Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#1 Příspěvek od paulus33 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-12-2022
Ran by kresc (01-01-2023 20:00:42)
Running from C:\Users\kresc\OneDrive\Počítač
Microsoft Windows 11 Pro Version 22H2 22621.963 (X64) (2023-01-02 03:14:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3557936112-2665342190-1977484762-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3557936112-2665342190-1977484762-503 - Limited - Disabled)
Guest (S-1-5-21-3557936112-2665342190-1977484762-501 - Limited - Disabled)
kresc (S-1-5-21-3557936112-2665342190-1977484762-1001 - Administrator - Enabled) => C:\Users\kresc
WDAGUtilityAccount (S-1-5-21-3557936112-2665342190-1977484762-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.54.1 - Asmedia Technology)
Dell Command | Update for Windows 10 (HKLM\...\{5669AB71-1302-4412-8DA1-CB69CD7B7324}) (Version: 3.0.1 - Dell, Inc.)
Dell ControlVault Host Components Installer 64 bit (HKLM\...\{AB1994E3-6CF8-4414-B51D-C54E5FD36520}) (Version: 4.9.24.58 - Broadcom Limited)
Dell Digital Delivery Services (HKLM-x32\...\{8D1CFB63-E958-4A5C-8BBC-A5F5DF4ED32F}) (Version: 4.0.36.0 - Dell Inc.)
Dell Power Manager Service (HKLM\...\{18469ED8-8C36-4CF7-BD43-0FC9B1931AF8}) (Version: 3.2.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{45FD01F4-B11B-4A58-B465-1D600B5CDF64}) (Version: 3.2.0.90 - Dell Inc.)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 10.3201.101.216 - ALPSALPINE CO., LTD.)
Ethertronics Active Steering Antenna (HKLM\...\Etactista) (Version: 1.3.249.2 - Ethertronics)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 108.0.5359.125 - Google LLC)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.3.10205.4743 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{0BA3357E-D7F4-4C56-9758-626DCEAF0DB7}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1846.12.0.1177 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{881CC91B-7C6D-4313-B4DD-AACC5DD109AB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{D343BBFF-5BA6-4384-85AE-73A85CE6EEFF}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C94935E8-0FD2-423C-843E-604CB8EE50BA}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6472 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{0421117F-9659-4C9F-84AC-88FE070C18C7}) (Version: 17.0.2.1076 - Intel Corporation) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.0.2.1076 - Intel Corporation)
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{99ee3c29-c7cd-450f-8db9-d43cc49de1c7}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00001060-0200-1033-84C8-B8D95FA3C8C3}) (Version: 20.60.1 - Intel Corporation)
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{ACA5CFAC-9E99-4764-A7AD-AF5CF3FA15BF}) (Version: 17.0.2.1076 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{868cd517-bf05-4b62-b4d1-149a3c7b7aa2}) (Version: 20.100.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{60841871-21AB-4E7D-8AE6-D6154CDC5C2A}) (Version: 20.100.0.2492 - Intel Corporation) Hidden
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.7.13058.0 - Waves Audio Ltd.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 108.0.1462.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 108.0.1462.54 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\OneDriveSetup.exe) (Version: 22.238.1114.0002 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{85215604-B585-40C5-A042-4DC431211C4E}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{5C87ABB6-9964-4D50-A905-3F56B765B336}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 x64 Additional Runtime - 14.11.25325 (HKLM\...\{B13B3E11-1555-353F-A63A-8933EE104FBD}) (Version: 14.11.25325 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.11.25325 (HKLM\...\{B0037450-526D-3448-A370-CACBD87769A0}) (Version: 14.11.25325 - Microsoft Corporation) Hidden
MiniTool Partition Wizard Free 12.7 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 12.7 - MiniTool Software Limited)
MiniTool ShadowMaker PW Edition (HKLM-x32\...\MT-75D7C412-925B-4AD0-90DC-5E4FEE22EAE1_is1) (Version: 4.0 - MiniTool Software Limited)
Realtek Audio COM Components (HKLM-x32\...\{2355B503-9B11-4449-861D-1C1748B26320}) (Version: 1.0.2 - Realtek Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21300 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9107.1 - Realtek Semiconductor Corp.)
Realtek PC Camera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.17763.20082 - Realtek Semiconductor Corp.)
Realtek USB Audio (HKLM-x32\...\{0A46A65D-89AC-464C-8026-3CD44960BD04}) (Version: 6.3.9600.202 - Realtek Semiconductor Corp.)
Thunderbolt™ Software (HKLM-x32\...\{30F0067F-DD79-431B-BA5F-6CB4897785A5}) (Version: 17.4.79.510 - Intel Corporation)

Packages:
=========
Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_2.2.8.0_neutral__yxz26nhyzhsrt [2023-01-01] (Microsoft Corp.)
Dell Command | Update -> C:\Program Files\WindowsApps\DellInc.DellCommandUpdate_4.6.43.0_x86__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell Power Manager -> C:\Program Files\WindowsApps\DellInc.DellPowerManager_3.10.10.0_x64__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\dellinc.dellsupportassistforpcs_3.13.5.0_x64__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell Touchpad Assistant -> C:\Program Files\WindowsApps\c1e561a0.delltouchpadassistant_1.1.9.0_x64__ay1pycd334gd6 [2023-01-01] (ALPS Comm. Devices Tech. (SH) Co., Ltd)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-01-01] (INTEL CORP)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2023-01-01] (LinkedIn)
ms-resource:Appname -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.2.3000.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.50901.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.1.30391.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppxManifest_DisplayName -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2023-01-01] (Microsoft Corporation)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4232.0_x64__8j3eq9eme6ctt [2023-01-01] (INTEL CORP) [Startup Task]
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Studios) [MS Ad]
Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2023-01-02] (Microsoft Windows)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3557936112-2665342190-1977484762-1001_Classes\CLSID\{a9872fee-5a55-4ecb-9b0f-b06fedcf14d1}\localserver32 -> C:\Program Files\Waves\MaxxAudio\MaxxAudioPro.exe (Waves Inc -> Waves Audio Ltd)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_b31ddd6f2a24807e\OptaneShellExt.dll [2021-02-09] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_b31ddd6f2a24807e\OptaneShellExt.dll [2021-02-09] (Intel(R) Rapid Storage Technology -> )

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-03-21 02:02 - 2019-03-21 02:02 - 000018432 _____ () [File not signed] c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.HSA.Server.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000083968 _____ () [File not signed] C:\Program Files\MiniTool ShadowMaker\coresync.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000159744 _____ (Chengdu Speed Digital Technology Co..Ltd.) [File not signed] C:\Program Files\MiniTool ShadowMaker\FileInfoCommon.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000067584 _____ (Chengdu Speed Digital Technology Co..Ltd.) [File not signed] C:\Program Files\MiniTool ShadowMaker\ChannelNetFileInfo.dll
2023-01-01 19:45 - 2022-07-03 07:34 - 002126848 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\MiniTool ShadowMaker\LIBEAY32.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 001267200 _____ (TODO: <Company name>) [File not signed] C:\Program Files\MiniTool ShadowMaker\core7z.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 08:31 - 2018-09-15 08:31 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\kresc\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A0E3E2F2-3591-4672-AD5B-D0C1D3DFF2B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C321800A-A8FB-4E56-A81F-5C3E2BCB7841}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FD60D839-1043-4231-A252-9A8C5F03C64C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{73A35141-2AE1-479B-BF90-FA1D443B6F3A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5E181BF1-5300-493B-BD55-B60A84750FC2}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4D9ABD14-4B60-4241-88A1-25960527ABD7}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6BD8E47B-42F2-42C1-BB9B-1BA2E39B17B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16040.10730.20103.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [{FBFF027B-FBBB-4BE3-B1E6-457B8A5A74D2}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\108.0.1462.54\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8880E5DC-BBAF-45AD-8809-A8795A91C752}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{B5BC6839-5F2C-40A0-819F-C932FC53F249}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> )
FirewallRules: [{6BD4772A-9FDE-472D-92B8-23548993A8B9}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> )

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:104.88 GB) (Free:75.24 GB) (72%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (01/01/2023 07:27:59 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1017) (User: NT AUTHORITY)
Description: Disabled performance counter data collection from the "Lsa" service because the performance counter library for that service has generated one or more errors. The errors that forced this action have been written to the application event log. Correct the errors before enabling the performance counters for this service.

Error: (01/01/2023 07:27:59 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1005) (User: NT AUTHORITY)
Description: The attempt to locate the Open procedure "OpenLsaPerformanceData" in DLL "C:\Windows\System32\Secur32.dll" for the "Lsa" service failed with Win32 error code 127. Performance data for this service will not be available.

Error: (01/01/2023 07:26:41 PM) (Source: ESENT) (EventID: 522) (User: )
Description: StartMenuExperienceHost (6380,P,98) TILEREPOSITORYS-1-5-21-3557936112-2665342190-1977484762-1001: An attempt to open the device with name "\\.\C:" containing "C:\" failed with system error 5 (0x00000005): "Access is denied. ". The operation will fail with error -1032 (0xfffffbf8).

Error: (01/01/2023 07:26:32 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[ at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="3QBX0X2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.26.0" SMBIOSPresent="True" Rel_Date="20220609000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Latitude 7490" Ident_Num="DELL" TimeZone="(UTC+01:00) Belehrad, Bratislava, Budapešť, Ľubľana, Praha" OSName="Microsoft Windows 11 Pro"/><Method>ValidateServerCertificate</Method><HostIP>192.168.1.152</HostIP></Exception>

Error: (01/01/2023 07:24:49 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[ at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="3QBX0X2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.26.0" SMBIOSPresent="True" Rel_Date="20220609000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Latitude 7490" Ident_Num="DELL" TimeZone="(UTC+01:00) Belehrad, Bratislava, Budapešť, Ľubľana, Praha" OSName="Microsoft Windows 11 Pro"/><Method>ValidateServerCertificate</Method><HostIP>192.168.1.152</HostIP></Exception>

Error: (01/02/2023 04:18:56 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x80072EE7
Command-line arguments:
RuleId=3482d82e-ca2c-4e1f-8864-da0267b484b2;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=bd3762d7-270d-4760-8fb3-d829ca45278a;NotificationInterval=1440;Trigger=TimerEvent

Error: (01/02/2023 04:18:55 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Acquisition of End User License failed. hr=0x80072EE7
Sku Id=bd3762d7-270d-4760-8fb3-d829ca45278a

Error: (01/02/2023 04:18:55 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EE7


System errors:
=============
Error: (01/01/2023 08:00:45 PM) (Source: Microsoft-Windows-SCPNP) (EventID: 1000) (User: NT AUTHORITY)
Description: Nepodarilo sa načítať identifikáciu zariadenia pre kartu Smart Card v zariadení na čítanie kariet Broadcom Corp Contactless SmartCard 0. Návratový kód je 2148532255.

Error: (01/01/2023 07:46:20 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba MTSchedulerService je označená ako interaktívna služba. Systém je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne nebude pracovať správne.

Error: (01/01/2023 07:46:20 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba MTAgentService je označená ako interaktívna služba. Systém je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne nebude pracovať správne.

Error: (01/01/2023 07:28:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Nal Service zlyhalo kvôli nasledujúcej chybe:
A certificate was explicitly revoked by its issuer.

Error: (01/01/2023 07:22:05 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1053" attempting to start the service edgeupdate with arguments "/comsvc" in order to run the server:
{CECDDD22-2E72-4832-9606-A9B0E5E344B2}

Error: (01/01/2023 07:22:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Edge Update Service (edgeupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.

Error: (01/01/2023 07:22:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Microsoft Edge Update Service (edgeupdate) bol dosiahnutý časový limit (30000 ms).

Error: (01/02/2023 04:14:26 AM) (Source: WinRM) (EventID: 10142) (User: )
Description: The WinRM service cannot migrate the listener with Address * and Transport HTTP. A listener that has the same Address and Transport configuration already exists.


CodeIntegrity:
===============
Date: 2023-01-01 19:30:16
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-01-01 19:28:21
Description:
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}).

Date: 2023-01-01 19:28:21
Description:
The driver \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys is blocked from loading as the driver has been revoked by Microsoft.


==================== Memory info ===========================

BIOS: Dell Inc. 1.26.0 06/09/2022
Motherboard: Dell Inc. 0XNW4K
Processor: Intel(R) Core(TM) i5-8350U CPU @ 1.70GHz
Percentage of memory in use: 36%
Total physical RAM: 16262.24 MB
Available physical RAM: 10297.29 MB
Total Virtual: 19206.24 MB
Available Virtual: 12918.89 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:104.88 GB) (Free:75.24 GB) (Model: Micron 2200 NVMe 256GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:131.83 GB) (Free:131.74 GB) (Model: Micron 2200 NVMe 256GB) NTFS

\\?\Volume{486576a0-0ebf-4d6f-a735-318dc846cb7d}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.11 GB) NTFS
\\?\Volume{78ebd612-f4ee-4a4c-80c1-12cb058c335b}\ (ESP) (Fixed) (Total:0.66 GB) (Free:0.61 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 7537897D)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#2 Příspěvek od Rudy »

Zdravím!
Totgo je pouze log Additional. Ještě potřebuji vidět log FRST. Je v souboru frst.txt v C:\Users\kresc\OneDrive\Počítač. Děkuji.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#3 Příspěvek od paulus33 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-12-2022
Ran by kresc (administrator) on DELL (Dell Inc. Latitude 7490) (01-01-2023 19:59:06)
Running from C:\Users\kresc\OneDrive\Počítač
Loaded Profiles: kresc
Platform: Microsoft Windows 11 Pro Version 22H2 22621.963 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe ->) (PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\pcdrwi.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\108.0.1462.54\msedgewebview2.exe <12>
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <14>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_6c1db4160fc7f113\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_9c788f1d162b1224\RstMwService.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe
(services.exe ->) (MiniTool Software Limited -> ) C:\Program Files\MiniTool ShadowMaker\AgentService.exe
(services.exe ->) (MiniTool Software Limited -> ) C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe
(services.exe ->) (PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kresc\AppData\Local\Microsoft\OneDrive\22.238.1114.0002\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\microsoftwindows.client.webexperience_422.33900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102816 2021-01-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618096 2021-01-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1236688 2020-12-04] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319544 2019-01-10] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [MTPW] => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\Run: [MicrosoftEdgeAutoLaunch_DF609C48B8C2548FD192AD3D0E473E2A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3879848 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\kresc\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" (No File)
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\kresc\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\108.0.5359.125\Installer\chrmstp.exe [2023-01-01] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00918502-7AB6-4656-AD45-10BAEA8DA38E} - System32\Tasks\Intel\Intel® Management and Security Status => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [857176 2018-11-16] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc
Task: {1BA9C9F5-DD28-4CA5-9C00-9B3541618E74} - System32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {6FDF981B-302B-43ED-9FFE-D0108A3D3353} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {84DD1152-9510-4729-B58E-DB65A08AE0E8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService
Task: {86D92FDC-1216-431F-9DCD-60292B38BF59} - System32\Tasks\MiniTool ShadowMaker => C:\Program Files\MiniTool ShadowMaker\SMMonitor.exe [1032512 2022-12-15] (MiniTool Software Limited -> )
Task: {AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6} - System32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {B62F4E7F-929D-49FE-A574-1998BE0DE18E} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {C75EB50A-8650-4C68-B3F2-4BDA9A059A4B} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {CB9D8AB7-8FEE-43FC-A96A-6E7A6FF3CB87} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (No File)
Task: {EB389587-6DF1-4CA8-9B72-D7739F566B3A} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
Task: {ECDDE516-A14B-4929-B8FA-EEF569F751E4} - System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI => C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [94208 2023-01-01] (Microsoft Windows -> )
Task: {FDECA8AF-0FA4-4FDE-95AB-67E4F4C66BFE} - System32\Tasks\MiniToolPartitionWizard => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b7e729b0-baf0-4415-b7c1-8c57586e8028}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\kresc\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-01]

Chrome:
=======
CHR Profile: C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default [2023-01-01]
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-01]
CHR Extension: (IE Tab) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2023-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-01-01]
CHR Extension: (ImTranslator: Prekladač, Slovník, Služba prevodu textu na reč) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2023-01-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ApHidMonitorService; C:\WINDOWS\system32\DellTPad\HidMonitorSvc.exe [894880 2021-05-24] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
S3 dcpm-notify; C:\Program Files\Dell\CommandPowerManager\NotifyService.exe [313440 2019-01-09] (Dell Inc -> Dell Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3363824 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2019-02-28] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [38048 2019-03-21] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe [1038144 2019-06-13] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
S3 Dell.CommandPowerManager.Service; C:\Windows\system32\dllhost.exe /Processid:{C47E2BD1-8501-403C-863D-8FD21B0AAD76} [46416 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [35976 2018-11-12] (Dell Inc -> )
S2 ETActiveSteeringHelper; C:\WINDOWS\Ethertronics\ETservice.exe [389616 2017-11-26] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 hostcontrolsvc; C:\WINDOWS\System32\HostControlService.exe [824424 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\WINDOWS\System32\HostStorageService.exe [170088 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
S3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R2 MTAgentService; C:\Program Files\MiniTool ShadowMaker\AgentService.exe [731968 2022-12-15] (MiniTool Software Limited -> )
R2 MTSchedulerService; C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe [225088 2022-12-15] (MiniTool Software Limited -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [249376 2023-01-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39384 2019-03-20] (Dell Inc. -> Dell Inc.)
R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R2 ushupgradesvc; C:\WINDOWS\System32\UshUpgradeService.exe [274536 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2909208 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137552 2023-01-01] (Microsoft Windows -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ApHidfiltrService; C:\WINDOWS\System32\drivers\ApHidfiltrSW.sys [362512 2021-05-24] (WDKTestCert CHT1HTSH3180,132475688214743128 -> ALPSALPINE Co., Ltd.)
R3 bcmnfcusb; C:\WINDOWS\System32\drivers\bcmnfcusb.sys [58632 2019-12-16] (Broadcom Corporation -> Broadcom Corporation.)
R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies)
R3 ETActiveSteering; C:\WINDOWS\System32\drivers\ETActiveSteering.sys [38680 2017-11-26] (WDKTestCert norikd,131383411497448652 -> Ethertronics I2C driver for ASA)
S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [37336 2021-03-09] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> )
S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> )
R3 wbfcvusbdrv; C:\WINDOWS\System32\Drivers\wbfcvusbdrv.sys [28936 2019-12-16] (Broadcom Corporation -> Broadcom Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [48536 2022-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [438544 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [90384 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
S3 NAL; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-02 04:18 - 2023-01-01 19:27 - 000806780 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-01-02 04:16 - 2023-01-01 19:28 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-01-02 04:16 - 2023-01-01 19:28 - 000003538 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d91e577dd957d7
2023-01-02 04:14 - 2023-01-02 04:14 - 000026092 _____ C:\WINDOWS\system32\emptyregdb.dat
2023-01-02 04:14 - 2023-01-02 04:14 - 000000000 _SHDL C:\Documents and Settings
2023-01-02 04:14 - 2023-01-02 04:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2023-01-02 04:14 - 2023-01-01 19:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-01-02 04:13 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\CSC
2023-01-02 04:10 - 2023-01-02 04:13 - 000000000 ____D C:\ProgramData\Intel
2023-01-02 04:09 - 2023-01-02 04:09 - 000001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves MaxxAudioPro.lnk
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\WINDOWS\Intel
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\ProgramData\Broadcom
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\Program Files\Waves
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2023-01-02 04:09 - 2023-01-01 19:22 - 000006418 _____ C:\WINDOWS\system32\CVFirmwareUpgradeLog.txt
2023-01-02 04:08 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2023-01-02 04:08 - 2023-01-02 04:13 - 000000000 ____D C:\Program Files (x86)\Realtek
2023-01-02 04:08 - 2023-01-02 04:08 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-01-02 04:08 - 2023-01-02 04:08 - 000000000 ____D C:\WINDOWS\system32\config\BFS
2023-01-02 04:08 - 2023-01-02 04:08 - 000000000 ____D C:\Program Files\Realtek
2023-01-02 04:08 - 2023-01-01 19:23 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-01-02 04:08 - 2023-01-01 19:22 - 000012288 ___SH C:\DumpStack.log.tmp
2023-01-02 04:08 - 2023-01-01 19:21 - 000293936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-01-01 19:58 - 2023-01-01 19:59 - 000000000 ____D C:\FRST
2023-01-01 19:49 - 2023-01-01 19:49 - 000000000 ____D C:\Users\kresc\AppData\Local\VirtualStore
2023-01-01 19:47 - 2023-01-01 19:47 - 000000000 ____D C:\Users\kresc\AppData\Roaming\QtProject
2023-01-01 19:46 - 2023-01-01 19:46 - 000003074 _____ C:\WINDOWS\system32\Tasks\MiniTool ShadowMaker
2023-01-01 19:46 - 2023-01-01 19:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool ShadowMaker
2023-01-01 19:46 - 2021-03-09 18:41 - 000037336 _____ C:\WINDOWS\system32\pwdrvio.sys
2023-01-01 19:46 - 2019-11-08 10:15 - 003600896 _____ C:\WINDOWS\system32\pwNative.exe
2023-01-01 19:46 - 2019-11-08 10:15 - 000012504 _____ C:\WINDOWS\system32\pwdspio.sys
2023-01-01 19:45 - 2023-01-01 19:46 - 000000000 ____D C:\Program Files\MiniTool ShadowMaker
2023-01-01 19:45 - 2023-01-01 19:46 - 000000000 ____D C:\Program Files\MiniTool Partition Wizard 12
2023-01-01 19:45 - 2023-01-01 19:45 - 000003254 _____ C:\WINDOWS\system32\Tasks\MiniToolPartitionWizard
2023-01-01 19:45 - 2023-01-01 19:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 12
2023-01-01 19:44 - 2023-01-01 19:44 - 003253376 _____ (MiniTool Software Limited ) C:\Users\kresc\Downloads\pw1207-free-online.exe
2023-01-01 19:43 - 2023-01-01 19:43 - 000000000 ____D C:\Users\kresc\AppData\Local\Comms
2023-01-01 19:42 - 2023-01-01 19:43 - 000000000 ____D C:\Users\kresc\AppData\Local\Publishers
2023-01-01 19:42 - 2023-01-01 19:42 - 000000000 ____D C:\Users\kresc\AppData\Local\OneDrive
2023-01-01 19:33 - 2023-01-01 19:39 - 000000000 ____D C:\Program Files (x86)\Google
2023-01-01 19:33 - 2023-01-01 19:36 - 000000000 ____D C:\Users\kresc\AppData\Local\Google
2023-01-01 19:33 - 2023-01-01 19:33 - 001427176 _____ (Google LLC) C:\Users\kresc\Downloads\ChromeSetup (1).exe
2023-01-01 19:33 - 2023-01-01 19:33 - 000003534 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}
2023-01-01 19:33 - 2023-01-01 19:33 - 000003410 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}
2023-01-01 19:33 - 2023-01-01 19:33 - 000002337 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-01-01 19:33 - 2023-01-01 19:33 - 000000000 ____D C:\Program Files\Google
2023-01-01 19:32 - 2023-01-01 19:33 - 001427176 _____ (Google LLC) C:\Users\kresc\Downloads\ChromeSetup.exe
2023-01-01 19:29 - 2023-01-01 19:29 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Intel Corporation
2023-01-01 19:28 - 2023-01-01 19:29 - 000000000 ___RD C:\Users\kresc\OneDrive
2023-01-01 19:28 - 2023-01-01 19:28 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3557936112-2665342190-1977484762-1001
2023-01-01 19:28 - 2023-01-01 19:28 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3557936112-2665342190-1977484762-1001
2023-01-01 19:28 - 2023-01-01 19:28 - 000002373 _____ C:\Users\kresc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-01-01 19:28 - 2023-01-01 19:28 - 000000000 ___HD C:\OneDriveTemp
2023-01-01 19:28 - 2023-01-01 19:28 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2023-01-01 19:28 - 2017-04-14 22:45 - 000122786 _____ C:\Users\kresc\OneDrive\Documents\cc_20170414_234508.reg
2023-01-01 19:28 - 2016-10-09 16:02 - 000041632 _____ C:\Users\kresc\OneDrive\Documents\cc_20161009_170233.reg
2023-01-01 19:28 - 2016-10-09 14:41 - 000455764 _____ C:\Users\kresc\OneDrive\Documents\cc_20161009_154141.reg
2023-01-01 19:28 - 2015-04-27 14:40 - 000178288 _____ C:\Users\kresc\OneDrive\Documents\cc_20150427_154024.reg
2023-01-01 19:27 - 2023-01-01 19:27 - 000000000 ____D C:\Users\kresc\AppData\Local\PlaceholderTileLogoFolder
2023-01-01 19:26 - 2023-01-01 19:43 - 000000000 ____D C:\Users\kresc\AppData\Local\Packages
2023-01-01 19:26 - 2023-01-01 19:36 - 000000000 ____D C:\Users\kresc\AppData\Local\D3DSCache
2023-01-01 19:26 - 2023-01-01 19:27 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 __SHD C:\Users\kresc\IntelGraphicsProfiles
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Intel
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Adobe
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\LocalLow\Intel
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\Local\ConnectedDevicesPlatform
2023-01-01 19:24 - 2023-01-01 19:29 - 000000000 ____D C:\Users\kresc
2023-01-01 19:24 - 2023-01-01 19:24 - 000000020 ___SH C:\Users\kresc\ntuser.ini
2023-01-01 19:03 - 2023-01-02 04:14 - 000000000 ____D C:\WINDOWS\Panther
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\addins
2023-01-01 18:55 - 2023-01-02 04:08 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2023-01-01 18:54 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\Ethertronics
2023-01-01 18:54 - 2023-01-01 19:22 - 000000000 ____D C:\Intel
2023-01-01 18:54 - 2023-01-01 18:54 - 000000000 ____D C:\WINDOWS\Firmware
2023-01-01 18:53 - 2023-01-01 18:55 - 000000000 ____D C:\WINDOWS\system32\Intel
2023-01-01 18:53 - 2023-01-01 18:55 - 000000000 ____D C:\WINDOWS\system32\DellTPad
2023-01-01 18:53 - 2023-01-01 18:53 - 000000000 ____D C:\WINDOWS\system32\cAVS
2023-01-01 18:52 - 2023-01-01 18:52 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2023-01-01 18:32 - 2023-01-01 19:04 - 000000000 ___HD C:\$SysReset

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-02 04:20 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate
2023-01-02 04:15 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2023-01-02 04:14 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2023-01-02 04:14 - 2022-05-07 06:17 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2023-01-02 04:14 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2023-01-02 04:13 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\winrm
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\WCN
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\slmgr
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\F12
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\WaaS
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\spool
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\IME
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-01-02 04:13 - 2019-06-13 08:23 - 000000000 ____D C:\WINDOWS\{D4373260-1185-49AC-993B-A31209FBD6CC}
2023-01-02 04:13 - 2019-06-13 08:21 - 000000000 ____D C:\WINDOWS\{909EBB6A-9223-4D7C-926E-E23CE5163DFC}
2023-01-02 04:13 - 2019-06-13 08:20 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles
2023-01-02 04:13 - 2019-06-13 08:20 - 000000000 ____D C:\WINDOWS\Dell
2023-01-02 04:13 - 2019-06-13 08:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbolt™ Software
2023-01-02 04:13 - 2019-06-13 08:16 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2023-01-02 04:13 - 2019-06-13 08:16 - 000000000 ____D C:\ProgramData\Package Cache
2023-01-02 04:13 - 2019-06-13 08:15 - 000000000 ____D C:\ProgramData\SupportAssist
2023-01-02 04:13 - 2019-06-13 08:11 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2023-01-02 04:13 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files (x86)\Intel
2023-01-02 04:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2023-01-02 04:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2023-01-02 04:12 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2023-01-02 04:12 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\System
2023-01-02 04:12 - 2019-06-13 09:00 - 000000000 ____D C:\backup
2023-01-02 04:12 - 2019-06-13 08:23 - 000000000 ____D C:\Program Files (x86)\Dell
2023-01-02 04:12 - 2019-06-13 08:16 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-01-02 04:12 - 2019-06-13 08:15 - 000000000 ____D C:\Program Files\Dell
2023-01-02 04:12 - 2019-06-13 08:15 - 000000000 ____D C:\Program Files (x86)\ASM104xUSB3
2023-01-02 04:12 - 2019-06-13 08:12 - 000000000 ____D C:\langpacks
2023-01-02 04:12 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files\Common Files\Intel Corporation
2023-01-02 04:12 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files\Common Files\Intel
2023-01-02 04:12 - 2019-06-13 08:06 - 000000000 ____D C:\Program Files\Intel
2023-01-02 04:12 - 2019-06-13 08:03 - 000000000 __SHD C:\IntelOptaneData
2023-01-02 04:12 - 2018-09-19 16:55 - 000000000 ____D C:\Dell
2023-01-02 04:12 - 2018-09-15 08:33 - 000000000 ____D C:\Program Files\Windows Security
2023-01-02 04:08 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\appcompat
2023-01-01 19:58 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF
2023-01-01 19:46 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-01-01 19:44 - 2019-06-13 08:20 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2023-01-01 19:43 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
2023-01-01 19:43 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-01-01 19:43 - 2019-06-13 08:28 - 000000000 ____D C:\ProgramData\Packages
2023-01-01 19:42 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\PrintDialog
2023-01-01 19:41 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\servicing
2023-01-01 19:41 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-01-01 19:40 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-01-01 19:28 - 2019-06-13 08:16 - 000000000 ____D C:\ProgramData\Dell
2023-01-01 19:28 - 2019-06-13 08:15 - 000000000 ____D C:\ProgramData\PCDr
2023-01-01 19:26 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-01-01 19:24 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Registration
2023-01-01 19:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState
2023-01-01 19:22 - 2022-05-07 06:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-01-01 19:03 - 2022-05-07 06:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2023-01-01 19:02 - 2022-05-07 11:42 - 000000000 ___SD C:\WINDOWS\system32\AppV
2023-01-01 19:02 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-01-01 19:02 - 2022-05-07 06:25 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2023-01-01 19:02 - 2022-05-07 06:25 - 000076800 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000118784 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\UNP
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemApps
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Provisioning
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Globalization
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-01-01 18:57 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\OCR
2023-01-01 18:56 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-01-01 18:56 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files (x86)\Windows Defender

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#4 Příspěvek od Rudy »

OK. Teď spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#5 Příspěvek od paulus33 »

Malwarebytes
www.malwarebytes.com

-Podrobnosti denníka-
Dátum skenovania: 1. 1. 2023
Čas skenovania: 22:18
Súbor denníka: e60ee4e8-8a19-11ed-af76-8c04ba060002.json

-Údaje o softvéri-
Verzia: 4.5.19.229
Verzia súčastí: 1.0.1860
Aktualizovať verziu balíka: 1.0.64124
Licencia: Skúšobná verzia

-Systémové informácie-
OS: Windows 11 (Build 22621.963)
Procesor: x64
Systém súborov: NTFS
Používateľ: DELL\kresc

-Zhrnutie skenovania-
Typ skenovania: Vyhľadávanie hrozieb
Skenovanie bolo spustené: Manuálne
Výsledok: Dokončené
Preskenované objekty: 262273
Zistené hrozby: 13
Hrozby umiestnené do karantény: 13
Uplynulý čas: 1 min, 55 s

-Možnosti skenovania-
Pamäť: Povolené
Spúšťanie: Povolené
Systém súborov: Povolené
Archívy: Povolené
Rootkity: Zakázané
Heuristika: Povolené
PUP: Zistiť
PUM: Zistiť

-Podrobnosti skenovania-
Proces: 0
(Nezistili sa nijaké škodlivé položky)

Modul: 0
(Nezistili sa nijaké škodlivé položky)

Kľúč databázy Registry: 0
(Nezistili sa nijaké škodlivé položky)

Hodnota databázy Registry: 0
(Nezistili sa nijaké škodlivé položky)

Údaje databázy Registry: 0
(Nezistili sa nijaké škodlivé položky)

Prúd údajov: 0
(Nezistili sa nijaké škodlivé položky)

Priečinok: 2
PUP.Optional.ASK, C:\USERS\KRESC\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Umiestené do karantény, 241, 454827, , , , , ,
PUP.Optional.ASK, C:\USERS\KRESC\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Sync Data\LevelDB, Umiestené do karantény, 241, 454827, , , , , ,

Súbor: 11
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000005.ldb, Umiestené do karantény, 241, 454827, , , , , B458FC30A12C1DD5CFD9D49B261B0ECD, 43523CDFCD70429195F33ADCEB601DC8761FFCCB62B770F9E3798B93957BD29E
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000008.ldb, Umiestené do karantény, 241, 454827, , , , , 524DB2D72400F4D12988C5BD8D1AE381, 593146F160EC8163BB067FCA122440A6439B6C20590621557411EB17A39AA07E
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000010.log, Umiestené do karantény, 241, 454827, , , , , FBCC6A176204E60ABF7DB7CE8B4D7A90, C9502E23C4440ADC7CC4179A6A5BA427A84092A29A56D31C0DB96372AF093A7B
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\000011.ldb, Umiestené do karantény, 241, 454827, , , , , 41AC1BA2CE645EE3733F066656B948EB, E0E4E7CEB4BF1FE8FC31BC3C408F68BD5463835060D20E951C4944E7D980999B
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\CURRENT, Umiestené do karantény, 241, 454827, , , , , 46295CAC801E5D4857D09837238A6394, 0F1BAD70C7BD1E0A69562853EC529355462FCD0423263A3D39D6D0D70B780443
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOCK, Umiestené do karantény, 241, 454827, , , , , ,
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG, Umiestené do karantény, 241, 454827, , , , , 4F4F85AA7688B863596803EEF1FA7B16, 230BE8DC31334385F7CA37BAD80E24205F5F180120154F60725681F599B94C65
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\LOG.old, Umiestené do karantény, 241, 454827, , , , , 4C5A7F97CD4EC40B64107ADD35C3B776, 5AAF82BD068ABA265EE325C510661A427089461FCB1423EB3D46F45DFC1189D3
PUP.Optional.ASK, C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Sync Data\LevelDB\MANIFEST-000001, Umiestené do karantény, 241, 454827, , , , , F08B81B3D2F04E559AEE7CD158FABCA2, A8B4D47C225FBB1B50E431F628C7401DB54579D298E16122EBE0FED7E75DE564
PUP.Optional.ASK, C:\USERS\KRESC\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Nahradené, 241, 454827, 1.0.64124, , ame, , 4585A0E5AEAD57B94B95B10AAF2563B0, 122242F4A698D436E7ABDC8EE5F676C2E7ECA41E6F23B44B4A9E822D1380633C
PUP.Optional.ASK, C:\USERS\KRESC\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Nahradené, 241, 454827, 1.0.64124, , ame, , 4585A0E5AEAD57B94B95B10AAF2563B0, 122242F4A698D436E7ABDC8EE5F676C2E7ECA41E6F23B44B4A9E822D1380633C

Fyzický sektor: 0
(Nezistili sa nijaké škodlivé položky)

WMI: 0
(Nezistili sa nijaké škodlivé položky)


(end)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#6 Příspěvek od Rudy »

Dejte nové logy FRST+Addititon.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#7 Příspěvek od paulus33 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-12-2022
Ran by kresc (administrator) on DELL (Dell Inc. Latitude 7490) (02-01-2023 10:58:23)
Running from C:\Users\kresc\OneDrive\Počítač
Loaded Profiles: kresc
Platform: Microsoft Windows 11 Pro Version 22H2 22621.963 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe
(C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe ->) (PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\pcdrwi.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\108.0.1462.54\msedgewebview2.exe <12>
(C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.381.1526.0.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(C:\Windows\UUS\amd64\wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.381.1526.0.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe
(DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe
(DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe
(DellTPad\HidMonitorSvc.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(MiniTool Software Limited -> ) C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe
(services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe
(services.exe ->) (Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(services.exe ->) (Dell Inc -> Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(services.exe ->) (Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_6c1db4160fc7f113\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\jhi_service.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_9c788f1d162b1224\RstMwService.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\UshUpgradeService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostControlService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation) C:\Windows\System32\HostStorageService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe
(services.exe ->) (MiniTool Software Limited -> ) C:\Program Files\MiniTool ShadowMaker\AgentService.exe
(services.exe ->) (MiniTool Software Limited -> ) C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe
(services.exe ->) (PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kresc\AppData\Local\Microsoft\OneDrive\22.238.1114.0002\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.yourphone_1.22102.229.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\wuauclt.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.898_none_6b467c06908d3d29\TiWorker.exe
(svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\microsoftwindows.client.webexperience_422.33900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
(svchost.exe ->) (Microsoft) C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteamsupdate.exe <2>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102816 2021-01-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618096 2021-01-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1236688 2020-12-04] (Waves Inc -> Waves Audio Ltd.)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319544 2019-01-10] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [MTPW] => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\Run: [MicrosoftEdgeAutoLaunch_DF609C48B8C2548FD192AD3D0E473E2A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3879848 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\108.0.5359.125\Installer\chrmstp.exe [2023-01-01] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00918502-7AB6-4656-AD45-10BAEA8DA38E} - System32\Tasks\Intel\Intel® Management and Security Status => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [857176 2018-11-16] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60
Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc
Task: {1BA9C9F5-DD28-4CA5-9C00-9B3541618E74} - System32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {6FDF981B-302B-43ED-9FFE-D0108A3D3353} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {84DD1152-9510-4729-B58E-DB65A08AE0E8} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => sc.exe start ThunderboltService
Task: {86D92FDC-1216-431F-9DCD-60292B38BF59} - System32\Tasks\MiniTool ShadowMaker => C:\Program Files\MiniTool ShadowMaker\SMMonitor.exe [1032512 2022-12-15] (MiniTool Software Limited -> )
Task: {AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6} - System32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {B62F4E7F-929D-49FE-A574-1998BE0DE18E} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {C75EB50A-8650-4C68-B3F2-4BDA9A059A4B} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {CB9D8AB7-8FEE-43FC-A96A-6E7A6FF3CB87} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (No File)
Task: {EB389587-6DF1-4CA8-9B72-D7739F566B3A} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
Task: {ECDDE516-A14B-4929-B8FA-EEF569F751E4} - System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI => C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [94208 2023-01-01] (Microsoft Windows -> )
Task: {FDECA8AF-0FA4-4FDE-95AB-67E4F4C66BFE} - System32\Tasks\MiniToolPartitionWizard => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b7e729b0-baf0-4415-b7c1-8c57586e8028}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\kresc\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-01]

Chrome:
=======
CHR Profile: C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default [2023-01-01]
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-01]
CHR Extension: (IE Tab) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2023-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-01-01]
CHR Extension: (ImTranslator: Prekladač, Slovník, Služba prevodu textu na reč) - C:\Users\kresc\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2023-01-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ApHidMonitorService; C:\WINDOWS\system32\DellTPad\HidMonitorSvc.exe [894880 2021-05-24] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.)
S3 dcpm-notify; C:\Program Files\Dell\CommandPowerManager\NotifyService.exe [313440 2019-01-09] (Dell Inc -> Dell Inc.)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [209392 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3363824 2019-02-28] (Dell Inc -> Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [218096 2019-02-28] (Dell Inc -> Dell Inc.)
R2 Dell Digital Delivery Services; c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.WinSvc.exe [38048 2019-03-21] (Dell Inc -> )
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1542\DSAPI.exe [1038144 2019-06-13] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
S3 Dell.CommandPowerManager.Service; C:\Windows\system32\dllhost.exe /Processid:{C47E2BD1-8501-403C-863D-8FD21B0AAD76} [46416 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [35976 2018-11-12] (Dell Inc -> )
S2 ETActiveSteeringHelper; C:\WINDOWS\Ethertronics\ETservice.exe [389616 2017-11-26] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 hostcontrolsvc; C:\WINDOWS\System32\HostControlService.exe [824424 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R2 hoststoragesvc; C:\WINDOWS\System32\HostStorageService.exe [170088 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Broadcom Corporation)
R3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8892256 2023-01-01] (Malwarebytes Inc. -> Malwarebytes)
R2 MTAgentService; C:\Program Files\MiniTool ShadowMaker\AgentService.exe [731968 2022-12-15] (MiniTool Software Limited -> )
R2 MTSchedulerService; C:\Program Files\MiniTool ShadowMaker\SchedulerService.exe [225088 2022-12-15] (MiniTool Software Limited -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [249376 2023-01-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [39384 2019-03-20] (Dell Inc. -> Dell Inc.)
R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R2 ushupgradesvc; C:\WINDOWS\System32\UshUpgradeService.exe [274536 2019-12-16] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe [3191264 2023-01-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe [133592 2023-01-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137552 2023-01-01] (Microsoft Windows -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 ApHidfiltrService; C:\WINDOWS\System32\drivers\ApHidfiltrSW.sys [362512 2021-05-24] (WDKTestCert CHT1HTSH3180,132475688214743128 -> ALPSALPINE Co., Ltd.)
R3 bcmnfcusb; C:\WINDOWS\System32\drivers\bcmnfcusb.sys [58632 2019-12-16] (Broadcom Corporation -> Broadcom Corporation.)
R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2023-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 ETActiveSteering; C:\WINDOWS\System32\drivers\ETActiveSteering.sys [38680 2017-11-26] (WDKTestCert norikd,131383411497448652 -> Ethertronics I2C driver for ASA)
S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-01-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197088 2023-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [76216 2023-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181816 2023-01-01] (Malwarebytes Inc. -> Malwarebytes)
S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [37336 2021-03-09] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> )
S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> )
R3 wbfcvusbdrv; C:\WINDOWS\System32\Drivers\wbfcvusbdrv.sys [28936 2019-12-16] (Broadcom Corporation -> Broadcom Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2023-01-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473376 2023-01-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99616 2023-01-02] (Microsoft Windows -> Microsoft Corporation)
R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2023-01-01] (Microsoft Windows -> Microsoft Corporation)
S3 NAL; \??\C:\WINDOWS\system32\Drivers\iqvw64e.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-02 04:18 - 2023-01-01 19:27 - 000806780 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-01-02 04:16 - 2023-01-01 19:28 - 000003632 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-01-02 04:16 - 2023-01-01 19:28 - 000003538 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d91e577dd957d7
2023-01-02 04:14 - 2023-01-02 04:14 - 000026092 _____ C:\WINDOWS\system32\emptyregdb.dat
2023-01-02 04:14 - 2023-01-02 04:14 - 000000000 _SHDL C:\Documents and Settings
2023-01-02 04:14 - 2023-01-02 04:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2023-01-02 04:14 - 2023-01-01 19:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-01-02 04:13 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\CSC
2023-01-02 04:10 - 2023-01-02 04:13 - 000000000 ____D C:\ProgramData\Intel
2023-01-02 04:09 - 2023-01-02 04:09 - 000001115 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves MaxxAudioPro.lnk
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\WINDOWS\Intel
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\ProgramData\Broadcom
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 ____D C:\Program Files\Waves
2023-01-02 04:09 - 2023-01-02 04:09 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin
2023-01-02 04:09 - 2023-01-01 19:22 - 000006418 _____ C:\WINDOWS\system32\CVFirmwareUpgradeLog.txt
2023-01-02 04:08 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2023-01-02 04:08 - 2023-01-02 04:13 - 000000000 ____D C:\Program Files (x86)\Realtek
2023-01-02 04:08 - 2023-01-02 04:08 - 000000000 ____D C:\WINDOWS\system32\config\BFS
2023-01-02 04:08 - 2023-01-02 04:08 - 000000000 ____D C:\Program Files\Realtek
2023-01-02 04:08 - 2023-01-01 22:08 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-01-02 04:08 - 2023-01-01 21:24 - 000012288 ___SH C:\DumpStack.log.tmp
2023-01-02 04:08 - 2023-01-01 19:23 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-01-02 04:08 - 2023-01-01 19:21 - 000293936 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-01-01 22:18 - 2023-01-01 22:18 - 000181816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2023-01-01 22:18 - 2023-01-01 22:18 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2023-01-01 22:18 - 2023-01-01 22:18 - 000000000 ____D C:\Users\kresc\AppData\Local\mbam
2023-01-01 22:16 - 2023-01-01 22:16 - 000000000 ____D C:\ProgramData\Malwarebytes
2023-01-01 22:16 - 2023-01-01 22:16 - 000000000 ____D C:\Program Files\Malwarebytes
2023-01-01 22:13 - 2023-01-01 22:14 - 000000000 ____D C:\AdwCleaner
2023-01-01 21:23 - 2023-01-01 21:23 - 000000000 _____ C:\WINDOWS\SysWOW64\wsmand.log.lock
2023-01-01 20:09 - 2023-01-01 20:09 - 000000000 ____D C:\Users\kresc\AppData\Local\system_backup_gui
2023-01-01 19:58 - 2023-01-02 10:58 - 000000000 ____D C:\FRST
2023-01-01 19:49 - 2023-01-01 19:49 - 000000000 ____D C:\Users\kresc\AppData\Local\VirtualStore
2023-01-01 19:47 - 2023-01-01 20:11 - 000000000 ____D C:\Users\kresc\AppData\Roaming\QtProject
2023-01-01 19:46 - 2023-01-01 19:46 - 000003074 _____ C:\WINDOWS\system32\Tasks\MiniTool ShadowMaker
2023-01-01 19:46 - 2023-01-01 19:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool ShadowMaker
2023-01-01 19:46 - 2021-03-09 18:41 - 000037336 _____ C:\WINDOWS\system32\pwdrvio.sys
2023-01-01 19:46 - 2019-11-08 10:15 - 003600896 _____ C:\WINDOWS\system32\pwNative.exe
2023-01-01 19:46 - 2019-11-08 10:15 - 000012504 _____ C:\WINDOWS\system32\pwdspio.sys
2023-01-01 19:45 - 2023-01-01 20:10 - 000000000 ____D C:\Program Files\MiniTool ShadowMaker
2023-01-01 19:45 - 2023-01-01 19:46 - 000000000 ____D C:\Program Files\MiniTool Partition Wizard 12
2023-01-01 19:45 - 2023-01-01 19:45 - 000003254 _____ C:\WINDOWS\system32\Tasks\MiniToolPartitionWizard
2023-01-01 19:45 - 2023-01-01 19:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MiniTool Partition Wizard 12
2023-01-01 19:43 - 2023-01-01 19:43 - 000000000 ____D C:\Users\kresc\AppData\Local\Comms
2023-01-01 19:42 - 2023-01-01 19:43 - 000000000 ____D C:\Users\kresc\AppData\Local\Publishers
2023-01-01 19:42 - 2023-01-01 19:42 - 000000000 ____D C:\Users\kresc\AppData\Local\OneDrive
2023-01-01 19:33 - 2023-01-02 10:58 - 000000000 ____D C:\Program Files (x86)\Google
2023-01-01 19:33 - 2023-01-01 19:36 - 000000000 ____D C:\Users\kresc\AppData\Local\Google
2023-01-01 19:33 - 2023-01-01 19:33 - 000003534 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}
2023-01-01 19:33 - 2023-01-01 19:33 - 000003410 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}
2023-01-01 19:33 - 2023-01-01 19:33 - 000002337 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-01-01 19:33 - 2023-01-01 19:33 - 000000000 ____D C:\Program Files\Google
2023-01-01 19:29 - 2023-01-01 19:29 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Intel Corporation
2023-01-01 19:28 - 2023-01-01 21:24 - 000000000 ___RD C:\Users\kresc\OneDrive
2023-01-01 19:28 - 2023-01-01 19:28 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3557936112-2665342190-1977484762-1001
2023-01-01 19:28 - 2023-01-01 19:28 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3557936112-2665342190-1977484762-1001
2023-01-01 19:28 - 2023-01-01 19:28 - 000002373 _____ C:\Users\kresc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-01-01 19:28 - 2023-01-01 19:28 - 000000000 ___HD C:\OneDriveTemp
2023-01-01 19:28 - 2023-01-01 19:28 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2023-01-01 19:28 - 2017-04-14 22:45 - 000122786 _____ C:\Users\kresc\OneDrive\Documents\cc_20170414_234508.reg
2023-01-01 19:28 - 2016-10-09 16:02 - 000041632 _____ C:\Users\kresc\OneDrive\Documents\cc_20161009_170233.reg
2023-01-01 19:28 - 2016-10-09 14:41 - 000455764 _____ C:\Users\kresc\OneDrive\Documents\cc_20161009_154141.reg
2023-01-01 19:28 - 2015-04-27 14:40 - 000178288 _____ C:\Users\kresc\OneDrive\Documents\cc_20150427_154024.reg
2023-01-01 19:27 - 2023-01-01 21:23 - 000000000 ____D C:\Users\kresc\AppData\Local\PlaceholderTileLogoFolder
2023-01-01 19:26 - 2023-01-01 21:23 - 000000000 __SHD C:\Users\kresc\IntelGraphicsProfiles
2023-01-01 19:26 - 2023-01-01 21:23 - 000000000 ____D C:\Users\kresc\AppData\Local\ConnectedDevicesPlatform
2023-01-01 19:26 - 2023-01-01 20:15 - 000000000 ____D C:\Users\kresc\AppData\Local\Packages
2023-01-01 19:26 - 2023-01-01 19:36 - 000000000 ____D C:\Users\kresc\AppData\Local\D3DSCache
2023-01-01 19:26 - 2023-01-01 19:27 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Intel
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\Roaming\Adobe
2023-01-01 19:26 - 2023-01-01 19:26 - 000000000 ____D C:\Users\kresc\AppData\LocalLow\Intel
2023-01-01 19:24 - 2023-01-01 19:29 - 000000000 ____D C:\Users\kresc
2023-01-01 19:24 - 2023-01-01 19:24 - 000000020 ___SH C:\Users\kresc\ntuser.ini
2023-01-01 19:03 - 2023-01-02 04:14 - 000000000 ____D C:\WINDOWS\Panther
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2023-01-01 18:57 - 2023-01-01 18:57 - 000000000 ____D C:\WINDOWS\addins
2023-01-01 18:55 - 2023-01-02 04:08 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2023-01-01 18:54 - 2023-01-02 04:13 - 000000000 ____D C:\WINDOWS\Ethertronics
2023-01-01 18:54 - 2023-01-01 19:22 - 000000000 ____D C:\Intel
2023-01-01 18:54 - 2023-01-01 18:54 - 000000000 ____D C:\WINDOWS\Firmware
2023-01-01 18:53 - 2023-01-01 18:55 - 000000000 ____D C:\WINDOWS\system32\Intel
2023-01-01 18:53 - 2023-01-01 18:55 - 000000000 ____D C:\WINDOWS\system32\DellTPad
2023-01-01 18:53 - 2023-01-01 18:53 - 000000000 ____D C:\WINDOWS\system32\cAVS
2023-01-01 18:52 - 2023-01-01 18:52 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2023-01-01 18:32 - 2023-01-01 19:04 - 000000000 ___HD C:\$SysReset

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-01-02 10:58 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-01-02 10:58 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Windows Defender
2023-01-02 10:58 - 2019-06-13 08:03 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-01-02 04:20 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate
2023-01-02 04:15 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2023-01-02 04:14 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2023-01-02 04:14 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2023-01-02 04:13 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\winrm
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\WCN
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\slmgr
2023-01-02 04:13 - 2022-05-07 11:31 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\F12
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\WaaS
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\spool
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\IME
2023-01-02 04:13 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-01-02 04:13 - 2019-06-13 08:23 - 000000000 ____D C:\WINDOWS\{D4373260-1185-49AC-993B-A31209FBD6CC}
2023-01-02 04:13 - 2019-06-13 08:21 - 000000000 ____D C:\WINDOWS\{909EBB6A-9223-4D7C-926E-E23CE5163DFC}
2023-01-02 04:13 - 2019-06-13 08:20 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles
2023-01-02 04:13 - 2019-06-13 08:20 - 000000000 ____D C:\WINDOWS\Dell
2023-01-02 04:13 - 2019-06-13 08:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbolt™ Software
2023-01-02 04:13 - 2019-06-13 08:16 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2023-01-02 04:13 - 2019-06-13 08:16 - 000000000 ____D C:\ProgramData\Package Cache
2023-01-02 04:13 - 2019-06-13 08:15 - 000000000 ____D C:\ProgramData\SupportAssist
2023-01-02 04:13 - 2019-06-13 08:11 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2023-01-02 04:13 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files (x86)\Intel
2023-01-02 04:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2023-01-02 04:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2023-01-02 04:12 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2023-01-02 04:12 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\System
2023-01-02 04:12 - 2019-06-13 09:00 - 000000000 ____D C:\backup
2023-01-02 04:12 - 2019-06-13 08:23 - 000000000 ____D C:\Program Files (x86)\Dell
2023-01-02 04:12 - 2019-06-13 08:16 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-01-02 04:12 - 2019-06-13 08:15 - 000000000 ____D C:\Program Files\Dell
2023-01-02 04:12 - 2019-06-13 08:15 - 000000000 ____D C:\Program Files (x86)\ASM104xUSB3
2023-01-02 04:12 - 2019-06-13 08:12 - 000000000 ____D C:\langpacks
2023-01-02 04:12 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files\Common Files\Intel Corporation
2023-01-02 04:12 - 2019-06-13 08:11 - 000000000 ____D C:\Program Files\Common Files\Intel
2023-01-02 04:12 - 2019-06-13 08:06 - 000000000 ____D C:\Program Files\Intel
2023-01-02 04:12 - 2019-06-13 08:03 - 000000000 __SHD C:\IntelOptaneData
2023-01-02 04:12 - 2018-09-19 16:55 - 000000000 ____D C:\Dell
2023-01-02 04:12 - 2018-09-15 08:33 - 000000000 ____D C:\Program Files\Windows Security
2023-01-02 04:08 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\appcompat
2023-01-01 22:19 - 2022-05-07 06:17 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2023-01-01 22:17 - 2022-05-07 06:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2023-01-01 22:13 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-01-01 21:23 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-01-01 20:15 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
2023-01-01 20:15 - 2019-06-13 08:28 - 000000000 ____D C:\ProgramData\Packages
2023-01-01 19:58 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF
2023-01-01 19:44 - 2019-06-13 08:20 - 000000000 ____D C:\Program Files (x86)\Dell Digital Delivery Services
2023-01-01 19:42 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\PrintDialog
2023-01-01 19:41 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\servicing
2023-01-01 19:41 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-01-01 19:28 - 2019-06-13 08:16 - 000000000 ____D C:\ProgramData\Dell
2023-01-01 19:28 - 2019-06-13 08:15 - 000000000 ____D C:\ProgramData\PCDr
2023-01-01 19:26 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-01-01 19:24 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Registration
2023-01-01 19:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState
2023-01-01 19:22 - 2022-05-07 06:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-01-01 19:03 - 2022-05-07 06:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2023-01-01 19:02 - 2022-05-07 11:42 - 000000000 ___SD C:\WINDOWS\system32\AppV
2023-01-01 19:02 - 2022-05-07 11:42 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-01-01 19:02 - 2022-05-07 06:25 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2023-01-01 19:02 - 2022-05-07 06:25 - 000076800 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000118784 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ___SD C:\WINDOWS\system32\UNP
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemApps
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Provisioning
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Globalization
2023-01-01 19:02 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-01-01 18:57 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\OCR
2023-01-01 18:56 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\migwiz
2023-01-01 18:56 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files (x86)\Windows Defender

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-12-2022
Ran by kresc (02-01-2023 10:59:54)
Running from C:\Users\kresc\OneDrive\Počítač
Microsoft Windows 11 Pro Version 22H2 22621.963 (X64) (2023-01-02 03:14:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3557936112-2665342190-1977484762-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3557936112-2665342190-1977484762-503 - Limited - Disabled)
Guest (S-1-5-21-3557936112-2665342190-1977484762-501 - Limited - Disabled)
kresc (S-1-5-21-3557936112-2665342190-1977484762-1001 - Administrator - Enabled) => C:\Users\kresc
WDAGUtilityAccount (S-1-5-21-3557936112-2665342190-1977484762-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Malwarebytes (Enabled - Up to date) {0D452135-A081-B000-D6B6-132E52638543}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.54.1 - Asmedia Technology)
Dell Command | Update for Windows 10 (HKLM\...\{5669AB71-1302-4412-8DA1-CB69CD7B7324}) (Version: 3.0.1 - Dell, Inc.)
Dell ControlVault Host Components Installer 64 bit (HKLM\...\{AB1994E3-6CF8-4414-B51D-C54E5FD36520}) (Version: 4.9.24.58 - Broadcom Limited)
Dell Digital Delivery Services (HKLM-x32\...\{8D1CFB63-E958-4A5C-8BBC-A5F5DF4ED32F}) (Version: 4.0.36.0 - Dell Inc.)
Dell Power Manager Service (HKLM\...\{18469ED8-8C36-4CF7-BD43-0FC9B1931AF8}) (Version: 3.2.0 - Dell Inc.)
Dell SupportAssist (HKLM\...\{45FD01F4-B11B-4A58-B465-1D600B5CDF64}) (Version: 3.2.0.90 - Dell Inc.)
Dell Touchpad (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: 10.3201.101.216 - ALPSALPINE CO., LTD.)
Ethertronics Active Steering Antenna (HKLM\...\Etactista) (Version: 1.3.249.2 - Ethertronics)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 108.0.5359.125 - Google LLC)
Intel(R) Dynamic Platform and Thermal Framework (HKLM-x32\...\{654EE65D-FAA4-4EA6-8C07-DC94E6A304D4}) (Version: 8.3.10205.4743 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{0BA3357E-D7F4-4C56-9758-626DCEAF0DB7}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1846.12.0.1177 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{881CC91B-7C6D-4313-B4DD-AACC5DD109AB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{D343BBFF-5BA6-4384-85AE-73A85CE6EEFF}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C94935E8-0FD2-423C-843E-604CB8EE50BA}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 25.20.100.6472 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{0421117F-9659-4C9F-84AC-88FE070C18C7}) (Version: 17.0.2.1076 - Intel Corporation) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.0.2.1076 - Intel Corporation)
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{99ee3c29-c7cd-450f-8db9-d43cc49de1c7}) (Version: 1.50.638.1 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00001060-0200-1033-84C8-B8D95FA3C8C3}) (Version: 20.60.1 - Intel Corporation)
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{ACA5CFAC-9E99-4764-A7AD-AF5CF3FA15BF}) (Version: 17.0.2.1076 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{868cd517-bf05-4b62-b4d1-149a3c7b7aa2}) (Version: 20.100.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{60841871-21AB-4E7D-8AE6-D6154CDC5C2A}) (Version: 20.100.0.2492 - Intel Corporation) Hidden
Malwarebytes version 4.5.19.229 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.19.229 - Malwarebytes)
Maxx Audio Installer (x64) (HKLM\...\{307032B2-6AF2-46D7-B933-62438DEB2B9A}) (Version: 2.7.13058.0 - Waves Audio Ltd.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 108.0.1462.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 108.0.1462.54 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\...\OneDriveSetup.exe) (Version: 22.238.1114.0002 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{85215604-B585-40C5-A042-4DC431211C4E}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{5C87ABB6-9964-4D50-A905-3F56B765B336}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 x64 Additional Runtime - 14.11.25325 (HKLM\...\{B13B3E11-1555-353F-A63A-8933EE104FBD}) (Version: 14.11.25325 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2017 x64 Minimum Runtime - 14.11.25325 (HKLM\...\{B0037450-526D-3448-A370-CACBD87769A0}) (Version: 14.11.25325 - Microsoft Corporation) Hidden
MiniTool Partition Wizard Free 12.7 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 12.7 - MiniTool Software Limited)
MiniTool ShadowMaker PW Edition (HKLM-x32\...\MT-75D7C412-925B-4AD0-90DC-5E4FEE22EAE1_is1) (Version: 4.0 - MiniTool Software Limited)
Realtek Audio COM Components (HKLM-x32\...\{2355B503-9B11-4449-861D-1C1748B26320}) (Version: 1.0.2 - Realtek Semiconductor Corp.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21300 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9107.1 - Realtek Semiconductor Corp.)
Realtek PC Camera (HKLM-x32\...\{E399A5B3-ED53-4DEA-AF04-8011E1EB1EAC}) (Version: 10.0.17763.20082 - Realtek Semiconductor Corp.)
Realtek USB Audio (HKLM-x32\...\{0A46A65D-89AC-464C-8026-3CD44960BD04}) (Version: 6.3.9600.202 - Realtek Semiconductor Corp.)
Thunderbolt™ Software (HKLM-x32\...\{30F0067F-DD79-431B-BA5F-6CB4897785A5}) (Version: 17.4.79.510 - Intel Corporation)

Packages:
=========
Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_2.2.8.0_neutral__yxz26nhyzhsrt [2023-01-01] (Microsoft Corp.)
Dell Command | Update -> C:\Program Files\WindowsApps\DellInc.DellCommandUpdate_4.6.43.0_x86__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell Power Manager -> C:\Program Files\WindowsApps\DellInc.DellPowerManager_3.10.10.0_x64__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell SupportAssist for Home PCs -> C:\Program Files\WindowsApps\dellinc.dellsupportassistforpcs_3.13.5.0_x64__htrsf667h5kn2 [2023-01-01] (Dell Inc)
Dell Touchpad Assistant -> C:\Program Files\WindowsApps\c1e561a0.delltouchpadassistant_1.1.9.0_x64__ay1pycd334gd6 [2023-01-01] (ALPS Comm. Devices Tech. (SH) Co., Ltd)
Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_1.44.2.0_x64__6rarf9sa4v8jt [2023-01-01] (Disney)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1037.0_x64__8j3eq9eme6ctt [2023-01-01] (INTEL CORP)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2023-01-01] (LinkedIn)
ms-resource:Appname -> C:\Program Files\WindowsApps\Microsoft.RemoteDesktop_10.2.3000.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.50901.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.1.30391.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Corporation)
ms-resource:AppxManifest_DisplayName -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2023-01-01] (Microsoft Corporation)
ms-resource:System_Item_Title_IntelGraphicsControlPanel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.4232.0_x64__8j3eq9eme6ctt [2023-01-01] (INTEL CORP) [Startup Task]
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2023-01-01] (Microsoft Studios) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0 [2023-01-01] (Spotify AB) [Startup Task]
Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2023-01-02] (Microsoft Windows)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3557936112-2665342190-1977484762-1001_Classes\CLSID\{a9872fee-5a55-4ecb-9b0f-b06fedcf14d1}\localserver32 -> C:\Program Files\Waves\MaxxAudio\MaxxAudioPro.exe (Waves Inc -> Waves Audio Ltd)
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_b31ddd6f2a24807e\OptaneShellExt.dll [2021-02-09] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-01-01] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\WINDOWS\System32\DriverStore\FileRepository\iastorpinningcomponent.inf_amd64_b31ddd6f2a24807e\OptaneShellExt.dll [2021-02-09] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-01-01] (Malwarebytes Inc. -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-03-21 02:02 - 2019-03-21 02:02 - 000018432 _____ () [File not signed] c:\Program Files (x86)\Dell Digital Delivery Services\Dell.D3.HSA.Server.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000083968 _____ () [File not signed] C:\Program Files\MiniTool ShadowMaker\coresync.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000159744 _____ (Chengdu Speed Digital Technology Co..Ltd.) [File not signed] C:\Program Files\MiniTool ShadowMaker\FileInfoCommon.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 000067584 _____ (Chengdu Speed Digital Technology Co..Ltd.) [File not signed] C:\Program Files\MiniTool ShadowMaker\ChannelNetFileInfo.dll
2023-01-01 19:45 - 2022-07-03 07:34 - 002126848 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\MiniTool ShadowMaker\LIBEAY32.dll
2023-01-01 19:45 - 2022-12-15 06:36 - 001267200 _____ (TODO: <Company name>) [File not signed] C:\Program Files\MiniTool ShadowMaker\core7z.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://dell17win10.msn.com/?pc=DCTE
HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell17win10.msn.com/?pc=DCTE

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 08:31 - 2018-09-15 08:31 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3557936112-2665342190-1977484762-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\kresc\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A0E3E2F2-3591-4672-AD5B-D0C1D3DFF2B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C321800A-A8FB-4E56-A81F-5C3E2BCB7841}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FD60D839-1043-4231-A252-9A8C5F03C64C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{73A35141-2AE1-479B-BF90-FA1D443B6F3A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.92.3204.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5E181BF1-5300-493B-BD55-B60A84750FC2}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4D9ABD14-4B60-4241-88A1-25960527ABD7}] => (Allow) C:\Program Files\WindowsApps\microsoftteams_22308.1003.1743.8209_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6BD8E47B-42F2-42C1-BB9B-1BA2E39B17B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16040.10730.20103.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [{FBFF027B-FBBB-4BE3-B1E6-457B8A5A74D2}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\108.0.1462.54\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8880E5DC-BBAF-45AD-8809-A8795A91C752}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{B5BC6839-5F2C-40A0-819F-C932FC53F249}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> )
FirewallRules: [{6BD4772A-9FDE-472D-92B8-23548993A8B9}] => (Allow) C:\Program Files\MiniTool ShadowMaker\AgentService.exe (MiniTool Software Limited -> )
FirewallRules: [{2C4C8C48-2973-4766-A0DC-29FEAB590763}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{95D3AA97-0C7B-4F96-9FB1-19D10628D219}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{900E861F-FAC1-46AA-A067-8202BD003D41}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E142A03F-F00F-412C-8251-4A14953DF459}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{005CF979-7FEF-429F-99DA-E25B247223E1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5B61C2C5-3DF2-49B8-85B8-1B0C2D70B92E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6D2FEF06-54D6-42D7-9DE1-6FD8AA962566}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FF96B9D8-2E9C-414D-8C1E-E47163D91ACA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.200.1165.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:104.88 GB) (Free:73.93 GB) (70%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (01/01/2023 07:27:59 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1017) (User: NT AUTHORITY)
Description: Disabled performance counter data collection from the "Lsa" service because the performance counter library for that service has generated one or more errors. The errors that forced this action have been written to the application event log. Correct the errors before enabling the performance counters for this service.

Error: (01/01/2023 07:27:59 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1005) (User: NT AUTHORITY)
Description: The attempt to locate the Open procedure "OpenLsaPerformanceData" in DLL "C:\Windows\System32\Secur32.dll" for the "Lsa" service failed with Win32 error code 127. Performance data for this service will not be available.

Error: (01/01/2023 07:26:41 PM) (Source: ESENT) (EventID: 522) (User: )
Description: StartMenuExperienceHost (6380,P,98) TILEREPOSITORYS-1-5-21-3557936112-2665342190-1977484762-1001: An attempt to open the device with name "\\.\C:" containing "C:\" failed with system error 5 (0x00000005): "Access is denied. ". The operation will fail with error -1032 (0xfffffbf8).

Error: (01/01/2023 07:26:32 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[ at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="3QBX0X2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.26.0" SMBIOSPresent="True" Rel_Date="20220609000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Latitude 7490" Ident_Num="DELL" TimeZone="(UTC+01:00) Belehrad, Bratislava, Budapešť, Ľubľana, Praha" OSName="Microsoft Windows 11 Pro"/><Method>ValidateServerCertificate</Method><HostIP>192.168.1.152</HostIP></Exception>

Error: (01/01/2023 07:24:49 PM) (Source: Dell System Detect) (EventID: 0) (User: )
Description: <Exception><Type>eSupport.Common.Client.Core.ServerCertInvalidException</Type><Message><![CDATA[IssuedTo CN Invalid downloads.dell.com]]></Message><Source><![CDATA[DellSystemDetect.Core]]></Source><StackTrace><![CDATA[ at eSupport.Common.Client.Core.DownloadServerValidationHelper.ValidateServerCertificate(List`1 issuerInfo, List`1 issuedToInfo)]]></StackTrace><SysInfo STag="3QBX0X2" SMBIOSMajVer="3" SMBIOSMinVer="1" SMBIOSBIOSVer="1.26.0" SMBIOSPresent="True" Rel_Date="20220609000000.000000+000" DSDVersion="" Vendor="Dell Inc." PName="Latitude 7490" Ident_Num="DELL" TimeZone="(UTC+01:00) Belehrad, Bratislava, Budapešť, Ľubľana, Praha" OSName="Microsoft Windows 11 Pro"/><Method>ValidateServerCertificate</Method><HostIP>192.168.1.152</HostIP></Exception>

Error: (01/02/2023 04:18:56 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x80072EE7
Command-line arguments:
RuleId=3482d82e-ca2c-4e1f-8864-da0267b484b2;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=bd3762d7-270d-4760-8fb3-d829ca45278a;NotificationInterval=1440;Trigger=TimerEvent

Error: (01/02/2023 04:18:55 AM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Acquisition of End User License failed. hr=0x80072EE7
Sku Id=bd3762d7-270d-4760-8fb3-d829ca45278a

Error: (01/02/2023 04:18:55 AM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: License acquisition failure details.
hr=0x80072EE7


System errors:
=============
Error: (01/01/2023 10:17:17 PM) (Source: Microsoft-Windows-SCPNP) (EventID: 1000) (User: NT AUTHORITY)
Description: Nepodarilo sa načítať identifikáciu zariadenia pre kartu Smart Card v zariadení na čítanie kariet Broadcom Corp Contactless SmartCard 0. Návratový kód je 2148532255.

Error: (01/01/2023 08:02:32 PM) (Source: Microsoft-Windows-SCPNP) (EventID: 1000) (User: NT AUTHORITY)
Description: Nepodarilo sa načítať identifikáciu zariadenia pre kartu Smart Card v zariadení na čítanie kariet Broadcom Corp Contactless SmartCard 0. Návratový kód je 2148532255.

Error: (01/01/2023 08:00:45 PM) (Source: Microsoft-Windows-SCPNP) (EventID: 1000) (User: NT AUTHORITY)
Description: Nepodarilo sa načítať identifikáciu zariadenia pre kartu Smart Card v zariadení na čítanie kariet Broadcom Corp Contactless SmartCard 0. Návratový kód je 2148532255.

Error: (01/01/2023 07:46:20 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba MTSchedulerService je označená ako interaktívna služba. Systém je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne nebude pracovať správne.

Error: (01/01/2023 07:46:20 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba MTAgentService je označená ako interaktívna služba. Systém je však nakonfigurovaný tak, aby nepovolil interaktívne služby. Služba pravdepodobne nebude pracovať správne.

Error: (01/01/2023 07:28:21 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Nal Service zlyhalo kvôli nasledujúcej chybe:
A certificate was explicitly revoked by its issuer.

Error: (01/01/2023 07:22:05 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error "1053" attempting to start the service edgeupdate with arguments "/comsvc" in order to run the server:
{CECDDD22-2E72-4832-9606-A9B0E5E344B2}

Error: (01/01/2023 07:22:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Edge Update Service (edgeupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.


CodeIntegrity:
===============
Date: 2023-01-01 22:22:47
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.

Date: 2023-01-01 22:09:26
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-01-01 19:28:21
Description:
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}).

Date: 2023-01-01 19:28:21
Description:
The driver \Device\HarddiskVolume3\Windows\System32\drivers\iqvw64e.sys is blocked from loading as the driver has been revoked by Microsoft.


==================== Memory info ===========================

BIOS: Dell Inc. 1.26.0 06/09/2022
Motherboard: Dell Inc. 0XNW4K
Processor: Intel(R) Core(TM) i5-8350U CPU @ 1.70GHz
Percentage of memory in use: 33%
Total physical RAM: 16262.24 MB
Available physical RAM: 10815.55 MB
Total Virtual: 19206.24 MB
Available Virtual: 13148.61 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:104.88 GB) (Free:73.93 GB) (Model: Micron 2200 NVMe 256GB) NTFS
Drive d: (Nový zväzok) (Fixed) (Total:131.83 GB) (Free:131.74 GB) (Model: Micron 2200 NVMe 256GB) NTFS

\\?\Volume{486576a0-0ebf-4d6f-a735-318dc846cb7d}\ (WINRETOOLS) (Fixed) (Total:0.97 GB) (Free:0.11 GB) NTFS
\\?\Volume{78ebd612-f4ee-4a4c-80c1-12cb058c335b}\ (ESP) (Fixed) (Total:0.66 GB) (Free:0.61 GB) FAT32

==================== MBR & Partition Table ====================

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
ClkoseProcesses:

HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Task: {EB389587-6DF1-4CA8-9B72-D7739F566B3A} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
Task: {1BA9C9F5-DD28-4CA5-9C00-9B3541618E74} - System32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6} - System32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}
FirewallRules: [{6BD8E47B-42F2-42C1-BB9B-1BA2E39B17B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16040.10730.20103.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File

EmptyTemp:
End
Uložte do C:\Users\kresc\OneDrive\Počítač jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#9 Příspěvek od paulus33 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 29-12-2022
Ran by kresc (02-01-2023 13:50:01) Run:1
Running from C:\Users\kresc\OneDrive\Počítač
Loaded Profiles: kresc
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
ClkoseProcesses:

HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Task: {EB389587-6DF1-4CA8-9B72-D7739F566B3A} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (No File)
Task: {1BA9C9F5-DD28-4CA5-9C00-9B3541618E74} - System32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
Task: {AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6} - System32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2023-01-01] (Google LLC -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}
FirewallRules: [{6BD8E47B-42F2-42C1-BB9B-1BA2E39B17B6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16040.10730.20103.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File

EmptyTemp:
End
*****************

ClkoseProcesses: => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EB389587-6DF1-4CA8-9B72-D7739F566B3A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB389587-6DF1-4CA8-9B72-D7739F566B3A}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1BA9C9F5-DD28-4CA5-9C00-9B3541618E74}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BA9C9F5-DD28-4CA5-9C00-9B3541618E74}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AD4B56CA-C227-46A3-B8DC-C2B6E4E396F6}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{EF702A17-5739-43B3-A341-6EF3D8B047B4}" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{8D6A59A1-A383-41FE-B316-0440D5729407}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6BD8E47B-42F2-42C1-BB9B-1BA2E39B17B6}" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11594712 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 3678430 B
Edge => 0 B
Chrome => 131484644 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 4204 B
NetworkService => 5296 B
kresc => 55654106 B

RecycleBin => 14752801 B
EmptyTemp: => 208.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 13:50:06 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#11 Příspěvek od paulus33 »

Dakujem, nie, blbne to stale, pri pisani tohto textu mi vyskocilo xkrat okno "windows emoji" alebo mi kurzor mi sam od seba preskoci spät na uz napisany text a sucasne vyskoci ponukove okno pri stlaceni klaves k,j,n,
NTB som zdedil po nebohom svokrovi, nemoze byt problem napr v "zaliatej klavesnici"? Ved to je cista instalacia win11...
Dakujem

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#12 Příspěvek od Rudy »

Pokud jste si do klávesky něco nelil, může to být tím. Zkusíme ale ještě vyčistit samotné ptojlížeče. Spusťte postupně tyto utility:

1. Stahnete Zoek.exe https://www.edisk.cz/stahni/21334/zoek.rar_1.3MB.html/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#13 Příspěvek od paulus33 »

ja som nic nevylial a svokra mi tvrdi ze ani svokrovi sa to nestalo
idem skusit...

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118199
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#14 Příspěvek od Rudy »

Píšete:
...nemoze byt problem napr v "zaliatej klavesnici"
?

Proto jsem to uvedl. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

paulus33
Návštěvník
Návštěvník
Příspěvky: 81
Registrován: 25 črc 2014 05:33

Re: NTB-vyskakovanie okien pocas pisania, neaktivne okna-pls kontrola logu

#15 Příspěvek od paulus33 »

Zoek.exe neviem stiahnut z edisku, pomale stahovanie je stale full a ja nemam ucet.
Neviete to hodit niekde inde? Napr. Ulozto tam mam ucet s kreditom, vdaka

Zamčeno