Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosim kontrolu - zlobí mě ntb

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

prosim kontrolu - zlobí mě ntb

#1 Příspěvek od denda79 »

Dobrý den, prosím o kontrolu ntb. Už delší dobu mě zlobí. A nejsem si jistá zda už nejde o smrt.

Pevný disk mám nový asi necelé 3 roky. Původní nejspiš odešel, kvůli velmi "povedené" aktualizaci. Proběhla aktualizace, když jsem ho vypínala a už jsem ho nezapla. Ani neškytl. Přeinstalace nešla. Lenovo to prostě nepustilo. takže jsme to vyřešili novým pevným diskem a čistou instalací. Asi před 3m se objevil Blue screen a zas přeinstal W. Ale choval se divně. Několikrát jsem se nedostala na (D:) do fotek, filmů, her (toto ukladám jinam než OS(C:)), mám dělený disk, sebralo mi to práva, a když se tak stalo, vždy změnil ikonu, zmizela lišta a informace o zaplnění a bylo "vidět" fotmátování NTFS (to proběhlo bez mé součinnosti, večer jsem vypla PC a rano po zapnutí jsem byla bez práv a změna formátu), takže jsem to nějak vyřešila a pak se to stalo ještě jednou asi po 14 dnech... pak se mi objevila růžová obrazovka a probralo se to "samo", pak modrá a to bylo před dvěma dny. Nešlo nic, žadný Nouzak, žádná jiná volba z těch asi 8. takže až přes Recovery key a instalaci W přes flashku. Podařilo se mi to zas přeinstalovat. Bez formátování. Jen se mi "druhý" disk (mám ho dělený) přepsal z D na E. Včera to fungovalo a dnes jsem to zapla a mám křížek u repráku, na zesílení to nereaguje, ale zvuky NTB vydává, nejdou otevřít programy, složky, Tento počítač, nic. vyhodí to tabulku špatné kopie či co. Jediné co jde je RAR, vysypat koš šel, internet jde, FireFox, mohla jsem stahnout a spustit FRST, ale jinam se nedostanu.a kdoví jak dlouho půjde něž mi zas vyhodí nějaký error. Je to noťáskova smrt? :126: Logy vkládam.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-07-2022
Ran by nkno (administrator) on DESKTOP-9N92EQ0 (LENOVO 80FF) (10-07-2022 17:06:29)
Running from C:\Users\nkno\Desktop
Loaded Profiles: nkno
Platform: Microsoft Windows 10 Home Version 21H2 19044.1288 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1790_none_7df2aec07ca10e81\TiWorker.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe
(cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\nkno\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek semiconductor) C:\Windows\SETFD03.tmp
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11>
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1790_none_7df2aec07ca10e81\TiWorker.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5060864 2015-06-16] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2632088 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [MicrosoftEdgeAutoLaunch_7BF36FA74D642E641FF58FB392D8156B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-07-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282328 2022-06-07] (Valve Corp. -> Valve Corporation)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {042ACFD1-D956-4804-8DB9-D556757FDE40} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {2FD901A7-0F19-42D4-983C-E8A63784A4DC} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {34C16F3A-2D0E-4E9B-9F0E-59BE2EB3D363} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4F682689-9993-4D38-AB3D-22A9328DA192} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51046E1C-A2EE-483A-B355-1B9E92911978} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8A8AB87C-191E-4536-95D5-B249B8CD8FF9} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {AAFDC20E-87D7-4F1F-BB89-D1A54A4DDD83} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3420208386-3152996076-158019495-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {AE70CEEB-79CF-47E8-9DF0-EB209CF32B8D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470640 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1F236CD-4457-4EBF-A719-81E62B014BD6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5707276-C611-4FED-A595-0C7926DCBD0E} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-3420208386-3152996076-158019495-1001 => C:\Users\nkno\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [88584 2022-05-04] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {BB327467-654B-4CFA-A970-FF41276AFC30} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470640 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {C9AB3C8B-25F9-4D2D-8B2E-F2EE8571312B} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {D7ED71B6-4EEB-436E-AC3C-DA853B9CA4F9} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {ED0BD5E2-89A9-44DF-A571-B389F8078902} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {FBDFBA67-9B34-4442-940A-4ACE9A83B634} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{253d7132-b7df-4d29-98bb-f3abbe64ae06}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\nkno\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-10]

FireFox:
========
FF DefaultProfile: u79sx89y.default
FF ProfilePath: C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\u79sx89y.default [2022-07-07]
FF ProfilePath: C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release [2022-07-10]
FF Extension: (Tipli do prohlížeče) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\@tipli-do-prohlizece-.xpi [2022-07-07]
FF Extension: (AdBlocker Ultimate) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2022-07-07]
FF Extension: (Přeložit webové stránky) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2022-07-07]
FF Extension: (Kali) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\{3f868844-fde8-4657-b24e-6e3bdff3682a}.xpi [2022-07-08]
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988384 2022-06-10] (Microsoft Corporation -> Microsoft Corporation) [File not signed]
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncHelper.exe [3381632 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\OneDriveUpdaterService.exe [3822496 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2575624 2022-07-07] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-07-07] (Electronic Arts, Inc. -> Electronic Arts)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-07-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-07-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-07-08] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-10 17:06 - 2022-07-10 17:11 - 000014137 _____ C:\Users\nkno\Desktop\FRST.txt
2022-07-10 17:05 - 2022-07-10 17:09 - 000000000 ____D C:\FRST
2022-07-10 17:02 - 2022-07-10 17:02 - 002369024 _____ (Farbar) C:\Users\nkno\Desktop\FRST64.exe
2022-07-10 17:00 - 2022-07-10 17:03 - 000000000 ___HD C:\$WinREAgent
2022-07-10 16:54 - 2022-07-10 16:55 - 000000000 ____D C:\Windows\LastGood
2022-07-10 16:47 - 2022-07-10 16:47 - 000000000 __SHD C:\found.001
2022-07-10 15:51 - 2022-07-10 15:51 - 001701376 _____ (TODO: <Company name>) C:\Windows\SysWOW64\RebootPrompt.exe
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____D C:\ProgramData\Conexant
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____D C:\Program Files\CONEXANT
2022-07-10 14:59 - 2022-07-10 14:59 - 000000000 ____D C:\Program Files\Realtek
2022-07-10 14:38 - 2022-07-10 14:48 - 965126838 _____ C:\Users\nkno\Desktop\záloha a mody.rar
2022-07-10 14:01 - 2022-07-10 14:01 - 000000000 ____D C:\Users\nkno\AppData\Local\ElevatedDiagnostics
2022-07-09 14:03 - 2022-07-09 14:13 - 000000000 ____D C:\Users\nkno\Desktop\záloha a mody
2022-07-09 10:29 - 2022-07-09 10:29 - 000000000 ____D C:\Users\nkno\Documents\Electronic Arts
2022-07-09 09:46 - 2022-07-10 13:57 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-07-09 09:36 - 2022-07-09 09:36 - 000000000 __SHD C:\found.000
2022-07-09 07:21 - 2022-07-09 07:24 - 000000000 ____D C:\Windows\system32\MRT
2022-07-09 07:20 - 2022-07-09 07:20 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-07-09 07:20 - 2022-07-09 07:20 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-07-09 00:24 - 2022-07-09 00:24 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-07-08 21:54 - 2022-07-10 15:23 - 000000000 ____D C:\Users\nkno\AppData\Local\CrashDumps
2022-07-08 21:37 - 2022-07-09 15:41 - 000000000 ____D C:\Users\nkno\Desktop\mody
2022-07-08 21:37 - 2022-07-08 22:08 - 000000000 ____D C:\Users\nkno\Desktop\připraveno do The sims
2022-07-08 21:37 - 2022-07-08 22:01 - 000000000 ____D C:\Users\nkno\Desktop\extrahovat
2022-07-08 16:15 - 2022-07-08 16:15 - 000000000 ____D C:\Users\nkno\AppData\Roaming\WinRAR
2022-07-08 13:45 - 2022-07-08 13:45 - 000000920 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2022-07-08 12:16 - 2022-07-08 12:16 - 000000094 _____ C:\Users\nkno\Downloads\denda79@seznam.cz Firefox(1).txt
2022-07-08 10:19 - 2022-07-08 10:19 - 000002530 _____ C:\Users\nkno\Desktop\PowerPoint.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000002553 _____ C:\Users\nkno\Desktop\Word.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000002525 _____ C:\Users\nkno\Desktop\Excel.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000001629 _____ C:\Users\nkno\Desktop\Office.lnk
2022-07-07 23:11 - 2022-07-09 09:46 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-07-07 23:11 - 2022-07-09 09:46 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-07-07 23:11 - 2022-07-07 23:11 - 000000000 ___RD C:\Users\Default\OneDrive
2022-07-07 23:08 - 2022-07-07 23:08 - 000002559 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002530 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002525 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002518 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2022-07-07 22:14 - 2022-07-07 23:09 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-07-07 22:14 - 2022-07-07 22:14 - 000000000 ____D C:\Program Files\Microsoft Office 15
2022-07-07 22:11 - 2022-07-07 22:11 - 008404672 _____ (Microsoft Corporation) C:\Users\nkno\Downloads\OfficeSetup.exe
2022-07-07 21:50 - 2022-07-07 21:50 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2022-07-07 21:50 - 2022-07-07 21:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-07-07 21:49 - 2022-07-07 21:49 - 000001036 _____ C:\Users\Public\Desktop\WinRAR.lnk
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Program Files\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Program Files\VideoLAN
2022-07-07 21:46 - 2022-07-10 14:12 - 000000707 _____ C:\Users\nkno\Desktop\fotky – zástupce.lnk
2022-07-07 21:46 - 2022-07-07 21:46 - 000000700 _____ C:\Users\nkno\Desktop\FILM – zástupce.lnk
2022-07-07 20:41 - 2022-07-09 10:37 - 000000000 ____D C:\Users\nkno\Desktop\Mods z původní hry bez BB
2022-07-07 20:41 - 2022-07-07 20:42 - 000000000 ____D C:\Users\nkno\Desktop\sim city dokum
2022-07-07 20:19 - 2022-07-07 20:19 - 000000000 ____D C:\Users\nkno\AppData\Local\OneDrive
2022-07-07 20:11 - 2022-07-09 10:29 - 000000000 ____D C:\Program Files (x86)\Origin Games
2022-07-07 20:04 - 2022-07-07 20:04 - 000000000 ____D C:\Users\nkno\AppData\Roaming\NVIDIA
2022-07-07 20:04 - 2022-07-07 20:04 - 000000000 ____D C:\Users\nkno\AppData\Local\CEF
2022-07-07 20:03 - 2022-07-07 20:05 - 000000000 ____D C:\Users\nkno\AppData\Local\Steam
2022-07-07 19:41 - 2022-07-07 19:41 - 000002386 _____ C:\Users\nkno\Desktop\Lenovo Service Bridge.lnk
2022-07-07 19:40 - 2022-07-07 19:40 - 003226040 _____ (Lenovo ) C:\Users\nkno\Downloads\LSBSetup.exe
2022-07-07 19:40 - 2022-07-07 19:40 - 000000000 ____D C:\Windows\system32\Tasks\Lenovo
2022-07-07 19:40 - 2022-07-07 19:40 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2022-07-07 19:34 - 2022-07-08 13:45 - 000000000 ____D C:\ProgramData\Electronic Arts
2022-07-07 19:33 - 2022-07-08 13:45 - 000000000 ____D C:\ProgramData\Package Cache
2022-07-07 19:33 - 2022-07-07 19:33 - 000001062 _____ C:\Users\Public\Desktop\Origin.lnk
2022-07-07 19:33 - 2022-07-07 19:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2022-07-07 19:33 - 2022-07-07 19:33 - 000000000 ____D C:\Program Files (x86)\Origin
2022-07-07 19:30 - 2022-07-10 17:10 - 000000000 ____D C:\Program Files (x86)\Steam
2022-07-07 19:30 - 2022-07-09 23:18 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Origin
2022-07-07 19:30 - 2022-07-09 23:18 - 000000000 ____D C:\ProgramData\Origin
2022-07-07 19:30 - 2022-07-09 23:14 - 000000000 ____D C:\Users\nkno\AppData\Local\Origin
2022-07-07 19:30 - 2022-07-07 19:30 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno\.QtWebEngineProcess
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno\.Origin
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-07-07 19:29 - 2022-07-07 19:29 - 002296488 _____ C:\Users\nkno\Downloads\SteamSetup.exe
2022-07-07 19:28 - 2022-07-07 19:29 - 063674304 _____ (Electronic Arts) C:\Users\nkno\Downloads\OriginThinSetup.exe
2022-07-07 19:22 - 2022-07-10 16:56 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-07-07 19:22 - 2022-07-10 16:55 - 000000000 ____D C:\Users\nkno\AppData\LocalLow\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-07-07 19:22 - 2022-07-07 19:22 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Users\nkno\AppData\Local\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-07-07 19:20 - 2022-07-10 14:11 - 000000436 _____ C:\Users\nkno\Desktop\Tento počítač – zástupce.lnk
2022-07-07 19:18 - 2022-07-07 19:18 - 000350520 _____ (Mozilla) C:\Users\nkno\Downloads\Firefox Installer.exe
2022-07-07 19:02 - 2022-07-07 19:02 - 000000000 ____D C:\Users\nkno\AppData\Local\Comms
2022-07-07 18:49 - 2022-07-09 11:18 - 000000000 ____D C:\Users\nkno\AppData\Local\PlaceholderTileLogoFolder
2022-07-07 18:48 - 2022-07-09 09:46 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3420208386-3152996076-158019495-1001
2022-07-07 18:47 - 2022-07-10 16:53 - 000000000 ___RD C:\Users\nkno\OneDrive
2022-07-07 18:46 - 2022-07-07 18:46 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-07-07 18:44 - 2022-07-07 18:44 - 000000000 ____D C:\Users\nkno\AppData\Local\Publishers
2022-07-07 18:43 - 2022-07-10 16:51 - 000000000 __SHD C:\Users\nkno\IntelGraphicsProfiles
2022-07-07 18:43 - 2022-07-08 23:56 - 000000000 ____D C:\Users\nkno\AppData\Local\Packages
2022-07-07 18:43 - 2022-07-08 12:15 - 000000000 ____D C:\ProgramData\Packages
2022-07-07 18:43 - 2022-07-07 19:55 - 000000000 ____D C:\Users\nkno\AppData\Local\ConnectedDevicesPlatform
2022-07-07 18:43 - 2022-07-07 18:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ___RD C:\Users\nkno\3D Objects
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Adobe
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ____D C:\Users\nkno\AppData\Local\VirtualStore
2022-07-07 18:42 - 2022-07-07 18:42 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2022-07-07 18:42 - 2016-12-29 14:28 - 000133056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2022-07-07 18:42 - 2016-09-09 20:25 - 000269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-07-07 18:42 - 2016-09-09 20:25 - 000261920 _____ C:\Windows\system32\vulkan-1.dll
2022-07-07 18:42 - 2016-09-09 20:25 - 000110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-07-07 18:42 - 2016-09-09 20:24 - 000125216 _____ C:\Windows\system32\vulkaninfo.exe
2022-07-07 18:41 - 2022-07-10 16:51 - 000000000 ____D C:\ProgramData\NVIDIA
2022-07-07 18:41 - 2022-07-07 18:42 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-07-07 18:41 - 2022-07-07 18:42 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-07-07 18:41 - 2016-12-29 15:16 - 006384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 002475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000546752 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000147000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2022-07-07 18:41 - 2016-12-29 15:10 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2022-07-07 18:41 - 2016-12-22 01:59 - 007651057 _____ C:\Windows\system32\nvcoproc.bin
2022-07-07 18:40 - 2022-07-10 15:52 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-07-07 18:40 - 2017-09-14 05:29 - 004160048 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2022-07-07 18:40 - 2017-09-14 02:11 - 000044958 _____ C:\Windows\system32\nvinfo.pb
2022-07-07 18:40 - 2017-01-17 05:55 - 001964600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437654.dll
2022-07-07 18:40 - 2017-01-17 05:55 - 001598392 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437654.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000818688 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000658592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000407240 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000339152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2022-07-07 18:37 - 2022-07-10 16:55 - 000000000 ____D C:\Windows\SysWOW64\sda
2022-07-07 18:37 - 2022-07-07 18:37 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2022-07-07 18:37 - 2022-07-07 18:37 - 000000000 ____D C:\Program Files\Synaptics
2022-07-07 18:37 - 2017-05-16 06:15 - 000349248 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo54-05.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000912960 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000815680 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000437312 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000288832 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000101440 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynHidI2C_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000072768 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000069184 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000066112 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynRMIHID_Aux.sys
2022-07-07 18:36 - 2022-07-10 16:51 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-07-07 18:36 - 2022-07-07 18:36 - 000000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2022-07-07 18:36 - 2022-07-07 18:36 - 000000000 ____D C:\Program Files\Intel
2022-07-07 18:36 - 2022-07-07 18:36 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2022-07-07 18:36 - 2017-05-26 05:12 - 000103888 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2022-07-07 18:36 - 2017-05-26 05:12 - 000099792 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2022-07-07 18:34 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno
2022-07-07 18:34 - 2022-07-07 18:34 - 000000020 ___SH C:\Users\nkno\ntuser.ini
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Šablony
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Soubory cookie
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Poslední
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Okolní tiskárny
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Okolní síť
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Nabídka Start
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Dokumenty
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Obrázky
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Hudba
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Filmy
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Data aplikací
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\AppData\Local\Data aplikací
2022-07-07 18:33 - 2016-07-19 05:19 - 005166872 _____ (Realtek semiconductor) C:\Windows\SETFD03.tmp
2022-07-07 18:33 - 2015-06-16 08:22 - 005060864 _____ (Realtek semiconductor) C:\Windows\RTFTrack.exe
2022-07-07 18:33 - 2015-06-16 08:22 - 003068160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\rtsuvc.sys
2022-07-07 18:33 - 2015-06-16 08:22 - 002636032 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCamU64.exe
2022-07-07 18:33 - 2015-06-16 08:21 - 001980672 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsDecode.dll
2022-07-07 18:33 - 2015-06-16 08:21 - 000557824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCamX64.dll
2022-07-07 18:33 - 2015-06-16 08:21 - 000495872 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtCamX.dll
2022-07-07 18:33 - 2015-06-16 08:12 - 001157563 _____ C:\Windows\FTDataP.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000946032 _____ C:\Windows\FTData.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000817241 _____ C:\Windows\FTDataR1.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000817191 _____ C:\Windows\FTDataR0.xml
2022-07-07 18:25 - 2022-07-10 16:59 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Šablony
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Poslední
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Okolní síť
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Dokumenty
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Data aplikací
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Šablony
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Plocha
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Data aplikací
2022-07-07 17:55 - 2022-07-07 18:18 - 000000000 ____D C:\Windows\Panther
2022-07-07 17:49 - 2022-07-07 17:49 - 000000000 ____D C:\Windows.old
2022-07-07 17:00 - 2022-07-07 18:34 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-07 16:58 - 2022-07-08 11:40 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-07 16:58 - 2022-07-08 11:40 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-07 16:57 - 2022-07-10 16:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-07-07 16:57 - 2022-07-08 19:19 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-07-07 16:57 - 2022-07-07 16:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-07-07 16:56 - 2022-07-09 10:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-07-07 16:56 - 2022-07-09 09:38 - 000438944 _____ C:\Windows\system32\FNTCACHE.DAT
2022-07-07 16:56 - 2022-07-07 16:56 - 000000000 ____D C:\Windows\ServiceProfiles

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-10 17:03 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-07-10 16:59 - 2019-12-07 16:41 - 000683426 _____ C:\Windows\system32\perfh005.dat
2022-07-10 16:59 - 2019-12-07 16:41 - 000137206 _____ C:\Windows\system32\perfc005.dat
2022-07-10 16:59 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-07-10 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-10 16:51 - 2022-02-25 15:26 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-10 16:39 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-07-10 15:08 - 2022-02-25 15:38 - 000000000 ____D C:\Intel
2022-07-10 14:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-07-10 14:01 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-07-09 09:44 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-08 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-07-08 10:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2022-07-07 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-07-07 19:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-07-07 19:00 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-07-07 18:48 - 2022-02-26 17:21 - 000000000 ___HD C:\OneDriveTemp
2022-07-07 18:43 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-07-07 18:41 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Help
2022-07-07 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2022-07-07 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-07-07 18:23 - 2019-12-07 16:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2022-07-07 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2022-07-07 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-07-07 17:54 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2022-07-07 16:58 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

a druhý:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-07-2022
Ran by nkno (10-07-2022 17:15:23)
Running from C:\Users\nkno\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1288 (X64) (2022-07-07 16:21:53)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3420208386-3152996076-158019495-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3420208386-3152996076-158019495-503 - Limited - Disabled)
Guest (S-1-5-21-3420208386-3152996076-158019495-501 - Limited - Disabled)
nkno (S-1-5-21-3420208386-3152996076-158019495-1001 - Administrator - Enabled) => C:\Users\nkno
WDAGUtilityAccount (S-1-5-21-3420208386-3152996076-158019495-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Kolekce The Sims™ 4 Paranormálno (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}_The Sims 4 Paranormal Stuff Pack) (Version: 39.0.128.1020 - Electronic Arts Inc.)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Lenovo Service Bridge (HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.12 - Lenovo)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.49 - Microsoft Corporation)
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.15225.20288 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.131.0619.0001 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.23.27820 (HKLM\...\{9CA7111B-263D-45DE-B898-61FAD30B3237}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.23.27820 (HKLM\...\{A94EC1B2-932B-49D7-8AF2-4FBD29FF314B}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.23.27820 (HKLM-x32\...\{86BE78D9-65A1-4E69-86F8-C1F5281F8553}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.23.27820 (HKLM-x32\...\{00AC3934-26B4-406E-807C-1692AC7329EC}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 102.0.1 (x64 cs)) (Version: 102.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 102.0.1 - Mozilla)
NVIDIA Ovladač 3D Vision 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.54 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
NVIDIA Stereoscopic 3D Driver (HKLM-x32\...\NVIDIAStereo) (Version: 7.17.13.7500 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15225.20150 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15225.20288 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.113.50894 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.89.214.1030 - Electronic Arts Inc.)
The Sims™ Život na horách (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}_The Sims 4 Snowy Escape) (Version: 38.0.175.1020 - Electronic Arts Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WinRAR 6.10 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.10.3 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.8204.0_x64__8wekyb3d8bbwe [2022-07-07] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2022-07-07] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2017-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32-x32: [vidc.VP60] => C:\Windows\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\Windows\system32\vp6vfw.dll

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-07-07 20:03 - 2022-03-04 04:23 - 126965248 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll
2022-07-07 20:03 - 2021-11-17 13:38 - 000384000 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll
2022-07-07 20:03 - 2021-11-17 13:38 - 008006656 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll
2022-07-07 18:42 - 2016-12-29 14:29 - 000339072 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\_nvstapisvr64.dll
2022-07-07 20:03 - 2022-03-04 04:23 - 000983552 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\chrome_elf.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3420208386-3152996076-158019495-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\nkno\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dsc_6779.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E25418DF-9195-44DC-8BC7-F39F8C6F5A2A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{78B02694-F496-491F-B7BA-65F15194E918}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB1E1B5A-D1C7-49F9-8A72-440C69C80E42}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{57AE0ACC-3D73-4D5D-A8A6-D6C19E556366}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{794EC4FB-4EC2-4BEA-BCBE-587CE5414D05}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{07859A08-378F-4E5A-92C2-3D65C0098854}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E632F954-804F-4E1C-BADB-39CCF1323231}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{544286E1-74A3-4D75-91FA-CDBB2F25BDD8}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{77DE952D-F0DC-4FF4-BB80-10F9EA5C5CBB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FA6E338A-6AEC-4C26-AC37-08435E3BA0B6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1C3F0270-75FF-4E7D-8E34-AC207BEE7CE3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2A01CC94-1EF5-4305-A21C-8F9F7C65FF45}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{833C7A79-D4D4-473E-81B8-A3F804D97476}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{211A4C36-3373-4523-8FF4-D9B55C5353F8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F21A243E-5CA8-4FB6-B201-711B0639EA8E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7DAC2BFF-6571-485F-BAC5-E6039588F3A2}] => (Allow) E:\Origin games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{3CE49288-8FBC-4827-9B82-59E5502898B2}] => (Allow) E:\Origin games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{9D41F830-86C9-4550-904E-27C8865D27D3}] => (Allow) E:\Origin games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{1BAB664F-FFCB-40C9-BB9B-065160BB4E8B}] => (Allow) E:\Origin games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)

==================== Restore Points =========================

10-07-2022 17:03:39 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

Name: Intel(R) Wireless Bluetooth(R)
Description: Intel(R) Wireless Bluetooth(R)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Lenovo ACPI-Compliant Virtual Power Controller
Description: Lenovo ACPI-Compliant Virtual Power Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Intel(R) Management Engine Interface
Description: Intel(R) Management Engine Interface
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Mobile 5th Generation Intel(R) Core(TM) SMBus Controller - 9CA2
Description: Mobile 5th Generation Intel(R) Core(TM) SMBus Controller - 9CA2
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/10/2022 03:30:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wuauclt.exe, verze: 10.0.19041.1288, časové razítko: 0x17884906
Název chybujícího modulu: ntdll.dll, verze: 10.0.19041.1288, časové razítko: 0xa280d1d6
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000063416
ID chybujícího procesu: 0x2d88
Čas spuštění chybující aplikace: 0x01d8945e2bd895ed
Cesta k chybující aplikaci: C:\Windows\system32\wuauclt.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 06ca2033-44af-4d92-8674-cc7f4c40c1d1
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/10/2022 03:23:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: YourPhone.exe, verze: 1.22052.136.0, časové razítko: 0x62b2e2a0
Název chybujícího modulu: combase.dll, verze: 10.0.19041.1288, časové razítko: 0x7e843d58
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000ca674
ID chybujícího procesu: 0xa04
Čas spuštění chybující aplikace: 0x01d894555766e28e
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe\YourPhone.exe
Cesta k chybujícímu modulu: C:\Windows\System32\combase.dll
ID zprávy: b7e35a66-5ee4-4bb6-8c40-902e63e185e7
Úplný název chybujícího balíčku: Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (07/10/2022 03:03:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SystemSettings.exe verze 10.0.19041.1202 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1430

Čas spuštění: 01d894561f63a768

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID hlášení: 8c60034d-6001-4731-a588-20ebbb4d1e70

Úplný název balíčku s chybou: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: microsoft.windows.immersivecontrolpanel

Typ zablokování: Quiesce

Error: (07/10/2022 01:58:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.19041.1266, časové razítko: 0x418a6e83
Název chybujícího modulu: twinui.dll, verze: 10.0.19041.1202, časové razítko: 0x2fed1d11
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000003da193
ID chybujícího procesu: 0x1590
Čas spuštění chybující aplikace: 0x01d89453de9bc8cc
Cesta k chybující aplikaci: C:\Windows\Explorer.EXE
Cesta k chybujícímu modulu: C:\Windows\system32\twinui.dll
ID zprávy: fe92d22d-3ae0-461c-a825-fbd9462a7252
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/09/2022 11:16:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.19041.1151, časové razítko: 0x6985bf98
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1202, časové razítko: 0xc9db1934
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010be3e
ID chybujícího procesu: 0x2200
Čas spuštění chybující aplikace: 0x01d8936c3b303d8e
Cesta k chybující aplikaci: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 132c4682-2e2f-488a-9a7e-e8c936c13be7
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (07/09/2022 11:16:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: OfficeClickToRun.exe, verze: 16.0.15225.20286, časové razítko: 0x62a31c86
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00007ff9b11e932b
ID chybujícího procesu: 0xf68
Čas spuštění chybující aplikace: 0x01d89366e8102460
Cesta k chybující aplikaci: C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: fe718a3a-767e-46b2-ac0a-6b53366e50b3
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/09/2022 09:49:17 AM) (Source: ESENT) (EventID: 474) (User: )
Description: wuaueng.dll (1440,D,29) SUS20ClientDataStore: Ověření načtení stránky databáze ze souboru C:\Windows\SoftwareDistribution\DataStore\DataStore.edb na posunu 22560768 (0x0000000001584000) (stránka databáze 1376 (0x560)) o 16384 (0x00004000) bajtů selhalo. Došlo k neshodě kontrolního součtu stránky. Uložil se kontrolní součet [6dce856d929c1a24:c392d8a0ee2adaa3:69a0539b9bcd6ccc:374fd57294e40179], ale vypočítaný kontrolní součet byl [00150015ff529a29:0000000000000560:0000000000000560:00e97f1612160518]. Operace čtení selže a dojde k chybě -1018 (0xfffffc06). Pokud s tím budou dál problémy, obnovte prosím databázi z předchozí zálohy. Tento problém je pravděpodobně způsobený vadným hardwarem. O další pomoc s diagnostikováním problému požádejte dodavatele hardwaru.

Error: (07/09/2022 09:47:51 AM) (Source: ESENT) (EventID: 474) (User: )
Description: wuaueng.dll (1440,D,29) SUS20ClientDataStore: Ověření načtení stránky databáze ze souboru C:\Windows\SoftwareDistribution\DataStore\DataStore.edb na posunu 22560768 (0x0000000001584000) (stránka databáze 1376 (0x560)) o 16384 (0x00004000) bajtů selhalo. Došlo k neshodě kontrolního součtu stránky. Uložil se kontrolní součet [6dce856d929c1a24:c392d8a0ee2adaa3:69a0539b9bcd6ccc:374fd57294e40179], ale vypočítaný kontrolní součet byl [00150015ff529a29:0000000000000560:0000000000000560:00e97f1612160518]. Operace čtení selže a dojde k chybě -1018 (0xfffffc06). Pokud s tím budou dál problémy, obnovte prosím databázi z předchozí zálohy. Tento problém je pravděpodobně způsobený vadným hardwarem. O další pomoc s diagnostikováním problému požádejte dodavatele hardwaru.


System errors:
=============
Error: (07/10/2022 05:11:02 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:11:02 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:09:50 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:09:50 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:09:41 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:09:41 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 05:07:58 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Microsoft Office Click-to-Run Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/10/2022 05:07:58 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Microsoft Office Click-to-Run Service bylo dosaženo časového limitu (30000 ms).


Windows Defender:
================
Date: 2022-07-10 16:31:36
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {AE37C297-CD6B-4E74-99D5-C83775D98587}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-07-10 14:35:40
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {65F06E20-4E96-4F70-BCDF-3C45E828168B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: LENOVO ABCN75WW 03/26/2015
Motherboard: LENOVO Lenovo G70-80
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 62%
Total physical RAM: 8111.23 MB
Available physical RAM: 3058.16 MB
Total Virtual: 10031.23 MB
Available Virtual: 4248.21 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:341.25 GB) (Free:145.69 GB) (Model: ST1000LM049-2GH172) NTFS
Drive e: (Místní disk ) (Fixed) (Total:589.71 GB) (Free:384.69 GB) (Model: ST1000LM049-2GH172) NTFS

\\?\Volume{d4285d21-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.05 GB) (Free:0.02 GB) NTFS
\\?\Volume{d4285d21-0000-0000-0000-205355000000}\ () (Fixed) (Total:0 GB) (Free:0 GB)

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4285D21)
Partition 1: (Active) - (Size=50 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=341.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=510 MB) - (Type=27)
Partition 4: (Not Active) - (Size=589.7 GB) - (Type=0F Extended)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim kontrolu - zlobí mě ntb

#2 Příspěvek od Rudy »

Zdravím!
Zkuste spustit tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#3 Příspěvek od denda79 »

Restart neproběhl a chtělo to hodit předinstalovaný prg od Lenova (ten jsem tam tedy instalovala sama) do karantény.



# -------------------------------
# Malwarebytes AdwCleaner 8.3.2.0
# -------------------------------
# Build: 03-23-2022
# Database: 2022-06-24.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 07-10-2022
# Duration: 00:00:06
# OS: Windows 10 Home
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.LenovoServiceBridge Folder C:\Users\nkno\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Deleted Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1633 octets] - [10/07/2022 19:02:31]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim kontrolu - zlobí mě ntb

#4 Příspěvek od Rudy »

OK. Poprosím o nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#5 Příspěvek od denda79 »

UPRAVENO, vloženo níže
Naposledy upravil(a) denda79 dne 10 črc 2022 20:07, celkem upraveno 1 x.

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#6 Příspěvek od denda79 »

:x ježiš... pardon ... mně to tam hodilo ten předcházející. tak ještě jednou

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#7 Příspěvek od denda79 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-07-2022
Ran by nkno (administrator) on DESKTOP-9N92EQ0 (LENOVO 80FF) (10-07-2022 20:55:19)
Running from C:\Users\nkno\Desktop
Loaded Profiles: nkno
Platform: Microsoft Windows 10 Home Version 21H2 19044.1288 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(C:\Users\nkno\Desktop\adwcleaner.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(explorer.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Users\nkno\Desktop\adwcleaner.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <11>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5060864 2015-06-16] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2632088 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [MicrosoftEdgeAutoLaunch_7BF36FA74D642E641FF58FB392D8156B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3601824 2022-07-06] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3420208386-3152996076-158019495-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282328 2022-06-07] (Valve Corp. -> Valve Corporation)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {042ACFD1-D956-4804-8DB9-D556757FDE40} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {2FD901A7-0F19-42D4-983C-E8A63784A4DC} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {34C16F3A-2D0E-4E9B-9F0E-59BE2EB3D363} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4F682689-9993-4D38-AB3D-22A9328DA192} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {51046E1C-A2EE-483A-B355-1B9E92911978} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8A8AB87C-191E-4536-95D5-B249B8CD8FF9} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23246768 2022-06-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {AAFDC20E-87D7-4F1F-BB89-D1A54A4DDD83} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3420208386-3152996076-158019495-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {AE70CEEB-79CF-47E8-9DF0-EB209CF32B8D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470640 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1F236CD-4457-4EBF-A719-81E62B014BD6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B5707276-C611-4FED-A595-0C7926DCBD0E} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-3420208386-3152996076-158019495-1001 => C:\Users\nkno\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe (No File)
Task: {BB327467-654B-4CFA-A970-FF41276AFC30} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6470640 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {C9AB3C8B-25F9-4D2D-8B2E-F2EE8571312B} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214144 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {D7ED71B6-4EEB-436E-AC3C-DA853B9CA4F9} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {ED0BD5E2-89A9-44DF-A571-B389F8078902} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {FBDFBA67-9B34-4442-940A-4ACE9A83B634} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115624 2022-07-07] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
Tcpip\..\Interfaces\{253d7132-b7df-4d29-98bb-f3abbe64ae06}: [DhcpNameServer] 192.168.43.1

Edge:
=======
Edge Profile: C:\Users\nkno\AppData\Local\Microsoft\Edge\User Data\Default [2022-07-10]

FireFox:
========
FF DefaultProfile: u79sx89y.default
FF ProfilePath: C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\u79sx89y.default [2022-07-07]
FF ProfilePath: C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release [2022-07-10]
FF Extension: (Tipli do prohlížeče) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\@tipli-do-prohlizece-.xpi [2022-07-07]
FF Extension: (AdBlocker Ultimate) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2022-07-07]
FF Extension: (Přeložit webové stránky) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2022-07-07]
FF Extension: (Kali) - C:\Users\nkno\AppData\Roaming\Mozilla\Firefox\Profiles\9i1yjczj.default-release\Extensions\{3f868844-fde8-4657-b24e-6e3bdff3682a}.xpi [2022-07-08]
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11988384 2022-06-10] (Microsoft Corporation -> Microsoft Corporation) [File not signed]
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncHelper.exe [3381632 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.131.0619.0001\OneDriveUpdaterService.exe [3822496 2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2575624 2022-07-07] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3494672 2022-07-07] (Electronic Arts, Inc. -> Electronic Arts)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-07-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 MpKsl2b5d3c56; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9806B35B-727F-4E54-B2F9-86540428B2D3}\MpKslDrv.sys [141568 2022-07-10] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-07-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-07-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-07-08] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-10 20:55 - 2022-07-10 20:56 - 000012597 _____ C:\Users\nkno\Desktop\FRST.txt
2022-07-10 19:01 - 2022-07-10 19:15 - 000000000 ____D C:\AdwCleaner
2022-07-10 19:00 - 2022-07-10 19:00 - 008551608 _____ (Malwarebytes) C:\Users\nkno\Desktop\adwcleaner.exe
2022-07-10 17:05 - 2022-07-10 20:55 - 000000000 ____D C:\FRST
2022-07-10 17:02 - 2022-07-10 17:02 - 002369024 _____ (Farbar) C:\Users\nkno\Desktop\FRST64.exe
2022-07-10 17:00 - 2022-07-10 17:03 - 000000000 ___HD C:\$WinREAgent
2022-07-10 16:47 - 2022-07-10 16:47 - 000000000 __SHD C:\found.001
2022-07-10 15:51 - 2022-07-10 15:51 - 001701376 _____ (TODO: <Company name>) C:\Windows\SysWOW64\RebootPrompt.exe
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____D C:\ProgramData\Conexant
2022-07-10 15:51 - 2022-07-10 15:51 - 000000000 ____D C:\Program Files\CONEXANT
2022-07-10 14:59 - 2022-07-10 14:59 - 000000000 ____D C:\Program Files\Realtek
2022-07-10 14:38 - 2022-07-10 14:48 - 965126838 _____ C:\Users\nkno\Desktop\záloha a mody.rar
2022-07-10 14:01 - 2022-07-10 14:01 - 000000000 ____D C:\Users\nkno\AppData\Local\ElevatedDiagnostics
2022-07-09 14:03 - 2022-07-09 14:13 - 000000000 ____D C:\Users\nkno\Desktop\záloha a mody
2022-07-09 10:29 - 2022-07-09 10:29 - 000000000 ____D C:\Users\nkno\Documents\Electronic Arts
2022-07-09 09:46 - 2022-07-10 13:57 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-07-09 09:36 - 2022-07-09 09:36 - 000000000 __SHD C:\found.000
2022-07-09 07:21 - 2022-07-09 07:24 - 000000000 ____D C:\Windows\system32\MRT
2022-07-09 07:20 - 2022-07-09 07:20 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-07-09 07:20 - 2022-07-09 07:20 - 000000000 ____D C:\Program Files\PCHealthCheck
2022-07-09 00:24 - 2022-07-09 00:24 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2022-07-08 21:54 - 2022-07-10 19:18 - 000000000 ____D C:\Users\nkno\AppData\Local\CrashDumps
2022-07-08 21:37 - 2022-07-09 15:41 - 000000000 ____D C:\Users\nkno\Desktop\mody
2022-07-08 21:37 - 2022-07-08 22:08 - 000000000 ____D C:\Users\nkno\Desktop\připraveno do The sims
2022-07-08 21:37 - 2022-07-08 22:01 - 000000000 ____D C:\Users\nkno\Desktop\extrahovat
2022-07-08 16:15 - 2022-07-08 16:15 - 000000000 ____D C:\Users\nkno\AppData\Roaming\WinRAR
2022-07-08 13:45 - 2022-07-08 13:45 - 000000920 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2022-07-08 12:16 - 2022-07-08 12:16 - 000000094 _____ C:\Users\nkno\Downloads\denda79@seznam.cz Firefox(1).txt
2022-07-08 10:19 - 2022-07-08 10:19 - 000002530 _____ C:\Users\nkno\Desktop\PowerPoint.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000002553 _____ C:\Users\nkno\Desktop\Word.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000002525 _____ C:\Users\nkno\Desktop\Excel.lnk
2022-07-08 10:18 - 2022-07-08 10:18 - 000001629 _____ C:\Users\nkno\Desktop\Office.lnk
2022-07-07 23:11 - 2022-07-09 09:46 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-07-07 23:11 - 2022-07-09 09:46 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-07-07 23:11 - 2022-07-07 23:11 - 000000000 ___RD C:\Users\Default\OneDrive
2022-07-07 23:08 - 2022-07-07 23:08 - 000002559 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002530 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002525 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002518 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2022-07-07 23:08 - 2022-07-07 23:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2022-07-07 22:14 - 2022-07-07 23:09 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-07-07 22:14 - 2022-07-07 22:14 - 000000000 ____D C:\Program Files\Microsoft Office 15
2022-07-07 22:11 - 2022-07-07 22:11 - 008404672 _____ (Microsoft Corporation) C:\Users\nkno\Downloads\OfficeSetup.exe
2022-07-07 21:50 - 2022-07-07 21:50 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2022-07-07 21:50 - 2022-07-07 21:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2022-07-07 21:49 - 2022-07-07 21:49 - 000001036 _____ C:\Users\Public\Desktop\WinRAR.lnk
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Program Files\WinRAR
2022-07-07 21:49 - 2022-07-07 21:49 - 000000000 ____D C:\Program Files\VideoLAN
2022-07-07 21:46 - 2022-07-10 14:12 - 000000707 _____ C:\Users\nkno\Desktop\fotky – zástupce.lnk
2022-07-07 21:46 - 2022-07-07 21:46 - 000000700 _____ C:\Users\nkno\Desktop\FILM – zástupce.lnk
2022-07-07 20:41 - 2022-07-09 10:37 - 000000000 ____D C:\Users\nkno\Desktop\Mods z původní hry bez BB
2022-07-07 20:41 - 2022-07-07 20:42 - 000000000 ____D C:\Users\nkno\Desktop\sim city dokum
2022-07-07 20:19 - 2022-07-07 20:19 - 000000000 ____D C:\Users\nkno\AppData\Local\OneDrive
2022-07-07 20:11 - 2022-07-09 10:29 - 000000000 ____D C:\Program Files (x86)\Origin Games
2022-07-07 20:04 - 2022-07-07 20:04 - 000000000 ____D C:\Users\nkno\AppData\Roaming\NVIDIA
2022-07-07 20:04 - 2022-07-07 20:04 - 000000000 ____D C:\Users\nkno\AppData\Local\CEF
2022-07-07 20:03 - 2022-07-07 20:05 - 000000000 ____D C:\Users\nkno\AppData\Local\Steam
2022-07-07 19:41 - 2022-07-07 19:41 - 000002386 _____ C:\Users\nkno\Desktop\Lenovo Service Bridge.lnk
2022-07-07 19:40 - 2022-07-07 19:40 - 003226040 _____ (Lenovo ) C:\Users\nkno\Downloads\LSBSetup.exe
2022-07-07 19:40 - 2022-07-07 19:40 - 000000000 ____D C:\Windows\system32\Tasks\Lenovo
2022-07-07 19:40 - 2022-07-07 19:40 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2022-07-07 19:34 - 2022-07-08 13:45 - 000000000 ____D C:\ProgramData\Electronic Arts
2022-07-07 19:33 - 2022-07-08 13:45 - 000000000 ____D C:\ProgramData\Package Cache
2022-07-07 19:33 - 2022-07-07 19:33 - 000001062 _____ C:\Users\Public\Desktop\Origin.lnk
2022-07-07 19:33 - 2022-07-07 19:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2022-07-07 19:33 - 2022-07-07 19:33 - 000000000 ____D C:\Program Files (x86)\Origin
2022-07-07 19:30 - 2022-07-10 19:08 - 000000000 ____D C:\Program Files (x86)\Steam
2022-07-07 19:30 - 2022-07-09 23:18 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Origin
2022-07-07 19:30 - 2022-07-09 23:18 - 000000000 ____D C:\ProgramData\Origin
2022-07-07 19:30 - 2022-07-09 23:14 - 000000000 ____D C:\Users\nkno\AppData\Local\Origin
2022-07-07 19:30 - 2022-07-07 19:30 - 000001032 _____ C:\Users\Public\Desktop\Steam.lnk
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno\.QtWebEngineProcess
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno\.Origin
2022-07-07 19:30 - 2022-07-07 19:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-07-07 19:29 - 2022-07-07 19:29 - 002296488 _____ C:\Users\nkno\Downloads\SteamSetup.exe
2022-07-07 19:28 - 2022-07-07 19:29 - 063674304 _____ (Electronic Arts) C:\Users\nkno\Downloads\OriginThinSetup.exe
2022-07-07 19:22 - 2022-07-10 19:18 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-07-07 19:22 - 2022-07-10 19:17 - 000000000 ____D C:\Users\nkno\AppData\LocalLow\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-07-07 19:22 - 2022-07-07 19:22 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Users\nkno\AppData\Local\Mozilla
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-07-07 19:22 - 2022-07-07 19:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-07-07 19:20 - 2022-07-10 14:11 - 000000436 _____ C:\Users\nkno\Desktop\Tento počítač – zástupce.lnk
2022-07-07 19:18 - 2022-07-07 19:18 - 000350520 _____ (Mozilla) C:\Users\nkno\Downloads\Firefox Installer.exe
2022-07-07 19:02 - 2022-07-07 19:02 - 000000000 ____D C:\Users\nkno\AppData\Local\Comms
2022-07-07 18:49 - 2022-07-09 11:18 - 000000000 ____D C:\Users\nkno\AppData\Local\PlaceholderTileLogoFolder
2022-07-07 18:48 - 2022-07-09 09:46 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3420208386-3152996076-158019495-1001
2022-07-07 18:47 - 2022-07-10 16:53 - 000000000 ___RD C:\Users\nkno\OneDrive
2022-07-07 18:46 - 2022-07-07 18:46 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2022-07-07 18:44 - 2022-07-07 18:44 - 000000000 ____D C:\Users\nkno\AppData\Local\Publishers
2022-07-07 18:43 - 2022-07-10 16:51 - 000000000 __SHD C:\Users\nkno\IntelGraphicsProfiles
2022-07-07 18:43 - 2022-07-08 23:56 - 000000000 ____D C:\Users\nkno\AppData\Local\Packages
2022-07-07 18:43 - 2022-07-08 12:15 - 000000000 ____D C:\ProgramData\Packages
2022-07-07 18:43 - 2022-07-07 19:55 - 000000000 ____D C:\Users\nkno\AppData\Local\ConnectedDevicesPlatform
2022-07-07 18:43 - 2022-07-07 18:46 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ___RD C:\Users\nkno\3D Objects
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ____D C:\Users\nkno\AppData\Roaming\Adobe
2022-07-07 18:43 - 2022-07-07 18:43 - 000000000 ____D C:\Users\nkno\AppData\Local\VirtualStore
2022-07-07 18:42 - 2022-07-07 18:42 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2022-07-07 18:42 - 2016-12-29 14:28 - 000133056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2022-07-07 18:42 - 2016-09-09 20:25 - 000269600 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-07-07 18:42 - 2016-09-09 20:25 - 000261920 _____ C:\Windows\system32\vulkan-1.dll
2022-07-07 18:42 - 2016-09-09 20:25 - 000110880 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-07-07 18:42 - 2016-09-09 20:24 - 000125216 _____ C:\Windows\system32\vulkaninfo.exe
2022-07-07 18:41 - 2022-07-10 19:15 - 000000000 ____D C:\ProgramData\NVIDIA
2022-07-07 18:41 - 2022-07-07 18:42 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-07-07 18:41 - 2022-07-07 18:42 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-07-07 18:41 - 2016-12-29 15:16 - 006384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 002475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000546752 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000147000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\oemdspif.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2022-07-07 18:41 - 2016-12-29 15:16 - 000069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2022-07-07 18:41 - 2016-12-29 15:10 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2022-07-07 18:41 - 2016-12-22 01:59 - 007651057 _____ C:\Windows\system32\nvcoproc.bin
2022-07-07 18:40 - 2022-07-10 15:52 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-07-07 18:40 - 2017-09-14 05:29 - 004160048 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2022-07-07 18:40 - 2017-09-14 02:11 - 000044958 _____ C:\Windows\system32\nvinfo.pb
2022-07-07 18:40 - 2017-01-17 05:55 - 001964600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437654.dll
2022-07-07 18:40 - 2017-01-17 05:55 - 001598392 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437654.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000818688 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000658592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000407240 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2022-07-07 18:40 - 2017-01-17 05:52 - 000339152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2022-07-07 18:37 - 2022-07-10 16:55 - 000000000 ____D C:\Windows\SysWOW64\sda
2022-07-07 18:37 - 2022-07-07 18:37 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2022-07-07 18:37 - 2022-07-07 18:37 - 000000000 ____D C:\Program Files\Synaptics
2022-07-07 18:37 - 2017-05-16 06:15 - 000349248 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPCo54-05.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000912960 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynTP.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000815680 _____ (Synaptics Incorporated) C:\Windows\system32\SynCOM.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000437312 _____ (Synaptics Incorporated) C:\Windows\SysWOW64\SynCom.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000288832 _____ (Synaptics Incorporated) C:\Windows\system32\SynTPAPI.dll
2022-07-07 18:37 - 2017-05-16 06:14 - 000101440 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynHidI2C_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000072768 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000069184 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_AMDASF_Aux.sys
2022-07-07 18:37 - 2017-05-16 06:14 - 000066112 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\SynRMIHID_Aux.sys
2022-07-07 18:36 - 2022-07-10 16:51 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-07-07 18:36 - 2022-07-07 18:36 - 000000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2022-07-07 18:36 - 2022-07-07 18:36 - 000000000 ____D C:\Program Files\Intel
2022-07-07 18:36 - 2022-07-07 18:36 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2022-07-07 18:36 - 2017-05-26 05:12 - 000103888 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2022-07-07 18:36 - 2017-05-26 05:12 - 000099792 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2022-07-07 18:34 - 2022-07-07 19:30 - 000000000 ____D C:\Users\nkno
2022-07-07 18:34 - 2022-07-07 18:34 - 000000020 ___SH C:\Users\nkno\ntuser.ini
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Šablony
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Soubory cookie
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Poslední
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Okolní tiskárny
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Okolní síť
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Nabídka Start
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Dokumenty
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Obrázky
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Hudba
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Documents\Filmy
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\Data aplikací
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:34 - 2022-07-07 18:34 - 000000000 _SHDL C:\Users\nkno\AppData\Local\Data aplikací
2022-07-07 18:33 - 2016-07-19 05:19 - 005166872 _____ (Realtek semiconductor) C:\Windows\SETFD03.tmp
2022-07-07 18:33 - 2015-06-16 08:22 - 005060864 _____ (Realtek semiconductor) C:\Windows\RTFTrack.exe
2022-07-07 18:33 - 2015-06-16 08:22 - 003068160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\rtsuvc.sys
2022-07-07 18:33 - 2015-06-16 08:22 - 002636032 _____ (Realtek Semiconductor Corp.) C:\Windows\RtCamU64.exe
2022-07-07 18:33 - 2015-06-16 08:21 - 001980672 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RsDecode.dll
2022-07-07 18:33 - 2015-06-16 08:21 - 000557824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtCamX64.dll
2022-07-07 18:33 - 2015-06-16 08:21 - 000495872 _____ (Realtek Semiconductor Corp.) C:\Windows\SysWOW64\RtCamX.dll
2022-07-07 18:33 - 2015-06-16 08:12 - 001157563 _____ C:\Windows\FTDataP.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000946032 _____ C:\Windows\FTData.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000817241 _____ C:\Windows\FTDataR1.xml
2022-07-07 18:33 - 2015-06-16 08:12 - 000817191 _____ C:\Windows\FTDataR0.xml
2022-07-07 18:25 - 2022-07-10 16:59 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Šablony
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Poslední
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Okolní síť
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Dokumenty
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\Data aplikací
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Šablony
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Plocha
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Dokumenty
2022-07-07 18:21 - 2022-07-07 18:21 - 000000000 _SHDL C:\ProgramData\Data aplikací
2022-07-07 17:55 - 2022-07-10 19:04 - 000000000 ____D C:\Windows\Panther
2022-07-07 17:49 - 2022-07-10 19:44 - 000000000 ____D C:\Windows.old
2022-07-07 17:00 - 2022-07-07 18:34 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-07 16:58 - 2022-07-08 11:40 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-07 16:58 - 2022-07-08 11:40 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-07 16:57 - 2022-07-10 16:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-07-07 16:57 - 2022-07-08 19:19 - 000000000 ____D C:\Windows\system32\Drivers\wd
2022-07-07 16:57 - 2022-07-07 16:57 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2022-07-07 16:56 - 2022-07-10 20:54 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-07-07 16:56 - 2022-07-09 09:38 - 000438944 _____ C:\Windows\system32\FNTCACHE.DAT
2022-07-07 16:56 - 2022-07-07 16:56 - 000000000 ____D C:\Windows\ServiceProfiles

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-10 20:03 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-10 17:40 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-07-10 17:27 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-07-10 16:59 - 2019-12-07 16:41 - 000683426 _____ C:\Windows\system32\perfh005.dat
2022-07-10 16:59 - 2019-12-07 16:41 - 000137206 _____ C:\Windows\system32\perfc005.dat
2022-07-10 16:51 - 2022-02-25 15:26 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-10 16:39 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2022-07-10 15:08 - 2022-02-25 15:38 - 000000000 ____D C:\Intel
2022-07-10 14:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-07-10 14:01 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-07-09 09:44 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-08 19:18 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2022-07-08 10:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2022-07-07 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2022-07-07 19:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2022-07-07 19:00 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-07-07 18:48 - 2022-02-26 17:21 - 000000000 ___HD C:\OneDriveTemp
2022-07-07 18:43 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-07-07 18:41 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Help
2022-07-07 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2022-07-07 18:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2022-07-07 18:23 - 2019-12-07 16:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2022-07-07 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2022-07-07 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2022-07-07 17:54 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2022-07-07 16:58 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================



a další



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-07-2022
Ran by nkno (10-07-2022 20:57:09)
Running from C:\Users\nkno\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1288 (X64) (2022-07-07 16:21:53)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3420208386-3152996076-158019495-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3420208386-3152996076-158019495-503 - Limited - Disabled)
Guest (S-1-5-21-3420208386-3152996076-158019495-501 - Limited - Disabled)
nkno (S-1-5-21-3420208386-3152996076-158019495-1001 - Administrator - Enabled) => C:\Users\nkno
WDAGUtilityAccount (S-1-5-21-3420208386-3152996076-158019495-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Kolekce The Sims™ 4 Paranormálno (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}_The Sims 4 Paranormal Stuff Pack) (Version: 39.0.128.1020 - Electronic Arts Inc.)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo EasyCamera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 6.3.9600.11105 - Realtek Semiconductor Corp.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.49 - Microsoft Corporation)
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.15225.20288 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.131.0619.0001 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.23.27820 (HKLM-x32\...\{852adda4-4c78-4a38-b583-c0b360a329d6}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.23.27820 (HKLM\...\{9CA7111B-263D-45DE-B898-61FAD30B3237}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.23.27820 (HKLM\...\{A94EC1B2-932B-49D7-8AF2-4FBD29FF314B}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.23.27820 (HKLM-x32\...\{86BE78D9-65A1-4E69-86F8-C1F5281F8553}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.23.27820 (HKLM-x32\...\{00AC3934-26B4-406E-807C-1692AC7329EC}) (Version: 14.23.27820 - Microsoft Corporation) Hidden
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 102.0.1 (x64 cs)) (Version: 102.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 102.0.1 - Mozilla)
NVIDIA Ovladač 3D Vision 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 376.54 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
NVIDIA Stereoscopic 3D Driver (HKLM-x32\...\NVIDIAStereo) (Version: 7.17.13.7500 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15225.20150 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15128.20178 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15225.20288 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.113.50894 - Electronic Arts, Inc.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.89.214.1030 - Electronic Arts Inc.)
The Sims™ Život na horách (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}_The Sims 4 Snowy Escape) (Version: 38.0.175.1020 - Electronic Arts Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WinRAR 6.10 beta 3 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.10.3 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.8204.0_x64__8wekyb3d8bbwe [2022-07-07] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2022-07-07] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.131.0619.0001\FileSyncShell64.dll [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2017-05-26] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-01-02] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32-x32: [vidc.VP60] => C:\Windows\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\Windows\system32\vp6vfw.dll

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-07-07 18:42 - 2016-12-29 14:29 - 000339072 _____ (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed] C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem\_nvstapisvr64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-07] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3420208386-3152996076-158019495-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\nkno\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\dsc_6779.jpg
DNS Servers: 192.168.43.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E25418DF-9195-44DC-8BC7-F39F8C6F5A2A}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{78B02694-F496-491F-B7BA-65F15194E918}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{BB1E1B5A-D1C7-49F9-8A72-440C69C80E42}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{57AE0ACC-3D73-4D5D-A8A6-D6C19E556366}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{794EC4FB-4EC2-4BEA-BCBE-587CE5414D05}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{07859A08-378F-4E5A-92C2-3D65C0098854}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E632F954-804F-4E1C-BADB-39CCF1323231}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{544286E1-74A3-4D75-91FA-CDBB2F25BDD8}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{77DE952D-F0DC-4FF4-BB80-10F9EA5C5CBB}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FA6E338A-6AEC-4C26-AC37-08435E3BA0B6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1C3F0270-75FF-4E7D-8E34-AC207BEE7CE3}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2A01CC94-1EF5-4305-A21C-8F9F7C65FF45}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{833C7A79-D4D4-473E-81B8-A3F804D97476}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{211A4C36-3373-4523-8FF4-D9B55C5353F8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F21A243E-5CA8-4FB6-B201-711B0639EA8E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.85.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7DAC2BFF-6571-485F-BAC5-E6039588F3A2}] => (Allow) E:\Origin games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{3CE49288-8FBC-4827-9B82-59E5502898B2}] => (Allow) E:\Origin games\The Sims 4\Game\Bin_LE\TS4.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{9D41F830-86C9-4550-904E-27C8865D27D3}] => (Allow) E:\Origin games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)
FirewallRules: [{1BAB664F-FFCB-40C9-BB9B-065160BB4E8B}] => (Allow) E:\Origin games\The Sims 4\Game\Bin\TS4_x64.exe (Electronic Arts, Inc. -> Electronic Arts Inc.)

==================== Restore Points =========================

10-07-2022 19:09:42 AdwCleaner_BeforeCleaning_10/07/2022_19:09:40

==================== Faulty Device Manager Devices ============

Name: Intel(R) Wireless Bluetooth(R)
Description: Intel(R) Wireless Bluetooth(R)
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Lenovo ACPI-Compliant Virtual Power Controller
Description: Lenovo ACPI-Compliant Virtual Power Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Intel(R) Management Engine Interface
Description: Intel(R) Management Engine Interface
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Mobile 5th Generation Intel(R) Core(TM) SMBus Controller - 9CA2
Description: Mobile 5th Generation Intel(R) Core(TM) SMBus Controller - 9CA2
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (07/10/2022 07:18:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.19041.1151, časové razítko: 0x6985bf98
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1202, časové razítko: 0xc9db1934
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010be3e
ID chybujícího procesu: 0x37a8
Čas spuštění chybující aplikace: 0x01d8948108fa6dab
Cesta k chybující aplikaci: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: a4743983-f68d-47de-8768-2e519de95b55
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (07/10/2022 07:17:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.19041.1151, časové razítko: 0x6985bf98
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1202, časové razítko: 0xc9db1934
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010be3e
ID chybujícího procesu: 0x2154
Čas spuštění chybující aplikace: 0x01d89480ed39a2ca
Cesta k chybující aplikaci: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 2389179c-62f5-43c1-92d3-c4b66fc01eb7
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (07/10/2022 03:30:41 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wuauclt.exe, verze: 10.0.19041.1288, časové razítko: 0x17884906
Název chybujícího modulu: ntdll.dll, verze: 10.0.19041.1288, časové razítko: 0xa280d1d6
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000063416
ID chybujícího procesu: 0x2d88
Čas spuštění chybující aplikace: 0x01d8945e2bd895ed
Cesta k chybující aplikaci: C:\Windows\system32\wuauclt.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID zprávy: 06ca2033-44af-4d92-8674-cc7f4c40c1d1
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/10/2022 03:23:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: YourPhone.exe, verze: 1.22052.136.0, časové razítko: 0x62b2e2a0
Název chybujícího modulu: combase.dll, verze: 10.0.19041.1288, časové razítko: 0x7e843d58
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000ca674
ID chybujícího procesu: 0xa04
Čas spuštění chybující aplikace: 0x01d894555766e28e
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe\YourPhone.exe
Cesta k chybujícímu modulu: C:\Windows\System32\combase.dll
ID zprávy: b7e35a66-5ee4-4bb6-8c40-902e63e185e7
Úplný název chybujícího balíčku: Microsoft.YourPhone_1.22052.136.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (07/10/2022 03:03:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SystemSettings.exe verze 10.0.19041.1202 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1430

Čas spuštění: 01d894561f63a768

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID hlášení: 8c60034d-6001-4731-a588-20ebbb4d1e70

Úplný název balíčku s chybou: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: microsoft.windows.immersivecontrolpanel

Typ zablokování: Quiesce

Error: (07/10/2022 01:58:45 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.19041.1266, časové razítko: 0x418a6e83
Název chybujícího modulu: twinui.dll, verze: 10.0.19041.1202, časové razítko: 0x2fed1d11
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000003da193
ID chybujícího procesu: 0x1590
Čas spuštění chybující aplikace: 0x01d89453de9bc8cc
Cesta k chybující aplikaci: C:\Windows\Explorer.EXE
Cesta k chybujícímu modulu: C:\Windows\system32\twinui.dll
ID zprávy: fe92d22d-3ae0-461c-a825-fbd9462a7252
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/09/2022 11:16:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.19041.1151, časové razítko: 0x6985bf98
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1202, časové razítko: 0xc9db1934
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000010be3e
ID chybujícího procesu: 0x2200
Čas spuštění chybující aplikace: 0x01d8936c3b303d8e
Cesta k chybující aplikaci: C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 132c4682-2e2f-488a-9a7e-e8c936c13be7
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (07/09/2022 11:16:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: OfficeClickToRun.exe, verze: 16.0.15225.20286, časové razítko: 0x62a31c86
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x00007ff9b11e932b
ID chybujícího procesu: 0xf68
Čas spuštění chybující aplikace: 0x01d89366e8102460
Cesta k chybující aplikaci: C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: fe718a3a-767e-46b2-ac0a-6b53366e50b3
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (07/10/2022 07:18:32 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:18:32 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:44 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:44 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:31 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:31 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:22 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca

Error: (07/10/2022 07:17:22 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-9N92EQ0)
Description: Nelze spustit server DCOM: MicrosoftWindows.Client.CBS_120.2212.3920.0_x64__cw5n1h2txyewy!InputApp jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942852
při provádění příkazu:
"C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\InputApp\TextInputHost.exe" -ServerName:InputApp.AppX9jnwykgrccxc8by3hsrsh07r423xzvav.mca


Windows Defender:
================
Date: 2022-07-10 16:31:36
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {AE37C297-CD6B-4E74-99D5-C83775D98587}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-07-10 14:35:40
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {65F06E20-4E96-4F70-BCDF-3C45E828168B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: LENOVO ABCN75WW 03/26/2015
Motherboard: LENOVO Lenovo G70-80
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 51%
Total physical RAM: 8111.23 MB
Available physical RAM: 3958.3 MB
Total Virtual: 10031.23 MB
Available Virtual: 5739.75 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:341.25 GB) (Free:174.91 GB) (Model: ST1000LM049-2GH172) NTFS
Drive e: (Místní disk ) (Fixed) (Total:589.71 GB) (Free:384.69 GB) (Model: ST1000LM049-2GH172) NTFS

\\?\Volume{d4285d21-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.05 GB) (Free:0.02 GB) NTFS
\\?\Volume{d4285d21-0000-0000-0000-205355000000}\ () (Fixed) (Total:0 GB) (Free:0 GB)

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4285D21)
Partition 1: (Active) - (Size=50 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=341.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=510 MB) - (Type=27)
Partition 4: (Not Active) - (Size=589.7 GB) - (Type=0F Extended)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim kontrolu - zlobí mě ntb

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
C:\ProgramData\DP45977C.lfl
C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
C:\Windows\SETFD03.tmp
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#9 Příspěvek od denda79 »

Jde otevřít, jde text zkopírovat, ale bohužel mi nejde uložit.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118272
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosim kontrolu - zlobí mě ntb

#10 Příspěvek od Rudy »

To je divné. Přes přík. řádek spusťte kontrolu systémových souborů. Napište do přík. řádku:
sfc /scannow
a odentrujte. Proběhne sken a příp., oprava systémových souborů. Po té znovu vyzkoušejte možnosti, které do teď nefungují.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#11 Příspěvek od denda79 »

"uložit", "uložit jako" nic nedělá. Asi tomu brání totéž co mi nedovolí otevřít veškere složky na ploše. No vlastně co mi nedovolí dělat nic krom FF. Scan se dělá.
40 %

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#12 Příspěvek od denda79 »

stale nefunguje

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15215
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: prosim kontrolu - zlobí mě ntb

#13 Příspěvek od JaRon »

ahoj,
jednorazovo zaskocim:
mas tam zasa nejake chyby na disku
spust s prikazoveho riadku spusteneho ako spravca
chkdsk /r
restart PC
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

denda79
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 165
Registrován: 30 zář 2011 22:17

Re: prosim kontrolu - zlobí mě ntb

#14 Příspěvek od denda79 »

:( :( vše mám zavřené


C:\Windows\system32>chkdsk /r
The type of the file system is NTFS.
Cannot lock current drive.

Chkdsk cannot run because the volume is in use by another
process. Would you like to schedule this volume to be
checked the next time the system restarts? (Y/N)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15215
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: prosim kontrolu - zlobí mě ntb

#15 Příspěvek od JaRon »

to je OK
das Y
a po restarte prebehne kontrola/oprava disku
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět