Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

modra obrazovka

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
5manager5
Návštěvník
Návštěvník
Příspěvky: 267
Registrován: 10 led 2009 21:21

modra obrazovka

#1 Příspěvek od 5manager5 »

zdravím,

mal som 3 modre obrazovky ale sw charakteru tak davam log....adwcleaner nenašiel nič

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-07-2022
Ran by igorv (administrator) on DESKTOP-PB3B57S (TOSHIBA Satellite L650) (18-07-2022 15:46:02)
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Platform: Microsoft Windows 10 Home Version 21H2 19044.1806 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {88A540CD-2C1E-4FE7-AA40-6E65804AAEF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
Task: {B79AC332-43A0-4D46-843A-6E13CC9E1144} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C180CDF6-AFC3-4EBE-A49F-05F61C54ABE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CFC1C532-803A-4DF1-912C-3702CFC8C0B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E4F7B016-E868-4C40-8C61-FBE00DD8D511} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F11F7771-075F-465A-BE09-FAB94F6837E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{1b830fbc-5f0e-4a85-a095-15d1aeb2d45b}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{51c6d505-061d-4317-a9d7-261d3a583a3e}: [DhcpNameServer] 192.168.1.1 195.146.128.62

Edge:
=======
Edge DefaultProfile: Profile 4
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4 [2022-07-18]
Edge HomePage: Profile 4 -> hxxp://www.google.sk/

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\DSDFunctionKeyCtlService.exe [689888 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDSettingService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\dynabookSystemService.exe [44786376 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TOSTABSYSSVC.exe [298192 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\RMService.exe [447296 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 googledrivefs3758; C:\Windows\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [49120 2021-11-17] (Dynabook Inc. -> Dynabook Inc.)
R1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TosSrvCtlDrv.sys [26816 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46656 2021-11-18] (Dynabook Inc. -> Dynabook Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-18 15:46 - 2022-07-18 15:47 - 000008571 _____ C:\Users\igorv\Downloads\FRST.txt
2022-07-18 15:45 - 2022-07-18 15:47 - 000000000 ____D C:\FRST
2022-07-18 15:44 - 2022-07-18 15:44 - 002369536 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2022-07-18 15:44 - 2022-07-18 15:44 - 000000000 _____ C:\Users\igorv\Downloads\Nepotvrdené 109594.crdownload
2022-07-18 12:48 - 2022-07-18 12:49 - 001218860 _____ C:\Windows\Minidump\071822-43953-01.dmp
2022-07-14 15:30 - 2022-07-14 15:30 - 000000000 ____D C:\Users\igorv\AppData\LocalLow\Temp
2022-07-11 19:25 - 2022-07-11 19:25 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Adobe
2022-07-06 21:33 - 2022-07-06 21:33 - 000000112 ___SH C:\bootTel.dat
2022-07-06 21:32 - 2022-07-06 21:32 - 000000000 __SHD C:\found.000
2022-07-06 09:58 - 2022-07-06 10:03 - 000980124 _____ C:\Windows\Minidump\070622-45812-01.dmp
2022-07-04 15:36 - 2022-07-18 12:49 - 000000000 ____D C:\Windows\Minidump
2022-07-04 15:36 - 2022-07-18 12:48 - 615517156 _____ C:\Windows\MEMORY.DMP
2022-07-04 15:36 - 2022-07-04 15:40 - 001002372 _____ C:\Windows\Minidump\070422-35859-01.dmp
2022-07-02 09:39 - 2022-07-02 09:39 - 000693248 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000018944 _____ C:\Windows\SysWOW64\WsdProviderUtil.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000270848 _____ C:\Windows\system32\EsclScan.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000152064 _____ C:\Windows\system32\EsclProtocol.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000011801 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-07-02 09:37 - 2022-07-02 09:37 - 000061952 _____ C:\Windows\system32\printticketvalidation.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000057344 _____ C:\Windows\system32\APMonUI.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000024576 _____ C:\Windows\system32\WsdProviderUtil.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000640512 _____ C:\Windows\system32\SettingSyncDownloadHelper.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-07-02 09:06 - 2022-07-02 09:06 - 000000000 ___HD C:\$WinREAgent
2022-06-23 19:11 - 2022-06-23 19:11 - 000104448 _____ C:\Windows\system32\nettraceex.dll
2022-06-23 19:10 - 2022-06-23 19:10 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-06-23 19:08 - 2022-06-23 19:08 - 000232288 _____ C:\Windows\system32\containerdevicemanagement.dll

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-18 14:47 - 2022-03-09 11:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-07-18 13:48 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-18 13:18 - 2022-03-09 11:52 - 000000000 ____D C:\Users\igorv
2022-07-18 12:48 - 2022-03-09 11:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-07-18 12:48 - 2020-02-21 12:41 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-16 12:21 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-07-15 23:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-15 19:25 - 2022-03-09 11:22 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-15 10:13 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-07-14 08:59 - 2022-03-09 11:20 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-14 08:59 - 2022-03-09 11:20 - 000003508 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-10 14:38 - 2022-03-09 16:05 - 000003446 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-07-10 14:38 - 2022-03-09 16:05 - 000003222 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-07-10 13:41 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2022-07-10 12:50 - 2022-03-09 11:55 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2022-07-09 12:18 - 2022-03-09 12:16 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2022-07-06 21:00 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI
2022-07-02 10:17 - 2022-03-09 11:49 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2022-07-02 10:11 - 2022-03-09 11:17 - 000258088 _____ C:\Windows\system32\FNTCACHE.DAT
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-07-02 10:02 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-07-02 09:36 - 2022-03-09 11:21 - 003010048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-06-24 14:57 - 2022-03-09 11:56 - 000000000 ____D C:\ProgramData\Packages
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-23 19:44 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-23 18:20 - 2022-03-09 14:02 - 000000000 ____D C:\Windows\system32\MRT
2022-06-23 18:17 - 2022-03-09 14:02 - 145918784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-06-23 09:23 - 2022-03-09 11:18 - 000000000 ____D C:\Windows\system32\Drivers\wd

==================== Files in the root of some directories ========

2022-03-09 12:38 - 2022-03-09 12:38 - 000007602 _____ () C:\Users\igorv\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

5manager5
Návštěvník
Návštěvník
Příspěvky: 267
Registrován: 10 led 2009 21:21

Re: modra obrazovka (2 posty)

#2 Příspěvek od 5manager5 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-07-2022
Ran by igorv (18-07-2022 15:50:30)
Running from C:\Users\igorv\Downloads
Microsoft Windows 10 Home Version 21H2 19044.1806 (X64) (2022-03-09 09:45:21)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2415662125-1334251306-1017844622-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2415662125-1334251306-1017844622-503 - Limited - Disabled)
Guest (S-1-5-21-2415662125-1334251306-1017844622-501 - Limited - Disabled)
igorv (S-1-5-21-2415662125-1334251306-1017844622-1001 - Administrator - Enabled) => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2415662125-1334251306-1017844622-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AIDA64 Extreme v6.70 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 6.70 - FinalWire Ltd.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 59.0.3.0 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.31.5 - Google Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Realtek WLAN Driver (HKLM-x32\...\{0FB630AB-7BD8-40AE-B223-60397D57C3C9}) (Version: 2.00.0011 - Realtek)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.4.3.38 - Synaptics Incorporated)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\59.0.3.0\drivefsext.dll [2022-06-08] (Google LLC -> Google, Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\igorv\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory="Profile 4"

==================== Loaded Modules (Whitelisted) =============

2022-07-02 12:13 - 2022-07-02 12:13 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\c5269687443b8d130862fde90ff0871c\A4.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\e3398d899a5f8dad2f8b0ca8b2b14c61\AEM.Actions.CCAA.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\0a825fc66c95e1767511b6413581ae6c\AEM.Plugin.EEU.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\29bb852465e915e05041abf96273c608\AEM.Plugin.Hotkeys.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\a7aa014b174bacde99ad22c18b9ef5e1\AEM.Plugin.DPPE.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\7135e8e15287a2531ddfa43f0ce9c3fd\AEM.Plugin.Source.Kit.Server.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\c00e3f9b88ebc3948a211e051df20912\AEM.Plugin.WinMessages.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\483a0d101a62d4f3e37e26528e728eaa\AEM.Plugin.REG.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\c7aba31a8af9cbcb3c146d077d2dd8cf\AEM.Plugin.GD.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\72ecad8c78a194c04567a266d9302fd9\AEM.Server.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\690690748c445c8fe421ec66415fc8bd\AEM.Server.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\9843cf9d35fb83b037c48d7c3da00f08\APM.Foundation.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\2f1335f6b2ae5b085a0dab82e3bffbef\ATICCCom.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\579bffc6df89c20dfab96e5e85351869\CCC.Implementation.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\e4c92c5fd0167581f6ef18b3592997be\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\7f9c062c7fd701f18b3ceaab7b94dadf\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\6902e4e6206145cd32826229a1422ba1\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\d48e28c445e9d5d733ccfaed8ed0d54f\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\0be2494127cd26df60a7544bec488578\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\6141ce926001bcbd26401fbbc9146e7c\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\a005c9eb04db368906f8f28240764b78\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\2aa725e59d158cdb8736421f80ef6b60\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\8fa6bc89c476bd632bc0bda3d4bfa0de\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\cc1b90aff72fdffc2dd54a4cf65cbd43\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\6c5ff472bbee7b761f2c6df3f80f7d8d\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\dd2f39f3c55d8978a15d692ffc1dcc46\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\03bcf8618213b19e7594b0db1882f031\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\b68894c6b73f418c1496f2d86d1ad26c\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\77d40f2cf61618f29b97a9b5aa97c33c\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\1baade1b495324d35824de9d644cf762\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\5d4add68292df78a50853eb155fdf661\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\4ec5f21b62c62bb451b2897c466443d3\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\78b97ebc1fb401878ff3dea64c16dfb3\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\fcfb29fe14b7e3a9ad9f2cd2a542ff25\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\0a4f20951a2dad1e9064d1653f89a95b\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\dcb172029dd25b05ffacef6edeac940d\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\a1122c0ca34dc06c844800c3ce029177\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\cc03c19197fd8a1add9067a4f81320a5\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\739bfe4ab5924222597f90a24b1d641c\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\b9060505f04e50354174c21e712e41d0\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\b74e7088474ab5cc54e0a498eb8e681d\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\c62cf37deb511b1c4bc52ef0bc6476c0\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\965cd9d70caa7ca5002b4b986e355e6a\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\d8be42870eea01c8901804aa4b0aca96\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\cebe7cfa0de3cb97ea690c7e79af7a7c\CLI.Caste.A4.Runtime.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\60dcbd70e6afc1591596889d296d58da\CLI.Caste.A4.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\db17f822e4f2a4d3b3a4147b875772d0\CLI.Caste.A4.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\07798d6e22d71d046c7443b02e26fc79\CLI.Caste.Fuel.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\d1377e4cf1d5eec58b8d92bb1374e476\CLI.Caste.Fuel.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\1f1afc3360991b582435375ac9148ee6\CLI.Caste.Fuel.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\d2b307e59ceff35a6fe0b50b2c68e2c6\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\e57ecd2044b97f69f98c6574ae3e203c\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\aa567df25cd1601a164ab004f1634ec0\CLI.Caste.Graphics.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\ed29feef0b679c6ca9b1f6539cb95b44\CLI.Caste.HydraVision.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\94667e814039e604f490d3a7fa932355\CLI.Caste.HydraVision.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\8ad3f4db823643299238fb8eb567b7e5\CLI.Caste.HydraVision.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\6362f3b450232a76b84295a54f79c762\CLI.Caste.Platform.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\59192ac706e9860d5f34001411fdb42a\CLI.Caste.Platform.Runtime.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\a3f86123c3f2cc2ba186479c260fd045\CLI.Caste.Platform.Dashboard.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\63e4630be8b758da9094d72ea07b8aa8\CLI.Component.Runtime.Shared.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\b1e59500efc7cec0aa5b81d4b7309463\CLI.Component.Systemtray.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\aead0d018c9b0748721fed62d282e558\CLI.Component.Dashboard.ProfileManager2.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\7a893e854a52422bfe1ed4c624d82687\CLI.Component.Runtime.Shared.Private.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\027e64e73c329a16766cee46d84db38e\CLI.Component.Runtime.Extension.EEU.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\1d08f04ecdd008161c835461292bc504\CLI.Component.Dashboard.Shared.Private.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\f24dfd1636c76ccb3cd9ac7e05713b1d\CLI.Component.Client.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\655eb717a1f0f7171fc669eb86c4a407\CLI.Component.Dashboard.Shared.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\eb677cf87d359cc567ce19db3795e30b\CLI.Foundation.Private.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\01e4dedf4cfeaac9e8c250229eacb7f4\CLI.Foundation.XManifest.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\8ff4806e5cca69894d553f8befb8dc66\CLI.Foundation.CoreAudioAPI.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\08feb756f8afb1aae42d9128ce74ffc6\CLI.Foundation.Client.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\73cedde1c14ba5a889726983c2d4d2f1\CLI.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\8cb6fc56a001c65f709af6fdaf603bac\DEM.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\a3c0143b23065cda75c54473596b4fd8\DEM.Graphics.I0601.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\d6a1a93f297da5304ef1eb216702ac65\DEM.Graphics.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\2ff1acd43729410956f17886d626de4e\Fuel.Foundation.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\0bb08700713d16a1438da4f6a2319933\LOG.Foundation.Implementation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\9ec5ea467d17440c1f5831ddcd36ed6d\LOG.Foundation.Private.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\882e057d60f7f4235e13714940a4a42e\LOG.Foundation.Implementation.Private.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\2c269eed754411f7ad903abb4347498a\LOG.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\8d96824ead8d65124ce26daa099a2e4a\MOM.Foundation.ni.dll
2022-07-02 12:17 - 2022-07-02 12:17 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\4f6b85d864bbb2ecbf615e242cb83c04\MOM.Implementation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\6790cd1c9ed36153850ad2d995ccb019\NEWAEM.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\71d66045028bc07fee0d28e6f49573cd\ADL.Foundation.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\d20c6f133ed48304caba1fc603a499f5\APM.Server.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\98743640bd2bcf7bbd566fff95dbcf8c\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\b630da23be6d5aff35ae910246db7ff4\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\a3d9bc0b6a0a5dba02f4b5886855d6f4\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\f623761c8f6ec678367066d73dd45285\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\05c0ec9e40313089a52459f9ab97ac9c\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\a7508487d542de00d751efbe8b745017\CLI.Component.Client.Shared.Private.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\6bc5c48398379179e8f824abaca14257\CLI.Component.Runtime.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\ab0108735cfecb6f9d63be56baf5c068\CLI.Component.Dashboard.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\2d26931450023a6c35b0be19143c0215\DEM.Graphics.I0706.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\0e81dbc0f820dae174a1fa3fbbbf453c\DEM.Graphics.I0709.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\6d2b6ef60020fd0f81fae442a9d4ab01\DEM.Graphics.I0712.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\74f5fc3369cd79cd66681526bac10717\DEM.Graphics.I0804.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\bddbce063c57aa944caf6fc652175248\DEM.Graphics.I0805.ni.dll
2022-07-02 12:16 - 2022-07-02 12:16 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\e24e2a551468c3476ac50b407091135a\DEM.Graphics.I0812.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\2d29d077c0675a126153f5bcd14af326\DEM.Graphics.I0906.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\4e25ba6269d779ed8dc28cbc9888ddde\DEM.Graphics.I0912.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\da52a944341599c1d7b06b911fb170c0\DEM.Graphics.I1010.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\66201be98652121ddb73497449a02ae3\Localization.Foundation.Private.ni.dll
2022-07-02 12:17 - 2022-07-02 12:17 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\748ed2bd597f7b0b01d768f4a336c443\ResourceManagement.Foundation.Implementation.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\02fa10f0372582192a41a96a87efd950\ResourceManagement.Foundation.Private.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\d52284bc48c28e4eccdaa291902b53db\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2022-07-02 12:13 - 2022-07-02 12:13 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\de40a5847f9910b66bf8d79abc9a62b8\CLI.Caste.Graphics.Shared.ni.dll
2022-07-02 12:15 - 2022-07-02 12:15 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\822b86e8a55dfa55b30a13f1e0f5a406\CLI.Caste.Graphics.Runtime.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 000335360 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\7b81a58fa357e393818f368f2df372b3\Microsoft.WindowsAPICodePack.ni.dll
2022-07-02 12:14 - 2022-07-02 12:14 - 002546688 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\9b641318850300701df3d89b1b7caeec\Microsoft.WindowsAPICodePack.Shell.ni.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 192.168.1.1 - 195.146.128.62
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "ccleaner_update_helper"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "GoogleDriveFS"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E2E37EFC-C0D6-45BF-8798-4FE7A7E5C461}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C4B0D9E5-2B6D-49F3-94C9-5C9291C4517C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49A65B66-3CAB-455A-9D77-CCE4F27C2BA7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A5F809E2-5668-4BFB-BD8F-FFE48AF64825}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5589ABB5-8740-4F23-88ED-2B382A5510D5}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.62\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

02-07-2022 08:49:02 Inštalátor modulov systému Windows
11-07-2022 12:37:44 Scheduled Checkpoint

==================== Faulty Device Manager Devices ============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Description: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/16/2022 04:50:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: YourPhone.exe, verzia: 1.22052.136.0, časová značka: 0x62b2e2a0
Názov chybujúceho modulu: YourPhone.AppCore.WinRT.dll, verzia: 1.22052.136.0, časová značka: 0x62b2df6b
Kód výnimky: 0xc0000005
Odstup chyby: 0x00000000000d26d4
Identifikácia chybujúceho procesu: 0x868
Čas spustenia chybujúcej aplikácie: 0x01d898ec2daeda01
Cesta chybujúcej aplikácie: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe\YourPhone.exe
Cesta chybujúceho modulu: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe\YourPhone.AppCore.WinRT.dll
Identifikácia hlásenia: fba60ae9-4c5f-4730-96f7-37125bdfaab3
Celé meno chybujúceho balíka: Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe
Identifikácia chybujúcej aplikácie vzhľadom na balík: App

Error: (07/16/2022 04:49:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: SystemSettings.exe, verzia: 10.0.19041.1566, časová značka: 0x4aa1ce82
Názov chybujúceho modulu: msvcrt.dll, verzia: 7.0.19041.546, časová značka: 0x564f9f39
Kód výnimky: 0x40000015
Odstup chyby: 0x000000000000ae22
Identifikácia chybujúceho procesu: 0x1fa8
Čas spustenia chybujúcej aplikácie: 0x01d898eccd67e2dc
Cesta chybujúcej aplikácie: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Cesta chybujúceho modulu: C:\Windows\System32\msvcrt.dll
Identifikácia hlásenia: 024bff35-ff2d-46be-9e70-c5cc4af54117
Celé meno chybujúceho balíka: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
Identifikácia chybujúcej aplikácie vzhľadom na balík: microsoft.windows.immersivecontrolpanel

Error: (07/16/2022 03:54:23 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program explorer.exe version 10.0.19041.1806 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 3b8

Start Time: 01d898ec27b71727

Termination Time: 0

Application Path: C:\Windows\explorer.exe

Report Id: 3cb123b4-f049-4a0c-9050-5088882fe7e8

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown

Error: (07/14/2022 03:50:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Data (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (07/14/2022 03:50:17 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v WINDOWS (C:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)

Error: (07/11/2022 12:38:11 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.

Details:
AddWin32ServiceFiles: Unable to back up image of service Microsoft Update Health Service since QueryServiceConfig API failed

System Error:
The system cannot find the file specified.
.

Error: (07/09/2022 12:26:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program WinStore.App.exe version 0.0.0.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 2b08

Start Time: 01d8937cc5be7982

Termination Time: 4294967295

Application Path: C:\Program Files\WindowsApps\Microsoft.WindowsStore_22205.1401.13.0_x64__8wekyb3d8bbwe\WinStore.App.exe

Report Id: c6798774-470a-4796-aba1-bc3888185a6b

Faulting package full name: Microsoft.WindowsStore_22205.1401.13.0_x64__8wekyb3d8bbwe

Faulting package-relative application ID: App

Hang type: Navigation

Error: (07/07/2022 03:07:16 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Data (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)


System errors:
=============
Error: (07/18/2022 12:49:04 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač sa po kontrole chýb reštartoval. Kontrola chýb: 0x0000000a (0x0000000000000008, 0x0000000000000002, 0x0000000000000000, 0xfffff804134565cb). Výpis sa uložil do súboru: C:\Windows\MEMORY.DMP. Identifikácia hlásenia: e098f9dd-5c39-4d56-8d2d-87a3f8093dec.

Error: (07/18/2022 12:48:26 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 12:46:55 on ‎18. ‎7. ‎2022 was unexpected.

Error: (07/08/2022 10:53:54 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-PB3B57S)
Description: Unable to start a DCOM Server: Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe!App.AppXvctmff39365zg14pgmystcwtys462fpa.mca as Unavailable/Unavailable. The error:
"2147942402"
Happened while starting this command:
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe\YourPhone.exe" -ServerName:App.AppX9yct9q388jvt4h7y0gn06smzkxcsnt8m.mca

Error: (07/08/2022 10:53:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PB3B57S)
Description: The server Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider did not register with DCOM within the required timeout.

Error: (07/08/2022 10:53:52 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-PB3B57S)
Description: The server Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe!App.AppXvctmff39365zg14pgmystcwtys462fpa.mca did not register with DCOM within the required timeout.

Error: (07/06/2022 07:38:49 PM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: NT AUTHORITY)
Description: C:\Device\HarddiskVolume23

Error: (07/06/2022 10:41:36 AM) (Source: Microsoft-Windows-Ntfs) (EventID: 98) (User: DESKTOP-PB3B57S)
Description: C:\Device\HarddiskVolume23

Error: (07/06/2022 10:03:03 AM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač sa po kontrole chýb reštartoval. Kontrola chýb: 0x0000000a (0x0000000000000008, 0x0000000000000002, 0x0000000000000000, 0xfffff8012b31a3d1). Výpis sa uložil do súboru: C:\Windows\MEMORY.DMP. Identifikácia hlásenia: 28611d1e-4142-4df1-a020-7df551fe8b06.


Windows Defender:
================
Date: 2022-07-18 09:45:09
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-07-17 09:41:05
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-07-16 10:25:42
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-07-15 09:44:19
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

Date: 2022-07-13 09:38:25
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan

CodeIntegrity:
===============
Date: 2022-07-10 12:50:41
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2022-06-01 17:10:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\58.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2022-04-10 14:46:03
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\56.0.11.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.

Date: 2022-03-13 14:39:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\55.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: INSYDE 1.40 05/17/2010
Motherboard: TOSHIBA Portable PC
Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 58%
Total physical RAM: 3958.85 MB
Available physical RAM: 1630.77 MB
Total Virtual: 4662.85 MB
Available Virtual: 2131.09 MB

==================== Drives ================================

Drive c: (WINDOWS) (Fixed) (Total:296.96 GB) (Free:257.96 GB) (Model: TOSHIBA MK6465GSX) NTFS
Drive d: (Data) (Fixed) (Total:297.92 GB) (Free:290.61 GB) (Model: TOSHIBA MK6465GSX) NTFS

\\?\Volume{18c6abd2-0000-0000-0000-100000000000}\ (SYSTEM) (Fixed) (Total:0.39 GB) (Free:0.18 GB) NTFS
\\?\Volume{18c6abd2-0000-0000-0000-a0564a000000}\ () (Fixed) (Total:0.89 GB) (Free:0.3 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 18C6ABD2)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=915 MB) - (Type=27)
Partition 4: (Not Active) - (Size=297.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118247
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: modra obrazovka

#3 Příspěvek od Rudy »

Zdravím!
Otevřte adresář C:\windows\minidump a pokud jsou v něm nějaké soubory, uložte je do raru a přïložte k vašem příštímu postu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

5manager5
Návštěvník
Návštěvník
Příspěvky: 267
Registrován: 10 led 2009 21:21

Re: modra obrazovka

#4 Příspěvek od 5manager5 »

súbor sa nenašiel alebo chýba povolenie správcu ked ich chcem pridať do zip archivu...a ano sú tam 3 hlasenia o bsod

//edit ani cez winrar to nejde zabaliť

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118247
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: modra obrazovka

#5 Příspěvek od Rudy »

Právě. Ty potřebuji vidět (kódy chyb), abych mohl identifikovat příčinu. Bez toho vám mohu jen vyčistit PC, což nemusí pomoci. Pokud si přejete čištění, otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {88A540CD-2C1E-4FE7-AA40-6E65804AAEF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
Task: {F11F7771-075F-465A-BE09-FAB94F6837E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
C:\DumpStack.log.tmp
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Bez analýzy minidumpů se ale daleko nedostaneme. Toto jsou jen zbytečnosti.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

5manager5
Návštěvník
Návštěvník
Příspěvky: 267
Registrován: 10 led 2009 21:21

Re: modra obrazovka

#6 Příspěvek od 5manager5 »

ok toto spravím, dakujem a nejde aj ina možnosť ako ich poslať cez rar?

ok, podarilo sa
Přílohy
Minidump.rar
(373.09 KiB) Staženo 38 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118247
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: modra obrazovka

#7 Příspěvek od Rudy »

Soubory sem můžete posílat pouze s povolenými koncovkam. Já si je stáhnu, rozbalím a analyzují na BlueScreenView. Pak sem napíšu stanovisko.

Problém by mohl být v ovladačích hardwrau (máte aktuální?). Dále máte aktualizovanyý systém? Nedoával jste do PC nějaký nový hardware? Další problém by mohl být v chybě paměti RAM. Otestujte, prosím, RAM pomocí: https://forum.viry.cz/viewtopic.php?f=53&t=106788 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

5manager5
Návštěvník
Návštěvník
Příspěvky: 267
Registrován: 10 led 2009 21:21

Re: modra obrazovka

#8 Příspěvek od 5manager5 »

posielam

- mám teraz zastavenú aktualizáciu w10, viem, že vyšla nová, môže to byť tým...dám ju neskôr
- môže to byť ovládačmi aj lebo je to starší NB, kde Toshiba robila prispôsobené drivre, no medzi tým keď som inštaloval windows, on si vždy stiahne svoje Microsofťacke, no a tie mi nefungovali dobre tak som skúšal dať staršie na zvuk a wifi a tie možno robia problém v náväznosti na w10

- niečo z toho to bude asi podla mna ako som tipoval sw problém, skúsim sa s tým pohrať a neskôr skúsim aj ram test a keby niečo dám vedieť

zatial dakujem :)

Fix result of Farbar Recovery Scan Tool (x64) Version: 18-07-2022
Ran by igorv (18-07-2022 22:30:24) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {88A540CD-2C1E-4FE7-AA40-6E65804AAEF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
Task: {F11F7771-075F-465A-BE09-FAB94F6837E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
C:\DumpStack.log.tmp
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{88A540CD-2C1E-4FE7-AA40-6E65804AAEF1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{88A540CD-2C1E-4FE7-AA40-6E65804AAEF1}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F11F7771-075F-465A-BE09-FAB94F6837E7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F11F7771-075F-465A-BE09-FAB94F6837E7}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 64557574 B
Java, Discord, Steam htmlcache => 0 B
Windows/system/drivers => 295972544 B
Edge => 0 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 294764 B
igorv => 63737351 B

RecycleBin => 0 B
EmptyTemp: => 406.4 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 18-07-2022 22:34:53)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 22:34:56 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118247
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: modra obrazovka

#9 Příspěvek od Rudy »

Bylo smazáno, log již bude OK. Ovladače lze stáhnout ručně tak, že na stránce jejich výrobce je vyberete podle typu hardwaru a verze OS, stáhněte a spustíte instalaci. Tím se zároveň přeinstaluje ten původní na novou verzi. Automaty se občas nechovají korektně. Zatím nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět