Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zdanlivo plny disk C

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
alfonz.flower
Návštěvník
Návštěvník
Příspěvky: 71
Registrován: 20 říj 2019 16:46

Zdanlivo plny disk C

#1 Příspěvek od alfonz.flower »

Dobry den,

system ukazuje plny disk C (volne par MB), ale v priecinkoch je odhadom do 100 GB na 500 GB HDD. Neviem co to moze byt, chdsk som skusal, ale nepomohlo.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-10-2021
Ran by brigadnik (administrator) on PC-CHALANYOVA (22-10-2021 12:35:28)
Running from C:\Users\brigadnik\Desktop
Loaded Profiles: brigadnik
Platform: Microsoft Windows 7 Professional Service Pack 1 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KoffBackend.exe
(GFI Software Development Ltd. -> Kerio Technologies Inc.) C:\Program Files (x86)\Kerio\UpdaterService\ktupdaterservice.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation -> Microsoft Corp.) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\outlook.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
(OpenVPN Inc. -> ) C:\Program Files\OpenVPN\bin\openvpn-gui.exe
(OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
(philandro Software GmbH -> philandro Software GmbH) C:\Users\brigadnik\Desktop\AnyDesk.exe <5>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9068040 2016-11-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [175120 2021-09-22] (ESET, spol. s r.o. -> ESET)
HKU\S-1-5-21-4218786421-3780030290-246298092-1004\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [755296 2020-10-28] (OpenVPN Inc. -> )
HKLM\...\Windows x64\Print Processors\CnXP0PP: C:\Windows\System32\spool\prtprocs\x64\CnXP0PP.DLL [629248 2020-01-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\LMADYN4C: C:\Windows\System32\spool\prtprocs\x64\LMADYN4C.DLL [230912 2012-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Lexmark International Inc.)
HKLM\...\Print\Monitors\CPCA Language Monitor3b: C:\Windows\system32\CNAS0MOK.DLL [1006080 2012-08-09] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\CPCA Language Monitor4: C:\Windows\system32\CNAS0MPK.DLL [1782272 2020-04-01] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\doPDF 7 Monitor: C:\Windows\system32\dopdfmn7.dll [24392 2010-12-14] (Softland -> Softland)
HKLM\...\Print\Monitors\HP c42a Status Monitor: C:\Windows\system32\hpinkstsc42aLM.dll [476344 2019-11-26] (HP Inc -> HP Inc.)
HKLM\...\Print\Monitors\HP Standard TCP/IP Port: C:\Windows\system32\HpTcpMon.dll [331264 2009-09-16] (Hewlett Packard) [File not signed]
HKLM\...\Print\Monitors\KX Language Monitor: C:\Windows\system32\KXPLM64.DLL [99840 2017-12-15] (KYOCERA Document Solutions Inc.) [File not signed]
HKLM\...\Print\Monitors\LM_LMADYN: C:\Windows\system32\LMADYNLANG.DLL [2945024 2012-09-06] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\94.0.4606.81\Installer\chrmstp.exe [2021-10-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{E5931AF4-2A8F-48A5-AFC8-3605AD5C0A0C}] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe"
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {50A19BF5-FD18-4D79-85CC-40B6A15D8A91} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [972184 2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {52A8A084-836B-44CB-86E5-0CA541BAA70D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [972184 2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C07F570-7C7C-441D-AC57-445BBD7D606C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC)
Task: {893BC2AF-CDF8-4CC3-AC52-604C54331174} - System32\Tasks\Teamviewer-QS-updater-dwabfg5 => C:\Users\Chalanyova\AppData\Local\TeamViewer\CustomConfigs\dwabfg5\TeamViewer.exe
Task: {AB84D0A7-072A-4842-AEA7-D090F8416A96} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-08] (Mozilla Corporation -> Mozilla Foundation)
Task: {AE168B57-B258-4A80-9C13-66B72E6AD0EE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-13] (Google LLC -> Google LLC)
Task: {DB8257A3-B0B1-4D1A-8A89-0FD72B3558AF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Teamviewer-QS-updater-dwabfg5.job => C:\Users\Chalanyova\AppData\Local\TeamViewer\CustomConfigs\dwabfg5\TeamViewer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{CF97492D-8798-4109-9DEC-A6CCDC9F8D66}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\brigadnik\AppData\Local\Microsoft\Edge\User Data\Default [2021-07-19]

FireFox:
========
FF DefaultProfile: baaklwoh.default
FF ProfilePath: C:\Users\brigadnik\AppData\Roaming\Mozilla\Firefox\Profiles\baaklwoh.default [2021-06-23]
FF ProfilePath: C:\Users\brigadnik\AppData\Roaming\Mozilla\Firefox\Profiles\tgfu1rq7.default-release [2021-06-23]
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40624.0\npctrl.dll [2009-06-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-11-20] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.AsicFactory.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigMessageContainerFb.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigXadesExtenderFb.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DSigXadesFb.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.DViewerFb.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\Ditec.Zep.XmlDataContainerFb.js [2017-10-09]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2021-10-22]

Chrome:
=======
CHR Profile: C:\Users\brigadnik\AppData\Local\Google\Chrome\User Data\Default [2021-10-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\brigadnik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-16]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3052952 2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [49056 2021-09-22] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2602176 2021-09-22] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2602176 2021-09-22] (ESET, spol. s r.o. -> ESET)
R2 ktupdaterservice; C:\Program Files (x86)\Kerio\UpdaterService\ktupdaterservice.exe [995280 2019-04-22] (GFI Software Development Ltd. -> Kerio Technologies Inc.)
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [74336 2020-10-28] (OpenVPN Inc. -> The OpenVPN Project)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
S3 602SQL 8 FastCGI Client; C:\Program Files (x86)\Software602\602SQL81\602FSVC8.EXE [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 Angelnt; C:\Windows\SysWOW64\Drivers\ANGELNT.SYS [51072 2021-01-13] (Identcode Ltd.) [File not signed]
R3 asmthub3; C:\Windows\System32\DRIVERS\asmthub3.sys [138568 2012-08-20] (MCCI Corporation -> ASMedia Technology Inc)
R3 asmtxhci; C:\Windows\System32\DRIVERS\asmtxhci.sys [416072 2012-08-20] (MCCI Corporation -> ASMedia Technology Inc)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [161128 2021-09-22] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [108984 2021-09-22] (ESET, spol. s r.o. -> ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [190088 2021-09-22] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [43320 2021-09-22] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [70160 2021-09-22] (ESET, spol. s r.o. -> ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [55776 2021-09-22] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [107408 2021-09-22] (ESET, spol. s r.o. -> ESET)
R3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [30720 2021-02-25] (OpenVPN Inc. -> The OpenVPN Project)
U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R3 wintun; C:\Windows\System32\DRIVERS\wintun.sys [29576 2021-02-25] (WireGuard LLC -> WireGuard LLC)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-22 12:35 - 2021-10-22 12:36 - 000013734 _____ C:\Users\brigadnik\Desktop\FRST.txt
2021-10-22 12:35 - 2021-10-22 12:35 - 000000000 ____D C:\FRST
2021-10-22 12:32 - 2021-10-22 12:32 - 002310656 _____ (Farbar) C:\Users\brigadnik\Desktop\FRST64.exe
2021-10-22 12:21 - 2021-10-22 12:21 - 000003560 ____N C:\bootsqm.dat
2021-10-22 09:51 - 2021-10-22 09:51 - 000016896 _____ C:\Users\brigadnik\Desktop\4B3D7000
2021-10-22 08:15 - 2021-10-22 08:15 - 000032768 _____ C:\Users\brigadnik\Desktop\obaly 22.10..xls
2021-10-20 12:12 - 2021-10-20 14:22 - 000012773 _____ C:\Users\brigadnik\Desktop\Kópia - 3Q2021 kauflandPredloha tabuľka.xlsx
2021-10-15 09:57 - 2021-10-15 09:57 - 000033388 _____ C:\Users\brigadnik\Desktop\SKM_C25821101407280.pdf
2021-10-13 08:24 - 2021-10-13 08:24 - 000145920 _____ C:\Users\brigadnik\Desktop\NO 13.10..xls
2021-10-07 08:39 - 2021-10-07 08:39 - 000864437 _____ C:\Users\brigadnik\Desktop\Prirucka OBALY 2021.pdf
2021-10-06 11:24 - 2021-10-20 11:35 - 000871936 _____ C:\Users\brigadnik\Desktop\databazaskfiriem excel.xls
2021-10-06 10:20 - 2021-10-06 10:11 - 000050688 _____ C:\Users\brigadnik\Desktop\elektro.xls
2021-10-04 08:39 - 2021-10-13 10:01 - 000000000 ____D C:\Users\brigadnik\AppData\Local\Microsoft Help

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-22 12:31 - 2021-01-13 16:55 - 000000000 ____D C:\Program Files (x86)\Google
2021-10-22 12:30 - 2009-07-14 06:45 - 000035424 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2021-10-22 12:30 - 2009-07-14 06:45 - 000035424 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2021-10-22 12:26 - 2014-11-17 00:15 - 000000000 ____D C:\ProgramData\firebird
2021-10-22 12:25 - 2009-07-14 07:13 - 000781790 _____ C:\Windows\system32\PerfStringBackup.INI
2021-10-22 12:25 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2021-10-22 12:21 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-10-22 10:32 - 2016-06-09 08:04 - 000000000 ____D C:\Windows\Minidump
2021-10-22 07:47 - 2009-07-14 07:32 - 000000000 ____D C:\Windows\system32\FxsTmp
2021-10-20 13:47 - 2021-06-01 10:05 - 000026593 _____ C:\Users\brigadnik\Desktop\Odpracované hodiny- Nazarejová.xlsx
2021-10-15 09:24 - 2018-08-17 14:16 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-10-13 14:30 - 2014-11-16 18:57 - 000000000 ____D C:\Windows\system32\MRT
2021-10-13 14:28 - 2014-11-16 18:57 - 139806512 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-10-13 08:20 - 2021-01-13 16:56 - 000002182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-10-13 08:20 - 2021-01-13 16:56 - 000002141 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-10-11 08:16 - 2020-07-01 08:01 - 000003476 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-10-11 08:16 - 2020-07-01 08:01 - 000003348 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-10-06 07:52 - 2021-01-13 16:55 - 000003372 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-10-06 07:52 - 2021-01-13 16:55 - 000003244 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-10-04 08:16 - 2020-07-01 08:02 - 000002229 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-10-04 08:16 - 2020-07-01 08:02 - 000002188 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-10-01 12:53 - 2021-01-13 16:42 - 000000000 ____D C:\ALFA
2021-09-22 12:36 - 2020-11-11 13:53 - 000190088 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000161128 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000108984 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000107408 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000070160 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000055776 _____ (ESET) C:\Windows\system32\Drivers\EpfwLWF.sys
2021-09-22 12:36 - 2020-11-11 13:53 - 000043320 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
2021-09-22 10:12 - 2014-11-05 21:45 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-09-22 10:10 - 2014-11-05 21:44 - 000000000 ____D C:\Program Files\Microsoft Office 15

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2021-10-11 09:44
==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-10-2021
Ran by brigadnik (22-10-2021 12:36:22)
Running from C:\Users\brigadnik\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X64) (2014-11-05 19:24:06)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-4218786421-3780030290-246298092-500 - Administrator - Enabled) => C:\Users\Administrator
brigadnik (S-1-5-21-4218786421-3780030290-246298092-1004 - Administrator - Enabled) => C:\Users\brigadnik
Guest (S-1-5-21-4218786421-3780030290-246298092-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-4218786421-3780030290-246298092-1003 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {89B55CC4-3881-78B2-11E2-479AE0371896}
AS: ESET Security (Enabled - Up to date) {32D4BD20-1EBB-773C-2B52-7CE89BB0522B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {B18EDDE1-72EE-79EA-3ABD-EEAF1EE45FED}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

602SQL 8.1 (HKLM-x32\...\{29D52AA0-F621-4ED8-8F65-A1BEA7B112E3}) (Version: - )
Adobe Acrobat Reader DC - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 21.007.20099 - Adobe Systems Incorporated)
ALFA 16.10.00 (HKLM-x32\...\{69E369F1-6A92-47B5-86D5-474A7E06B3DC}) (Version: 16.10.00 - Kros a.s.)
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.2.0 - Asmedia Technology)
doPDF 7.2 printer (HKLM\...\doPDF 7 printer_is1) (Version: - Softland)
ESET Endpoint Security (HKLM\...\{A848A6DC-1181-4C66-893E-01B461DB4D98}) (Version: 8.0.2039.0 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 94.0.4606.81 - Google LLC)
HP Dropbox Plugin (HKLM-x32\...\{11C3156F-2289-4E36-B509-5EAD171EFA3F}) (Version: 36.0.308.54962 - Hewlett-Packard Co.)
HP Google Drive Plugin (HKLM-x32\...\{70F7BAFA-7528-4699-955D-70355BCEB01D}) (Version: 36.0.308.54962 - Hewlett-Packard Co.)
I.R.I.S. OCR (HKLM-x32\...\{C60E2D8F-0FC0-497D-A149-90F3B361937C}) (Version: 12.3.6.9 - HP)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.30 - Irfan Skiljan)
Junk Mail filter update (HKLM-x32\...\{8E5233E1-7495-44FB-8DEB-4BE906D59619}) (Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Kerio Outlook Connector (Offline Edition) (HKLM-x32\...\{8D64AAEA-C9D2-4944-9751-3427565F4C39}) (Version: 9.2.4540 - Kerio Technologies Inc.)
Kerio Updater Service (HKLM-x32\...\{BF65E398-EA83-44E6-9877-B09101C4D04A}) (Version: 9.2.1050 - Kerio Technologies, Inc.)
Lexmark CX310 Series Odinstalovat (HKLM\...\Lexmark CX310 Series) (Version: - Lexmark International, Inc.)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 94.0.992.38 - Microsoft Corporation)
Microsoft Office 2013 pre podnikateľov - sk-sk (HKLM\...\HomeBusinessRetail - sk-sk) (Version: 15.0.5381.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 3.0.40624.0 - Microsoft Corporation)
Microsoft SkyDrive (HKU\S-1-5-21-4218786421-3780030290-246298092-500\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{D411E9C9-CE62-4DBF-9D92-4CB22B750ED5}) (Version: 11.1.3000.0 - Microsoft Corporation)
Microsoft Sync Framework Runtime Native v1.0 (x86) (HKLM-x32\...\{8A74E887-8F0F-4017-AF53-CBA42211AAA5}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Sync Framework Services Native v1.0 (x86) (HKLM-x32\...\{BD64AF4A-8C80-4152-AD77-FCDDF05208AB}) (Version: 1.0.1215.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Mozilla Firefox 84.0.2 (x64 sk) (HKLM\...\Mozilla Firefox 84.0.2 (x64 sk)) (Version: 84.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 84.0.2.7675 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
Odovzdávací nástroj lokality Windows Live (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)
Office 15 Click-to-Run Extensibility Component (HKLM-x32\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5381.1000 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-008F-0000-1000-0000000FF1CE}) (Version: 15.0.5381.1000 - Microsoft Corporation) Hidden
OpenVPN 2.5.0-I601 amd64 (HKLM\...\{E5931AF4-2A8F-48A5-AFC8-3605AD5C0A0C}) (Version: 2.5.019 - OpenVPN, Inc.)
Program na odinštalovanie ovládača tlačiarne Canon Generic Plus PCL6 (HKLM\...\Canon Generic Plus PCL6) (Version: 7, 3, 0, 0 - Canon Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.75.827.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7982 - Realtek Semiconductor Corp.)
Skype verzia 8.58 (HKLM-x32\...\Skype_is1) (Version: 8.58 - Skype Technologies S.A.)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.51 - Ghisler Software GmbH)
UFR II Printer Driver Uninstaller (HKLM\...\Canon UFR II Printer Driver) (Version: 5, 4, 0, 0 - Canon Inc.)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{28456131-01CD-4BE4-8D67-BDBDD1ED636A}) (Version: 14.0.8117.416 - Microsoft Corporation)
WinRAR 4.20 (64-bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-09-22] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) [File not signed]
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-06-09] (Alexander Roshal) [File not signed]
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-09-22] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2014-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2021-09-22] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2012-06-09] (Alexander Roshal) [File not signed]
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2012-06-09] (Alexander Roshal) [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

==================== Loaded Modules (Whitelisted) =============

2014-11-05 21:58 - 2012-06-09 20:20 - 000196096 _____ (Alexander Roshal) [File not signed] C:\Program Files\WinRAR\rarext.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000295184 _____ (GFI Software Development Ltd. -> ) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\gmime.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000070944 _____ (GFI Software Development Ltd. -> ) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\ktzlib100_1.2.8.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001247528 _____ (GFI Software Development Ltd. -> Free Software Foundation) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\kticonv100_1.11.1.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001562384 _____ (GFI Software Development Ltd. -> IBM Corporation and others) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\icudt30.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000336144 _____ (GFI Software Development Ltd. -> IBM Corporation and others) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\icuin30.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000550672 _____ (GFI Software Development Ltd. -> IBM Corporation and others) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\icuuc30.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001948952 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] [File is in use] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KoffAddin.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001836304 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Common Files\SYSTEM\MSMAPI\KOFXP32.DLL
2019-04-22 19:19 - 2019-04-22 19:19 - 000582424 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\BackendUI.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001642776 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\DbMigration.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000470808 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\DbServerPS.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000356120 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\intl\KoffColl.DLL
2019-04-22 19:20 - 2019-04-22 19:20 - 000684832 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\UDF\DbServer_UDF.DLL
2019-04-22 19:20 - 2019-04-22 19:20 - 000400152 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KoffRes41b.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000356632 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KoffThreads.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 002818328 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KOFMSP32.DLL
2019-04-22 19:20 - 2019-04-22 19:20 - 000479520 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\Localization.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 002813728 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\MapiConvertorK.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000999704 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\PostMortem.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 004157208 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\SCProvider.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001131800 _____ (GFI Software Development Ltd. -> Kerio Technologies Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\UpdaterCore.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000488208 _____ (GFI Software Development Ltd. -> Kerio Technologies, Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\gio-2.0.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000885528 _____ (GFI Software Development Ltd. -> Kerio Technologies, Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\glib-2.0.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000018712 _____ (GFI Software Development Ltd. -> Kerio Technologies, Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\gmodule-2.0.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000178968 _____ (GFI Software Development Ltd. -> Kerio Technologies, Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\gobject-2.0.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000022808 _____ (GFI Software Development Ltd. -> Kerio Technologies, Inc.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\gthread-2.0.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 000012048 _____ (GFI Software Development Ltd. -> Kerio Technologies, s.r.o.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\ib_util.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 003906328 _____ (GFI Software Development Ltd. -> Kerio Technologies, s.r.o.) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\firebird\ktfbembed.dll
2019-04-22 19:20 - 2019-04-22 19:20 - 001281832 _____ (GFI Software Development Ltd. -> The OpenSSL Project, hxxp//www.openssl.org/) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KTLIBEAY100_1.0.1U.DLL
2019-04-22 19:20 - 2019-04-22 19:20 - 000320808 _____ (GFI Software Development Ltd. -> The OpenSSL Project, hxxp//www.openssl.org/) [File not signed] C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\KTSSLEAY100_1.0.1U.DLL
2009-09-16 18:44 - 2009-09-16 18:44 - 000153088 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\hptcpmib.dll
2009-09-16 18:45 - 2009-09-16 18:45 - 000331264 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\HpTcpMon.dll
2009-09-16 11:44 - 2009-09-16 11:44 - 000132096 _____ (Hewlett Packard) [File not signed] C:\Windows\System32\hpzjrd01.dll
2018-02-07 14:09 - 2017-12-15 11:09 - 000099840 _____ (KYOCERA Document Solutions Inc.) [File not signed] C:\Windows\System32\KXPLM64.DLL
2009-09-16 18:45 - 2009-09-16 18:45 - 000317440 _____ (Microsoft Corporation) [File not signed] C:\Windows\System32\HPTcpMUI.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Version 11) (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-21-4218786421-3780030290-246298092-1004\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-21-4218786421-3780030290-246298092-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp//go.microsoft.com/fwlink/p/?LinkId=255141
HKU\S-1-5-21-4218786421-3780030290-246298092-500\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp//go.microsoft.com/fwlink/?LinkId=54896
HKU\S-1-5-21-4218786421-3780030290-246298092-500\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp//syb.msn.com/
HKU\S-1-5-21-4218786421-3780030290-246298092-500\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp//syb.msn.com
SearchScopes: HKLM -> DefaultScope {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL = hxxp//www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL = hxxp//www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {162C9E06-451E-4BC8-BE4D-4042052333D9} URL = hxxp//www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {162C9E06-451E-4BC8-BE4D-4042052333D9} URL = hxxp//www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-4218786421-3780030290-246298092-1004 -> DefaultScope {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL =
SearchScopes: HKU\S-1-5-21-4218786421-3780030290-246298092-1004 -> {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL =
SearchScopes: HKU\S-1-5-21-4218786421-3780030290-246298092-500 -> DefaultScope {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL =
SearchScopes: HKU\S-1-5-21-4218786421-3780030290-246298092-500 -> {162C9E06-451E-4BC8-BE4D-4042052333D9} URL =
SearchScopes: HKU\S-1-5-21-4218786421-3780030290-246298092-500 -> {CBA38B27-14B6-48C1-940F-9E02EB55C867} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Search Helper -> {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} -> C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SearchHelper.dll [2009-01-14] (Microsoft Corporation -> Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2021-03-17] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Windows Live Toolbar Helper -> {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} -> C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM-x32 - &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKU\S-1-5-21-4218786421-3780030290-246298092-500 -> No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp//download.eset.com/special/eos/OnlineScanner.cab
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-07-18] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Kerio\Outlook Connector (Offline Edition)\;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-4218786421-3780030290-246298092-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\brigadnik\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
HKU\S-1-5-21-4218786421-3780030290-246298092-500\Control Panel\Desktop\\Wallpaper -> C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7A346F6B-D46F-4353-BA39-DDA1B6386266}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2D398CAD-18BA-41E6-94CE-95BBF8EDAAFB}] => (Allow) C:\Windows\system32\svchost.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{C4BDE0D0-B8FD-4D4C-A9E7-0A9CEFA3B2D5}] => (Allow) C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{82E7DDBD-08D9-4712-951F-2AE02AE4E8CE}] => (Allow) C:\Users\Administrator\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{09415034-B3CA-404F-8B13-903727F6661C}] => (Allow) C:\Program Files\Lexmark\Status Center\lmsmc.exe (Lexmark International, Inc. -> )
FirewallRules: [{56A85DF6-9156-488E-A460-F2DF4833FE14}] => (Allow) C:\Program Files\Lexmark\Status Center\lmsmc.exe (Lexmark International, Inc. -> )
FirewallRules: [{C74E0089-4522-4734-BC5E-6323D2EF343C}] => (Allow) C:\Program Files (x86)\Lexmark CX310 Series\LMADYlscn.exe (Lexmark International, Inc. -> )
FirewallRules: [{9B220736-CA33-4AAB-ADBF-39A8CFE5DCED}] => (Allow) C:\Program Files (x86)\Lexmark CX310 Series\LMADYlscn.exe (Lexmark International, Inc. -> )
FirewallRules: [{A4DE0021-1361-434F-B2E6-9F84363E8097}] => (Allow) C:\Program Files (x86)\Lexmark CX310 Series\LMabscw.dll () [File not signed]
FirewallRules: [{30CE9853-E459-423B-BBDE-A5D9E8AD9428}] => (Allow) C:\Program Files (x86)\Lexmark CX310 Series\LMabscw.dll () [File not signed]
FirewallRules: [{07A0BC90-2F3B-4679-AABB-459497BE6156}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\LMZZZ_32__bc.dll () [File not signed]
FirewallRules: [{096417F0-8A76-4648-83EE-D9356940EFF2}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\LMZZZ_32__bc.dll () [File not signed]
FirewallRules: [{F68015E7-31A3-40B3-A502-4DE06471F11D}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\LMzzz_32serv.dll (Microsoft Windows Hardware Compatibility Publisher -> )
FirewallRules: [{980DD8D5-AAB9-4888-8EC2-A5E03C3E6F7D}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\LMzzz_32serv.dll (Microsoft Windows Hardware Compatibility Publisher -> )
FirewallRules: [{4C04778A-4B83-4BB2-9E5E-C1136D98873F}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\lextwprotocol.dll () [File not signed]
FirewallRules: [{534FCD3D-15E3-4D47-94BB-C6B0F3168E39}] => (Allow) C:\Program Files (x86)\Lexmark\NetworkTwain\lextwprotocol.dll () [File not signed]
FirewallRules: [{0C955D38-A9F4-436A-9BE4-8C04817CB4B4}] => (Allow) C:\Windows\twain_32\Lexmark\NetworkTwain\lexnetworkds.ds () [File not signed]
FirewallRules: [{C816B101-7A40-423E-86CA-35BA485A62F2}] => (Allow) C:\Windows\twain_32\Lexmark\NetworkTwain\lexnetworkds.ds () [File not signed]
FirewallRules: [{D5CD564D-4223-4AC8-8053-5AA4B97337C0}] => (Allow) D:\Install\x64\InstallGui.exe => No File
FirewallRules: [{D161D26C-B847-4DDC-B813-3E8755E9D67E}] => (Allow) D:\Install\x64\InstallGui.exe => No File
FirewallRules: [{5DFB661A-D2E5-47D7-B197-14CF9E2791E7}] => (Allow) LPort=3702
FirewallRules: [{BF1C5A1D-782E-46A1-AF4D-2D1FC5011FDC}] => (Allow) LPort=9244
FirewallRules: [{393599E8-65D6-46DA-A2B2-B89165F9D4C6}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{26E4C525-AF1C-468B-BF7C-74783FF178C9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB5589D4-FC25-4EBD-B1C6-3FD66123C42C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{2140DCED-71DF-403D-B4ED-893E05D837F4}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{587A9A17-29E0-4AD5-AA11-F295B6FA7DAA}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [{ED3BE59E-C629-4672-9A5C-216464712F67}] => (Allow) LPort=9422
FirewallRules: [{32AA43C9-26DB-4655-A811-52A45F6C4D60}] => (Allow) LPort=9245
FirewallRules: [{26431D7F-321A-490C-AE18-00F112A2249D}] => (Allow) LPort=9246
FirewallRules: [{4265B275-A7FE-4153-B92B-FDCA31BA3764}] => (Allow) LPort=9247
FirewallRules: [{93AC8328-00A2-404F-B32D-D87002919097}] => (Allow) LPort=9444
FirewallRules: [TCP Query User{D7A33157-8462-40AA-A093-039AA0382CD9}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [UDP Query User{B8745CE4-554D-4D32-825C-DD451562B1BD}C:\program files (x86)\eid klient\eid_klient.exe] => (Block) C:\program files (x86)\eid klient\eid_klient.exe => No File
FirewallRules: [TCP Query User{A0056BCF-98EB-4572-B2AC-818806A3784B}C:\users\chalanyova\downloads\anydesk.exe] => (Allow) C:\users\chalanyova\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{7CD54612-26AC-4912-9FB6-4E5D4B0A03F8}C:\users\chalanyova\downloads\anydesk.exe] => (Allow) C:\users\chalanyova\downloads\anydesk.exe => No File
FirewallRules: [{6DBC13A8-D81E-4C62-9004-6694F5A76B61}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F3650B7C-9BC3-431D-BA90-44778AE52FC3}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E6814E80-9B2C-4E5B-9E8C-7FBC5973B6C1}] => (Allow) LPort=9422
FirewallRules: [{C98AA170-4B6C-4D53-B9D6-3874AD530944}] => (Allow) LPort=9245
FirewallRules: [{7D2D1AEF-1933-4DE2-84B8-71667275BA5D}] => (Allow) LPort=9246
FirewallRules: [{C2EE8004-8D38-4956-BF6A-10D96D8B2F84}] => (Allow) LPort=9247
FirewallRules: [{9F8075F6-54B6-496F-8ADC-910C101BEF32}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\15758d59-89d2-4595-b92f-0145a142f8f7\Installer\hpbcsiInstaller.exe => No File
FirewallRules: [{BA612D1C-F98C-4DE4-91BC-0FF2866E6D0A}] => (Allow) C:\Program Files (x86)\HP\csiInstaller\15758d59-89d2-4595-b92f-0145a142f8f7\Installer\hpbcsiInstaller.exe => No File
FirewallRules: [{495F4B06-9854-48E1-BAD8-281EEFF9E738}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/22/2021 12:35:50 PM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Službe Windows Search sa nepodarilo vytvoriť nový index hľadania. Vnútorná chyba <4, 0x8004117f, Failed to add project: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects>.

Error: (10/22/2021 12:35:50 PM) (Source: Windows Search Service) (EventID: 9000) (User: )
Description: Služba Windows Search nemôže otvoriť ukladací priestor vlastností Jet.

Details:
0x%08x (0x8004117f - The content index server cannot update or access information because of a database error. Stop and restart the search service. If the problem persists, reset and recrawl the content index. In some cases it may be necessary to delete and recreate the content index. (HRESULT : 0x8004117f))

Error: (10/22/2021 12:35:50 PM) (Source: ESENT) (EventID: 428) (User: )
Description: Windows (4284) Windows: The database engine is rejecting update operations due to low free disk space on the log disk.

Error: (10/22/2021 12:26:58 PM) (Source: Windows Search Service) (EventID: 1006) (User: )
Description: Službe Windows Search sa nepodarilo vytvoriť nový index hľadania. Vnútorná chyba <4, 0x8004117f, Failed to add project: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Projects>.

Error: (10/22/2021 12:26:58 PM) (Source: Windows Search Service) (EventID: 9000) (User: )
Description: Služba Windows Search nemôže otvoriť ukladací priestor vlastností Jet.

Details:
0x%08x (0x8004117f - The content index server cannot update or access information because of a database error. Stop and restart the search service. If the problem persists, reset and recrawl the content index. In some cases it may be necessary to delete and recreate the content index. (HRESULT : 0x8004117f))

Error: (10/22/2021 12:26:58 PM) (Source: ESENT) (EventID: 482) (User: )
Description: Windows (2632) Windows: An attempt to write to the file "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\tmp.edb" at offset 1572864 (0x0000000000180000) for 32768 (0x00008000) bytes failed after 0 seconds with system error 112 (0x00000070): "Nedostatok miesta na disku. ". The write operation will fail with error -1808 (0xfffff8f0). If this error persists then the file may be damaged and may need to be restored from a previous backup.

Error: (10/22/2021 12:25:51 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (10/22/2021 12:25:51 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.


System errors:
=============
Error: (10/22/2021 12:38:58 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} did not register with DCOM within the required timeout.

Error: (10/22/2021 12:35:50 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 6-krát.

Error: (10/22/2021 12:35:50 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Windows Search bola ukončená s chybou služby %%-2147217025.

Error: (10/22/2021 12:26:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 5-krát.

Error: (10/22/2021 12:26:59 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Windows Search bola ukončená s chybou služby %%-2147217025.

Error: (10/22/2021 12:25:42 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 4-krát.

Error: (10/22/2021 12:25:42 PM) (Source: Service Control Manager) (EventID: 7024) (User: )
Description: Služba Windows Search bola ukončená s chybou služby %%-2147217025.

Error: (10/22/2021 12:25:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Search sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 3-krát.


Windows Defender:
================
Date: 2021-10-22 07:44:57.068
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version:1.351.565.0
Update Source:User
Signature Type:AntiSpyware
Update Type:Delta
Current Engine Version:
Previous Engine Version:1.1.18600.4
Error code:0x80070070
Error description:Nedostatok miesta na disku.

Date: 2021-06-29 08:06:08.587
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:1.343.25.0
Previous Signature Version:1.341.1224.0
Update Source:User
Signature Type:AntiSpyware
Update Type:Delta
Current Engine Version:1.1.18300.4
Previous Engine Version:1.1.18200.4
Error code:0x80070666
Error description:Už je nainštalovaná iná verzia produktu. Inštaláciu tejto verzie nemožno dokončiť. Ak chcete existujúcu verziu produktu nakonfigurovať alebo odstrániť, použite ovládací panel Pridať alebo odstrániť programy.

Date: 2021-06-29 08:06:08.587
Description:
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.18300.4
Previous Engine Version:1.1.18200.4
Update Source:User
Error Code:0x80070666
Error description:Už je nainštalovaná iná verzia produktu. Inštaláciu tejto verzie nemožno dokončiť. Ak chcete existujúcu verziu produktu nakonfigurovať alebo odstrániť, použite ovládací panel Pridať alebo odstrániť programy.

Date: 2021-06-08 09:59:17.198
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:1.341.227.0
Previous Signature Version:1.339.1767.0
Update Source:User
Signature Type:AntiSpyware
Update Type:Delta
Current Engine Version:1.1.18200.4
Previous Engine Version:1.1.18100.6
Error code:0x80070666
Error description:Už je nainštalovaná iná verzia produktu. Inštaláciu tejto verzie nemožno dokončiť. Ak chcete existujúcu verziu produktu nakonfigurovať alebo odstrániť, použite ovládací panel Pridať alebo odstrániť programy.

Date: 2021-06-08 09:59:17.197
Description:
Windows Defender has encountered an error trying to update the engine.
New Engine Version:1.1.18200.4
Previous Engine Version:1.1.18100.6
Update Source:User
Error Code:0x80070666
Error description:Už je nainštalovaná iná verzia produktu. Inštaláciu tejto verzie nemožno dokončiť. Ak chcete existujúcu verziu produktu nakonfigurovať alebo odstrániť, použite ovládací panel Pridať alebo odstrániť programy.

==================== Memory info ===========================

BIOS: American Megatrends Inc. 0601 07/21/2014
Motherboard: ASUSTeK COMPUTER INC. H61M-F
Processor: Intel(R) Core(TM) i3-3250 CPU @ 3.50GHz
Percentage of memory in use: 85%
Total physical RAM: 3971.63 MB
Available physical RAM: 587.5 MB
Total Virtual: 4939.87 MB
Available Virtual: 1385.18 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:0 GB) NTFS

\\?\Volume{59a06443-6520-11e4-92e4-806e6f6e6963}\ (Vyhradené systémom) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 975A36F7)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15215
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Zdanlivo plny disk C

#2 Příspěvek od JaRon »

ahoj,
ako rychle riesenie mozes skusit:
vypnut obnovu systemu - restart - zapnut obnovu
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

alfonz.flower
Návštěvník
Návštěvník
Příspěvky: 71
Registrován: 20 říj 2019 16:46

Re: Zdanlivo plny disk C

#3 Příspěvek od alfonz.flower »

Obnova systemu je vypnuta, zapnut (vytvorit bod obnovenia) sa neda kvoli nedostatku miesta.
V C/windows/temp som nasiel asi 100 GB suborov, vacsinou s nazvom cab_ ..
Tie som odstranil, ale ani tak sa mi nezda ze by tam malo byt cez 400 GB suborov na disku...

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15215
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Zdanlivo plny disk C

#4 Příspěvek od JaRon »

pokial si si uz pre zaciatok poradil, teraz pouzi CCleaner
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět