modra obrazovka
Napsal: 18 črc 2022 14:59
zdravím,
mal som 3 modre obrazovky ale sw charakteru tak davam log....adwcleaner nenašiel nič
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-07-2022
Ran by igorv (administrator) on DESKTOP-PB3B57S (TOSHIBA Satellite L650) (18-07-2022 15:46:02)
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Platform: Microsoft Windows 10 Home Version 21H2 19044.1806 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {88A540CD-2C1E-4FE7-AA40-6E65804AAEF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
Task: {B79AC332-43A0-4D46-843A-6E13CC9E1144} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C180CDF6-AFC3-4EBE-A49F-05F61C54ABE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CFC1C532-803A-4DF1-912C-3702CFC8C0B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E4F7B016-E868-4C40-8C61-FBE00DD8D511} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F11F7771-075F-465A-BE09-FAB94F6837E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{1b830fbc-5f0e-4a85-a095-15d1aeb2d45b}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{51c6d505-061d-4317-a9d7-261d3a583a3e}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge DefaultProfile: Profile 4
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4 [2022-07-18]
Edge HomePage: Profile 4 -> hxxp://www.google.sk/
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\DSDFunctionKeyCtlService.exe [689888 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDSettingService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\dynabookSystemService.exe [44786376 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TOSTABSYSSVC.exe [298192 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\RMService.exe [447296 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 googledrivefs3758; C:\Windows\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [49120 2021-11-17] (Dynabook Inc. -> Dynabook Inc.)
R1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TosSrvCtlDrv.sys [26816 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46656 2021-11-18] (Dynabook Inc. -> Dynabook Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-07-18 15:46 - 2022-07-18 15:47 - 000008571 _____ C:\Users\igorv\Downloads\FRST.txt
2022-07-18 15:45 - 2022-07-18 15:47 - 000000000 ____D C:\FRST
2022-07-18 15:44 - 2022-07-18 15:44 - 002369536 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2022-07-18 15:44 - 2022-07-18 15:44 - 000000000 _____ C:\Users\igorv\Downloads\Nepotvrdené 109594.crdownload
2022-07-18 12:48 - 2022-07-18 12:49 - 001218860 _____ C:\Windows\Minidump\071822-43953-01.dmp
2022-07-14 15:30 - 2022-07-14 15:30 - 000000000 ____D C:\Users\igorv\AppData\LocalLow\Temp
2022-07-11 19:25 - 2022-07-11 19:25 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Adobe
2022-07-06 21:33 - 2022-07-06 21:33 - 000000112 ___SH C:\bootTel.dat
2022-07-06 21:32 - 2022-07-06 21:32 - 000000000 __SHD C:\found.000
2022-07-06 09:58 - 2022-07-06 10:03 - 000980124 _____ C:\Windows\Minidump\070622-45812-01.dmp
2022-07-04 15:36 - 2022-07-18 12:49 - 000000000 ____D C:\Windows\Minidump
2022-07-04 15:36 - 2022-07-18 12:48 - 615517156 _____ C:\Windows\MEMORY.DMP
2022-07-04 15:36 - 2022-07-04 15:40 - 001002372 _____ C:\Windows\Minidump\070422-35859-01.dmp
2022-07-02 09:39 - 2022-07-02 09:39 - 000693248 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000018944 _____ C:\Windows\SysWOW64\WsdProviderUtil.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000270848 _____ C:\Windows\system32\EsclScan.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000152064 _____ C:\Windows\system32\EsclProtocol.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000011801 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-07-02 09:37 - 2022-07-02 09:37 - 000061952 _____ C:\Windows\system32\printticketvalidation.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000057344 _____ C:\Windows\system32\APMonUI.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000024576 _____ C:\Windows\system32\WsdProviderUtil.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000640512 _____ C:\Windows\system32\SettingSyncDownloadHelper.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-07-02 09:06 - 2022-07-02 09:06 - 000000000 ___HD C:\$WinREAgent
2022-06-23 19:11 - 2022-06-23 19:11 - 000104448 _____ C:\Windows\system32\nettraceex.dll
2022-06-23 19:10 - 2022-06-23 19:10 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-06-23 19:08 - 2022-06-23 19:08 - 000232288 _____ C:\Windows\system32\containerdevicemanagement.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-07-18 14:47 - 2022-03-09 11:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-07-18 13:48 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-18 13:18 - 2022-03-09 11:52 - 000000000 ____D C:\Users\igorv
2022-07-18 12:48 - 2022-03-09 11:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-07-18 12:48 - 2020-02-21 12:41 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-16 12:21 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-07-15 23:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-15 19:25 - 2022-03-09 11:22 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-15 10:13 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-07-14 08:59 - 2022-03-09 11:20 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-14 08:59 - 2022-03-09 11:20 - 000003508 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-10 14:38 - 2022-03-09 16:05 - 000003446 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-07-10 14:38 - 2022-03-09 16:05 - 000003222 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-07-10 13:41 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2022-07-10 12:50 - 2022-03-09 11:55 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2022-07-09 12:18 - 2022-03-09 12:16 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2022-07-06 21:00 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI
2022-07-02 10:17 - 2022-03-09 11:49 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2022-07-02 10:11 - 2022-03-09 11:17 - 000258088 _____ C:\Windows\system32\FNTCACHE.DAT
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-07-02 10:02 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-07-02 09:36 - 2022-03-09 11:21 - 003010048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-06-24 14:57 - 2022-03-09 11:56 - 000000000 ____D C:\ProgramData\Packages
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-23 19:44 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-23 18:20 - 2022-03-09 14:02 - 000000000 ____D C:\Windows\system32\MRT
2022-06-23 18:17 - 2022-03-09 14:02 - 145918784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-06-23 09:23 - 2022-03-09 11:18 - 000000000 ____D C:\Windows\system32\Drivers\wd
==================== Files in the root of some directories ========
2022-03-09 12:38 - 2022-03-09 12:38 - 000007602 _____ () C:\Users\igorv\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
mal som 3 modre obrazovky ale sw charakteru tak davam log....adwcleaner nenašiel nič
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-07-2022
Ran by igorv (administrator) on DESKTOP-PB3B57S (TOSHIBA Satellite L650) (18-07-2022 15:46:02)
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Platform: Microsoft Windows 10 Home Version 21H2 19044.1806 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCopyAccelerator.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\59.0.3.0\crashpad_handler.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\59.0.3.0\GoogleDriveFS.exe [55420816 2022-06-08] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {88A540CD-2C1E-4FE7-AA40-6E65804AAEF1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
Task: {B79AC332-43A0-4D46-843A-6E13CC9E1144} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C180CDF6-AFC3-4EBE-A49F-05F61C54ABE8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CFC1C532-803A-4DF1-912C-3702CFC8C0B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E4F7B016-E868-4C40-8C61-FBE00DD8D511} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MpCmdRun.exe [993008 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F11F7771-075F-465A-BE09-FAB94F6837E7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2022-03-09] (Google Inc -> Google Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{1b830fbc-5f0e-4a85-a095-15d1aeb2d45b}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{51c6d505-061d-4317-a9d7-261d3a583a3e}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge DefaultProfile: Profile 4
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4 [2022-07-18]
Edge HomePage: Profile 4 -> hxxp://www.google.sk/
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\DSDFunctionKeyCtlService.exe [689888 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDSettingService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\dynabookSystemService.exe [44786376 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TOSTABSYSSVC.exe [298192 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S3 TSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\RMService.exe [447296 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-23] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 googledrivefs3758; C:\Windows\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [49120 2021-11-17] (Dynabook Inc. -> Dynabook Inc.)
R1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TosSrvCtlDrv.sys [26816 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
R0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46656 2021-11-18] (Dynabook Inc. -> Dynabook Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49576 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [452856 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-23] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-07-18 15:46 - 2022-07-18 15:47 - 000008571 _____ C:\Users\igorv\Downloads\FRST.txt
2022-07-18 15:45 - 2022-07-18 15:47 - 000000000 ____D C:\FRST
2022-07-18 15:44 - 2022-07-18 15:44 - 002369536 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2022-07-18 15:44 - 2022-07-18 15:44 - 000000000 _____ C:\Users\igorv\Downloads\Nepotvrdené 109594.crdownload
2022-07-18 12:48 - 2022-07-18 12:49 - 001218860 _____ C:\Windows\Minidump\071822-43953-01.dmp
2022-07-14 15:30 - 2022-07-14 15:30 - 000000000 ____D C:\Users\igorv\AppData\LocalLow\Temp
2022-07-11 19:25 - 2022-07-11 19:25 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Adobe
2022-07-06 21:33 - 2022-07-06 21:33 - 000000112 ___SH C:\bootTel.dat
2022-07-06 21:32 - 2022-07-06 21:32 - 000000000 __SHD C:\found.000
2022-07-06 09:58 - 2022-07-06 10:03 - 000980124 _____ C:\Windows\Minidump\070622-45812-01.dmp
2022-07-04 15:36 - 2022-07-18 12:49 - 000000000 ____D C:\Windows\Minidump
2022-07-04 15:36 - 2022-07-18 12:48 - 615517156 _____ C:\Windows\MEMORY.DMP
2022-07-04 15:36 - 2022-07-04 15:40 - 001002372 _____ C:\Windows\Minidump\070422-35859-01.dmp
2022-07-02 09:39 - 2022-07-02 09:39 - 000693248 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mode.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000018944 _____ C:\Windows\SysWOW64\WsdProviderUtil.dll
2022-07-02 09:39 - 2022-07-02 09:39 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tree.com
2022-07-02 09:39 - 2022-07-02 09:39 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000270848 _____ C:\Windows\system32\EsclScan.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000152064 _____ C:\Windows\system32\EsclProtocol.dll
2022-07-02 09:38 - 2022-07-02 09:38 - 000033280 _____ (Microsoft Corporation) C:\Windows\system32\mode.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\tree.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000014848 _____ (Microsoft Corporation) C:\Windows\system32\chcp.com
2022-07-02 09:38 - 2022-07-02 09:38 - 000011801 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-07-02 09:37 - 2022-07-02 09:37 - 000061952 _____ C:\Windows\system32\printticketvalidation.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000057344 _____ C:\Windows\system32\APMonUI.dll
2022-07-02 09:37 - 2022-07-02 09:37 - 000024576 _____ C:\Windows\system32\WsdProviderUtil.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000640512 _____ C:\Windows\system32\SettingSyncDownloadHelper.dll
2022-07-02 09:36 - 2022-07-02 09:36 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-07-02 09:06 - 2022-07-02 09:06 - 000000000 ___HD C:\$WinREAgent
2022-06-23 19:11 - 2022-06-23 19:11 - 000104448 _____ C:\Windows\system32\nettraceex.dll
2022-06-23 19:10 - 2022-06-23 19:10 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-06-23 19:08 - 2022-06-23 19:08 - 000232288 _____ C:\Windows\system32\containerdevicemanagement.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-07-18 14:47 - 2022-03-09 11:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-07-18 13:48 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-07-18 13:18 - 2022-03-09 11:52 - 000000000 ____D C:\Users\igorv
2022-07-18 12:48 - 2022-03-09 11:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-07-18 12:48 - 2020-02-21 12:41 - 000008192 ___SH C:\DumpStack.log.tmp
2022-07-16 12:21 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2022-07-15 23:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-07-15 19:25 - 2022-03-09 11:22 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-15 10:13 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2022-07-14 08:59 - 2022-03-09 11:20 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-07-14 08:59 - 2022-03-09 11:20 - 000003508 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-07-10 14:38 - 2022-03-09 16:05 - 000003446 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-07-10 14:38 - 2022-03-09 16:05 - 000003222 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-07-10 13:41 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2022-07-10 12:50 - 2022-03-09 11:55 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2022-07-09 12:18 - 2022-03-09 12:16 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2022-07-06 21:00 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI
2022-07-02 10:17 - 2022-03-09 11:49 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2022-07-02 10:11 - 2022-03-09 11:17 - 000258088 _____ C:\Windows\system32\FNTCACHE.DAT
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2022-07-02 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2022-07-02 10:02 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2022-07-02 09:36 - 2022-03-09 11:21 - 003010048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-06-24 14:57 - 2022-03-09 11:56 - 000000000 ____D C:\ProgramData\Packages
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2022-06-23 19:44 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2022-06-23 19:44 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2022-06-23 18:20 - 2022-03-09 14:02 - 000000000 ____D C:\Windows\system32\MRT
2022-06-23 18:17 - 2022-03-09 14:02 - 145918784 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-06-23 09:23 - 2022-03-09 11:18 - 000000000 ____D C:\Windows\system32\Drivers\wd
==================== Files in the root of some directories ========
2022-03-09 12:38 - 2022-03-09 12:38 - 000007602 _____ () C:\Users\igorv\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================