Stránka 1 z 1

Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 19:48
od Marek 46
Dobrý den,
prosím o kontrolu logu, dochází ke zpomalení NTB, hlavně Opery, která často zamrzá. Děkuji.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-02-2023
Ran by marek (administrator) on LAPTOP-LDE9BPOM (HP HP 255 G7 Notebook PC) (07-02-2023 19:27:14)
Running from C:\Users\marek\Desktop
Loaded Profiles: marek
Platform: Microsoft Windows 11 Home Version 22H2 22621.1105 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe ->) (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\expressvpnd\expressvpnd.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\AppHelperCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\BridgeCommunication.exe <2>
(HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Dism\DismHost.exe <3>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0372698.inf_amd64_2366d501a5d0e392\B370279\atiesrxx.exe
(services.exe ->) (Express Vpn LLC -> ExpressVPN) C:\Program Files (x86)\ExpressVPN\bootstrap\amd64\nssm.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_970b3aa928c32e35\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_9b42a3e82673e3bb\x64\SysInfoCap.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb0c442560f99618\RtkAudUService64.exe <2>
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.11281.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.11281.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22112.142.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\PrintDialog\PrintDialog.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2302.5.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb0c442560f99618\RtkAudUService64.exe [1253232 2021-03-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [ExpressVPNNotificationService] => C:\Program Files (x86)\ExpressVPN\expressvpn-ui\ExpressVPNNotificationServiceStarter.exe [471432 2020-05-15] (Express Vpn LLC -> ExpressVPN)
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [101284632 2020-09-16] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [536152 2022-08-17] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2627968 2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\marek\AppData\Local\Microsoft\Teams\Update.exe [2452664 2021-01-04] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Run: [Opera Browser Assistant] => C:\Users\marek\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3916232 2022-12-20] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Run: [MicrosoftEdgeAutoLaunch_BD1F0855BDE3C820667ADA10E011AD68] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4188576 2023-02-02] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-02-2023
Ran by marek (07-02-2023 19:28:51)
Running from C:\Users\marek\Desktop
Microsoft Windows 11 Home Version 22H2 22621.1105 (X64) (2022-10-05 17:58:52)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1023201054-3407354882-3767647961-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1023201054-3407354882-3767647961-503 - Limited - Disabled)
Guest (S-1-5-21-1023201054-3407354882-3767647961-501 - Limited - Disabled)
marek (S-1-5-21-1023201054-3407354882-3767647961-1001 - Administrator - Enabled) => C:\Users\marek
WDAGUtilityAccount (S-1-5-21-1023201054-3407354882-3767647961-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 22.003.20314 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Aplikácie Microsoft 365 pre veľké organizácie - sk-sk (HKLM\...\O365ProPlusRetail - sk-sk) (Version: 16.0.16026.20146 - Microsoft Corporation)
ExpressVPN (HKLM-x32\...\{c71f5fbb-6f04-47bc-9f8a-9ad70443970e}) (Version: 7.9.1.69 - ExpressVPN)
ExpressVPN (HKLM-x32\...\{E5B9C3E5-889C-4F22-A959-F4B8465D8876}) (Version: 7.9.1.69 - ExpressVPN) Hidden
FreeCAD 0.18.4 (HKLM\...\FreeCAD0184) (Version: 0.18.4 - FreeCAD Team)
HP Audio Switch (HKLM-x32\...\{3A5141D4-47DB-4302-9B1C-272BE585BC8A}) (Version: 1.0.179.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.17.0 - HP Inc.)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.0 - HP Inc.)
Microsoft 365 Apps for enterprise - en-us (HKLM\...\O365ProPlusRetail - en-us) (Version: 16.0.16026.20146 - Microsoft Corporation)
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.16026.20146 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 109.0.1518.78 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 109.0.1518.78 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.007.0109.0004 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Teams) (Version: 1.3.00.26064 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{6A2A8076-135F-4F55-BB02-DED67C8C6934}) (Version: 4.67.0.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.15 - F.J. Wechselberger)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.16026.20146 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Opera Stable 95.0.4635.25 (HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\Opera 95.0.4635.25) (Version: 95.0.4635.25 - Opera Software)
Prusa3D verze 2.3.0 (HKLM\...\Prusa3D_is1) (Version: 2.3.0 - Prusa Research a.s.)
PrusaSlicer verze 2.3.0 (HKLM\...\PrusaSlicer_is1) (Version: 2.3.0 - Prusa Research s.r.o.)
Sweet Home 3D version 7.0.2 (HKLM\...\Sweet Home 3D_is1) (Version: 7.0.2 - eTeks)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.26064 - Microsoft Corporation)
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m [2021-11-08] (Advanced Micro Devices Inc.) [Startup Task]
AMD Radeon™ Settings Lite -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.59462344778C5_10.19.40016.0_x64__0a9344xs7nr4m [2020-10-23] (Advanced Micro Devices Inc.)
Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_2.5.15.0_neutral__yxz26nhyzhsrt [2023-01-18] (Microsoft Corp.)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-10-01] (Microsoft Corporation)
Energy Star -> C:\Program Files\WindowsApps\AD2F1837.HPInc.EnergyStar_1.2.0.0_x64__v10z8vjag6ke6 [2023-01-18] (HP Inc.)
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_1.10.216.0_x64__dt26b99r8h8gj [2020-12-27] (Realtek Semiconductor Corp)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_2.1.0.0_x64__v10z8vjag6ke6 [2023-01-13] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.1.54.0_x64__v10z8vjag6ke6 [2022-11-03] (HP Inc.)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_142.3.139.0_x64__v10z8vjag6ke6 [2023-02-05] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.23.20.0_x64__v10z8vjag6ke6 [2023-01-18] (HP Inc.)
HP System Event Utility -> C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6 [2022-08-20] (HP Inc.)
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.39.0_x64__8wekyb3d8bbwe [2023-01-04] (Microsoft Corp.)
ms-resource:APP_WINDOW_NAME -> C:\Program Files\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.9.0_x64__8wekyb3d8bbwe [2022-10-11] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.1.40041.0_x64__8wekyb3d8bbwe [2023-01-29] (Microsoft Corporation)
ms-resource:AppxManifest_DisplayName -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2022-10-05] (Microsoft Corporation)
ms-resource:IDS_DVDPLAYER_APP_NAME -> C:\Program Files\WindowsApps\Microsoft.WindowsDVDPlayer2_10.17091.10381.0_x64__8wekyb3d8bbwe [2023-01-22] (Microsoft Corporation)
ms-resource:ProductPkgDisplayName -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2023-01-12] (ms-resource:ProductPublisherDisplayName)
sMedio True DVD for HP -> C:\Program Files\WindowsApps\0E3921EB.sMedioTrueDVDforHP_1.1.156.0_x64__agwrg61xdd7p4 [2022-10-11] (sMedio Inc.)
Synaptics TouchPad -> C:\Program Files\WindowsApps\SynapticsIncorporated.SynHPConsumerDApp_19005.35054.0.0_x64__807d65c4rvak2 [2020-10-23] (Synaptics Incorporated)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2302.5.0_x64__cv1g1gvanyjgm [2023-02-05] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1023201054-3407354882-3767647961-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\marek\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1023201054-3407354882-3767647961-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\marek\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1023201054-3407354882-3767647961-1001_Classes\CLSID\{D3E34B21-9D75-101A-8C3D-00AA001A1652}\localserver32 -> C:\Program Files\WindowsApps\Microsoft.Paint_11.2210.4.0_x64__8wekyb3d8bbwe\PaintApp\mspaint.exe () [File not signed]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.007.0109.0004\FileSyncShell64.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\WINDOWS\System32\atiacm64.dll [2021-10-19] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LastPass.lnk -> C:\Program Files (x86)\Online Services\LastPass\WizLink.exe () -> hxxp://js.redirect.hp.com/jumpstation?bd=lastpass&c=*&locale=*&pf=*&s=*&tp=edge

==================== Loaded Modules (Whitelisted) =============

2023-02-05 16:32 - 2023-02-05 16:33 - 102389248 _____ () [File not signed] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2302.5.0_x64__cv1g1gvanyjgm\WhatsApp.dll
2023-02-05 16:32 - 2023-02-05 16:33 - 008691712 _____ () [File not signed] C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2302.5.0_x64__cv1g1gvanyjgm\WhatsAppNative.dll
2021-10-30 11:23 - 2021-10-30 11:25 - 000017920 _____ () [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\libEGL.dll
2021-10-30 11:23 - 2021-10-30 11:25 - 003567616 _____ () [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\libGLESv2.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000258048 _____ () [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\WirelessVR-windesktop64.dll
2022-10-31 18:13 - 2022-10-31 18:13 - 000138240 _____ () [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\d88cff7ad7397bb4c9f8a086c4cf7f64\Interop.IWshRuntimeLibrary.ni.dll
2022-12-28 11:03 - 2022-12-28 11:03 - 000134656 _____ (hardcodet.net) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\423e256d6f49aab8623cc7ff315f3b83\Hardcodet.Wpf.TaskbarNotification.ni.dll
2022-01-21 16:54 - 2022-01-21 16:54 - 000014336 _____ (HP Inc.) [File not signed] C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.3.2.0_x64__v10z8vjag6ke6\SystemEventUtility\NativeRpcClient.DLL
2022-12-28 11:04 - 2022-12-28 11:04 - 001701376 _____ (Mark Heath & Contributors) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\NAudio\e73483e146f9ec26a892a8a91ac90a20\NAudio.ni.dll
2022-12-28 11:04 - 2022-12-28 11:04 - 003060736 _____ (Newtonsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\dba94e7d45bcf7d87716db481ae05c4f\Newtonsoft.Json.ni.dll
2022-12-28 11:04 - 2022-12-28 11:04 - 000793088 _____ (The Apache Software Foundation) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\log4net\ab7ed623c00daea6ea32b319e660e27b\log4net.ni.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qgif.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000039424 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qicns.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qico.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000414720 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qjpeg.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qsvg.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000024576 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qtga.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qwbmp.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000532992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\imageformats\qwebp.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 001441792 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\platforms\qwindows.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 001189888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\sqldrivers\qsqlite.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000134656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\plugins\styles\qwindowsvistastyle.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 006184448 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Core.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 006867456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Gui.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 001104896 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Network.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000325120 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Positioning.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 003668480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Qml.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000517120 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5QmlModels.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000051712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5QmlWorkerScript.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 004228608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Quick.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000171008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5QuickControls2.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 001085440 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5QuickTemplates2.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000205824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Sql.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000329728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Svg.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000390656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5WebEngine.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 095598080 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5WebEngineCore.dll
2021-10-30 11:23 - 2021-10-30 13:43 - 000127488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5WebChannel.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 005587968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Widgets.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000462848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5WinExtras.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000188928 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5Xml.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 002878464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\Qt5XmlPatterns.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000055808 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQml\qmlplugin.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick.2\qtquick2plugin.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000284160 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Controls.2\qtquickcontrols2plugin.dll
2021-10-30 11:23 - 2021-10-30 13:44 - 000333824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Controls\qtquickcontrolsplugin.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000136704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Dialogs\dialogplugin.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Layouts\qquicklayoutsplugin.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000313856 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Templates.2\qtquicktemplates2plugin.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtQuick\Window.2\windowplugin.dll
2021-10-30 11:23 - 2021-10-30 13:45 - 000091648 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.50017.0_x64__0a9344xs7nr4m\radeonsoftware\QtWebEngine\qtwebengineplugin.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

SearchScopes: HKLM -> {7B9052D9-71A3-41AA-86F1-123FE56C4854} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {7B9052D9-71A3-41AA-86F1-123FE56C4854} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-1023201054-3407354882-3767647961-1001 -> {7B9052D9-71A3-41AA-86F1-123FE56C4854} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2023-01-10] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2023-01-10] (HP Inc. -> HP Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-02-05] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\sharepoint.com -> hxxps://envistaconnect-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\HP Backgrounds\backgroundDefault.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "ExpressVPNNotificationService"
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1023201054-3407354882-3767647961-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{69885A45-3D1B-4017-96A7-6B1CFC033E2E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{66C9ED8E-694C-4BAB-A24F-3E0F48157782}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A0178998-EEF7-468A-8BD1-F4FE332059F0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{3DF3173D-F42D-46CE-86DB-161A29F5B752}C:\users\marek\appdata\local\programs\opera\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{C5FB9654-CA2F-4626-9DCC-24B60FF16952}C:\users\marek\appdata\local\programs\opera\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{B5840F64-7189-46CA-B21D-DE3BA177B02B}C:\users\marek\appdata\local\programs\opera\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{ED64CD85-0EDA-4F05-BFB9-41D5545FC101}C:\users\marek\appdata\local\programs\opera\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{236C8C8A-F368-4243-82DF-2C2DF850AB0E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1FD4CB51-3F1C-4A0D-83FE-AED5E83D8544}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{184E1174-B87B-4DB5-A5ED-86C47A36332D}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [UDP Query User{67B51DBF-32A9-4CED-A0FE-3F49A2D02BC3}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [TCP Query User{52FBC8C2-30B5-438C-892C-746B6EF0E9AE}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Block) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [UDP Query User{6489531C-4AB7-4FD6-90E6-DECDA8026BAB}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Block) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [TCP Query User{C43D3AB8-5E3C-415B-9773-0140BAF6CA02}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [UDP Query User{2A011B34-9A79-4068-B917-4B9EE70184B7}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [TCP Query User{1ACC92B5-F599-4C6B-BBEA-61213DCB03F3}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [UDP Query User{F69AF001-127A-435C-BAD0-8BB3D42FDBA4}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [TCP Query User{68F05640-05C9-4126-9612-0C2F7AB3F611}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [UDP Query User{F3DD8603-CD7F-471D-A500-9803A95B081D}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [TCP Query User{E8C59807-A3C0-41D0-9B25-8C293CF323D9}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [UDP Query User{9C590163-67D2-49CB-88AB-07C72DEFC821}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [TCP Query User{4F1C6A22-00A0-47FF-8ACC-49E2D15C4DCC}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [UDP Query User{75DC275E-050B-4C71-ADFD-1AD92191E801}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [{6C895759-75A5-49C8-9B15-47E36EC774B0}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23002.403.1788.1930_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{87A8B8EE-13BA-49CE-90C0-F7989EAEEB4B}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23002.403.1788.1930_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{374D83CD-5192-44EC-919C-DCC54DB075DE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FCAA17D9-B296-4713-AC8F-DB23F4025428}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C449CD98-5A5E-4E85-A647-244E9733B500}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8440D185-1975-47E2-88FF-CB06F684EAD1}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.93.3404.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C8744852-AE22-4A68-AC58-12C059D1BD7A}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\109.0.1518.78\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

05-02-2023 18:03:35 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/07/2023 07:24:17 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: Failed to get auth header with 0x8086000cmcpmanagementservice.dll

Error: (02/07/2023 07:24:17 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: User Interaction Required while trying to get a token silently. ErrorCode: 0xcaa20003, Error: AADSTS50173: The provided grant has expired due to it being revoked, a fresh auth token is needed. The user might have changed or reset their password. The grant was issued on '2022-09-11T07:47:19.8208922Z' and the TokensValidFrom date (before which tokens are not valid) for this user is '2023-01-02T06:09:15.0000000Z'.
Trace ID: 0ab3f353-bc2b-4acc-8cd5-2dde63874300
Correlation ID: 16d56e77-3abc-4fca-9f96-3714ec9405d5
Timestamp: 2023-02-07 18:24:03Zmcpmanagementservice.dll

Error: (02/07/2023 07:24:13 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: Failed to get auth header with 0x8086000cmcpmanagementservice.dll

Error: (02/07/2023 07:24:13 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: User Interaction Required while trying to get a token silently. ErrorCode: 0xcaa20003, Error: AADSTS50173: The provided grant has expired due to it being revoked, a fresh auth token is needed. The user might have changed or reset their password. The grant was issued on '2022-09-11T07:47:19.8208922Z' and the TokensValidFrom date (before which tokens are not valid) for this user is '2023-01-02T06:09:15.0000000Z'.
Trace ID: 0ab3f353-bc2b-4acc-8cd5-2dde63874300
Correlation ID: 16d56e77-3abc-4fca-9f96-3714ec9405d5
Timestamp: 2023-02-07 18:24:03Zmcpmanagementservice.dll

Error: (02/07/2023 07:24:09 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: Failed to get auth header with 0x8086000cmcpmanagementservice.dll

Error: (02/07/2023 07:24:09 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: User Interaction Required while trying to get a token silently. ErrorCode: 0xcaa20003, Error: AADSTS50173: The provided grant has expired due to it being revoked, a fresh auth token is needed. The user might have changed or reset their password. The grant was issued on '2022-09-11T07:47:19.8208922Z' and the TokensValidFrom date (before which tokens are not valid) for this user is '2023-01-02T06:09:15.0000000Z'.
Trace ID: 0ab3f353-bc2b-4acc-8cd5-2dde63874300
Correlation ID: 16d56e77-3abc-4fca-9f96-3714ec9405d5
Timestamp: 2023-02-07 18:24:03Zmcpmanagementservice.dll

Error: (02/07/2023 07:24:05 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: Failed to get auth header with 0x8086000cmcpmanagementservice.dll

Error: (02/07/2023 07:24:05 PM) (Source: Universal Print) (EventID: 1) (User: )
Description: User Interaction Required while trying to get a token silently. ErrorCode: 0xcaa20003, Error: AADSTS50173: The provided grant has expired due to it being revoked, a fresh auth token is needed. The user might have changed or reset their password. The grant was issued on '2022-09-11T07:47:19.8208922Z' and the TokensValidFrom date (before which tokens are not valid) for this user is '2023-01-02T06:09:15.0000000Z'.
Trace ID: 0ab3f353-bc2b-4acc-8cd5-2dde63874300
Correlation ID: 16d56e77-3abc-4fca-9f96-3714ec9405d5
Timestamp: 2023-02-07 18:24:03Zmcpmanagementservice.dll


System errors:
=============
Error: (02/05/2023 06:01:34 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (02/05/2023 04:34:38 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9MSSGKG348SP-MicrosoftWindows.Client.WebExperience.

Error: (02/05/2023 04:33:39 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (01/29/2023 04:40:30 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (01/22/2023 12:33:17 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.

Error: (01/21/2023 12:10:20 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (01/21/2023 12:09:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.

Error: (01/18/2023 06:08:07 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.


Windows Defender:
================
Date: 2023-02-05 15:12:04
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {D9ED8AE4-160E-44E8-B078-861473045C1B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-01-30 17:22:08
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {BA08A78B-15A1-4250-BE09-144D583009B3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-01-24 22:01:17
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {EF609869-11D0-40E7-AECD-25F2A105391F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-01-22 11:20:00
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {A996CE03-7C08-42E6-B051-76ED82E3910C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-01-19 22:26:39
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {6FD21BDA-7C42-4839-98FD-DCFEB56B4BF1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===============
Date: 2023-01-13 00:01:02
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-14 17:45:42
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system.

Date: 2022-11-14 17:45:42
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume3\Windows\System32\CorePrivacySettingsStore.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

BIOS: Insyde F.33 08/17/2020
Motherboard: HP 85EA
Processor: AMD Ryzen 5 3500U with Radeon Vega Mobile Gfx
Percentage of memory in use: 76%
Total physical RAM: 6090.14 MB
Available physical RAM: 1423.74 MB
Total Virtual: 14794.14 MB
Available Virtual: 3549.62 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:237.59 GB) (Free:36.05 GB) (Model: SAMSUNG MZVLQ256HAJD-000H1) NTFS

\\?\Volume{7191b1fb-0078-4dfc-b541-56b869b9ef42}\ () (Fixed) (Total:0.61 GB) (Free:0.08 GB) NTFS
\\?\Volume{43d59759-cb2b-44ea-8601-d5f3c78ab9f6}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.19 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: 909A18D0)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 19:53
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 20:03
od Marek 46
Dobrý den,

# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2022-10-10.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 02-07-2023
# Duration: 00:00:12
# OS: Windows 11 (Build 22621.1105)
# Scanned: 32101
# Detected: 19


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.HPAudioSwitch Folder C:\Program Files (x86)\HP\HPAUDIOSWITCH
Preinstalled.HPAudioSwitch Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{17F4011F-A697-4021-B52D-400AA0B6F096}
Preinstalled.HPAudioSwitch Registry HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\HPAudioSwitch
Preinstalled.HPAudioSwitch Task C:\Windows\System32\Tasks\HPAUDIOSWITCH
Preinstalled.HPCleanFLC Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|HPSEU_Host_Launcher
Preinstalled.HPCleanFLC Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Run|HPSEU_Host_Launcher
Preinstalled.HPRegistrationService Folder C:\ProgramData\HP\HP REGISTRATION SERVICE
Preinstalled.HPSupportAssistant Folder C:\HP\SUPPORT
Preinstalled.HPSupportAssistant Folder C:\Program Files (x86)\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSupportAssistant Folder C:\Users\marek\AppData\Roaming\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSupportAssistant Registry HKLM\Software\Classes\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}
Preinstalled.HPSupportAssistant Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}
Preinstalled.HPSupportAssistant Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}
Preinstalled.HPSupportAssistant Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}
Preinstalled.HPSureConnect Folder C:\Program Files\HPCOMMRECOVERY
Preinstalled.HPSureConnect Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{6468C4A5-E47E-405F-B675-A70A70983EA6}
Preinstalled.HPTouchpointAnalyticsClient Folder C:\ProgramData\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}


AdwCleaner[S00].txt - [3604 octets] - [06/02/2023 18:31:26]
AdwCleaner[S01].txt - [3665 octets] - [06/02/2023 18:33:50]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S02].txt ##########

Re: Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 21:05
od Rudy
Toto je OK (preinstalled jsou neškodné utilty od HP). Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
FirewallRules: [TCP Query User{184E1174-B87B-4DB5-A5ED-86C47A36332D}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [UDP Query User{67B51DBF-32A9-4CED-A0FE-3F49A2D02BC3}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [TCP Query User{C43D3AB8-5E3C-415B-9773-0140BAF6CA02}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [UDP Query User{2A011B34-9A79-4068-B917-4B9EE70184B7}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [TCP Query User{1ACC92B5-F599-4C6B-BBEA-61213DCB03F3}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [UDP Query User{F69AF001-127A-435C-BAD0-8BB3D42FDBA4}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [TCP Query User{68F05640-05C9-4126-9612-0C2F7AB3F611}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [UDP Query User{F3DD8603-CD7F-471D-A500-9803A95B081D}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [TCP Query User{E8C59807-A3C0-41D0-9B25-8C293CF323D9}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [UDP Query User{9C590163-67D2-49CB-88AB-07C72DEFC821}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [TCP Query User{4F1C6A22-00A0-47FF-8ACC-49E2D15C4DCC}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [UDP Query User{75DC275E-050B-4C71-ADFD-1AD92191E801}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 21:23
od Marek 46
Zdravím,

Fix result of Farbar Recovery Scan Tool (x64) Version: 07-02-2023
Ran by marek (07-02-2023 21:14:24) Run:1
Running from C:\Users\marek\Desktop
Loaded Profiles: marek
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
FirewallRules: [TCP Query User{184E1174-B87B-4DB5-A5ED-86C47A36332D}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [UDP Query User{67B51DBF-32A9-4CED-A0FE-3F49A2D02BC3}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [TCP Query User{C43D3AB8-5E3C-415B-9773-0140BAF6CA02}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [UDP Query User{2A011B34-9A79-4068-B917-4B9EE70184B7}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [TCP Query User{1ACC92B5-F599-4C6B-BBEA-61213DCB03F3}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [UDP Query User{F69AF001-127A-435C-BAD0-8BB3D42FDBA4}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [TCP Query User{68F05640-05C9-4126-9612-0C2F7AB3F611}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [UDP Query User{F3DD8603-CD7F-471D-A500-9803A95B081D}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [TCP Query User{E8C59807-A3C0-41D0-9B25-8C293CF323D9}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [UDP Query User{9C590163-67D2-49CB-88AB-07C72DEFC821}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [TCP Query User{4F1C6A22-00A0-47FF-8ACC-49E2D15C4DCC}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [UDP Query User{75DC275E-050B-4C71-ADFD-1AD92191E801}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Block) C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Update Binary" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Delete Cached Standalone Update Binary" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{184E1174-B87B-4DB5-A5ED-86C47A36332D}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67B51DBF-32A9-4CED-A0FE-3F49A2D02BC3}C:\users\marek\appdata\local\programs\opera\74.0.3911.160\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C43D3AB8-5E3C-415B-9773-0140BAF6CA02}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2A011B34-9A79-4068-B917-4B9EE70184B7}C:\users\marek\appdata\local\programs\opera\74.0.3911.203\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1ACC92B5-F599-4C6B-BBEA-61213DCB03F3}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F69AF001-127A-435C-BAD0-8BB3D42FDBA4}C:\users\marek\appdata\local\programs\opera\74.0.3911.218\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{68F05640-05C9-4126-9612-0C2F7AB3F611}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F3DD8603-CD7F-471D-A500-9803A95B081D}C:\users\marek\appdata\local\programs\opera\75.0.3969.218\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E8C59807-A3C0-41D0-9B25-8C293CF323D9}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9C590163-67D2-49CB-88AB-07C72DEFC821}C:\users\marek\appdata\local\programs\opera\76.0.4017.177\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{4F1C6A22-00A0-47FF-8ACC-49E2D15C4DCC}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{75DC275E-050B-4C71-ADFD-1AD92191E801}C:\users\marek\appdata\local\programs\opera\77.0.4054.203\opera.exe" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 324004508 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 78832024 B
Edge => 0 B
Firefox => 0 B
Opera => 250635993 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 195478 B
marek => 77842704 B

RecycleBin => 380645 B
EmptyTemp: => 699.2 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:15:04 ====

Re: Zpomalený NTB - zamrzání opery

Napsal: 07 úno 2023 21:50
od Rudy
Smazáno. Nastala nějaká změna?

Re: Zpomalený NTB - zamrzání opery

Napsal: 08 úno 2023 16:50
od Marek 46
Dobrý den,
S NTB problém není, opera se trochu zlepšila, ale po otevření jednoho okna zatěžuje paměť viz. obrázek a zamrzá

Re: Zpomalený NTB - zamrzání opery

Napsal: 08 úno 2023 20:32
od Rudy
Zkusíme vyčistit prohlížeče. Spusťte postupně tyto utilty:

1. Stahnete Zoek.exe , https://www.edisk.cz/stahni/21334/zoek.rar_1.3MB.html/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.

Re: Zpomalený NTB - zamrzání opery

Napsal: 09 úno 2023 17:56
od Marek 46
Dobrý den,


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by marek on 09.02.2023 at 17:16:08,52.
Microsoft Windows 11 Home 10.0.22621 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\marek\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

09.02.2023 17:17:31 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\Users\marek\AppData\Local\VirtualStore deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1023201054-3407354882-3767647961-1001\Software\Microsoft\Internet Explorer\SearchScopes\{7B9052D9-71A3-41AA-86F1-123FE56C4854} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{7B9052D9-71A3-41AA-86F1-123FE56C4854} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{7B9052D9-71A3-41AA-86F1-123FE56C4854} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~3\Propagation deleted
C:\PROGRA~3\Package Cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24A2D.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2CB32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b208.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b21a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b22b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b23d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b25e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b270.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b282.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b293.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b2ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b301.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b313.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b324.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b336.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b347.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b359.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-124-2670-20b36b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99a96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99aa8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99aaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99abc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99acd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99adf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99af1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c90-960-99b9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac8fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac90e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac92f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac941.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac962.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac964.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac9a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-ac9a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-aca06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-aca18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-aca39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-aca79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acaaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acabc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acaed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acaef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acb20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acb31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acb62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acb74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acb95.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acbc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acbe9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acc93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acca5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-accd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acce8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acd9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acdc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2774-bd4-acdc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253ae4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253ae5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253ae60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253ae82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253ae93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aeb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aeba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aedc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aee0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aee2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aef3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253aef5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34c0-15ec-253af42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cd9f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a98-13e4-cda8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28ad2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28af3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28b82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28ba3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28ba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28bb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28bb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28bcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28bcd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28bee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28c00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28c02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28c13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ca4-3e14-3e28c25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44291.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f442fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44310.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44322.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44324.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44335.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44337.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44349.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f4435b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f4436c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f4436e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44380.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f443d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f443f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4074-3f50-1f44403.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f77d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f79e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f7fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f81b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f83d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f84e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f860.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f871.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f893.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f8a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f8e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f8f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f8f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f90a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f91c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-2c54-13f92d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d272a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d273b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d274d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d274f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d2761.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d2763.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d2774.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d2776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d2788.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d279a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d279c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d27fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d280b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d281d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-568-2304-d281f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba34b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba36c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba37e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba390.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba392.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba3b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba3d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba3e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba3f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba409.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba42a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba44b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba46d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba47e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba490.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba4b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba4e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba4f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba505.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba536.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6cc-2fe0-1ba559.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5c9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5cc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5cd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5cf3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5d8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5dc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5de2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5df3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-be4-c94-1e5e9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2837e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2837f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2837f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28381a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28382c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28382e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28384f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2838f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283909.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28392a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28393c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28394e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-28395f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2839cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-2839e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283a02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283a32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283a63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283aa6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283ab7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283ac9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283aea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283b97.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283ba8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283be9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283beb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283c0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283c0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283c2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283c9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283cb0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283cc2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283ce3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283cf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283d80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283da1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283da3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283db5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283db7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283dc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283dda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283dfb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283e1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e20-1a80-283e1e.tmp deleted
"C:\DumpStack.log.tmp" not deleted

==== Chromium Startpages ======================

C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Preferences
nito_content_settings":[],"incognito_preferences":{},"install_time":"13253365267492852","location":5,"manifest":{"background":{"persistent":false,"scripts":["util.js","b64.js","cbor.js","sha256.js","timer.js","countdown.js","countdowntimer.js","devicestatuscodes.js","approvedorigins.js","errorcodes.js","webrequest.js","messagetypes.js","factoryregistry.js","requesthelper.js","asn1.js","enroller.js","requestqueue.js","signer.js","origincheck.js","textfetcher.js","appid.js","watchdog.js","logging.js","webrequestsender.js","window-timer.js","cryptotokenorigincheck.js","cryptotokenapprovedorigins.js","inherits.js","individualattest.js","googlecorpindividualattest.js","cryptotokenbackground.js"]},"description":"CryptoToken Component Extension","externally_connectable":{"ids":["fjajfjhkeibgmiggdfehjplbhmfkialk"],"matches":["https://*/*"]},"incognito":"split","key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAq7zRobvA+AVlvNqkHSSVhh1sEWsHSqz4oR/XptkDe/Cz3+gW9ZGumZ20NCHjaac8j1iiesdigp8B1LJsd/2WWv2Dbnto4f8GrQ5MVphKyQ9WJHwejEHN2K4vzrTcwaXqv5BSTXwxlxS/mXCmXskTfryKTLuYrcHEWK8fCHb+0gvr8b/kvsi75A1aMmb6nUnFJvETmCkOCPNX5CHTdy634Ts/x0fLhRuPlahk63rdf7agxQv5viVjQFk+tbgv6aa9kdSd11Js/RZ9yZjrFgHOBWgP4jTBqud4+HUglrzu8qynFipyNRLCZsaxhm+NItTyNgesxLdxZcwOz56KD1Q4IQIDAQAB","manifest_version":2,"name":"CryptoTokenExtension","permissions":["cryptotokenPrivate","externally_connectable.all_urls","tabs","https://*/*","http://*/*"],"version":"0.9.74"},"path":"C:\\Program Files (x86)\\Microsoft\\Edge\\Application\\87.0.664.66\\resources\\cryptotoken","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"kmojgmpmopiiagdfbilgognmlegkonbk":{"active_bit":false,"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"disable_reasons":8192,"state":0},"mhjfbmdgcfjbbpaeojofohoefgiehjai":{"active_permissions":{"api":["contentSettings","fileSystem","fileSystem.write","metricsPrivate","tabs","resourcesPrivate","fileSystem.readFullPath","errorReporting","edgeLearningToolsPrivate","fileSystem.getCurrentEntry","edgePdfPrivate","edgeCertVerifierPrivate"],"explicit_host":["edge://resources/*"],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13253365267481844","location":5,"manifest":{"content_security_policy":"script-src 'self' 'wasm-eval' blob: filesystem: chrome://resources; object-src * blob: externalfile: file: filesystem: data:; plugin-types application/x-google-chrome-pdf","description":"","incognito":"split","key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDN6hM0rsDYGbzQPQfOygqlRtQgKUXMfnSjhIBL7LnReAVBEd7ZmKtyN2qmSasMl4HZpMhVe2rPWVVwBDl6iyNE/Kok6E6v6V3vCLGsOpQAuuNVye/3QxzIldzG/jQAdWZiyXReRVapOhZtLjGfywCvlWq7Sl/e3sbc0vWybSDI2QIDAQAB","manifest_version":2,"mime_types":["application/pdf"],"mime_types_handler":"edge_pdf/index.html","name":"Microsoft Edge PDF Viewer","offline_enabled":true,"permissions":["errorReporting","chrome://resources/","contentSettings","metricsPrivate","edgeLearningToolsPrivate","resourcesPrivate",{"fileSystem":["write","readFullPath","getCurrentEntry"]}],"version":"1"},"path":"C:\\Program Files (x86)\\Microsoft\\Edge\\Application\\87.0.664.66\\resources\\edge_pdf","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"ncbjelpjchkpbikbpkcchkhkblodoama":{"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":[],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13267045235290306","location":5,"manifest":{"background":{"persistent":false,"scripts":["background.js"]},"externally_connectable":{"matches":["https://*.teams.microsoft.com/*","https://*.skype.com/*","https://*.teams.live.com/*"]},"incognito":"split","key":"MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAtAdFAR3ckd5c7G8VSzUj4Ltt/QRInUOD00StG95LweksGcLBlFlYL46cHFVgHHj1gmzcpBtgsURdcrAC3V8yiE7GY4wtpOP+9l+adUGR+cyOG0mw9fLjyH+2Il0QqktsNXzkNiE1ogW4l0h4+PJc262j0vtm4hBzMvR0QScFWcAIcAErlUiWTt4jefXCAYqubV99ed5MvVMWBxe97wOa9hYwAhbCminOepA4RRTg9eyi0TiuHpq/bNI8C5qZgKIQNBAjgiFBaIx9hiMBFlK4NHUbFdgY6Qp/hSCMNurctwz1jpsXEnT4eHg1YWXfquoH8s4swIjkFCMBF6Ejc3cUkQIDAQAB","manifest_version":2,"name":"WebRTC Internals Extension","permissions":["webrtcInternalsPrivate"],"version":"2.0.2"},"path":"C:\\Program Files (x86)\\Microsoft\\Edge\\Application\\91.0.864.37\\resources\\webrtc_internals","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"nkbndigcebkoaejohleckhekfmcecfja":{"active_bit":false,"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"disable_reasons":8192,"state":0},"nkeimhogjdpnpccoofpliimaahmaaome":{"active_permissions":{"api":["desktopCapture","processes","webrtcAudioPrivate","webrtcDesktopCapturePrivate","webrtcLoggingPrivate","system.cpu","enterprise.hardwarePlatform"],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"commands":{},"content_settings":[],"creation_flags":1,"events":["runtime.onConnectExternal"],"from_bookmark":false,"from_webstore":false,"incognito_content_settings":[],"incognito_preferences":{},"install_time":"13315220654228371","location":5,"manifest":{"background":{"page":"background.html","persistent":false},"externally_connectable":{"matches":["https://*.google.com/*","https://*.teams.microsoft.com/*","https://*.teams.live.com/*","https://*.skype.com/*"]},"incognito":"split","key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDAQt2ZDdPfoSe/JI6ID5bgLHRCnCu9T36aYczmhw/tnv6QZB2I6WnOCMZXJZlRdqWc7w9jo4BWhYS50Vb4weMfh/I0On7VcRwJUgfAxW2cHB+EkmtI1v4v/OU24OqIa1Nmv9uRVeX0GjhQukdLNhAE6ACWooaf5kqKlCeK+1GOkQIDAQAB","manifest_version":2,"name":"WebRTC Extension","permissions":["desktopCapture","enterprise.hardwarePlatform","processes","system.cpu","webrtcAudioPrivate","webrtcDesktopCapturePrivate","webrtcLoggingPrivate"],"version":"1.3.21"},"path":"C:\\Program Files (x86)\\Microsoft\\Edge\\Application\\108.0.1462.46\\resources\\hangout_services","preferences":{},"regular_only_preferences":{},"service_worker_registration_info":{"version":"1.3.17"},"state":1,"was_installed_by_default":false,"was_installed_by_oem":false},"olmhchkiafniffcaiciiomfdplnmklak":{"active_bit":false,"active_permissions":{"api":[],"explicit_host":[],"manifest_permissions":[],"scriptable_host":[]},"disable_reasons":8192,"state":0}}},"family_safety":{"activity_reporting_enabled":false,"web_filtering_enabled":false},"funsec_app_defaults":{"campaign_cool_down_records":[]},"google":{"services":{"consented_to_sync":true}},"intl":{"selected_languages":"cs,en,en-GB,en-US"},"invalidation":{"channel_id":"CgdEZWZhdWx0EAEYr9L_rAc user_account_sync"},"language_dwell_time_average":{"cs":55.06976744186047,"en":3.0},"language_model_counters":{"cs":98,"en":5},"language_usage_count":{"cs":86,"en":1},"local_browser_data_share":{"index_last_cleaned_time":"13320079922783486"},"media":{"device_id_salt":"E96BFACF1889CD88E4B9A9EDF748EA91","engagement":{"schema_version":5}},"media_router":{"receiver_id_hash_token":"AGJTeucZF3LLY4y3WnFx8IyVz0bUXtmOh6El1TissXFGxo2vZRQbWBu6VeaNCcR+I4ftx5XJWmTo8iZ/2madvg=="},"muid":{"last_sync":"13320431035864045","values_seen":["0C908CF8DA316C632B669E8FDB736D87"]},"ntp":{"background_image_type":"imageAndVideo","dhp_last_creation_time":"13319570305181483","hide_default_top_sites":false,"layout_mode":2,"news_feed_display":"always","ntp_last_creation_time_v2":"13319570405828026","num_personal_suggestions":1,"prerender_contents_height":713,"prerender_contents_width":1489,"record_user_choices":[{"setting":"current_location_enabled","source":"ntp","timestamp":1.674303898428e+12,"value":false},{"setting":"daily_discovery","source":"ntp","timestamp":1.674303898428e+12,"value":false}],"show_greeting":true,"show_image_of_day":true,"user_nurturing":[{"key":"campaigns","value":[{"creatives":[{"content":{"cm":[{"actionPauseInMs":"1000","cta":[{"ctaBehavior":"Navigate","ctaText":"Stáhnout","destinationurl":"https://aka.ms/NTP_Coachmark"},{"ctaBeh ... xt":"Možná později"}],"disablePointer":"true","displayDismissX":"true","displayType":"Medium","headline":"Získejte novou aplikaci Microsoft Start","leadText":"Stejně jako na počítači získáte individuálně přizpůsobené důvěryhodné zprávy a navíc hry, počasí a další možnosti, to vše v rámci jedné aplikace","mainImage":"https://img-prod-cms-rt-microsoft-com.a ... "Microsoft Start App NTP INTL Coachmark","nonTargetPlacement":"BottomEnd","timeoutMilliseconds":"100000"}],"frequency":"1","frequencyInterval":"14","isEcsExperiment":"false"},"creativeId":"128000000003039089","creativeName":"Microsoft News","creativeNamespace":"Coachmark","storageInfo":{"lastAddedTime":1.63560998059e+12,"useCount":0,"useTime":0},"telemetry":{"actionUrl":"https://ris.api.iris.microsoft.com/v1/a ... =CFD&UIT=E"}}],"errors":[{"errors":[{"code":2040,"msg":"Demand source returns error (Name: GN_ps, Error: No eligible content.)."}],"placement":"88000308"}],"lastUpdatedMarket":"cs-cz","lastUpdatedTime":1.675800992598e+12,"placement":"88000308"},{"creatives":[],"errors":[{"errors":[{"code":2040,"msg":"Demand source returns error (Name: GN_ps, Error: No eligible content.)."}],"placement":"10837393"}],"lastUpdatedMarket":"cs-cz","lastUpdatedTime":1.675800992599e+12,"placement":"10837393"},{"creatives":[{"content":{"LANDSCAPE":"https://img-prod-cms-rt-microsoft-com.a ... yright":"© Pajor Pawel / Shutterstock","cta":"https://www.bing.com/search?q=Llanrwst% ... ewtab","hs":[{"cta":"https://microsoftedgetips.microsoft.com ... "Informace k lepšímu přizpůsobení","title":"Udělejte z Microsoft Edge víc než prohlížeč. Využijte personalizované motivy a funkce pracující pro vás."},{"cta":"https://microsoftedgetips.microsoft.com ... "Aktivujte důležité funkce zabezpečení.","title":"Zjistěte více o integrovaných funkcích Microsoft Edge, které chrání vás i vaše údaje."}],"title":"Llanrwst, Caernarfon, North Wales","update_period":"86400"},"creativeId":"128000000003551569","creativeName":"MSNAnaheimNewsNTPImageHotspots","creativeNamespace":"MSNAnaheimNewsNTPImages","telemetry":{"actionUrl":"https://ris.api.iris.microsoft.com/v1/a ... =CFD&UIT=E"}}],"currentCreativeId":"128000000003551569","errors":[],"imageInfo":{"dislikedCreativeCountCurrentPeriod":0,"dislikedCreatives":[]},"lastUpdatedMarket":"cs-cz","lastUpdatedTime":1.675800992866e+12,"placement":"88000244"}]},{"key":"meta","value":{"campaignsDataMigrationDoneTs":1.608891669387e+12}},{"key":"background_setting_preferences","value":{"changeBackgroundDaily":true,"imageDislikes":[],"imageLikes":[],"includeVideoBackgroundsInRotation":true,"selectedVideoSetting":"balanced","showImageSpotlightText":true,"videoDislikes":[],"videoLikes":[]}},{"key":"wpo_lyt_tmpl","value":[{"expiryDate":1.682076298426e+12,"value":"prg-wpo-alltif"}]},{"key":"wpo","value":{"layoutHistory":[{"from":"inspirational","reTarget":false,"time":1.674303898428e+12,"to":"informational"}],"recommendedLayoutAppliedTs":1.674303898428e+12,"recommendedLayoutRetargetHistory":[]}}]},"nurturing":{"has_engaged_with_account_level_sync_consent":true,"recommended_settings_variants":-1},"open_save_as_awareness_ui":{"num_times_shelf_opened_since_shown":1},"optimization_guide":{"hintsfetcher":{"hosts_successfully_fetched":{}},"previously_registered_optimization_types":{"HISTORY_CLUSTERS":true},"store_file_paths_to_delete":{}},"personalization_data_consent":{"how_set":7,"personalization_in_context_consent_can_prompt":false,"personalization_in_context_count":0,"when_set":"13315220657555869"},"pinned_tabs":[],"plugin":{"default_pdf_handler_infobar_last_declined":"13309798086185781","should_reset_check_default_pdf_handler":false},"plugins":{"plugins_list":[]},"profile":{"avatar_bubble_tutorial_shown":2,"avatar_index":20,"content_settings":{"enable_quiet_permission_ui_enabling_method":{"notifications":1},"exceptions":{"accessibility_events":{},"app_banner":{},"ar":{},"auto_select_certificate":{},"automatic_downloads":{},"autoplay":{},"background_sync":{},"bluetooth_chooser_data":{},"bluetooth_guard":{},"bluetooth_scanning":{},"camera_pan_tilt_zoom":{},"clear_browsing_data_cookies_exceptions":{},"client_hints":{"https://ntp.msn.com:443,*":{"last_modified":"13320274591659022","setting":{"client_hints":[8,9,10,11,12,13,14,16,23]}}},"clipboard":{},"cookies":{},"durable_storage":{},"edge_ad_targeting":{},"edge_ad_targeting_data":{},"edge_sdsm":{},"edge_u2f_api_request":{},"edge_user_agent_token":{},"fedcm_active_session":{},"fedcm_share":{},"file_system_access_chooser_data":{},"file_system_last_picked_directory":{},"file_system_read_guard":{},"file_system_write_guard":{},"formfill_metadata":{},"geolocation":{},"get_display_media_set_select_all_screens":{},"hid_chooser_data":{},"hid_guard":{},"http_allowed":{},"idle_detection":{},"images":{},"important_site_info":{},"insecure_private_network":{},"intent_picker_auto_display":{},"javascript":{},"javascript_jit":{},"legacy_cookie_access":{},"local_fonts":{},"media_engagement":{"http://www.penzionbedrich.harrachov.cz:80,*":{"expiration":"13325710217553093","last_modified":"13317934217553103","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"http://www.restaurace.slunce-harrachov.cz:80,*":{"expiration":"13325790863054536","last_modified":"13318014863054559","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"http://www.restauracedavid.cz:80,*":{"expiration":"13325790863048931","last_modified":"13318014863048957","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"http://www.roubenka-harrachov.cz:80,*":{"expiration":"13325710443120234","last_modified":"13317934443120244","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://login.szn.cz:443,*":{"expiration":"13327006855041587","last_modified":"13319230855041596","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://mapy.cz:443,*":{"expiration":"13327855950527015","last_modified":"13320079950527019","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":3}},"https://ntp.msn.com:443,*":{"expiration":"13327346414247519","last_modified":"13319570414247524","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":6}},"https://penzion-u-paseku.penzion.cz:443,*":{"expiration":"13325790863034448","last_modified":"13318014863034468","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://www.autokelly.cz:443,*":{"expiration":"13327855950546208","last_modified":"13320079950546216","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://www.bing.com:443,*":{"expiration":"13327346529632031","last_modified":"13319570529632040","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":10}},"https://www.dotyk.cz:443,*":{"expiration":"13327006615932345","last_modified":"13319230615932362","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://www.facebook.com:443,*":{"expiration":"13326045080801025","last_modified":"13318269080801041","setting":{"hasHighScore":false,"lastMediaPlaybackTime":1.331826859076464e+16,"mediaPlaybacks":1,"visits":1}},"https://www.harrachov.cz:443,*":{"expiration":"13325533438099773","last_modified":"13317757438099780","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}},"https://www.msn.com:443,*":{"expiration":"13327006443598853","last_modified":"13319230443598866","model":0,"setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":5}},"https://www.novinky.cz:443,*":{"expiration":"13327006514385365","last_modified":"13319230514385382","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":8}},"https://www.seznam.cz:443,*":{"expiration":"13327006650745617","last_modified":"13319230650745628","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":4}},"https://www.super.cz:443,*":{"expiration":"13326995733351790","last_modified":"13319219733351798","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":4}},"https://www.uharracha.cz:443,*":{"expiration":"13325710232583967","last_modified":"13317934232583977","setting":{"hasHighScore":false,"lastMediaPlaybackTime":0.0,"mediaPlaybacks":0,"visits":1}}},"media_stream_camera":{},"media_stream_mic":{},"midi_sysex":{},"mixed_script":{},"nfc_devices":{},"notification_interactions":{},"notification_permission_review":{},"notifications":{"https://cs.windows10updater.com:443,*":{"expiration":"0","last_modified":"13307270258629990","model":0,"setting":2}},"password_protection":{},"payment_handler":{},"permission_autoblocking_data":{},"permission_autorevocation_data":{},"popups":{},"private_network_chooser_data":{},"private_network_guard":{},"protected_media_identifier":{},"protocol_handler":{},"reduced_accept_language":{},"safe_browsing_url_check_data":{},"secure_network":{},"secure_network_sites":{},"sensors":{},"serial_chooser_data":{},"serial_guard":{},"site_engagement":{"http://www.restaurace.slunce-harrachov.cz:80,*":{"last_modified":"13320274584089660","setting":{"lastEngagementTime":1.3320145247421076e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":5.1,"rawScore":5.1}},"http://www.restauracedavid.cz:80,*":{"last_modified":"13320274584089551","setting":{"lastEngagementTime":1.332014435292746e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":5.1,"rawScore":5.1}},"http://www.roubenka-harrachov.cz:80,*":{"last_modified":"13320274584089595","setting":{"lastEngagementTime":1.332014549022974e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":6.299999999999999,"rawScore":6.299999999999999}},"https://mapy.cz:443,*":{"last_modified":"13320274584089454","setting":{"lastEngagementTime":1.3320245196280944e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":3.9000000000000004,"rawScore":17.767372292881035}},"https://ntp.msn.com:443,*":{"expiration":"0","last_modified":"13320274584089315","model":0,"setting":{"decayModifiedScore":11.214844134617687,"lastEngagementTime":1.3320245131943156e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":11.1,"rawScore":17.420728599832167}},"https://penzion-u-paseku.penzion.cz:443,*":{"last_modified":"13320274584089519","setting":{"lastEngagementTime":1.332014561588076e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":8.699999999999998,"rawScore":8.699999999999998}},"https://www.autokelly.cz:443,*":{"last_modified":"13320274584089396","setting":{"lastEngagementTime":1.332024578408858e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":15.0,"rawScore":15.0}},"https://www.bing.com:443,*":{"expiration":"0","last_modified":"13320274584088857","model":0,"setting":{"decayModifiedScore":27.06434426365146,"lastEngagementTime":1.3320245140117912e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":12.0,"rawScore":37.90895222803126}},"https://www.dotyk.cz:443,*":{"last_modified":"13320274584089426","setting":{"lastEngagementTime":1.3320216016629708e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":3.3000000000000003,"rawScore":3.3000000000000003}},"https://www.facebook.com:443,*":{"last_modified":"13320274584089259","setting":{"lastEngagementTime":1.3320175307622824e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":13.260000000000016,"rawScore":13.260000000000016}},"https://www.msn.com:443,*":{"expiration":"0","last_modified":"13320274584089357","model":0,"setting":{"lastEngagementTime":1.3320113476947232e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":7.5,"rawScore":7.158235819417706}},"https://www.novinky.cz:443,*":{"last_modified":"13320274584089486","setting":{"lastEngagementTime":1.3320215916523472e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":15.0,"rawScore":14.6822787}},"https://www.pension-katka.webnode.cz:443,*":{"last_modified":"13320274584089777","setting":{"lastEngagementTime":1.3320144066007776e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":2.1,"rawScore":2.1}},"https://www.seznam.cz:443,*":{"last_modified":"13320274584089626","setting":{"lastEngagementTime":1.3320216030657068e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":15.0,"rawScore":14.9457549}},"https://www.super.cz:443,*":{"last_modified":"13320274584089695","setting":{"lastEngagementTime":1.3320205113688512e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":8.759999999999998,"rawScore":8.759999999999998}},"https://www.uharracha.cz:443,*":{"last_modified":"13320274584089733","setting":{"lastEngagementTime":1.3320145233905744e+16,"lastShortcutLaunchTime":0.0,"pointsAddedToday":7.499999999999998,"rawScore":7.499999999999998}}},"sleeping_tabs":{},"sound":{},"ssl_cert_decisions":{},"storage_access":{},"subresource_filter":{},"subresource_filter_data":{},"token_binding":{},"trackers":{},"trackers_data":{"http://img.youtube.com:80,*":{"expiration":"0","last_modified":"13255559654961515","model":0,"setting":{"count":1}},"https://0afc73af0119dc757b455806496dded2.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194279435038","model":0,"setting":{"count":1}},"https://28cd1ef7ba0e75a232fa2260443c7761.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194281690459","model":0,"setting":{"count":1}},"https://43f8a09f10298676e6c2ab392d7e0305.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194279627221","model":0,"setting":{"count":1}},"https://612607cf84312f0d1b7c0c28c0c539c6.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194283511763","model":0,"setting":{"count":1}},"https://8de3ce65fc31dd60602baacec1dc2129.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13307270240181681","model":0,"setting":{"count":1}},"https://9660777.fls.doubleclick.net:443,*":{"expiration":"0","last_modified":"13253365321075774","model":0,"setting":{"count":1}},"https://a.slunecnice.cz:443,*":{"expiration":"0","last_modified":"13319230578590345","model":0,"setting":{"count":2}},"https://a.teads.tv:443,*":{"expiration":"0","last_modified":"13319230575469458","model":0,"setting":{"count":2}},"https://a51b4ff79b86e482ab95a16678875a90.safeframe.googlesyndication.com:443,*":{"last_modified":"13319230580572154","setting":{"count":1}},"https://a665.casalemedia.com:443,*":{"expiration":"0","last_modified":"13310061737233967","model":0,"setting":{"count":1}},"https://aa.agkn.com:443,*":{"expiration":"0","last_modified":"13319218969338596","model":0,"setting":{"count":3}},"https://abs-0.twimg.com:443,*":{"last_modified":"13319219375658719","setting":{"count":2}},"https://acdn.adnxs.com:443,*":{"expiration":"0","last_modified":"13319230582433774","model":0,"setting":{"allowed_tracker_count":5,"count":5}},"https://ad.360yield.com:443,*":{"last_modified":"13319230493348481","setting":{"count":1}},"https://ad.doubleclick.net:443,*":{"last_modified":"13319230442197592","setting":{"count":7}},"https://ad.turn.com:443,*":{"last_modified":"13319230582954688","setting":{"count":1}},"https://ade.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13307270281531177","model":0,"setting":{"count":1}},"https://ads.pubmatic.com:443,*":{"expiration":"0","last_modified":"13319570419468025","model":0,"setting":{"count":22}},"https://ads.stickyadstv.com:443,*":{"last_modified":"13319230487921636","setting":{"count":1}},"https://adservice.google.com:443,*":{"expiration":"0","last_modified":"13319230576923561","model":0,"setting":{"count":5}},"https://adservice.google.cz:443,*":{"expiration":"0","last_modified":"13319230580574717","model":0,"setting":{"count":5}},"https://adx.adform.net:443,*":{"expiration":"0","last_modified":"13307270342647205","model":0,"setting":{"count":3}},"https://ams.creativecdn.com:443,*":{"last_modified":"13319219157064641","setting":{"count":3}},"https://ams3-ib.adnxs.com:443,*":{"last_modified":"13319230487088049","setting":{"allowed_tracker_count":3}},"https://analytics.twitter.com:443,*":{"expiration":"0","last_modified":"13253365322208477","model":0,"setting":{"count":2}},"https://ap.lijit.com:443,*":{"expiration":"0","last_modified":"13292194282648544","model":0,"setting":{"count":1}},"https://api.cxense.com:443,*":{"last_modified":"13319230577879258","setting":{"count":1}},"https://api.taboola.com:443,*":{"expiration":"0","last_modified":"13310061742612532","model":0,"setting":{"count":2}},"https://assets.pinterest.com:443,*":{"last_modified":"13319230574154241","setting":{"count":1}},"https://at.teads.tv:443,*":{"last_modified":"13319230576910881","setting":{"count":1}},"https://b00e3b3b317a2710d2aaf0a6a94319df.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194282425740","model":0,"setting":{"count":1}},"https://b1-chidc2.zemanta.com:443,*":{"last_modified":"13319570309562405","setting":{"count":4}},"https://b1-nydc1.zemanta.com:443,*":{"last_modified":"13318013637436225","setting":{"count":1}},"https://b1sync.zemanta.com:443,*":{"expiration":"0","last_modified":"13310061742566915","model":0,"setting":{"count":1}},"https://b1t-chidc2.zemanta.com:443,*":{"last_modified":"13319570309825959","setting":{"count":4}},"https://b1t-nydc1.zemanta.com:443,*":{"last_modified":"13318013637721006","setting":{"count":1}},"https://b5bedf6754267b1780e1d47b9eb561d6.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194279802622","model":0,"setting":{"count":1}},"https://bat.bing.com:443,*":{"expiration":"0","last_modified":"13253365320997820","model":0,"setting":{"count":2}},"https://beacon-ams3.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13309543925190251","model":0,"setting":{"count":1}},"https://beacon-fra2.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13309543925120961","model":0,"setting":{"count":1}},"https://bidder.criteo.com:443,*":{"expiration":"0","last_modified":"13319230578559673","model":0,"setting":{"count":3}},"https://c.bing.com:443,*":{"last_modified":"13319218969318279","setting":{"allowed_tracker_count":2}},"https://c.clarity.ms:443,*":{"expiration":"0","last_modified":"13280084864473047","model":0,"setting":{"allowed_tracker_count":4}},"https://c1.adform.net:443,*":{"last_modified":"13319230487913898","setting":{"count":1}},"https://cdn.adnxs.com:443,*":{"last_modified":"13319230488396232","setting":{"allowed_tracker_count":3}},"https://cdn.cxense.com:443,*":{"last_modified":"13319230576894188","setting":{"count":1}},"https://cdn.doubleverify.com:443,*":{"last_modified":"13319230487815161","setting":{"allowed_tracker_count":3}},"https://cdn.mookie1.com:443,*":{"expiration":"0","last_modified":"13307270343025047","model":0,"setting":{"count":1}},"https://cdn.syndication.twimg.com:443,*":{"last_modified":"13319230492000955","setting":{"count":3}},"https://cdn.taboola.com:443,*":{"expiration":"0","last_modified":"13310061741973195","model":0,"setting":{"count":1}},"https://cm.adform.net:443,*":{"expiration":"0","last_modified":"13319230492520111","model":0,"setting":{"count":2}},"https://cm.g.doubleclick.net:443,*":{"expiration":"0","last_modified":"13319230582498035","model":0,"setting":{"count":6}},"https://cms.quantserve.com:443,*":{"last_modified":"13319230582954967","setting":{"count":2}},"https://comcluster.cxense.com:443,*":{"last_modified":"13319230578296294","setting":{"count":1}},"https://connect.facebook.net:443,*":{"expiration":"0","last_modified":"13319230575224168","model":0,"setting":{"allowed_tracker_count":6,"count":7}},"https://content.aimatch.com:443,*":{"expiration":"0","last_modified":"13319230580896936","model":0,"setting":{"count":2}},"https://contextual.media.net:443,*":{"expiration":"0","last_modified":"13310061740771897","model":0,"setting":{"count":1}},"https://counter.yadro.ru:443,*":{"expiration":"0","last_modified":"13307270239174193","model":0,"setting":{"count":1}},"https://creativecdn.com:443,*":{"expiration":"0","last_modified":"13319230492354623","model":0,"setting":{"count":2}},"https://csi.gstatic.com:443,*":{"last_modified":"13319230596729614","setting":{"count":1}},"https://csm.fr.eu.criteo.net:443,*":{"last_modified":"13319230615665234","setting":{"count":1}},"https://csyn-r.cxense.com:443,*":{"last_modified":"13319230578885561","setting":{"count":1}},"https://csyn.cxense.com:443,*":{"last_modified":"13319230579014354","setting":{"count":1}},"https://cz-gmtdmp.mookie1.com:443,*":{"last_modified":"13319218969365427","setting":{"count":1}},"https://cz.search.etargetnet.com:443,*":{"expiration":"0","last_modified":"13292194275307793","model":0,"setting":{"count":1}},"https://d.agkn.com:443,*":{"expiration":"0","last_modified":"13280083611897407","model":0,"setting":{"count":1}},"https://dis.criteo.com:443,*":{"last_modified":"13319218969272575","setting":{"count":2}},"https://dmp.adform.net:443,*":{"expiration":"0","last_modified":"13319230579064093","model":0,"setting":{"count":2}},"https://dpm.demdex.net:443,*":{"last_modified":"13319230578888735","setting":{"count":3}},"https://dsum-sec.casalemedia.com:443,*":{"last_modified":"13319230582955695","setting":{"count":1}},"https://e1.emxdgt.com:443,*":{"expiration":"0","last_modified":"13280083611380635","model":0,"setting":{"count":1}},"https://eb2.3lift.com:443,*":{"expiration":"0","last_modified":"13320079957918805","model":0,"setting":{"count":11}},"https://ebbac623e4ddd1123cb8901bdbe06edc.safeframe.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13292194283157667","model":0,"setting":{"count":1}},"https://encrypted-tbn0.gstatic.com:443,*":{"expiration":"0","last_modified":"13310061738661497","model":0,"setting":{"count":2}},"https://encrypted-tbn1.gstatic.com:443,*":{"expiration":"0","last_modified":"13310061738637514","model":0,"setting":{"count":2}},"https://encrypted-tbn2.gstatic.com:443,*":{"expiration":"0","last_modified":"13310061738660475","model":0,"setting":{"count":2}},"https://encrypted-tbn3.gstatic.com:443,*":{"expiration":"0","last_modified":"13310061739245785","model":0,"setting":{"count":2}},"https://etarget-emea.adnxs.com:443,*":{"expiration":"0","last_modified":"13307270342779713","model":0,"setting":{"allowed_tracker_count":1,"count":1}},"https://eus.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13319230580037750","model":0,"setting":{"count":4}},"https://fastlane.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13319230578547912","model":0,"setting":{"count":2}},"https://gacz.hit.gemius.pl:443,*":{"expiration":"0","last_modified":"13319570418788926","model":0,"setting":{"count":23}},"https://googleads.g.doubleclick.net:443,*":{"expiration":"0","last_modified":"13319230576063441","model":0,"setting":{"count":6}},"https://googleads4.g.doubleclick.net:443,*":{"expiration":"0","last_modified":"13307270241093670","model":0,"setting":{"count":1}},"https://gum.criteo.com:443,*":{"expiration":"0","last_modified":"13319230579813794","model":0,"setting":{"count":4}},"https://hb.adscale.de:443,*":{"expiration":"0","last_modified":"13307270348206518","model":0,"setting":{"count":2}},"https://hbopenbid.pubmatic.com:443,*":{"expiration":"0","last_modified":"13319230578562835","model":0,"setting":{"count":2}},"https://hbx.media.net:443,*":{"expiration":"0","last_modified":"13320079957696068","model":0,"setting":{"count":10}},"https://i.pinimg.com:443,*":{"expiration":"0","last_modified":"13319230575565755","model":0,"setting":{"count":2}},"https://ib.3lift.com:443,*":{"expiration":"0","last_modified":"13316609089616063","model":0,"setting":{"count":2}},"https://ib.adnxs.com:443,*":{"expiration":"0","last_modified":"13319230578561934","model":0,"setting":{"allowed_tracker_count":6,"count":2}},"https://id.cxense.com:443,*":{"last_modified":"13319230578300938","setting":{"count":1}},"https://id.rlcdn.com:443,*":{"expiration":"0","last_modified":"13319230489194003","model":0,"setting":{"count":2}},"https://id5-sync.com:443,*":{"expiration":"0","last_modified":"13320079959005752","model":0,"setting":{"count":10}},"https://idsync.rlcdn.com:443,*":{"last_modified":"13319218969329186","setting":{"count":1}},"https://ih.adscale.de:443,*":{"last_modified":"13319230494174240","setting":{"count":1}},"https://image6.pubmatic.com:443,*":{"expiration":"0","last_modified":"13319570419704602","model":0,"setting":{"count":12}},"https://image8.pubmatic.com:443,*":{"expiration":"0","last_modified":"13319230489194576","model":0,"setting":{"count":3}},"https://img.youtube.com:443,*":{"last_modified":"13319230576924966","setting":{"count":1}},"https://js.adscale.de:443,*":{"expiration":"0","last_modified":"13319230493930282","model":0,"setting":{"count":3}},"https://log.pinterest.com:443,*":{"last_modified":"13319230575823581","setting":{"count":1}},"https://ls.hit.gemius.pl:443,*":{"expiration":"0","last_modified":"13319570419389005","model":0,"setting":{"count":23}},"https://m.adnxs.com:443,*":{"expiration":"0","last_modified":"13319218969559734","model":0,"setting":{"allowed_tracker_count":1,"count":2}},"https://maps.gstatic.com:443,*":{"last_modified":"13317757736416911","setting":{"count":1}},"https://match.adsrvr.org:443,*":{"expiration":"0","last_modified":"13319230488179412","model":0,"setting":{"count":6}},"https://mathid.mathtag.com:443,*":{"last_modified":"13319570419901997","setting":{"count":16}},"https://mc.yandex.ru:443,*":{"expiration":"0","last_modified":"13253365321107776","model":0,"setting":{"count":2}},"https://odr.mookie1.com:443,*":{"last_modified":"13319218969337292","setting":{"count":2}},"https://openbid.pubmatic.com:443,*":{"expiration":"0","last_modified":"13307270342780343","model":0,"setting":{"count":2}},"https://p1cluster.cxense.com:443,*":{"last_modified":"13319230578123812","setting":{"count":1}},"https://pagead2.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13319230576927965","model":0,"setting":{"count":8}},"https://partner.googleadservices.com:443,*":{"expiration":"0","last_modified":"13307270341700372","model":0,"setting":{"count":1}},"https://pbs.twimg.com:443,*":{"last_modified":"13319230492994689","setting":{"count":3}},"https://pixel-eu.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13319230579920097","model":0,"setting":{"count":3}},"https://pixel-us-east.rubiconproject.com:443,*":{"last_modified":"13319230493268754","setting":{"count":1}},"https://pixel.advertising.com:443,*":{"expiration":"0","last_modified":"13292194282967750","model":0,"setting":{"count":1}},"https://pixel.mathtag.com:443,*":{"last_modified":"13319230582499991","setting":{"count":1}},"https://pixel.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13319230582954268","model":0,"setting":{"count":3}},"https://pixel.tapad.com:443,*":{"last_modified":"13319230487913575","setting":{"count":1}},"https://platform.twitter.com:443,*":{"last_modified":"13319230490148531","setting":{"count":8}},"https://play.google.com:443,*":{"expiration":"0","last_modified":"13319230607806156","model":0,"setting":{"count":9}},"https://pr-bh.ybp.yahoo.com:443,*":{"expiration":"0","last_modified":"13320079957161799","model":0,"setting":{"count":11}},"https://prebid-eu.creativecdn.com:443,*":{"expiration":"0","last_modified":"13307270239775093","model":0,"setting":{"count":1}},"https://prebid.adnxs.com:443,*":{"last_modified":"13319230488057253","setting":{"allowed_tracker_count":1}},"https://prg.smartadserver.com:443,*":{"expiration":"0","last_modified":"13307270342770945","model":0,"setting":{"count":2}},"https://pubads.g.doubleclick.net:443,*":{"last_modified":"13319230596016880","setting":{"count":1}},"https://px.ads.linkedin.com:443,*":{"expiration":"0","last_modified":"13292194268849869","model":0,"setting":{"count":1}},"https://r2b2-emea.adnxs.com:443,*":{"expiration":"0","last_modified":"13307270342780159","model":0,"setting":{"allowed_tracker_count":1,"count":1}},"https://region1.google-analytics.com:443,*":{"last_modified":"13319230575806304","setting":{"allowed_tracker_count":9}},"https://rtb.openx.net:443,*":{"expiration":"0","last_modified":"13319230492670685","model":0,"setting":{"count":2}},"https://rtb0.doubleverify.com:443,*":{"last_modified":"13319218844349135","setting":{"allowed_tracker_count":1}},"https://rtbc-eu3.doubleverify.com:443,*":{"last_modified":"13319218844598454","setting":{"allowed_tracker_count":1}},"https://s.amazon-adsystem.com:443,*":{"last_modified":"13319230489224430","setting":{"count":1}},"https://s.youtube.com:443,*":{"last_modified":"13319230597681820","setting":{"count":1}},"https://s0.2mdn.net:443,*":{"expiration":"0","last_modified":"13319230576921737","model":0,"setting":{"count":5}},"https://s1.adform.net:443,*":{"expiration":"0","last_modified":"13319230487315354","model":0,"setting":{"count":18}},"https://s2.adform.net:443,*":{"last_modified":"13319570419700918","setting":{"count":2}},"https://sb.scorecardresearch.com:443,*":{"expiration":"0","last_modified":"13319570407213344","model":0,"setting":{"allowed_tracker_count":30}},"https://scontent.xx.fbcdn.net:443,*":{"last_modified":"13318014861233999","setting":{"count":2}},"https://scz.hit.gemius.pl:443,*":{"last_modified":"13319219724786949","setting":{"count":6}},"https://secure-assets.rubiconproject.com:443,*":{"expiration":"0","last_modified":"13319230579913658","model":0,"setting":{"count":3}},"https://secure.adnxs.com:443,*":{"expiration":"0","last_modified":"13319570419468464","model":0,"setting":{"allowed_tracker_count":20,"count":1}},"https://securepubads.g.doubleclick.net:443,*":{"expiration":"0","last_modified":"13319230579914959","model":0,"setting":{"count":4}},"https://simage2.pubmatic.com:443,*":{"last_modified":"13319230582952357","setting":{"count":1}},"https://simage4.pubmatic.com:443,*":{"last_modified":"13319570419711877","setting":{"count":18}},"https://spir.hit.gemius.pl:443,*":{"expiration":"0","last_modified":"13319230576889352","model":0,"setting":{"count":8}},"https://ssbsync-global.smartadserver.com:443,*":{"expiration":"0","last_modified":"13319230489193606","model":0,"setting":{"count":2}},"https://ssl.google-analytics.com:443,*":{"expiration":"0","last_modified":"13307270341584671","model":0,"setting":{"allowed_tracker_count":1}},"https://ssp-sync.criteo.com:443,*":{"expiration":"0","last_modified":"13307270348561453","model":0,"setting":{"count":2}},"https://ssum-sec.casalemedia.com:443,*":{"expiration":"0","last_modified":"13319230492522387","model":0,"setting":{"count":2}},"https://ssum.casalemedia.com:443,*":{"expiration":"0","last_modified":"13319230579963321","model":0,"setting":{"count":3}},"https://st.pubmatic.com:443,*":{"last_modified":"13319230458657614","setting":{"count":6}},"https://stags.bluekai.com:443,*":{"last_modified":"13319218969321565","setting":{"count":2}},"https://stas.outbrain.com:443,*":{"last_modified":"13319570309821154","setting":{"count":5}},"https://static.ads-twitter.com:443,*":{"expiration":"0","last_modified":"13253365321106725","model":0,"setting":{"count":2}},"https://static.criteo.net:443,*":{"expiration":"0","last_modified":"13319230579497222","model":0,"setting":{"count":3}},"https://static.doubleclick.net:443,*":{"last_modified":"13319230576486202","setting":{"count":1}},"https://static.xx.fbcdn.net:443,*":{"expiration":"0","last_modified":"13318014861121942","model":0,"setting":{"count":3}},"https://statics.creativecdn.com:443,*":{"last_modified":"13319219157153475","setting":{"count":3}},"https://stats.g.doubleclick.net:443,*":{"expiration":"0","last_modified":"13319230576155197","model":0,"setting":{"count":6}},"https://sync.crwdcntrl.net:443,*":{"last_modified":"13319230582940015","setting":{"allowed_tracker_count":1}},"https://sync.inmobi.com:443,*":{"last_modified":"13320079958581178","setting":{"count":7}},"https://sync.mathtag.com:443,*":{"expiration":"0","last_modified":"13319230582955137","model":0,"setting":{"count":3}},"https://sync.outbrain.com:443,*":{"expiration":"0","last_modified":"13320079956979103","model":0,"setting":{"count":8}},"https://sync.search.spotxchange.com:443,*":{"last_modified":"13319230487916050","setting":{"count":1}},"https://sync.smartadserver.com:443,*":{"last_modified":"13319230492521442","setting":{"count":1}},"https://sync.taboola.com:443,*":{"expiration":"0","last_modified":"13280083739371861","model":0,"setting":{"count":1}},"https://syndication.twitter.com:443,*":{"last_modified":"13319230490762879","setting":{"count":8}},"https://t.mookie1.com:443,*":{"last_modified":"13319230487917591","setting":{"count":1}},"https://t.wayfair.com:443,*":{"last_modified":"13319230582946900","setting":{"count":2}},"https://tlx.3lift.com:443,*":{"last_modified":"13319230578545288","setting":{"count":2}},"https://token.rubiconproject.com:443,*":{"last_modified":"13319230582492206","setting":{"count":1}},"https://tpc.googlesyndication.com:443,*":{"expiration":"0","last_modified":"13319230580897493","model":0,"setting":{"count":8}},"https://tps.doubleverify.com:443,*":{"last_modified":"13319230488676574","setting":{"allowed_tracker_count":3}},"https://tpsc-eu3.doubleverify.com:443,*":{"last_modified":"13319230492031683","setting":{"allowed_tracker_count":2}},"https://tpsc-frc.doubleverify.com:443,*":{"last_modified":"13319218848102327","setting":{"allowed_tracker_count":1}},"https://track.adform.net:443,*":{"expiration":"0","last_modified":"13319570419548428","model":0,"setting":{"count":18}},"https://trc.taboola.com:443,*":{"expiration":"0","last_modified":"13320079956977906","model":0,"setting":{"count":9}},"https://u.openx.net:443,*":{"last_modified":"13319230493461567","setting":{"count":1}},"https://ups.analytics.yahoo.com:443,*":{"expiration":"0","last_modified":"13319230489195075","model":0,"setting":{"count":2}},"https://us-u.openx.net:443,*":{"last_modified":"13319230582953564","setting":{"count":1}},"https://video.twimg.com:443,*":{"last_modified":"13319230493124282","setting":{"count":1}},"https://visitor.omnitagjs.com:443,*":{"expiration":"0","last_modified":"13320079957943544","model":0,"setting":{"count":8}},"https://vodafonecz.demdex.net:443,*":{"last_modified":"13319218844646133","setting":{"count":1}},"https://web.facebook.com:443,*":{"expiration":"0","last_modified":"13310061740608125","model":0,"setting":{"count":1}},"https://widgets.outbrain.com:443,*":{"expiration":"0","last_modified":"13319230442127155","model":0,"setting":{"count":3}},"https://widgets.pinterest.com:443,*":{"last_modified":"13319230575223222","setting":{"count":1}},"https://www.clarity.ms:443,*":{"expiration":"0","last_modified":"13280084864471927","model":0,"setting":{"allowed_tracker_count":4}},"https://www.facebook.com:443,*":{"expiration":"0","last_modified":"13319230576152174","model":0,"setting":{"allowed_tracker_count":1,"count":7}},"https://www.google-analytics.com:443,*":{"expiration":"0","last_modified":"13319230575476609","model":0,"setting":{"allowed_tracker_count":11}},"https://www.google.com:443,*":{"expiration":"0","last_modified":"13319230581056166","model":0,"setting":{"allowed_tracker_count":4,"count":9}},"https://www.google.cz:443,*":{"expiration":"0","last_modified":"13319230576918959","model":0,"setting":{"count":6}},"https://www.googletagservices.com:443,*":{"expiration":"0","last_modified":"13319230579596280","model":0,"setting":{"count":6}},"https://www.gstatic.com:443,*":{"expiration":"0","last_modified":"13319230576572615","model":0,"setting":{"count":3}},"https://www.instagram.com:443,*":{"last_modified":"13319219724989065","setting":{"allowed_tracker_count":5}},"https://www.youtube.com:443,*":{"last_modified":"13319230574428651","setting":{"count":1}},"https://x.bidswitch.net:443,*":{"expiration":"0","last_modified":"13319230582500802","model":0,"setting":{"count":6}},"https://yt3.ggpht.com:443,*":{"last_modified":"13319230576504810","setting":{"count":1}}},"tracking_org_exceptions":{},"tracking_org_relationships":{"https://facebook.test:443,*":{"last_modified":"13318268542025048","setting":{"https://www|facebook|com/":true}},"https://microsoft.test:443,*":{"expiration":"0","last_modified":"13310061735384778","model":0,"setting":{"https://microsoftedgewelcome|microsoft|com/":true,"https://ntp|msn|com/":true,"https://support|microsoft|com/":true,"https://www|bing|com/":true,"https://www|msn|com/":true}}},"usb_chooser_data":{},"usb_guard":{},"vr":{},"webid_api":{},"window_placement":{}},"permission_actions":{"notifications":[{"action":1,"prompt_disposition":1,"time":"13307270258630500"}]},"pref_version":1},"created_by_version":"87.0.664.66","creation_time":"13253365267370191","edge_profile_id":"5e34a4d7-34e4-44fb-ae70-dc656cc7eb3a","exit_type":"Normal","has_seen_signin_fre":true,"icon_version":15,"last_engagement_time":"13320245784088580","last_time_obsolete_http_credentials_removed":1673282301.654104,"last_time_password_store_metrics_reported":1675801013.69655,"managed_user_id":"","name":"Profil 1","network_pbs":{"1fe51f48":{"last_updated":"13319570321574940","pb":3}},"observed_session_time":{"feedback_rating_in_product_help_observed_session_time_key_100.0.1185.36":8.0,"feedback_rating_in_product_help_observed_session_time_key_101.0.1210.53":4.0,"feedback_rating_in_product_help_observed_session_time_key_103.0.1264.37":30.0,"feedback_rating_in_product_help_observed_session_time_key_104.0.1293.54":60.0,"feedback_rating_in_product_help_observed_session_time_key_105.0.1343.33":140.0,"feedback_rating_in_product_help_observed_session_time_key_106.0.1370.34":3.0,"feedback_rating_in_product_help_observed_session_time_key_106.0.1370.37":231.0,"feedback_rating_in_product_help_observed_session_time_key_106.0.1370.52":2.0,"feedback_rating_in_product_help_observed_session_time_key_108.0.1462.46":7.0,"feedback_rating_in_product_help_observed_session_time_key_108.0.1462.54":8.0,"feedback_rating_in_product_help_observed_session_time_key_108.0.1462.76":1576.0,"feedback_rating_in_product_help_observed_session_time_key_109.0.1518.52":936.0,"feedback_rating_in_product_help_observed_session_time_key_109.0.1518.61":1342.0,"feedback_rating_in_product_help_observed_session_time_key_109.0.1518.70":103.0,"feedback_rating_in_product_help_observed_session_time_key_87.0.664.66":463.0,"feedback_rating_in_product_help_observed_session_time_key_87.0.664.75":21.0,"feedback_rating_in_product_help_observed_session_time_key_88.0.705.81":49.0,"feedback_rating_in_product_help_observed_session_time_key_89.0.774.54":5.0,"feedback_rating_in_product_help_observed_session_time_key_89.0.774.57":17.0,"feedback_rating_in_product_help_observed_session_time_key_91.0.864.37":15.0,"feedback_rating_in_product_help_observed_session_time_key_92.0.902.55":27.0,"feedback_rating_in_product_help_observed_session_time_key_92.0.902.84":5.0,"feedback_rating_in_product_help_observed_session_time_key_94.0.992.47":11.0,"feedback_rating_in_product_help_observed_session_time_key_95.0.1020.38":628.0,"feedback_rating_in_product_help_observed_session_time_key_99.0.1150.46":245.0},"were_old_google_logins_removed":true},"protection":{"macs":{"browser":{"show_home_button":"3CECA6A25388CA146DF84B8E5D78A5EB86E9BAEBBC59C479168F273E02A3E15E"},"default_search_provider_data":{"template_url_data":"E79BA5A7BA4D2CC675F68312840172B2042A029A016530F19D1E2D313378BCC7"},"edge":{"services":{"account_id":"A5D18802321C0197096E4CA8E34CEEE4FF5D6037835BD9BB840EA0F4BFCC1C84","last_account_id":"BA259F6FE1DA7AC06BECEBEFD470D03FE566EFF4FDDD9074CCFF031967190BF0","last_username":"10EBF97376E63C401136DFAD309CA21A80F832420084BAF04BA0464BAC69CE02"}},"extensions":{"settings":{"ampmimodbocknpfehkbdjolnnbongejb":"B48AD78412A886EFC9B7EAEECE69B1A4C4F07DDE026F8B712FB4F2DF4D784296","bhmhibnbialendcafinliemndanacfaj":"70C3C48DFDE82B62492A84CB04B761A45FE198F6360EFD776EFD3C2B18B1A5B6","ceaifoolopnigfpidlheoagpheiplgii":"663B0A1FDD2B8CCCB3858FFB832D8349AD71310F4A46770302B561F439203440","cjneempfhkonkkbcmnfdibgobmhbagaj":"91276A387B7E472992583760DAD126049A173350002A3C6101E1B25603B81A0C","dgiklkfkllikcanfonkcabmbdfmgleag":"F49C57AABF4DDB806781F32202123EC17EB40C1D5F28A00499B8CA7424B33352","ehlmnljdoejdahfjdfobmpfancoibmig":"3DA2CB31071EDBFE6843C43294CF66992E4D29BB18ECE4A29659A3930776AF51","eijpepilkjkofamihbmjcnihgpbebafj":"DE053E8AB2ADC8917C0E54D8BD6BBB20A4E9DD0A8F11535DEB347AB188CB46C4","fikbjbembnmfhppjfnmfkahdhfohhjmg":"435C2833564BA7EECCE40AF2220CAECA554EC0053E275467294A590B491ED5D5","fogppepbgmgkpdkinbojbibkhoffpief":"F2DFF97C7AB7507365CCF961F0238B93768A5E8BD98F385E6476E94CEE38BA4A","gbmoeijgfngecijpcnbooedokgafmmji":"48B8D7D19CC82BBAEA2AE68D6D303DC34557A7773651997257E1AC6DE26CED51","gecfnmoodchdkebjjffmdcmeghkflpib":"E98BF38960750E729071F9DF3525463F7C54655D9E53BA688B2B122047EB502E","geiinlhabolacmdgdkbkppfmijlemjep":"8D1DFDEB7C3133818077A36603F144D5A39A04AABAB8F9B690EA7C9E435FB2ED","gekagaaiohabmaknhkbaofhhedhelemf":"66517448775D7F7F04DF8DACC6595D85AAA5C6E6BB8475B5931C2D91C87CF6EC","hloomjjkinpbjldhobfkfdamkmikjmdo":"F0BA001AB3F91B371333F80185B9D0C9BB555FEACFEC5C347DBEAAC602DCC6D9","hmlhageoffiiefnmojcgoagebofoifpl":"46BB8DEE672D16C01AA915B37EADE8D7EA72E1C7DDB54C791275F1F8B94FB153","iglcjdemknebjbklcgkfaebgojjphkec":"B73751E3F7D000525F8AEA6D4DF10F0E005F797E9DAFA75DA761489A42DCD011","ihmafllikibpmigkcoadcmckbfhibefp":"F7068C5F4231191EAF9555292D94B5CCDAF577BE1C2F17E333C9FFF6EE2F94AB","jbleckejnaboogigodiafflhkajdmpcl":"5FF1574BED22D75FBF0EDFAF51386AEF9F94D414BB9783E4B98DDBD08C0AB9E8","jdiccldimpdaibmpdkjnbmckianbfold":"DA4CC48795E0061601C0A41895BFF458A3750ACCFD451A1FFC899E9E08F43692","kfihiegbjaloebkmglnjnljoljgkkchm":"7A2D1A150F65450153FEE29F62900884858156CC0A1C3A251A73B3A852E22261","khffkadolmfbdgahbabbhipadklfmhgf":"2C556CE927269C76E5F3CDCDC2645067D0D24AE86D170CC91273223AD229C284","kjncpkplfnolibapodobnnjfgmjmiaba":"AFF5EF1E23508D4E07BED00E3EE0DD661BD84825B02F8B552CE84B59284C7471","kmendfapggjehodndflmmgagdbamhnfd":"3A47C7FE95E2279FA928273DFB9B6FF35A2BE0C8CAE375F598387D7CBA9B76DF","kmojgmpmopiiagdfbilgognmlegkonbk":"10B5CC28DFC48969BD3F38FC845F31F8777618D936395B532E48CF76C79D79A7","mhjfbmdgcfjbbpaeojofohoefgiehjai":"640398A8FF8BD668FE52356BC00FE1048F2DFE436CA29AAEAEF465E645C6E986","ncbjelpjchkpbikbpkcchkhkblodoama":"90C2E251AC899813A14B56F288A081DB6AEE61741B31E5956F4D6B3FFF6237F1","nkbndigcebkoaejohleckhekfmcecfja":"353C91D75CD6E0C438402FFA70AC320FC9B31036A6EA0AD1B88FED4FE7AF88B7","nkeimhogjdpnpccoofpliimaahmaaome":"14197191E6D8FC916898B9E1B3A66456767F686D52E522080942EFDA1A3FCCDE","olmhchkiafniffcaiciiomfdplnmklak":"A37A0B2FE8435EC31A8C8993736142B4CD32AE132A53A685037D68E6FDBDD04B"}},"homepage":"52FEF8BC47FDAE7CA672A108C29EFBCD4ED95C927B9724405352BFCB56DEBCFE","homepage_is_newtabpage":"3D6D4747E2F650E34324BA4EDF70C5DED3C8D5A457189ECC64F885AB98ADB42A","media":{"cdm":{"origin_data":"AA38DD6C03F9F970E29BCA74AD22D9AA82024316DFF63949D408D60677637952"},"storage_id_salt":"ECC7AF2F006CFB93AAF6C6DDCA84550A3F95F8ACB5B8F7B2EB9A473110398428"},"pinned_tabs":"548F2E7E048F49B375561C2EA7637AB27FAEF746CA889AE8248D01835C075B53","prefs":{"preference_reset_time":"5BDB3B1DCE268ACA2D061792127B3C50DB423AC5508F176FDF9A11C0674EA486"},"safebrowsing":{"incidents_sent":"4CF04F3B0AE7A03C8A9082337C46A1A4A43B761A3C0F22B975A588772557769F"},"search_provider_overrides":"FFCE40E2B4D6047A16C7AD0C7966DD035FD3B2A8EBB147AC6996137C554E3FA1","session":{"restore_on_startup":"4D175E16F252E0BB64CAF930A51B3A99290DE77238C2A09E84C301E81135AFB1","startup_urls":"2B97B0AAA96BC2B714E14A5BECA62230F51E1EFADA1DDF921D7CBE10EC5DB51B"},"settings_reset_prompt":{"last_triggered_for_default_search":"D6DE410102ED5C9BC5685C9A43D06F55FEF02D12BD1DD70190CED59C0EA4EDF4","last_triggered_for_homepage":"48D0AD526A0C358B0FD2C607E3A5FA299BE5ACA96D5C16AA67D4573946A5B807","last_triggered_for_startup_urls":"14BA30A47FFD172FFD9A10C0C7DACF3906399D3A9EBF37D826F4C1119F828B81","prompt_wave":"E527377ECB848CD0192FE785542CBF588FFED98EA26167A2AB52E8BEB9C5E39F"},"software_reporter":{"prompt_seed":"DEFC0B02BD35EF964397B8BD93D6753EBF15BF8623F48C1683C3CB7094C2F715","prompt_version":"910EC5091483E7E19350FE2CC44C3BE10111BD953E1BAF84D9BA0823541D666A","reporting":"FA39E202B218050BEF97B1A5B15FE6DB5132312B6D06ACCF15C04F2F926EA277"}}},"protocol_handler":{"allowed_origin_protocol_pairs":{"https://support.hp.com":{"hpdevicecheck":true,"hpwebproductsdetection2":true,"hpwebproductsdetection3":true}}},"reset_prepopulated_engines":false,"safebrowsing":{"advanced_protection_last_refresh":"13320274583927881","event_timestamps":{},"metrics_last_log_time":"13320431035","saw_interstitial_sber2":true,"unhandled_sync_password_reuses":{}},"segmentation_platform":{"last_db_compaction_time":"13320287999000000"},"sessions":{"event_log":[{"crashed":false,"time":"13318269138798618","type":0},{"did_schedule_command":false,"first_session_service":true,"tab_count":0,"time":"13318538164021464","type":2,"window_count":0},{"crashed":false,"time":"13318538166045600","type":0},{"did_schedule_command":false,"first_session_service":true,"tab_count":0,"time":"13318768160571049","type":2,"window_count":0},{"crashed":false,"time":"13318768161571420","type":0},{"did_schedule_command":true,"first_session_service":true,"tab_count":1,"time":"13318777490014143","type":2,"window_count":1},{"crashed":false,"time":"13318777490715092","type":0},{"did_schedule_command":true,"first_session_service":true,"tab_count":1,"time":"13319219827283622","type":2,"window_count":1},{"crashed":false,"time":"13319219828621682","type":0},{"did_schedule_command":true,"first_session_service":true,"tab_count":2,"time":"13319230650682949","type":2,"window_count":1},{"crashed":false,"time":"13319230652039874","type":0},{"did_schedule_command":true,"first_session_service":true,"tab_count":2,"time":"13319231003126432","type":2,"window_count":1},{"crashed":false,"time":"13319231003955636","type":0},{"crashed":false,"time":"13319570305090221","type":0},{"did_schedule_command":true,"first_session_service":true,"tab_count":2,"time":"13320079950503187","type":2,"window_count":1},{"crashed":false,"time":"13320079951780162","type":0},{"did_schedule_command":false,"first_session_service":true,"tab_count":0,"time":"13320084234535732","type":2,"window_count":0},{"crashed":false,"time":"13320084235997336","type":0},{"crashed":false,"time":"13320274583715920","type":0}],"session_data_status":1},"settings":{"a11y":{"apply_page_colors_only_on_increased_contrast":true,"caretbrowsing":{"enabled":false}}},"shopping":{"last_notification_time":"13297890044177509","last_pwilo_api_fetch_time":"13320079922782140"},"signin":{"allowed":true},"spellcheck":{"dictionaries":["cs"],"dictionary":""},"sync":{"autofill":true,"bag_of_chips":"CgMxMDY=","birthday":"ProductionEnvironmentDefinition","bookmarks":true,"cache_guid":"sfTPuUm9RJT37Y5f2nmefw==","collections":true,"collections_edge_re_evaluated":true,"collections_edge_supported":true,"edge_account_type":1,"edge_promoted_types":["sync.typed_urls","sync.extensions"],"extensions":true,"extensions_edge_supported":true,"gaia_id":"00030000369311D2","has_setup_completed":true,"history_edge_supported":true,"invalidation_versions2":{"32904":"1673794594843000"},"keep_everything_synced":true,"keystore_encryption_key_state":"eyJleHBpcmF0aW9uX3RpbWUiOjE2NzU2OTI3MzguNzgxNDgyfQ==","last_poll_time":"13320079939170566","last_sync_url":"https://edge.microsoft.com/sync/v1/feed ... _timestamp":[{"cache_guid":"sfTPuUm9RJT37Y5f2nmefw==","timestamp":154169}],"passwords":true,"preferences":true,"requested":true,"short_poll_interval":"28800000000","tabs":true,"tabs_edge_supported":true,"typed_urls":true},"sync_consent_recorded":true,"sync_health_auditor":{"last_audit_state":1,"last_sync_result":1,"last_sync_timestamp":"13271787284619263"},"translate_accepted_count":{"en":0},"translate_denied_count_for_language":{"en":1},"translate_ignored_count_for_language":{"en":1},"translate_site_blacklist":[],"translate_site_blacklist_with_time":{},"translate_site_blocklist_with_time":{},"unified_consent":{"migration_state":10},"updateclientdata":{"apps":{"bhmhibnbialendcafinliemndanacfaj":{"cohort":"rrf@0.48","dlrc":5873,"installdate":5852,"pf":"c61021ff-442c-4ff3-829f-4574ba4bbac7"},"ceaifoolopnigfpidlheoagpheiplgii":{"cohort":"rrf@0.20","dlrc":5873,"installdate":5852,"pf":"a9019420-f600-4434-a563-7ecc22e3209f"},"cjneempfhkonkkbcmnfdibgobmhbagaj":{"cohort":"rrf@0.96","dlrc":5873,"installdate":5852,"pf":"b8eb81b2-fe48-4242-bf27-94c16c1d76ae"},"ehlmnljdoejdahfjdfobmpfancoibmig":{"cohort":"rrf@0.65","dlrc":5873,"installdate":5852,"pf":"46d0a13d-4146-4d9d-83b8-8d6cb0199ca7"},"eijpepilkjkofamihbmjcnihgpbebafj":{"cohort":"rrf@0.04","dlrc":5873,"installdate":5852,"pf":"9bc8a7c1-faaa-4e66-9645-76c072828d43"},"gbmoeijgfngecijpcnbooedokgafmmji":{"cohort":"rrf@0.36","dlrc":5873,"installdate":5852,"pf":"8d4fe4f6-9726-44f4-aa67-6f8c3de267f5"},"gecfnmoodchdkebjjffmdcmeghkflpib":{"cohort":"rrf@0.89","dlrc":5873,"installdate":5852,"pf":"bf35c272-dd62-438c-859a-19c3bf2a4253"},"gekagaaiohabmaknhkbaofhhedhelemf":{"cohort":"rrf@0.75","dlrc":5873,"installdate":5852,"pf":"c9ff5b80-d891-49ce-89f6-acebf9b0ab3b"},"hloomjjkinpbjldhobfkfdamkmikjmdo":{"cohort":"rrf@0.16","dlrc":5873,"installdate":5852,"pf":"b25bbf14-f237-43ce-8e62-a9b22249e1a5"},"hmlhageoffiiefnmojcgoagebofoifpl":{"cohort":"rrf@0.42","dlrc":5873,"installdate":5852,"pf":"0111cd27-bc48-495c-a6cc-0cbf28f39cba"},"jbleckejnaboogigodiafflhkajdmpcl":{"cohort":"rrf@0.36","dlrc":5873,"installdate":5852,"pf":"e64ad914-79bf-4de0-9e1a-96d87529a21e"},"kfihiegbjaloebkmglnjnljoljgkkchm":{"cohort":"rrf@0.48","dlrc":5873,"installdate":5852,"pf":"68870265-b83a-474e-a73f-1dc180562abd"},"khffkadolmfbdgahbabbhipadklfmhgf":{"cohort":"rrf@0.06","dlrc":5873,"installdate":5852,"pf":"1fe87992-f4ab-409c-bbae-71320a4fdc3b"},"kjncpkplfnolibapodobnnjfgmjmiaba":{"cohort":"rrf@0.62","dlrc":5873,"installdate":5852,"pf":"3999edcb-0461-453e-9f95-7ffecc59c012"},"kmojgmpmopiiagdfbilgognmlegkonbk":{"cohort":"rrf@0.33","dlrc":5873,"installdate":5852,"pf":"7ef5ac9d-e55b-41c7-90e1-7401748e0676"},"nkbndigcebkoaejohleckhekfmcecfja":{"cohort":"rrf@0.56","dlrc":5873,"installdate":5852,"pf":"9f5e3e02-1349-43ee-923e-1b1e518f64f3"},"olmhchkiafniffcaiciiomfdplnmklak":{"cohort":"rrf@0.16","dlrc":5873,"installdate":5852,"pf":"81380745-2d01-4b18-9d76-64f585b156a6"}}},"user_experience_metrics":{"personalization_data_consent_enabled":false,"personalization_data_consent_enabled_last_known_value":false,"reporting_personalization_enabled":false},"web_apps":{"did_migrate_default_chrome_apps":["MigrateDefaultChromeAppToWebAppsGSuite","MigrateDefaultChromeAppToWebAppsNonGSuite"],"last_preinstall_synchronize_version":"109","link_handling_info":{"enabled_for_installed_apps":true},"system_web_app_failure_count":0,"system_web_app_last_attempted_language":"cs","system_web_app_last_attempted_update":"104.0.1293.54","system_web_app_last_installed_language":"cs","system_web_app_last_update":"104.0.1293.54"}}


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=HCTE"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/?pc=HCTE"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... TR&pc=HCTE"

==== Reset Google Chrome ======================

C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Web Data will be reset at reboot
C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\marek\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\marek\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\marek\AppData\Local\Opera Software\Opera Stable\Cache emptied successfully
C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=5 folders=329 35985225 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\marek\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\DumpStack.log.tmp" not deleted
"C:\Users\marek\AppData\Local\Microsoft\Edge\User Data\Default\Web Data" not found

==== EOF on 09.02.2023 at 17:39:56,00 ======================

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by marek (Administrator) on 09.02.2023 at 17:46:24,26
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09.02.2023 at 17:47:45,34
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Re: Zpomalený NTB - zamrzání opery

Napsal: 09 úno 2023 19:43
od Rudy
Utility smazaly, co mohly. Nastala nějaká změna?

Re: Zpomalený NTB - zamrzání opery

Napsal: 09 úno 2023 21:16
od Marek 46
Dobrý večer,
Notebook bez problému, opera bohužel stejný problém otevřeno jedno okno, větší zatížení paměti a zasekávání.

Re: Zpomalený NTB - zamrzání opery

Napsal: 09 úno 2023 21:54
od Rudy
Zkuste nOperu přeinstalovat. Zatížení systému ale není příliš vysoké.

Re: Zpomalený NTB - zamrzání opery

Napsal: 10 úno 2023 21:46
od Marek 46
Dobrý večer,
Po přeinstalování opera pracuje bez problému. Moc děkuji za Váš čas a pomoc.

Re: Zpomalený NTB - zamrzání opery

Napsal: 10 úno 2023 21:53
od Rudy
To jsem rád a nemáte zač! :)