Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivní kontrola Notebooku HP

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
G1876P
Návštěvník
Návštěvník
Příspěvky: 84
Registrován: 09 říj 2014 15:41

Preventivní kontrola Notebooku HP

#1 Příspěvek od G1876P »

Dobrý den, ahoj,

prosím o preventivní kontrolu. Níže přikládám log z FRST.

Děkuji. :)

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-03-2020
Ran by Host (ATTENTION: The user is not administrator) on LAPTOP-SOU2LT8G (HP HP 255 G7 Notebook PC) (15-03-2020 12:36:11)
Running from C:\Users\Host\Downloads
Loaded Profiles: Petr Záruba & Host (Available Profiles: Petr Záruba & Host)
Platform: Windows 10 Home Version 1903 18362.657 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\BridgeCommunication.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.5.1296.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Host\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12003.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.38.25003.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20012.134.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
Failed to access process -> afwServ.exe
Failed to access process -> AppHelperCap.exe
Failed to access process -> armsvc.exe
Failed to access process -> aswidsagent.exe
Failed to access process -> atiesrxx.exe
Failed to access process -> AvastSvc.exe
Failed to access process -> conhost.exe
Failed to access process -> csrss.exe
Failed to access process -> csrss.exe
Failed to access process -> dasHost.exe
Failed to access process -> dwm.exe
Failed to access process -> fontdrvhost.exe
Failed to access process -> fontdrvhost.exe
Failed to access process -> HPCommRecovery.exe
Failed to access process -> lsass.exe
Failed to access process -> NetworkCap.exe
Failed to access process -> RtkAudioService64.exe
Failed to access process -> RtkBtManServ.exe
Failed to access process -> SearchIndexer.exe
Failed to access process -> SecurityHealthService.exe
Failed to access process -> services.exe
Failed to access process -> SgrmBroker.exe
Failed to access process -> smss.exe
Failed to access process -> spoolsv.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> svchost.exe
Failed to access process -> SynTPEnhService.exe
Failed to access process -> SysInfoCap.exe
Failed to access process -> TiWorker.exe
Failed to access process -> TouchpointAnalyticsClientService.exe
Failed to access process -> TrustedInstaller.exe
Failed to access process -> unsecapp.exe
Failed to access process -> usocoreworker.exe
Failed to access process -> VSSVC.exe
Failed to access process -> wininit.exe
Failed to access process -> winlogon.exe
Failed to access process -> wlanext.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> WmiPrvSE.exe
Failed to access process -> wsc_proxy.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-04-18] (Realtek Semiconductor Corp. -> Realtek)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9286352 2019-11-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [1121320 2019-04-29] (HP Inc. -> HP Inc.)
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{70f6a9e1-2d67-4358-b82d-7a1052a3ba68}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
URLSearchHook: [S-1-5-21-2689317223-3959950762-4002007104-1001] ATTENTION => Default URLSearchHook is missing
SearchScopes: HKLM -> {5B7ACB8C-952C-4614-9611-9FBBFB7932C1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {5B7ACB8C-952C-4614-9611-9FBBFB7932C1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}

Edge:
======
DownloadDir: C:\Users\Host\Downloads

FireFox:
========
FF DefaultProfile: p5zmmc7k.default
FF ProfilePath: C:\Users\Host\AppData\Roaming\Mozilla\Firefox\Profiles\p5zmmc7k.default [2020-02-10]
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Host\AppData\Roaming\Mozilla\Firefox\Profiles\p5zmmc7k.default\Extensions\sp@avast.com.xpi [2020-01-28]
FF ProfilePath: C:\Users\Host\AppData\Roaming\Mozilla\Firefox\Profiles\xyq7id9r.default-release [2020-03-15]
FF Homepage: Mozilla\Firefox\Profiles\xyq7id9r.default-release -> hxxps://accounts.google.com/signin/v2/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2F&service=mail&sacu=1&rip=1&flowName=GlifWebSignIn&flowEntry=ServiceLogin
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Host\AppData\Roaming\Mozilla\Firefox\Profiles\xyq7id9r.default-release\Extensions\sp@avast.com.xpi [2020-01-28]
FF Extension: (No Name) - C:\Users\Host\AppData\Roaming\Mozilla\Firefox\Profiles\xyq7id9r.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-02-12]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atiesrxx.exe [506672 2019-05-13] (Advanced Micro Devices, Inc. -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6259592 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [417536 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2019-12-19] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\AppHelperCap.exe [510424 2020-01-14] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\NetworkCap.exe [508880 2020-01-14] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\SysInfoCap.exe [511744 2020-01-14] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe [429008 2019-10-31] (HP Inc. -> HP Inc.)
R3 lmhosts; C:\windows\System32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 lmhosts; C:\windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NlaSvc; C:\windows\System32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NlaSvc; C:\windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\windows\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsi; C:\windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [276376 2019-11-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\windows\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SynTPEnhService; C:\windows\System32\SynTPEnhService.exe [383240 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdacpbus; C:\windows\System32\drivers\amdacpbus.sys [1368992 2019-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdgpio2; C:\windows\System32\drivers\amdgpio2.sys [34568 2019-05-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 AMDHDAudBusService; C:\windows\System32\drivers\amdhdaudbus.sys [77800 2018-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atikmdag.sys [53511472 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atikmpag.sys [592176 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\windows\System32\drivers\amdpsp.sys [146304 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\windows\system32\drivers\AmUStorU.sys [127936 2019-03-26] (Alcorlink Corp. -> )
R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [205576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [271120 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [206608 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [64272 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\windows\System32\drivers\aswElam.sys [16304 2020-03-12] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42976 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [161544 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\windows\System32\drivers\aswNetSec.sys [552576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [110560 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [84056 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [848672 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\windows\System32\drivers\aswSP.sys [458584 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\windows\System32\drivers\aswStm.sys [236024 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [316256 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\windows\system32\drivers\AtihdWT6.sys [108152 2019-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [25024 2019-04-18] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1137928 2019-03-29] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\windows\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SmbDrv; C:\windows\System32\drivers\Smb_driver_AMDASF.sys [48904 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\windows\System32\drivers\Smb_driver_Intel.sys [40368 2019-04-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SynRMIHID; C:\windows\System32\drivers\SynRMIHID.sys [55216 2019-04-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SynTPFilterHID; C:\windows\System32\drivers\SynTP.sys [769288 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\OpenHardwareMonitorLib.sys [14544 2020-03-06] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R3 WirelessButtonDriver64; C:\windows\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-03-15 12:36 - 2020-03-15 12:36 - 000019713 _____ C:\Users\Host\Downloads\FRST.txt
2020-03-15 12:36 - 2020-03-15 12:36 - 000000000 ____D C:\FRST
2020-03-15 12:34 - 2020-03-15 12:34 - 002279936 _____ (Farbar) C:\Users\Host\Downloads\FRST64.exe
2020-03-15 12:32 - 2020-03-12 12:04 - 000368056 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2020-03-12 12:04 - 2020-03-12 12:04 - 000235184 _____ (AVAST Software) C:\windows\system32\Drivers\aswf6e25f7fd5a9a3a2.tmp
2020-03-12 12:04 - 2020-03-12 12:04 - 000175400 _____ (AVAST Software) C:\windows\system32\Drivers\aswfcdf9aea05ce5d76.tmp
2020-03-04 15:15 - 2020-03-04 15:15 - 000075016 _____ C:\Users\Host\Desktop\cv_zaruba.pdf
2020-03-02 17:57 - 2020-03-02 17:57 - 000000000 ____D C:\Users\Host\AppData\Roaming\OpenOffice
2020-02-24 06:20 - 2020-02-24 06:20 - 000000000 ____D C:\Users\defaultuser100000
2020-02-24 05:58 - 2020-02-24 05:58 - 000000000 ____D C:\Users\Host\AppData\Local\HP_Inc
2020-02-20 17:38 - 2020-02-20 17:38 - 000000000 ____D C:\Users\Host\AppData\Roaming\HpUpdate
2020-02-14 17:17 - 2020-03-02 22:28 - 000000000 ____D C:\Users\Host\AppData\LocalLow\Adobe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-03-15 12:37 - 2019-03-19 05:37 - 000000000 ____D C:\windows\CbsTemp
2020-03-15 12:32 - 2019-03-19 05:52 - 000000000 ___HD C:\windows\ELAMBKUP
2020-03-13 23:36 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-13 14:46 - 2020-02-12 17:25 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-03-13 14:43 - 2019-03-19 05:52 - 000000000 ____D C:\windows\AppReadiness
2020-03-13 14:40 - 2019-04-15 16:38 - 000000000 ____D C:\windows\system32\SleepStudy
2020-03-12 12:05 - 2020-01-28 22:55 - 000458584 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000848672 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000552576 _____ (AVAST Software) C:\windows\system32\Drivers\aswNetSec.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000316256 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000271120 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000206608 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000205576 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000110560 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000084056 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000064272 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000042976 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000016304 _____ (AVAST Software) C:\windows\system32\Drivers\aswElam.sys
2020-03-12 12:02 - 2020-01-28 23:04 - 000000000 ____D C:\Users\Host\AppData\LocalLow\Mozilla
2020-03-06 15:38 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-06 15:37 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Local\Packages
2020-03-06 12:29 - 2019-08-29 18:35 - 000000000 ____D C:\windows\HP
2020-03-06 12:28 - 2019-05-20 03:42 - 000000000 ____D C:\Program Files\HPCommRecovery
2020-03-06 12:28 - 2019-03-19 05:50 - 000000000 ____D C:\windows\INF
2020-03-06 10:56 - 2019-05-20 13:00 - 000683780 _____ C:\windows\system32\perfh005.dat
2020-03-06 10:56 - 2019-05-20 13:00 - 000137462 _____ C:\windows\system32\perfc005.dat
2020-03-06 10:56 - 2019-05-20 03:35 - 001656484 _____ C:\windows\system32\PerfStringBackup.INI
2020-03-06 10:49 - 2020-01-28 22:50 - 000000000 ____D C:\Users\Host\AppData\Local\PlaceholderTileLogoFolder
2020-03-06 10:48 - 2020-01-28 23:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-03-06 10:48 - 2019-04-15 16:38 - 000000006 ____H C:\windows\Tasks\SA.DAT
2020-03-05 22:42 - 2019-08-29 19:14 - 000000000 ____D C:\Users\Petr Záruba
2020-03-05 22:41 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-03-05 22:41 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\winrm
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\WCN
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\slmgr
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\winrm
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\WCN
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\slmgr
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\Printing_Admin_Scripts
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\SysWOW64\F12
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\SysWOW64\DiagSvcs
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\system32\F12
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\system32\DiagSvcs
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\SysWOW64\oobe
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\SystemResetPlatform
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\Sysprep
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\PerceptionSimulation
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\oobe
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\migwiz
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\PolicyDefinitions
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\IME
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-03-05 22:41 - 2019-03-19 05:37 - 000000000 ____D C:\windows\servicing
2020-03-02 05:17 - 2020-01-28 18:02 - 000000000 ___RD C:\Users\Host\OneDrive
2020-03-02 05:17 - 2020-01-28 17:59 - 000002369 _____ C:\Users\Host\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-02-24 06:30 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Local\D3DSCache
2020-02-24 06:22 - 2020-01-28 23:04 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-02-24 05:58 - 2019-05-20 03:39 - 000000000 ____D C:\ProgramData\HP
2020-02-20 17:45 - 2019-08-29 18:32 - 000000000 ____D C:\ProgramData\Packages
2020-02-20 17:35 - 2019-03-19 05:52 - 000000000 ____D C:\windows\appcompat
2020-02-14 17:17 - 2020-02-13 16:55 - 000000000 ____D C:\Users\Host\AppData\Local\Adobe
2020-02-14 17:17 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Roaming\Adobe
2020-02-14 05:34 - 2019-04-15 16:39 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-02-14 05:29 - 2020-01-28 22:54 - 000000000 ____D C:\ProgramData\AVAST Software

==================== FLock ==============================

2019-03-19 05:52 C:\PerfLogs
2020-03-15 12:34 C:\windows\system32\config
2019-03-19 05:52 C:\windows\system32\Configuration
2019-03-19 05:52 C:\windows\system32\DriverState
2019-08-29 19:15 C:\windows\system32\FxsTmp
2019-03-19 05:53 C:\windows\system32\ias
2019-03-19 05:53 C:\windows\system32\MsDtc
2019-03-19 05:52 C:\windows\system32\networklist
2020-03-13 14:40 C:\windows\system32\SleepStudy
2020-03-15 12:28 C:\windows\system32\sru
2020-03-15 12:32 C:\windows\system32\Tasks
2020-03-05 22:42 C:\windows\system32\WDI
2020-03-06 15:38 C:\Program Files\WindowsApps
2019-08-29 18:57 C:\windows\diagerr.xml
2019-08-29 18:57 C:\windows\diagwrn.xml
2019-03-19 05:52 C:\windows\LiveKernelReports
2019-03-19 05:52 C:\windows\ModemLogs
2020-03-15 12:36 C:\windows\Prefetch
2019-08-31 15:23 C:\windows\ServiceState
2020-03-15 12:36 C:\windows\Temp
2019-03-19 05:52 C:\windows\SysWOW64\config
2019-03-19 05:52 C:\windows\SysWOW64\Configuration
2019-03-19 05:52 C:\windows\SysWOW64\FxsTmp
2019-03-19 05:52 C:\windows\SysWOW64\Msdtc
2019-03-19 05:52 C:\windows\SysWOW64\networklist
2019-03-19 05:52 C:\windows\SysWOW64\sru
2019-03-19 05:52 C:\windows\SysWOW64\Tasks
2019-03-19 05:52 C:\windows\system32\Drivers\DriverData
2020-02-24 06:20 C:\Users\defaultuser100000
2020-03-05 22:42 C:\Users\Petr Záruba
2020-02-20 17:45 C:\ProgramData\Packages
2019-03-19 07:20 C:\ProgramData\WindowsHolographicDevices

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)



ATTENTION: ==> Could not access BCD. The user is not administrator -> The boot configuration data store could not be opened.
P��stup byl odep�en.

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-03-2020
Ran by Host (15-03-2020 12:37:56)
Running from C:\Users\Host\Downloads
Windows 10 Home Version 1903 18362.657 (X64) (2019-08-29 18:13:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

42072 (S-1-5-21-2689317223-3959950762-4002007104-1003 - Limited - Disabled)
Administrator (S-1-5-21-2689317223-3959950762-4002007104-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2689317223-3959950762-4002007104-503 - Limited - Disabled)
Guest (S-1-5-21-2689317223-3959950762-4002007104-501 - Limited - Disabled)
Host (S-1-5-21-2689317223-3959950762-4002007104-1002 - Limited - Enabled) => C:\Users\Host
Petr Záruba (S-1-5-21-2689317223-3959950762-4002007104-1001 - Administrator - Enabled) => C:\Users\Petr Záruba
WDAGUtilityAccount (S-1-5-21-2689317223-3959950762-4002007104-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.006.20034 - Adobe Systems Incorporated)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.08.01 - Advanced Micro Devices, Inc.)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 20.1.2397 - AVAST Software)
Branding64 (HKLM\...\{7659552A-136F-4615-A9FA-3E3EF2CCA77C}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
HP Audio Switch (HKLM-x32\...\{20A40E7C-E470-4E9F-9B5C-DDB2C205E856}) (Version: 1.0.154.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.16.0 - HP Inc.)
HP DeskJet 2130 series Nápověda (HKLM-x32\...\{C8CCFDF2-9CB2-4714-BCE5-17178CB71646}) (Version: 35.0.0 - Hewlett Packard)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.0 - HP Inc.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Microsoft OneDrive (HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation)
Mozilla Firefox 73.0.1 (x64 cs) (HKLM\...\Mozilla Firefox 73.0.1 (x64 cs)) (Version: 73.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.2 - Mozilla)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenOffice 4.1.5 (HKLM-x32\...\{2FEA9841-64DE-4FA5-A36F-1CD23E2790EB}) (Version: 4.15.9789 - Apache Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8734.1 - Realtek Semiconductor Corp.)
Studie vylepšování produktu HP DeskJet 2130 series (HKLM\...\{A6640A96-7F5D-4480-8D50-F3A0BB58C096}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)
Základní software zařízení HP DeskJet 2130 series (HKLM\...\{E1B7356D-B08B-4B2C-A8C3-EAB12EB743DE}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)

Packages:
=========
Amazon -> C:\Program Files\WindowsApps\Amazon.com.Amazon_2018.519.2815.0_x64__343d40qqvtj1t [0000-00-00] (Amazon.com)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.5.9.0_x86__kgqvnymyfvs32 [0000-00-00] (king.com)
Candy Crush Friends -> C:\Program Files\WindowsApps\king.com.CandyCrushFriends_1.32.4.0_x86__kgqvnymyfvs32 [0000-00-00] (king.com)
Dropbox promotion -> C:\Program Files\WindowsApps\C27EB4BA.DropboxOEM_20.4.3.0_x64__xbfy0k16fey96 [0000-00-00] (Dropbox Inc.)
HP JumpStarts -> C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.5.1296.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_1.6.3.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.38.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.6.587.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6 [0000-00-00] (HP Inc.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [0000-00-00] (LinkedIn)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.5.12061.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20503.0_x64__8wekyb3d8bbwe [0000-00-00] (Microsoft Corporation) [MS Ad]
sMedio True DVD for HP -> C:\Program Files\WindowsApps\0E3921EB.sMedioTrueDVDforHP_1.1.122.0_x64__agwrg61xdd7p4 [0000-00-00] (sMedio Inc.)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0 [0000-00-00] (Spotify AB) [Startup Task]
Synaptics TouchPad -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPConsumerDApp_19005.35042.0.0_x64__807d65c4rvak2 [0000-00-00] (Synaptics Incorporated)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-05-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-02-20 18:30 - 2020-02-20 18:30 - 000138240 _____ ( ) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\3ddc45489f5f033e4b9dc7d31231a910\Interop.IWshRuntimeLibrary.ni.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2019-01-08 12:03 - 2019-01-08 12:03 - 003598336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2017-12-12 02:50 - 2017-12-12 02:50 - 000542208 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll
2017-12-12 02:50 - 2017-12-12 02:50 - 000865280 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 000134656 _____ (hardcodet.net) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\5ce41135ad8936a7be6ea5c3ae6bde2b\Hardcodet.Wpf.TaskbarNotification.ni.dll
2019-08-29 18:37 - 2019-08-29 18:37 - 000015360 _____ (HP Inc.) [File not signed] C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\NativeRpcClient.DLL
2020-02-20 18:30 - 2020-02-20 18:30 - 001591808 _____ (Mark Heath) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NAudio\221b0fa1880f29434028ad97b783db1d\NAudio.ni.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 003127808 _____ (Newtonsoft) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\3b09d8b147d4be53e94cebd6ed90b792\Newtonsoft.Json.ni.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 000793088 _____ (The Apache Software Foundation) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\log4net\4e37f9f72190581f516ebaf75e4fb60a\log4net.ni.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000414208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000516608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 001441280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2019-05-04 09:10 - 2019-05-04 09:10 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2019-01-08 12:04 - 2019-01-08 12:04 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A133C0B6-AC66-4639-8021-49D8FEC84CF9}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe No File
FirewallRules: [{A0961D88-21CC-4511-A14F-59287D0C19AE}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe No File
FirewallRules: [{78D58255-9AC4-4D7A-8121-3784C23DF759}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{164E1F79-17CC-4A9F-83D3-B824FD27DA11}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E58A6FB3-53AA-4DA0-8567-6D16995AFDCB}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{3C09D623-62A0-418F-9776-BBEBE35C0EAE}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{95923B38-0629-4142-A32C-9E5F5B9CD7AD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7E31EDCA-6DF6-4672-9018-8DBE9224AD60}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8A95EFCB-566F-4740-AEE4-0AB8E433BD19}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{73CF98F2-208E-429E-BDAD-0C54A9AA75D1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{979F02EC-42E8-4242-B161-4E2D35D33165}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7B9FBCDD-25AA-45FB-AA6E-8F80632DF7C7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B01C391A-A99F-4005-92E4-0790A89FD2D4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F7B6F200-754E-49D9-ABAA-99D28E364AF2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.49 GB) (Free:77.99 GB) (66%)
Check "VSS" service


==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/05/2020 01:42:09 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 8208; požadovaná velikost: 20896.

Error: (03/04/2020 03:10:08 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (03/02/2020 05:16:43 AM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/24/2020 05:57:51 AM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.UnauthorizedAccessException: Přístup k cestě C:\Windows\Temp\signtool.exe byl odepřen.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.File.InternalDelete(String path, Boolean checkHost)
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecovery.OnPowerEvent(PowerBroadcastStatus powerStatus)
v System.ServiceProcess.ServiceBase.DeferredPowerEvent(Int32 eventType, IntPtr eventData).

Error: (02/20/2020 05:32:50 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/20/2020 05:32:45 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/20/2020 05:32:45 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/14/2020 05:40:31 AM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LAPTOP-SOU2LT8G)
Description: Microsoft.VCLibs.140.00_8wekyb3d8bbwe-2147024893


System errors:
=============
Error: (03/15/2020 12:29:11 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby HPSysInfoCap bylo dosaženo časového limitu (30000 ms).

Error: (03/15/2020 12:28:41 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby HPSysInfoCap bylo dosaženo časového limitu (30000 ms).

Error: (03/05/2020 04:25:02 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: Systém zjistil konflikt IP adresy 10.0.0.140 se systémem,
jehož síťová hardwarová adresa je F0-6B-CA-DE-E9-93. Síťové operace v systému mohou
být přerušeny.

Error: (02/24/2020 06:22:27 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Mozilla Maintenance Service byla ukončena s následující chybou:
Nesprávná funkce.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================

Date: 2020-03-12 12:02:42.394
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.385
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.371
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.363
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.335
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:13.101
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:13.077
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:12.879
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

==================== Memory info ===========================

BIOS: Insyde F.20 05/15/2019
Motherboard: HP 84AE
Processor: AMD Ryzen 3 2200U with Radeon Vega Mobile Gfx
Percentage of memory in use: 89%
Total physical RAM: 3491.27 MB
Available physical RAM: 370.36 MB
Total Virtual: 10403.27 MB
Available Virtual: 3172.78 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:118.49 GB) (Free:77.99 GB) NTFS

\\?\Volume{b95b51f4-c080-4cc4-8279-c89cdc3f4e72}\ (Windows RE tools) (Fixed) (Total:0.48 GB) (Free:0.06 GB) NTFS
\\?\Volume{814a0e6a-e6d2-49b4-bffb-f02d541f07df}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

==================== MBR & Partition Table ====================

==================== End of Addition.txt ==========

G1876P
Návštěvník
Návštěvník
Příspěvky: 84
Registrován: 09 říj 2014 15:41

Re: Preventivní kontrola Notebooku HP

#2 Příspěvek od G1876P »

Omlouvám se. Předchozí scan jsem provedli v roli Hosta. Níže příkládám scan Admina.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 08-03-2020
Ran by Petr Záruba (administrator) on LAPTOP-SOU2LT8G (HP HP 255 G7 Notebook PC) (15-03-2020 12:49:10)
Running from C:\Users\Petr Záruba\Downloads
Loaded Profiles: Petr Záruba & Host (Available Profiles: Petr Záruba & Host)
Platform: Windows 10 Home Version 1903 18362.657 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atiesrxx.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\AppHelperCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\NetworkCap.exe
(HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\SysInfoCap.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackgroundLauncher.exe
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Petr Záruba\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.18362.710_none_5f52d84058d0677f\TiWorker.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-04-18] (Realtek Semiconductor Corp. -> Realtek)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9286352 2019-11-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [268680 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [1121320 2019-04-29] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\RunOnce: [Delete Cached Update Binary] => C:\windows\system32\cmd.exe /q /c del /q "C:\Users\Petr Záruba\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\windows\system32\cmd.exe /q /c del /q "C:\Users\Petr Záruba\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\RunOnce: [Uninstall 19.222.1110.0006\amd64] => C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Petr Záruba\AppData\Local\Microsoft\OneDrive\19.222.1110.0006\amd64"
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\RunOnce: [Uninstall 19.222.1110.0006] => C:\windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Petr Záruba\AppData\Local\Microsoft\OneDrive\19.222.1110.0006"
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [1121320 2019-04-29] (HP Inc. -> HP Inc.)
Startup: C:\Users\Petr Záruba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sledovat výstrahy inkoustu - HP DeskJet 2130 series.lnk [2020-03-15]
ShortcutAndArgument: Sledovat výstrahy inkoustu - HP DeskJet 2130 series.lnk -> C:\windows\system32\RunDll32.exe => "C:\Program Files\HP\HP DeskJet 2130 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN58S395XV065V;CONNECTION=USB;MONITOR=1;
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2849DC92-DBEB-44BF-BF7F-007ED194EFA3} - System32\Tasks\HPCustParticipation HP DeskJet 2130 series => C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPCustPartic.exe [6016008 2015-04-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
Task: {35322CC1-E562-4C1D-9DC6-10A556517088} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [58760 2019-05-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {471512BD-C66A-4711-8801-A356697F77A9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {7105C1A3-2F29-41CD-9CB8-CC72A76AADC7} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [66952 2019-05-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {733266E3-63A8-431D-99FC-D9379BB8FBD9} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644984 2018-07-18] (HP Inc. -> HP Inc.)
Task: {9A26D224-97E6-4033-AE79-7EFCC57F5AE6} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [147320 2020-02-20] (HP Inc. -> HP Inc.)
Task: {9AA7B396-F39B-4840-A17E-0F695A41B714} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
Task: {A8180848-2C3D-4CB0-BE79-CAF0F1678AD8} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1660520 2020-03-02] (Avast Software s.r.o. -> Avast Software)
Task: {A88CA1C3-0304-4DF7-ABCD-3757249A689E} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice
Task: {BCAD7485-C944-4B96-8C5E-50FAE5005FED} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-05-13] (Advanced Micro Devices, Inc.) [File not signed]
Task: {D246DB6D-B38F-4D69-AFD3-57E5B12FC81A} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-05-13] (Advanced Micro Devices, Inc.) [File not signed]

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{70f6a9e1-2d67-4358-b82d-7a1052a3ba68}: [DhcpNameServer] 10.0.0.138

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {5B7ACB8C-952C-4614-9611-9FBBFB7932C1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {5B7ACB8C-952C-4614-9611-9FBBFB7932C1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2689317223-3959950762-4002007104-1001 -> {5B7ACB8C-952C-4614-9611-9FBBFB7932C1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}

FireFox:
========
FF DefaultProfile: xfw9pz2v.default
FF ProfilePath: C:\Users\Petr Záruba\AppData\Roaming\Mozilla\Firefox\Profiles\xfw9pz2v.default [2020-02-12]
FF ProfilePath: C:\Users\Petr Záruba\AppData\Roaming\Mozilla\Firefox\Profiles\99v1lud0.default-release [2020-03-15]
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Petr Záruba\AppData\Roaming\Mozilla\Firefox\Profiles\99v1lud0.default-release\Extensions\sp@avast.com.xpi [2020-01-28]
FF Extension: (No Name) - C:\Users\Petr Záruba\AppData\Roaming\Mozilla\Firefox\Profiles\99v1lud0.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-02-12]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atiesrxx.exe [506672 2019-05-13] (Advanced Micro Devices, Inc. -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6259592 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [996880 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [417536 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2019-12-19] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\AppHelperCap.exe [510424 2020-01-14] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\NetworkCap.exe [508880 2020-01-14] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_122e0c093c0b3db7\x64\SysInfoCap.exe [511744 2020-01-14] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\TouchpointAnalyticsClientService.exe [429008 2019-10-31] (HP Inc. -> HP Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [276376 2019-11-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 RtkBtManServ; C:\windows\RtkBtManServ.exe [738712 2019-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 SynTPEnhService; C:\windows\System32\SynTPEnhService.exe [383240 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdacpbus; C:\windows\System32\drivers\amdacpbus.sys [1368992 2019-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdgpio2; C:\windows\System32\drivers\amdgpio2.sys [34568 2019-05-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc)
R3 AMDHDAudBusService; C:\windows\System32\drivers\amdhdaudbus.sys [77800 2018-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atikmdag.sys [53511472 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0342174.inf_amd64_8d1532c19168217b\B342118\atikmpag.sys [592176 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\windows\System32\drivers\amdpsp.sys [146304 2019-05-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\windows\system32\drivers\AmUStorU.sys [127936 2019-03-26] (Alcorlink Corp. -> )
R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [205576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [271120 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [206608 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [64272 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\windows\System32\drivers\aswElam.sys [16304 2020-03-12] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42976 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [161544 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R1 aswNetSec; C:\windows\System32\drivers\aswNetSec.sys [552576 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [110560 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [84056 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [848672 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\windows\System32\drivers\aswSP.sys [458584 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\windows\System32\drivers\aswStm.sys [236024 2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [316256 2020-03-12] (Avast Software s.r.o. -> AVAST Software)
R3 AtiHDAudioService; C:\windows\system32\drivers\AtihdWT6.sys [108152 2019-05-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [25024 2019-04-18] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1137928 2019-03-29] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\windows\System32\drivers\RtkBtfilter.sys [787232 2019-11-30] (WDKTestCert VSAuto,131800073559665678 -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [11722328 2019-12-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SmbDrv; C:\windows\System32\drivers\Smb_driver_AMDASF.sys [48904 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\windows\System32\drivers\Smb_driver_Intel.sys [40368 2019-04-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SynRMIHID; C:\windows\System32\drivers\SynRMIHID.sys [55216 2019-04-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SynTPFilterHID; C:\windows\System32\drivers\SynTP.sys [769288 2019-12-04] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdBoot; C:\windows\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_942053d68a2ba613\x64\OpenHardwareMonitorLib.sys [14544 2020-03-06] (Noriyuki MIYAZAKI -> OpenLibSys.org)
R3 WirelessButtonDriver64; C:\windows\System32\drivers\WirelessButtonDriver64.sys [35392 2019-11-15] (HP Inc. -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-03-15 12:49 - 2020-03-15 12:50 - 000020810 _____ C:\Users\Petr Záruba\Downloads\FRST.txt
2020-03-15 12:49 - 2020-03-15 12:49 - 000000000 ___HD C:\OneDriveTemp
2020-03-15 12:48 - 2020-03-15 12:48 - 002279936 _____ (Farbar) C:\Users\Petr Záruba\Downloads\FRST64.exe
2020-03-15 12:43 - 2020-02-11 05:48 - 000390656 _____ (Microsoft Corporation) C:\windows\SysWOW64\poqexec.exe
2020-03-15 12:43 - 2020-02-11 05:37 - 000492544 _____ (Microsoft Corporation) C:\windows\system32\poqexec.exe
2020-03-15 12:37 - 2020-03-15 12:39 - 000031537 _____ C:\Users\Host\Downloads\Addition.txt
2020-03-15 12:36 - 2020-03-15 12:49 - 000000000 ____D C:\FRST
2020-03-15 12:36 - 2020-03-15 12:39 - 000029384 _____ C:\Users\Host\Downloads\FRST.txt
2020-03-15 12:34 - 2020-03-15 12:34 - 002279936 _____ (Farbar) C:\Users\Host\Downloads\FRST64.exe
2020-03-15 12:32 - 2020-03-12 12:04 - 000368056 _____ (AVAST Software) C:\windows\system32\aswBoot.exe
2020-03-13 14:46 - 2020-03-15 12:47 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-03-12 12:04 - 2020-03-12 12:04 - 000235184 _____ (AVAST Software) C:\windows\system32\Drivers\aswf6e25f7fd5a9a3a2.tmp
2020-03-12 12:04 - 2020-03-12 12:04 - 000175400 _____ (AVAST Software) C:\windows\system32\Drivers\aswfcdf9aea05ce5d76.tmp
2020-03-06 12:28 - 2020-03-06 12:28 - 000000000 ____D C:\windows\system32\Tasks\Hewlett-Packard
2020-03-04 15:15 - 2020-03-04 15:15 - 000075016 _____ C:\Users\Host\Desktop\cv_zaruba.pdf
2020-03-02 17:57 - 2020-03-02 17:57 - 000000000 ____D C:\Users\Host\AppData\Roaming\OpenOffice
2020-02-24 06:20 - 2020-02-24 06:20 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\ConnectedDevicesPlatform
2020-02-24 06:20 - 2020-02-24 06:20 - 000000000 ____D C:\Users\defaultuser100000
2020-02-24 05:58 - 2020-02-24 05:58 - 000000000 ____D C:\Users\Host\AppData\Local\HP_Inc
2020-02-20 17:38 - 2020-02-20 17:38 - 000000000 ____D C:\Users\Host\AppData\Roaming\HpUpdate
2020-02-14 17:17 - 2020-03-02 22:28 - 000000000 ____D C:\Users\Host\AppData\LocalLow\Adobe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-03-15 12:49 - 2019-08-29 19:20 - 000003392 _____ C:\windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2689317223-3959950762-4002007104-1001
2020-03-15 12:49 - 2019-08-29 19:20 - 000000000 ___RD C:\Users\Petr Záruba\OneDrive
2020-03-15 12:49 - 2019-08-29 19:17 - 000000000 ____D C:\Users\Petr Záruba\AppData\Local\Packages
2020-03-15 12:49 - 2019-08-29 19:14 - 000002390 _____ C:\Users\Petr Záruba\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-15 12:49 - 2019-03-19 05:52 - 000000000 ____D C:\windows\AppReadiness
2020-03-15 12:48 - 2019-03-19 05:50 - 000000000 ____D C:\windows\INF
2020-03-15 12:47 - 2020-02-12 16:52 - 000000000 ____D C:\Users\Petr Záruba\AppData\LocalLow\Mozilla
2020-03-15 12:47 - 2020-01-28 23:04 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-15 12:47 - 2020-01-28 23:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-03-15 12:46 - 2019-08-29 18:29 - 000003124 _____ C:\windows\system32\Tasks\AMDLinkUpdate
2020-03-15 12:46 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-03-15 12:44 - 2019-03-19 05:37 - 000000000 ____D C:\windows\CbsTemp
2020-03-15 12:32 - 2020-01-28 22:56 - 000003990 _____ C:\windows\system32\Tasks\Avast Emergency Update
2020-03-15 12:32 - 2019-03-19 05:52 - 000000000 ___HD C:\windows\ELAMBKUP
2020-03-13 14:50 - 2020-02-12 17:03 - 000004562 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task
2020-03-13 14:40 - 2019-04-15 16:38 - 000000000 ____D C:\windows\system32\SleepStudy
2020-03-12 12:05 - 2020-01-28 22:55 - 000458584 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000848672 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000552576 _____ (AVAST Software) C:\windows\system32\Drivers\aswNetSec.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000316256 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000271120 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000206608 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000205576 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000110560 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000084056 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000064272 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000042976 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys
2020-03-12 12:04 - 2020-01-28 22:55 - 000016304 _____ (AVAST Software) C:\windows\system32\Drivers\aswElam.sys
2020-03-12 12:02 - 2020-01-28 23:04 - 000000000 ____D C:\Users\Host\AppData\LocalLow\Mozilla
2020-03-06 15:38 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-03-06 15:37 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Local\Packages
2020-03-06 12:29 - 2019-08-29 18:35 - 000000000 ____D C:\windows\HP
2020-03-06 12:28 - 2019-08-29 18:32 - 000000000 ____D C:\windows\system32\Tasks\HP
2020-03-06 12:28 - 2019-05-20 03:42 - 000000000 ____D C:\Program Files\HPCommRecovery
2020-03-06 10:56 - 2019-05-20 13:00 - 000683780 _____ C:\windows\system32\perfh005.dat
2020-03-06 10:56 - 2019-05-20 13:00 - 000137462 _____ C:\windows\system32\perfc005.dat
2020-03-06 10:56 - 2019-05-20 03:35 - 001656484 _____ C:\windows\system32\PerfStringBackup.INI
2020-03-06 10:49 - 2020-01-28 22:50 - 000000000 ____D C:\Users\Host\AppData\Local\PlaceholderTileLogoFolder
2020-03-06 10:48 - 2019-04-15 16:38 - 000000006 ____H C:\windows\Tasks\SA.DAT
2020-03-05 22:42 - 2019-08-29 19:14 - 000000000 ____D C:\Users\Petr Záruba
2020-03-05 22:42 - 2019-03-19 05:37 - 001048576 _____ C:\windows\system32\config\BBI
2020-03-05 22:41 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-03-05 22:41 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\winrm
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\WCN
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\slmgr
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\winrm
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\WCN
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\slmgr
2020-03-05 22:41 - 2019-03-19 07:18 - 000000000 ____D C:\windows\system32\Printing_Admin_Scripts
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\SysWOW64\F12
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\SysWOW64\DiagSvcs
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\system32\F12
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___SD C:\windows\system32\DiagSvcs
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\SysWOW64\oobe
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\SystemResetPlatform
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\Sysprep
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\PerceptionSimulation
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\oobe
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\system32\migwiz
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\PolicyDefinitions
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\windows\IME
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Common Files\System
2020-03-05 22:41 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-03-05 22:41 - 2019-03-19 05:37 - 000000000 ____D C:\windows\servicing
2020-03-02 05:17 - 2020-01-28 18:02 - 000003378 _____ C:\windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2689317223-3959950762-4002007104-1002
2020-03-02 05:17 - 2020-01-28 18:02 - 000000000 ___RD C:\Users\Host\OneDrive
2020-03-02 05:17 - 2020-01-28 17:59 - 000002369 _____ C:\Users\Host\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-02-24 06:30 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Local\D3DSCache
2020-02-24 06:21 - 2019-08-29 19:17 - 000000000 ____D C:\Users\Petr Záruba\AppData\Local\D3DSCache
2020-02-24 06:20 - 2019-08-29 19:17 - 000000000 ____D C:\Users\Petr Záruba\AppData\Local\ConnectedDevicesPlatform
2020-02-24 05:58 - 2019-05-20 03:39 - 000000000 ____D C:\ProgramData\HP
2020-02-20 17:45 - 2019-08-29 18:32 - 000000000 ____D C:\ProgramData\Packages
2020-02-20 17:35 - 2019-03-19 05:52 - 000000000 ____D C:\windows\appcompat
2020-02-14 17:17 - 2020-02-13 16:55 - 000000000 ____D C:\Users\Host\AppData\Local\Adobe
2020-02-14 17:17 - 2020-01-28 17:59 - 000000000 ____D C:\Users\Host\AppData\Roaming\Adobe
2020-02-14 05:34 - 2019-08-29 19:17 - 000000000 ___RD C:\Users\Petr Záruba\3D Objects
2020-02-14 05:34 - 2019-04-15 16:39 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-02-14 05:29 - 2020-01-28 22:54 - 000000000 ____D C:\ProgramData\AVAST Software

==================== SigCheck ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-03-2020
Ran by Petr Záruba (15-03-2020 12:51:19)
Running from C:\Users\Petr Záruba\Downloads
Windows 10 Home Version 1903 18362.657 (X64) (2019-08-29 18:13:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

42072 (S-1-5-21-2689317223-3959950762-4002007104-1003 - Limited - Disabled)
Administrator (S-1-5-21-2689317223-3959950762-4002007104-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2689317223-3959950762-4002007104-503 - Limited - Disabled)
Guest (S-1-5-21-2689317223-3959950762-4002007104-501 - Limited - Disabled)
Host (S-1-5-21-2689317223-3959950762-4002007104-1002 - Limited - Enabled) => C:\Users\Host
Petr Záruba (S-1-5-21-2689317223-3959950762-4002007104-1001 - Administrator - Enabled) => C:\Users\Petr Záruba
WDAGUtilityAccount (S-1-5-21-2689317223-3959950762-4002007104-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Enabled) {B693136B-F6EE-DD1C-A0EF-229B8B0B29C4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.006.20034 - Adobe Systems Incorporated)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 19.10.08.01 - Advanced Micro Devices, Inc.)
Avast Internet Security (HKLM-x32\...\Avast Antivirus) (Version: 20.1.2397 - AVAST Software)
Branding64 (HKLM\...\{7659552A-136F-4615-A9FA-3E3EF2CCA77C}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
HP Audio Switch (HKLM-x32\...\{20A40E7C-E470-4E9F-9B5C-DDB2C205E856}) (Version: 1.0.154.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.16.0 - HP Inc.)
HP DeskJet 2130 series Nápověda (HKLM-x32\...\{C8CCFDF2-9CB2-4714-BCE5-17178CB71646}) (Version: 35.0.0 - Hewlett Packard)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.0 - HP Inc.)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.7702 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
Microsoft OneDrive (HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\...\OneDriveSetup.exe) (Version: 19.232.1124.0008 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation)
Mozilla Firefox 74.0 (x64 cs) (HKLM\...\Mozilla Firefox 74.0 (x64 cs)) (Version: 74.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 72.0.2 - Mozilla)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
OpenOffice 4.1.5 (HKLM-x32\...\{2FEA9841-64DE-4FA5-A36F-1CD23E2790EB}) (Version: 4.15.9789 - Apache Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8734.1 - Realtek Semiconductor Corp.)
Studie vylepšování produktu HP DeskJet 2130 series (HKLM\...\{A6640A96-7F5D-4480-8D50-F3A0BB58C096}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)
Základní software zařízení HP DeskJet 2130 series (HKLM\...\{E1B7356D-B08B-4B2C-A8C3-EAB12EB743DE}) (Version: 35.0.61.54677 - Hewlett-Packard Co.)

Packages:
=========
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.0.38.0_x64__v10z8vjag6ke6 [2020-02-12] (HP Inc.)
HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6 [2020-02-20] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-02-12] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-02-12] (Microsoft Corporation) [MS Ad]
sMedio True DVD for HP -> C:\Program Files\WindowsApps\0E3921EB.sMedioTrueDVDforHP_1.1.122.0_x64__agwrg61xdd7p4 [2020-02-12] (sMedio Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-05-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2020-01-28] (AVAST Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-02-20 18:30 - 2020-02-20 18:30 - 000138240 _____ ( ) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\3ddc45489f5f033e4b9dc7d31231a910\Interop.IWshRuntimeLibrary.ni.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 000134656 _____ (hardcodet.net) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\5ce41135ad8936a7be6ea5c3ae6bde2b\Hardcodet.Wpf.TaskbarNotification.ni.dll
2019-08-29 18:37 - 2019-08-29 18:37 - 000015360 _____ (HP Inc.) [File not signed] C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\NativeRpcClient.DLL
2020-02-20 18:30 - 2020-02-20 18:30 - 001591808 _____ (Mark Heath) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NAudio\221b0fa1880f29434028ad97b783db1d\NAudio.ni.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 003127808 _____ (Newtonsoft) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\3b09d8b147d4be53e94cebd6ed90b792\Newtonsoft.Json.ni.dll
2020-02-20 18:30 - 2020-02-20 18:30 - 000793088 _____ (The Apache Software Foundation) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\log4net\4e37f9f72190581f516ebaf75e4fb60a\log4net.ni.dll
2019-05-04 09:10 - 2019-05-04 09:10 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-01-08 12:03 - 2019-01-08 12:03 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2689317223-3959950762-4002007104-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
HKU\S-1-5-21-2689317223-3959950762-4002007104-1002\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\theme1\img13.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A133C0B6-AC66-4639-8021-49D8FEC84CF9}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe No File
FirewallRules: [{A0961D88-21CC-4511-A14F-59287D0C19AE}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe No File
FirewallRules: [{78D58255-9AC4-4D7A-8121-3784C23DF759}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{164E1F79-17CC-4A9F-83D3-B824FD27DA11}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E58A6FB3-53AA-4DA0-8567-6D16995AFDCB}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\USBSetup.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{3C09D623-62A0-418F-9776-BBEBE35C0EAE}] => (Allow) C:\Program Files\HP\HP DeskJet 2130 series\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> Hewlett-Packard Development Company, LP)
FirewallRules: [{95923B38-0629-4142-A32C-9E5F5B9CD7AD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7E31EDCA-6DF6-4672-9018-8DBE9224AD60}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{8A95EFCB-566F-4740-AEE4-0AB8E433BD19}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{73CF98F2-208E-429E-BDAD-0C54A9AA75D1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{979F02EC-42E8-4242-B161-4E2D35D33165}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7B9FBCDD-25AA-45FB-AA6E-8F80632DF7C7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B01C391A-A99F-4005-92E4-0790A89FD2D4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{F7B6F200-754E-49D9-ABAA-99D28E364AF2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.127.472.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.49 GB) (Free:77.87 GB) (66%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/05/2020 01:42:09 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 8208; požadovaná velikost: 20896.

Error: (03/04/2020 03:10:08 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (03/02/2020 05:16:43 AM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/24/2020 05:57:51 AM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.UnauthorizedAccessException: Přístup k cestě C:\Windows\Temp\signtool.exe byl odepřen.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.File.InternalDelete(String path, Boolean checkHost)
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecovery.OnPowerEvent(PowerBroadcastStatus powerStatus)
v System.ServiceProcess.ServiceBase.DeferredPowerEvent(Int32 eventType, IntPtr eventData).

Error: (02/20/2020 05:32:50 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/20/2020 05:32:45 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/20/2020 05:32:45 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....

Error: (02/14/2020 05:40:31 AM) (Source: Microsoft-Windows-AppModel-State) (EventID: 10) (User: LAPTOP-SOU2LT8G)
Description: Microsoft.VCLibs.140.00_8wekyb3d8bbwe-2147024893


System errors:
=============
Error: (03/15/2020 12:29:11 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby HPSysInfoCap bylo dosaženo časového limitu (30000 ms).

Error: (03/15/2020 12:28:41 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby HPSysInfoCap bylo dosaženo časového limitu (30000 ms).

Error: (03/05/2020 04:25:02 PM) (Source: Tcpip) (EventID: 4199) (User: )
Description: Systém zjistil konflikt IP adresy 10.0.0.140 se systémem,
jehož síťová hardwarová adresa je F0-6B-CA-DE-E9-93. Síťové operace v systému mohou
být přerušeny.

Error: (02/24/2020 06:22:27 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Mozilla Maintenance Service byla ukončena s následující chybou:
Nesprávná funkce.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/24/2020 06:20:27 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


CodeIntegrity:
===================================

Date: 2020-03-12 12:02:42.394
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.385
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.371
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.363
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-12 12:02:42.335
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:13.101
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:13.077
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2020-03-10 07:51:12.879
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

==================== Memory info ===========================

BIOS: Insyde F.20 05/15/2019
Motherboard: HP 84AE
Processor: AMD Ryzen 3 2200U with Radeon Vega Mobile Gfx
Percentage of memory in use: 86%
Total physical RAM: 3491.27 MB
Available physical RAM: 485.72 MB
Total Virtual: 10403.27 MB
Available Virtual: 4944.09 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:118.49 GB) (Free:77.86 GB) NTFS

\\?\Volume{b95b51f4-c080-4cc4-8279-c89cdc3f4e72}\ (Windows RE tools) (Fixed) (Total:0.48 GB) (Free:0.06 GB) NTFS
\\?\Volume{814a0e6a-e6d2-49b4-bffb-f02d541f07df}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: 3625E36B)

Partition: GPT.

==================== End of Addition.txt ====

Conder
VIP
VIP
Příspěvky: 4400
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Preventivní kontrola Notebooku HP

#3 Příspěvek od Conder »

Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Odpovědět