\LenovoVantageService.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R2 ekbdflt; C:\WINDOWS\System32\drivers\ekbdflt.sys [43720 2020-10-27] (ESET, spol. s r.o. -> ESET)
S3 usbscan; C:\WINDOWS\System32\drivers\usbscan.sys [49152 2019-12-07] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-27 14:16 - 2021-02-27 14:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-22 19:50 - 2021-02-22 19:50 - 000000000 ____D C:\Users\casua\Apple
2021-02-21 19:55 - 2021-02-27 14:05 - 000000000 ____D C:\FRST
2021-02-21 19:32 - 2021-02-21 19:32 - 000000000 ____D C:\ProgramData\Apple Computer
2021-02-21 19:31 - 2021-02-21 19:31 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-19 06:25 - 2021-02-19 06:25 - 000000000 ____D C:\Users\casua\AppData\Local\CEF
2021-02-19 06:14 - 2021-02-21 19:49 - 000000000 ____D C:\ProgramData\Avast Software
2021-02-14 16:19 - 2021-02-14 16:19 - 000000000 ____D C:\Users\casua\AppData\Roaming\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-02-14 16:15 - 2021-02-14 16:15 - 000000000 ____D C:\Program Files\WinRAR
2021-02-14 09:03 - 2021-02-14 09:07 - 000000000 ____D C:\AdwCleaner
2021-02-13 22:23 - 2021-02-13 22:26 - 000000000 ____D C:\rsit
2021-02-13 22:23 - 2021-02-13 22:23 - 000000000 ____D C:\Program Files\trend micro
2021-02-13 22:15 - 2021-02-27 14:18 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Mozilla
2021-02-13 22:15 - 2021-02-27 14:18 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-13 22:15 - 2021-02-27 14:15 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-13 22:15 - 2021-02-25 18:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Roaming\Mozilla
2021-02-13 22:15 - 2021-02-13 22:15 - 000000000 ____D C:\Users\casua\AppData\Local\Mozilla
2021-02-13 22:14 - 2021-02-25 18:26 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-12 21:25 - 2021-02-12 21:25 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 21:25 - 2021-02-12 21:25 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-07 21:18 - 2021-02-07 21:18 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-07 21:17 - 2021-02-07 21:17 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-07 20:47 - 2021-02-07 20:47 - 000000000 ___HD C:\$WinREAgent
2021-02-02 20:10 - 2021-02-02 20:10 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2021-01-30 19:52 - 2021-02-12 21:40 - 000795802 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-01-30 19:52 - 2021-01-30 19:52 - 000000000 _SHDL C:\Documents and Settings
2021-01-30 19:51 - 2021-01-30 19:51 - 000022744 _____ C:\WINDOWS\system32\emptyregdb.dat
2021-01-30 19:39 - 2021-01-30 19:39 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-01-30 19:37 - 2021-02-27 14:13 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-01-30 19:37 - 2021-02-09 16:50 - 000003576 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-01-30 19:37 - 2021-02-09 16:50 - 000003452 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-01-30 19:19 - 2021-02-23 20:20 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-01-30 19:19 - 2021-01-30 19:19 - 000000000 ____D C:\Program Files\Common Files\Dolby
2021-01-30 19:18 - 2021-02-23 20:20 - 000000000 ____D C:\Intel
2021-01-30 19:18 - 2021-01-30 19:44 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc
2021-01-30 19:18 - 2021-01-30 19:18 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2021-01-30 19:18 - 2021-01-30 12:23 - 000000000 ____D C:\ProgramData\Intel
2021-01-30 19:17 - 2021-02-12 19:09 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-01-30 19:16 - 2021-02-26 09:25 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-01-30 19:16 - 2021-02-23 20:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-01-30 19:15 - 2021-02-23 20:20 - 000008192 ___SH C:\DumpStack.log.tmp
2021-01-30 19:15 - 2021-02-12 21:36 - 000258088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-01-30 19:15 - 2021-01-30 19:16 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-01-30 13:30 - 2021-02-23 07:26 - 000000000 ____D C:\Users\casua\AppData\Roaming\vlc
2021-01-30 13:14 - 2021-01-30 13:14 - 000000000 ____D C:\Users\casua\AppData\Local\Apple
2021-01-30 13:10 - 2021-02-21 19:34 - 000000000 ____D C:\Program Files\Common Files\Apple
2021-01-30 13:07 - 2021-01-30 13:14 - 000000000 ____D C:\ProgramData\Apple
2021-01-30 12:29 - 2021-01-30 12:29 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2021-01-30 12:25 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\PlaceholderTileLogoFolder
2021-01-30 12:17 - 2021-01-30 12:17 - 000000000 ____D C:\Users\casua\AppData\Local\Comms
2021-01-30 12:03 - 2021-02-23 20:21 - 000000000 __SHD C:\Users\casua\IntelGraphicsProfiles
2021-01-30 12:02 - 2021-01-30 12:02 - 000000000 ____D C:\Users\casua\AppData\LocalLow\Intel
2021-01-30 11:56 - 2021-01-30 12:34 - 000000000 ____D C:\Users\casua\AppData\Local\Lenovo
2021-01-30 11:56 - 2021-01-30 11:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2021-01-30 11:54 - 2021-01-30 11:54 - 000000000 ____D C:\Program Files (x86)\VideoLAN
2021-01-30 11:52 - 2021-02-14 12:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-01-30 11:51 - 2021-01-30 11:52 - 000000869 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2021-01-30 11:51 - 2021-01-30 11:51 - 000000764 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-01-30 11:40 - 2021-01-30 11:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2021-01-30 11:29 - 2021-01-30 12:46 - 000000000 ____D C:\Users\casua\AppData\Local\Intel
2021-01-30 11:29 - 2021-01-30 11:29 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2021-01-30 11:29 - 2021-01-30 11:29 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2021-01-30 11:29 - 2021-01-30 11:29 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2021-01-30 11:29 - 2020-12-15 14:37 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys
2021-01-30 11:26 - 2021-01-30 11:28 - 000001517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2021-01-30 11:23 - 2021-01-30 13:04 - 000000000 ____D C:\Users\casua\AppData\Local\D3DSCache
2021-01-30 11:19 - 2021-01-30 11:19 - 000000000 ___HD C:\OneDriveTemp
2021-01-30 11:18 - 2021-02-27 14:02 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3271678830-734790740-3617327906-1001
2021-01-30 11:18 - 2021-02-27 14:02 - 000000000 ___RD C:\Users\casua\OneDrive
2021-01-30 11:16 - 2021-02-11 05:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-01-30 11:10 - 2021-01-30 11:10 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-01-30 11:08 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Publishers
2021-01-30 11:07 - 2021-02-21 19:31 - 000000000 ____D C:\ProgramData\Packages
2021-01-30 11:07 - 2021-01-30 11:07 - 000000000 ___RD C:\Users\casua\3D Objects
2021-01-30 11:06 - 2021-02-21 19:31 - 000000000 ____D C:\Users\casua\AppData\Local\Packages
2021-01-30 11:06 - 2021-01-30 12:24 - 000000000 ____D C:\Users\casua\AppData\Local\ConnectedDevicesPlatform
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Roaming\Adobe
2021-01-30 11:06 - 2021-01-30 11:06 - 000000000 ____D C:\Users\casua\AppData\Local\VirtualStore
2021-01-30 11:03 - 2021-02-27 14:02 - 000002358 _____ C:\Users\casua\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-01-30 11:03 - 2021-02-23 01:34 - 000000000 ____D C:\Users\casua
2021-01-30 11:03 - 2021-01-30 11:03 - 000000020 ___SH C:\Users\casua\ntuser.ini
2021-01-30 10:05 - 2015-04-28 19:06 - 000043256 _____ C:\WINDOWS\system32\oemlogo.bmp
2021-01-30 10:03 - 2021-01-30 19:53 - 000000000 ____D C:\WINDOWS\Panther
2021-01-30 09:49 - 2021-01-30 09:49 - 000000000 ____D C:\ProgramData\ssh
2021-01-30 09:39 - 2021-01-30 09:39 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-01-30 09:38 - 2021-01-30 09:38 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-01-30 09:38 - 2021-01-30 09:38 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-01-30 09:38 - 2021-01-30 09:38 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-01-30 09:38 - 2021-01-30 09:38 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-01-30 09:38 - 2021-01-30 09:38 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-01-30 09:37 - 2021-01-30 09:37 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-01-30 09:37 - 2021-01-30 09:37 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-01-30 09:37 - 2021-01-30 09:37 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-01-30 09:37 - 2021-01-30 09:37 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-01-30 09:36 - 2021-01-30 09:36 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-01-30 09:36 - 2021-01-30 09:36 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-01-30 09:36 - 2021-01-30 09:36 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-01-30 09:35 - 2021-01-30 09:35 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-01-30 09:35 - 2021-01-30 09:35 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-01-30 09:35 - 2021-01-30 09:35 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-01-30 09:35 - 2021-01-30 09:35 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-01-30 09:34 - 2021-01-30 09:34 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-01-30 09:34 - 2021-01-30 09:34 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-01-30 09:33 - 2021-01-30 09:33 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-01-30 09:33 - 2021-01-30 09:33 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-01-30 09:33 - 2021-01-30 09:33 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-01-30 09:33 - 2021-01-30 09:33 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-01-30 09:33 - 2021-01-30 09:33 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-01-30 09:32 - 2021-01-30 09:32 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-01-30 09:32 - 2021-01-30 09:32 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-01-30 09:31 - 2021-01-30 09:31 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-01-30 09:31 - 2021-01-30 09:31 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-01-30 09:31 - 2021-01-30 09:31 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-01-30 09:31 - 2021-01-30 09:31 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-01-30 09:31 - 2021-01-30 09:31 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-01-30 09:13 - 2019-10-15 13:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
2021-01-30 09:13 - 2019-04-18 18:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
2021-01-30 09:04 - 2021-01-30 09:04 - 000000000 ____D C:\WINDOWS\Firmware
2021-01-30 09:02 - 2021-01-30 09:02 - 000000000 ____D C:\WINDOWS\Lenovo
2021-01-30 08:57 - 2021-01-30 08:57 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-01-30 08:26 - 2021-01-30 10:06 - 000000000 ___HD C:\$SysReset

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-27 14:19 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-27 14:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-02-27 14:07 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-25 23:28 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-02-25 21:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-23 20:16 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-02-23 20:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-21 19:48 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-02-19 06:19 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-02-14 09:10 - 2018-07-04 20:54 - 000000000 ____D C:\ProgramData\Lenovo
2021-02-14 09:07 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-12 21:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-12 21:32 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-03 06:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-01-30 19:53 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration
2021-01-30 19:44 - 2019-12-07 15:38 - 000000000 ____D C:\WINDOWS\OCR
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-01-30 19:44 - 2019-12-07 15:36 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-01-30 19:44 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-01-30 19:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help
2021-01-30 19:43 - 2018-07-04 20:19 - 000000000 ____D C:\WINDOWS\Favicon_ICON
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-01-30 19:41 - 2019-12-07 15:39 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-01-30 19:41 - 2018-07-04 20:50 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2021-01-30 19:41 - 2018-07-04 20:11 - 000000000 ___HD C:\UserGuidePDF
2021-01-30 19:40 - 2018-07-04 20:25 - 000000000 ____D C:\DRIVER
2021-01-30 19:18 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-01-30 12:28 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-01-30 12:22 - 2018-07-04 20:54 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-01-30 12:03 - 2018-07-04 20:29 - 000000000 ____D C:\Program Files (x86)\Intel
2021-01-30 12:03 - 2018-07-04 20:26 - 000000000 ____D C:\Program Files\Intel
2021-01-30 11:45 - 2018-07-04 20:25 - 000000000 ____D C:\ProgramData\Package Cache
2021-01-30 11:24 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-01-30 11:10 - 2017-10-03 17:48 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-01-30 11:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-01-30 11:01 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-01-30 10:02 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-01-30 09:49 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-01-30 09:47 - 2019-12-07 15:39 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-01-30 09:47 - 2019-12-07 15:39 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-01-30 09:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#9 Příspěvek od ferenc77 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-02-2021
Ran by casua (27-02-2021 14:21:16)
Running from C:\Users\casua\OneDrive\Počítač
Windows 10 Home Version 20H2 19042.804 (X64) (2021-01-30 18:53:45)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3271678830-734790740-3617327906-500 - Administrator - Disabled)
casua (S-1-5-21-3271678830-734790740-3617327906-1001 - Administrator - Enabled) => C:\Users\casua
DefaultAccount (S-1-5-21-3271678830-734790740-3617327906-503 - Limited - Disabled)
Guest (S-1-5-21-3271678830-734790740-3617327906-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3271678830-734790740-3617327906-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Intel Driver && Support Assistant (HKLM-x32\...\{F0E9774D-C5A1-4C83-89F9-191E1334D476}) (Version: 21.1.5.2 - Intel) Hidden
Intel(R) Computing Improvement Program (HKLM\...\{848F0123-CF5D-4192-90EC-A6574D8B1796}) (Version: 2.4.06522 - Intel Corporation)
Intel(R) Graphics Driver Software (HKLM-x32\...\{d0e4f33b-f383-4c75-8d81-ec92db2939eb}) (Version: 3.11.1.0 - Intel) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{9154f79b-8fb8-46ef-b7a6-95f136391303}) (Version: 10.1.17479.8054 - Intel(R) Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.47.715.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{2b32b7d0-4f9f-47c8-adb7-807e6cb2fb75}) (Version: 1.47.715.0 - Intel Corporation) Hidden
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1743.4.0.1217 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{3f5ceda7-9b48-4fa4-af57-8feaf8ab1e46}) (Version: 21.1.5.2 - Intel)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.4.16.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.81 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.141.59 - )
Microsoft OneDrive (HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\OneDriveSetup.exe) (Version: 21.016.0124.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox 86.0 (x64 sk) (HKLM\...\Mozilla Firefox 86.0 (x64 sk)) (Version: 86.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 85.0.2 - Mozilla)
Podpora Apple aplikácií (32-bit) (HKLM-x32\...\{80B42CAA-28C0-4FBD-A46E-D61F45E2F9FC}) (Version: 7.2 - Apple Inc.)
Podpora Apple aplikácií(64-bit) (HKLM\...\{466D00D0-E7DE-47C2-8FE5-54A8009F5850}) (Version: 7.2 - Apple Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.12 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.0 (HKLM\...\VulkanRT1.0.65.0) (Version: 1.0.65.0 - LunarG, Inc.) Hidden
WinRAR 6.00 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
Dolby Audio -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyaudio_3.20500.501.0_x64__rz1tebttyb220 [2021-01-30] (Dolby Laboratories)
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa [2021-02-21] (Apple Inc.) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2101.29.0_x64__k1h2ywk1493x8 [2021-02-09] (LENOVO INC.)
LenovoUtility -> C:\Program Files\WindowsApps\e0469640.lenovoutility_3.2.1.0_x64__5grkq8ppsgwt4 [2021-01-30] (LENOVO INC) [Startup Task]
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2021-01-30] (LinkedIn)
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-01-30] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.13628.20448.0_x86__8wekyb3d8bbwe [2021-02-18] (Microsoft Corporation)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2021-02-13] (Netflix, Inc.)
Ovládacie centrum pre grafiku Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt [2021-01-30] (INTEL CORP) [Startup Task]
Power2Go for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.power2goforlenovo_8.0.11322.0_x86__m916jedk64snt [2021-01-30] (CYBERLINKCOM CORPORATION) [Startup Task]
PowerDVD for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.powerdvdforlenovo_14.2.2520.0_x86__m916jedk64snt [2021-01-30] (CYBERLINKCOM CORPORATION)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.7.195.0_x64__dt26b99r8h8gj [2021-01-30] (Realtek Semiconductor Corp)
Rozšírenie pre video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-01-30] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3271678830-734790740-3617327906-1001_Classes\CLSID\{233525e0-5434-46ef-b464-fd7e45e2e145}\localserver32 -> C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (IDSA Production signing key 2021 -> Intel)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2021-01-30 12:07 - 2021-01-30 12:08 - 042499072 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt\IGCC.dll
2020-12-15 14:37 - 2020-12-15 14:37 - 001638912 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\SQLite.Interop.dll
2020-12-15 14:37 - 2020-12-15 14:37 - 001950208 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\iCLS\;C:\Program Files\Intel\TXE Components\iCLS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Intel Driver & Support Assistant"
HKU\S-1-5-21-3271678830-734790740-3617327906-1001\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EA58D66B-61D8-475B-A426-07BC56E9D9B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{702B2014-9222-4AD2-A2E7-291F15DD6C6A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{15057885-23EA-4E71-9145-93AF7957FC9C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0BAAEC9D-DF7D-4568-9642-C1301170BFD0}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.99.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{629F4F9D-30FB-4E72-9579-470994013C17}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{86B6D4B6-5404-4620-92A3-A6F853C67108}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{1EB44AF1-D144-44B1-8726-04AF5A58975A}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{7EB32991-27D8-4BA0-9E95-1E04EDF21DBF}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) System Usage Report -> )
FirewallRules: [{211911B4-3D20-48BC-BEF5-F3409BA2FBC8}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BCF7C096-2886-4A76-B5B6-0926C841D1B8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{67CAB1DF-812F-43B1-B4B4-AC9032320679}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E34E53F6-78DE-4B35-A83C-08C0DEB60B7D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.13628.20448.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0B1AE2C0-CE84-4C3B-B724-F194C9E118C3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4AD3DD22-8888-47F9-BAAC-509557723953}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EF40018E-732F-48DF-A41D-15D2CFEA137D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{64DD9369-78C5-47EE-A5A4-E572AC11CBFB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{89AC5F5E-3D24-4567-8BA3-23B99B999348}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8B55E36B-A477-4E64-83D2-A7244A7EBAEB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{43144ECC-C0C3-4753-8130-099E37EE4D73}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{2C70C4A8-E73E-4E7B-82C2-5213EBD13AE3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12110.26.53016.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)

==================== Restore Points =========================

21-02-2021 19:33:08 Removed Apple Mobile Device Support
21-02-2021 19:35:08 Removed Apple Software Update
27-02-2021 14:03:39 Inštalátor modulov systému Windows
27-02-2021 14:19:07 Inštalátor modulov systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/23/2021 08:25:30 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/23/2021 01:38:50 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/22/2021 07:25:45 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/21/2021 07:54:36 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/21/2021 07:44:48 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.

Error: (02/21/2021 07:38:08 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]

Error: (02/21/2021 07:21:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WWAHost.exe version 10.0.19041.789 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 1a48

Start Time: 01d7087dfb4b8fd7

Termination Time: 4294967295

Application Path: C:\Windows\System32\WWAHost.exe

Report Id: cae55423-f9be-481a-a927-b0dccf7d0aa6

Faulting package full name: 4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8

Faulting package-relative application ID: Netflix.App

Hang type: Quiesce

Error: (02/21/2021 07:18:13 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: LAPTOP-QAN6RVD0)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.


System errors:
=============
Error: (02/27/2021 01:54:31 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Energy Server Service queencreek sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 3-krát.

Error: (02/27/2021 01:54:15 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : The embedded controller (EC) did not respond within the specified timeout period. This may indicate that there is an error in the EC hardware or firmware or that the BIOS is accessing the EC incorrectly. You should check with your computer manufacturer for an upgraded BIOS. In some situations, this error may cause the computer to function incorrectly.

Error: (02/27/2021 01:51:09 PM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI BIOS is attempting to write to an illegal PCI Operation Region (0x10), Please contact your system vendor for technical assistance.

Error: (02/26/2021 09:25:29 AM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI BIOS is attempting to write to an illegal PCI Operation Region (0x10), Please contact your system vendor for technical assistance.

Error: (02/26/2021 05:35:14 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-QAN6RVD0)
Description: The server microsoft.windowscommunicationsapps_16005.13426.20688.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca did not register with DCOM within the required timeout.

Error: (02/26/2021 05:34:41 AM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI BIOS is attempting to write to an illegal PCI Operation Region (0x10), Please contact your system vendor for technical assistance.

Error: (02/26/2021 02:48:04 AM) (Source: ACPI) (EventID: 10) (User: )
Description: ACPI: ACPI BIOS is attempting to write to an illegal PCI Operation Region (0x10), Please contact your system vendor for technical assistance.

Error: (02/25/2021 06:20:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Energy Server Service queencreek sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 2-krát.


Windows Defender:
================
Date: 2021-02-18 20:06:47
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-16 19:12:21
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-12 19:18:39
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-11 22:10:34
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2021-02-09 17:20:06
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===============
Date: 2021-02-21 19:43:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2021-02-21 19:41:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 7XCN38WW 06/23/2020
Motherboard: LENOVO LNVNB161216
Processor: Intel(R) Celeron(R) N4000 CPU @ 1.10GHz
Percentage of memory in use: 90%
Total physical RAM: 3918.57 MB
Available physical RAM: 353.79 MB
Total Virtual: 6838.64 MB
Available Virtual: 1477.81 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:464.51 GB) (Free:140.34 GB) NTFS

\\?\Volume{0f49ae9f-2fe1-4928-bcb9-aee148d821f1}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.48 GB) NTFS
\\?\Volume{f4193deb-79d4-49f0-9fbb-4a0a96b287a5}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32

==================== MBR & Partition Table ====================

==================== End of Addition.txt =======================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#10 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    Task: {016A4DBB-6A3C-4E4B-875C-085C16682ABD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
    Task: {23E7A971-068D-403E-B6FE-9DDE17D2FE59} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
    Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
    Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
    Task: {74CDF648-E170-4AD9-96E6-7D83D2AB6303} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
    Task: {7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
    Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
    Task: {BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF} - \LenovoUtility Task -> No File <==== ATTENTION
    Task: {C26092C8-B358-4F6D-A180-E3104B450C4F} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
    Task: {CA6F329A-F307-4F74-9E4F-252AE41B3FCE} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
    Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
    S2 LenovoVantageService; "C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\LenovoVantageService.exe" [X]
    2021-02-13 22:23 - 2021-02-13 22:26 - 000000000 ____D C:\rsit
    2021-02-13 22:23 - 2021-02-13 22:23 - 000000000 ____D C:\Program Files\trend micro
    
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah skopiruj a vloz do dalsej odpovede
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#11 Příspěvek od ferenc77 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 28-02-2021
Ran by casua (04-03-2021 21:45:42) Run:1
Running from C:\Users\casua\OneDrive\Počítač
Loaded Profiles: casua
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
Task: {016A4DBB-6A3C-4E4B-875C-085C16682ABD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {23E7A971-068D-403E-B6FE-9DDE17D2FE59} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {37292EA8-F458-47ED-A55C-5A3A1CCF5FD5} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {3891CB81-CF07-4ECD-A7CE-59544F84AF7D} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {74CDF648-E170-4AD9-96E6-7D83D2AB6303} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {8DC4F6F2-5AC8-41B5-8461-383B58804B47} - \Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask -> No File <==== ATTENTION
Task: {BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {C26092C8-B358-4F6D-A180-E3104B450C4F} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {CA6F329A-F307-4F74-9E4F-252AE41B3FCE} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
S2 LenovoVantageService; "C:\Program Files (x86)\Lenovo\VantageService\3.4.16.0\LenovoVantageService.exe" [X]
2021-02-13 22:23 - 2021-02-13 22:26 - 000000000 ____D C:\rsit
2021-02-13 22:23 - 2021-02-13 22:23 - 000000000 ____D C:\Program Files\trend micro

EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 1
Average :
Sum : 5349304
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{016A4DBB-6A3C-4E4B-875C-085C16682ABD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{016A4DBB-6A3C-4E4B-875C-085C16682ABD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Lenovo iM Controller Monitor" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{23E7A971-068D-403E-B6FE-9DDE17D2FE59}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23E7A971-068D-403E-B6FE-9DDE17D2FE59}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Standalone Update Task v2" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{37292EA8-F458-47ED-A55C-5A3A1CCF5FD5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{37292EA8-F458-47ED-A55C-5A3A1CCF5FD5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\sih" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3891CB81-CF07-4ECD-A7CE-59544F84AF7D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3891CB81-CF07-4ECD-A7CE-59544F84AF7D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{74CDF648-E170-4AD9-96E6-7D83D2AB6303}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{74CDF648-E170-4AD9-96E6-7D83D2AB6303}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Management\Provisioning\PostResetBoot" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7F1B8FEE-DE5A-4EA2-926A-D27D4E36F03C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8DC4F6F2-5AC8-41B5-8461-383B58804B47}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8DC4F6F2-5AC8-41B5-8461-383B58804B47}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\EnterpriseMgmt\MDMMaintenenceTask" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BF6FD6B6-0169-45EB-B3F1-D47FB9C6ABFF}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LenovoUtility Task" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C26092C8-B358-4F6D-A180-E3104B450C4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C26092C8-B358-4F6D-A180-E3104B450C4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CA6F329A-F307-4F74-9E4F-252AE41B3FCE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CA6F329A-F307-4F74-9E4F-252AE41B3FCE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => removed successfully
HKLM\System\CurrentControlSet\Services\LenovoVantageService => removed successfully
LenovoVantageService => service removed successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 20017112 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 11780011 B
Edge => 0 B
Firefox => 23820980 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 22890 B
NetworkService => 70276 B
casua => 73174722 B

RecycleBin => 0 B
EmptyTemp: => 130.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:47:38 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#12 Příspěvek od Conder »

:arrow: Spusti kontrolu integrity systemovych suborov:
  • Otvor Start, napis "cmd" (bez uvodzoviek), klikni pravym tlacitkom mysi na Prikazovy riadok a klikni na Spustit ako spravca
  • Skopiruj a spusti prikaz:

    Kód: Vybrat vše

    DISM.exe /Online /Cleanup-image /Restorehealth
  • Po dokonceni skopiruj a spusti druhy prikaz:

    Kód: Vybrat vše

    sfc /scannow
  • Po dokonceni obidvoch prikazov skopiruj a spusti tento prikaz:

    Kód: Vybrat vše

    findstr /c:"[SR]" %windir%\logs\cbs\cbs.log >> "%userprofile%\desktop\sfcdetails.txt" && copy %windir%\logs\dism\dism.log %userprofile%\desktop\dism.txt
  • Na ploche sa vytvoria subory sfcdetails.txt a dism.txt, tieto subory zabal ho do archivu RAR alebo ZIP a posli ako prilohu k dalsiemu prispevku
  • Restartuj PC a napis ako sa chova PC
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#13 Příspěvek od ferenc77 »

DISM.exe /Online /Cleanup-image /Restorehealth
Bez názvu.jpg
Bez názvu.jpg (45.24 KiB) Zobrazeno 1193 x
To tak dlho trvá? Už 15 minút a stále to je takto. Na internete som videl obrázky, že tam by mali nabiehať percentá

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Pomalý NB

#14 Příspěvek od Conder »

Ano, percenta by tam mali byt, ale podla screenshotu si v tom prikazovom riadku oznacil nejaky text (vid. ten biely obdlznik), takze vtedy sa okno prikazoveho riadku neaktualizuje (ale spustena kontrola by mala nadalej bezat). Toto oznacenie textu sa da zrusit klaesou Esc a potom by sa obrazovka mala zaktualizovat a dalej zobrazovat aktualny stav. Inak tato akcia moze to trvat aj dlhsie ako 15 minut, zalezi najma od vykonu PC a disku.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Pomalý NB

#15 Příspěvek od ferenc77 »

No notebook sa mi nezdá, že by bol extra rýchly. Dlho trvá kým nabehne Firefox a celkovo také slabé reakcie a to som pred vytvorením tejto témy inštaloval nanovo windows

Aktualizácia :
O niečo už ide lepšie
Přílohy
Počítač.rar
(27.01 KiB) Staženo 38 x

Odpovědět