prosim o kontrolu logu - repasovaný pocitac
Napsal: 08 srp 2023 09:28
Dobrý den, poprosim o kontrolu logu. Mam repasovany pocitac predistalovany windows a rad bych se ujistil jestli je cisty. Dekuji moc
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-08-2023
Ran by Lenovo (administrator) on DESKTOP-K8DOLU2 (LENOVO 20CLS3SD00) (08-08-2023 10:22:35)
Running from C:\Users\Lenovo\Desktop\FRST64.exe
Loaded Profiles: Lenovo
Platform: Microsoft Windows 10 Pro Version 22H2 19045.3271 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1002.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Skype Software Sarl -> ) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(svchost.exe ->) (Skype Software Sarl -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [63132576 2023-08-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" [62383528 2023-08-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Uninstall 21.220.1024.0005\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\amd64" [0 2023-08-03] () <==== ATTENTION [zero byte File/Folder]
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Uninstall 21.220.1024.0005] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.220.1024.0005" [0 2023-08-08] () <==== ATTENTION [zero byte File/Folder]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\115.0.5790.171\Installer\chrmstp.exe [2023-08-04] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {89626F63-F5FC-4074-9EBB-60AB0F0500B5} - System32\Tasks\GoogleUpdateTaskMachineCore{7E91770F-6ABF-4215-B6C2-42BB5C361794} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2023-08-04] (Google LLC -> Google LLC)
Task: {114166C8-CC6F-41C8-98C7-091EEB5AD685} - System32\Tasks\GoogleUpdateTaskMachineUA{F1EBCF60-4CDC-4868-BBEA-048BD7CF24AD} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2023-08-04] (Google LLC -> Google LLC)
Task: {6623988C-8C00-4FE7-A238-1696E06D8305} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [129016 2022-12-04] (Lenovo -> Lenovo)
Task: {5FA6D27C-98F6-4B77-B942-1B05AAE61653} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\Windows\SysWOW64\PowerMgrInst.exe [65016 2022-12-04] (Lenovo -> )
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(1): %windir%\system32\compattelrunner.exe -> -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(2): %windir%\system32\compattelrunner.exe -> -m:appraiser.dll -f:DoScheduledTelemetryRun
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(3): %windir%\system32\compattelrunner.exe -> -m:aemarebackup.dll -f:BackupMareData
Task: {9B910AB2-9317-4EB7-BAF6-933FD121E48A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D68F4085-8D22-4CDC-885B-20C089E0F914} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3D88B109-851C-4780-981B-CB81C2D043A6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {ED3E35DA-29A7-410F-BFCE-E5960958DCA8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {672A1982-7134-4DCC-8A78-45FBDA4490E3} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617584 2020-04-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {18926E13-7916-4A45-932B-A0EEB57BE5B1} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617584 2020-04-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 195.113.56.8 195.113.0.2
Tcpip\..\Interfaces\{7f15d2e4-6127-425e-a535-e4645c6b575c}: [DhcpNameServer] 195.113.56.8 195.113.0.2
Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2023-08-03]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default [2023-08-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-08-04]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Lenovo Instant On; C:\Windows\SysWOW64\EasyResume.exe [2352344 2022-12-04] (Lenovo -> Lenovo Group Limited)
S2 LPlatSvc; C:\Windows\System32\LPlatSvc.exe [892288 2019-12-11] (Lenovo -> Lenovo.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402216 2023-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\NisSrv.exe [3244928 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MsMpEng.exe [133576 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R0 PMDRVS; C:\Windows\System32\drivers\pmdrvs.sys [38160 2019-12-11] (Lenovo -> Lenovo.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49600 2023-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [498944 2023-08-03] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-08-03] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-08-08 10:22 - 2023-08-08 10:23 - 000011921 _____ C:\Users\Lenovo\Desktop\FRST.txt
2023-08-08 10:04 - 2023-08-08 10:22 - 000000000 ____D C:\FRST
2023-08-08 09:48 - 2023-08-08 09:48 - 002384896 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2023-08-04 06:15 - 2023-08-04 06:15 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PeerDistRepub
2023-08-04 05:59 - 2023-08-04 05:59 - 000000000 ___HD C:\$WinREAgent
2023-08-04 05:51 - 2023-08-04 05:57 - 000003844 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{F1EBCF60-4CDC-4868-BBEA-048BD7CF24AD}
2023-08-04 05:51 - 2023-08-04 05:57 - 000003720 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{7E91770F-6ABF-4215-B6C2-42BB5C361794}
2023-08-04 05:51 - 2023-08-04 05:51 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-08-04 05:51 - 2023-08-04 05:51 - 000002278 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-08-04 05:51 - 2023-08-04 05:51 - 000000000 ____D C:\Program Files\Google
2023-08-04 05:50 - 2023-08-08 10:03 - 000000000 ____D C:\Program Files (x86)\Google
2023-08-04 05:50 - 2023-08-04 05:51 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Google
2023-08-04 05:49 - 2023-08-04 05:49 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\MMC
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\SysWOW64\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\system32\Tasks\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\system32\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\ProgramData\Lenovo
2023-08-04 05:46 - 2022-12-04 23:06 - 005492696 _____ (Lenovo Group Limited) C:\Windows\SysWOW64\PWMTR32V.dll
2023-08-04 05:46 - 2022-12-04 23:06 - 000065016 _____ () C:\Windows\SysWOW64\PowerMgrInst.exe
2023-08-04 05:46 - 2022-12-04 23:04 - 002352344 _____ (Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
2023-08-04 05:46 - 2022-12-04 23:04 - 000173008 _____ (Lenovo) C:\Windows\SysWOW64\InstHelper.dll
2023-08-04 05:46 - 2022-12-04 23:04 - 000105424 _____ (Lenovo) C:\Windows\SysWOW64\EventLogger.dll
2023-08-03 13:24 - 2023-08-03 12:26 - 000000000 ____D C:\Windows\Panther
2023-08-03 12:55 - 2023-08-03 12:55 - 000000000 ____D C:\Windows\system32\Drivers\mde
2023-08-03 12:45 - 2023-08-04 06:24 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Spelling
2023-08-03 12:45 - 2023-08-03 12:45 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Comms
2023-08-03 12:41 - 2023-08-08 09:33 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2023-08-03 12:41 - 2023-08-08 09:33 - 000000000 __SHD C:\Users\Lenovo\IntelGraphicsProfiles
2023-08-03 12:41 - 2023-08-03 12:41 - 000000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files (x86)\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2023-08-03 12:37 - 2023-08-04 05:42 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PlaceholderTileLogoFolder
2023-08-03 12:35 - 2023-08-08 09:47 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-989978189-555136673-2209958346-1001
2023-08-03 12:35 - 2023-08-03 12:37 - 000000000 ____D C:\Windows\system32\MRT
2023-08-03 12:34 - 2023-08-08 09:47 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-989978189-555136673-2209958346-1001
2023-08-03 12:34 - 2023-08-08 09:34 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2023-08-03 12:34 - 2023-08-03 12:34 - 000676341 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2023-08-03 12:34 - 2023-08-03 12:34 - 000003220 _____ C:\Windows\system32\Tasks\RtHDVBg_Dolby
2023-08-03 12:34 - 2023-08-03 12:34 - 000003216 _____ C:\Windows\system32\Tasks\RTKCPL
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ___RD C:\Users\Lenovo\OneDrive
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____D C:\Program Files\Synaptics
2023-08-03 12:34 - 2021-05-27 20:05 - 000046976 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2023-08-03 12:34 - 2020-05-15 05:07 - 002873272 _____ (Sunplus Innovation Technology Inc.) C:\Windows\system32\SPITDevMft64.dll
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\system32\DAX3
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\system32\DAX2
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Program Files\Realtek
2023-08-03 12:33 - 2020-04-08 04:48 - 000343600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 004113848 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 003769296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 003353720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 001353216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000453384 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000406344 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000193088 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000157240 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000139864 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000090280 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 005346888 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001971264 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001544160 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001372296 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001259624 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 000332920 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 000278176 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 007326304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2023-08-03 12:33 - 2020-04-08 04:44 - 007178376 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 007101640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 003676976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2023-08-03 12:33 - 2020-04-08 04:44 - 003404896 _____ (Foretmedia) C:\Windows\system32\FM_Speech_PP64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 003159680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 002930056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 001159080 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000378288 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000122216 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000023600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2023-08-03 12:30 - 2023-08-03 12:30 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2023-08-03 12:29 - 2023-08-03 12:29 - 000000000 ____D C:\Windows\CSC
2023-08-03 12:29 - 2023-08-03 12:29 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Vault
2023-08-03 12:28 - 2023-08-08 09:47 - 000002380 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-08-03 12:28 - 2023-08-04 05:42 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Packages
2023-08-03 12:28 - 2023-08-03 13:28 - 000000000 ____D C:\ProgramData\Packages
2023-08-03 12:28 - 2023-08-03 12:41 - 000000000 ____D C:\Users\Lenovo
2023-08-03 12:28 - 2023-08-03 12:28 - 000002346 _____ C:\Users\Lenovo\Desktop\Microsoft Edge.lnk
2023-08-03 12:28 - 2023-08-03 12:28 - 000000020 ___SH C:\Users\Lenovo\ntuser.ini
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Šablony
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Soubory cookie
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Poslední
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Okolní tiskárny
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Okolní síť
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Nabídka Start
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Dokumenty
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Obrázky
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Hudba
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Filmy
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Data aplikací
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\AppData\Local\Data aplikací
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\SystemCertificates
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Protect
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Crypto
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Credentials
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___RD C:\Users\Lenovo\3D Objects
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Network
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Adobe
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\VirtualStore
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Publishers
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\ConnectedDevicesPlatform
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Šablony
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Poslední
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Okolní síť
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Dokumenty
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Šablony
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Plocha
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Dokumenty
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Documents and Settings
2023-08-03 12:25 - 2023-08-04 06:24 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-08-03 12:25 - 2023-08-03 13:00 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-08-03 12:25 - 2023-08-03 12:39 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-08-03 12:25 - 2023-08-03 12:30 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-08-03 12:25 - 2023-08-03 12:30 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-08-03 12:25 - 2023-08-03 12:25 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2023-08-03 12:24 - 2023-08-04 06:24 - 000008192 ___SH C:\DumpStack.log.tmp
2023-08-03 12:24 - 2023-08-04 06:10 - 000259768 _____ C:\Windows\system32\FNTCACHE.DAT
2023-08-03 12:24 - 2023-08-04 05:42 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-08-03 12:24 - 2023-08-03 12:24 - 000000000 ____D C:\Windows\ServiceProfiles
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-08-08 10:10 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-08-08 10:03 - 2022-09-08 05:11 - 000000000 ____D C:\Windows\SystemTemp
2023-08-08 09:34 - 2019-12-07 16:43 - 000683426 _____ C:\Windows\system32\perfh005.dat
2023-08-08 09:34 - 2019-12-07 16:43 - 000137206 _____ C:\Windows\system32\perfc005.dat
2023-08-04 06:26 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-08-04 06:24 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-08-04 06:09 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2023-08-04 06:08 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-08-04 05:42 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-08-04 05:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-08-03 13:24 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2023-08-03 12:59 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2023-08-03 12:58 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2023-08-03 12:55 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\cs
2023-08-03 12:55 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\cs
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemApps
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-08-03 12:53 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2023-08-03 12:52 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2023-08-03 12:52 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2023-08-03 12:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2023-08-03 12:44 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2023-08-03 12:29 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2023-08-03 12:29 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2023-08-03 12:28 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2023-08-03 12:27 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2023-08-03 12:25 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-08-2023
Ran by Lenovo (08-08-2023 10:23:49)
Running from C:\Users\Lenovo\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.3271 (X64) (2023-08-03 10:27:19)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-989978189-555136673-2209958346-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-989978189-555136673-2209958346-503 - Limited - Disabled)
Guest (S-1-5-21-989978189-555136673-2209958346-501 - Limited - Disabled)
Lenovo (S-1-5-21-989978189-555136673-2209958346-1001 - Administrator - Enabled) => C:\Users\Lenovo
WDAGUtilityAccount (S-1-5-21-989978189-555136673-2209958346-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 115.0.5790.171 - Google LLC)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 115.0.1901.188 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 115.0.1901.188 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\OneDriveSetup.exe) (Version: 23.153.0724.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_1.1911.21713.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.8204.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20316.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c [2023-08-03] (Skype)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0 [2023-08-03] (Spotify AB) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-11-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 195.113.56.8 - 195.113.0.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{1119FC63-02E5-4A83-B16E-B958673CF09C}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\115.0.1901.188\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B4964A36-15A4-4904-9FAF-6AD75AAB0473}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{18199FF9-BAE5-490E-987E-0BECC4EA73F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{63635A1E-C0CA-4D42-95F3-A6D286888491}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AB2EB04E-8B8A-4A74-AD9B-7F9E9C68C83C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{505EC41D-DD5A-489D-9D59-06041078B5BC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{EBD2BA57-A2D7-4528-BF82-F42ABB717845}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{392849A8-BD55-4F6E-8730-DFCDE7233813}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7D52BB5-3D1A-41F7-8A06-FB387EF2F5D4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F8D7C96B-DD45-4158-80E7-B84E29272D34}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0D091EC8-195C-49A0-A363-ECC5376B5254}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9A959D8D-8408-4F51-8889-C9307F8DF7CD}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
03-08-2023 12:32:38 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (08/04/2023 05:45:53 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (08/03/2023 12:29:56 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x800704CF
Argument příkazového řádku:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=bd3762d7-270d-4760-8fb3-d829ca45278a;NotificationInterval=1440;Trigger=UserLogon;SessionId=2
Error: (08/03/2023 12:29:16 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu Windows Defender na SECURITY_PRODUCT_STATE_ON došlo k chybě.
Error: (08/03/2023 12:27:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -1409.
System errors:
=============
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9AA46009-3CE0-458A-A354-715610A075E6} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
==================== Memory info ===========================
BIOS: LENOVO N10ET63W (1.42 ) 07/29/2021
Motherboard: LENOVO 20CLS3SD00
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 39%
Total physical RAM: 7887.95 MB
Available physical RAM: 4774.73 MB
Total Virtual: 9807.95 MB
Available Virtual: 6704.98 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:237.9 GB) (Free:208.35 GB) (Model: SAMSUNG MZ7LN256HCHP-000L7) NTFS
\\?\Volume{ec882f6f-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.05 GB) (Free:0.02 GB) NTFS
\\?\Volume{ec882f6f-0000-0000-0000-107d3b000000}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: EC882F6F)
Partition 1: (Active) - (Size=50 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=531 MB) - (Type=27)
==================== End of Addition.txt =======================

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-08-2023
Ran by Lenovo (administrator) on DESKTOP-K8DOLU2 (LENOVO 20CLS3SD00) (08-08-2023 10:22:35)
Running from C:\Users\Lenovo\Desktop\FRST64.exe
Loaded Profiles: Lenovo
Platform: Microsoft Windows 10 Pro Version 22H2 19045.3271 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.292\GoogleCrashHandler64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.9-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11910.1002.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Skype Software Sarl -> ) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(svchost.exe ->) (Skype Software Sarl -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [63132576 2023-08-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" [62383528 2023-08-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Uninstall 21.220.1024.0005\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.220.1024.0005\amd64" [0 2023-08-03] () <==== ATTENTION [zero byte File/Folder]
HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\RunOnce: [Uninstall 21.220.1024.0005] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.220.1024.0005" [0 2023-08-08] () <==== ATTENTION [zero byte File/Folder]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\115.0.5790.171\Installer\chrmstp.exe [2023-08-04] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {89626F63-F5FC-4074-9EBB-60AB0F0500B5} - System32\Tasks\GoogleUpdateTaskMachineCore{7E91770F-6ABF-4215-B6C2-42BB5C361794} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2023-08-04] (Google LLC -> Google LLC)
Task: {114166C8-CC6F-41C8-98C7-091EEB5AD685} - System32\Tasks\GoogleUpdateTaskMachineUA{F1EBCF60-4CDC-4868-BBEA-048BD7CF24AD} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2023-08-04] (Google LLC -> Google LLC)
Task: {6623988C-8C00-4FE7-A238-1696E06D8305} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [129016 2022-12-04] (Lenovo -> Lenovo)
Task: {5FA6D27C-98F6-4B77-B942-1B05AAE61653} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\Windows\SysWOW64\PowerMgrInst.exe [65016 2022-12-04] (Lenovo -> )
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(1): %windir%\system32\compattelrunner.exe -> -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(2): %windir%\system32\compattelrunner.exe -> -m:appraiser.dll -f:DoScheduledTelemetryRun
Task: {3470A022-AB20-4145-B30B-E64B8CB77084} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(3): %windir%\system32\compattelrunner.exe -> -m:aemarebackup.dll -f:BackupMareData
Task: {9B910AB2-9317-4EB7-BAF6-933FD121E48A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D68F4085-8D22-4CDC-885B-20C089E0F914} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3D88B109-851C-4780-981B-CB81C2D043A6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {ED3E35DA-29A7-410F-BFCE-E5960958DCA8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MpCmdRun.exe [1649976 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {672A1982-7134-4DCC-8A78-45FBDA4490E3} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617584 2020-04-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {18926E13-7916-4A45-932B-A0EEB57BE5B1} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617584 2020-04-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 195.113.56.8 195.113.0.2
Tcpip\..\Interfaces\{7f15d2e4-6127-425e-a535-e4645c6b575c}: [DhcpNameServer] 195.113.56.8 195.113.0.2
Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2023-08-03]
Chrome:
=======
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default [2023-08-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-08-04]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Lenovo Instant On; C:\Windows\SysWOW64\EasyResume.exe [2352344 2022-12-04] (Lenovo -> Lenovo Group Limited)
S2 LPlatSvc; C:\Windows\System32\LPlatSvc.exe [892288 2019-12-11] (Lenovo -> Lenovo.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402216 2023-08-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\NisSrv.exe [3244928 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23050.9-0\MsMpEng.exe [133576 2023-08-03] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R0 PMDRVS; C:\Windows\System32\drivers\pmdrvs.sys [38160 2019-12-11] (Lenovo -> Lenovo.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49600 2023-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [498944 2023-08-03] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-08-03] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-08-08 10:22 - 2023-08-08 10:23 - 000011921 _____ C:\Users\Lenovo\Desktop\FRST.txt
2023-08-08 10:04 - 2023-08-08 10:22 - 000000000 ____D C:\FRST
2023-08-08 09:48 - 2023-08-08 09:48 - 002384896 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2023-08-04 06:15 - 2023-08-04 06:15 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PeerDistRepub
2023-08-04 05:59 - 2023-08-04 05:59 - 000000000 ___HD C:\$WinREAgent
2023-08-04 05:51 - 2023-08-04 05:57 - 000003844 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{F1EBCF60-4CDC-4868-BBEA-048BD7CF24AD}
2023-08-04 05:51 - 2023-08-04 05:57 - 000003720 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{7E91770F-6ABF-4215-B6C2-42BB5C361794}
2023-08-04 05:51 - 2023-08-04 05:51 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-08-04 05:51 - 2023-08-04 05:51 - 000002278 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-08-04 05:51 - 2023-08-04 05:51 - 000000000 ____D C:\Program Files\Google
2023-08-04 05:50 - 2023-08-08 10:03 - 000000000 ____D C:\Program Files (x86)\Google
2023-08-04 05:50 - 2023-08-04 05:51 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Google
2023-08-04 05:49 - 2023-08-04 05:49 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\MMC
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\SysWOW64\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\system32\Tasks\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Windows\system32\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Lenovo
2023-08-04 05:46 - 2023-08-04 05:46 - 000000000 ____D C:\ProgramData\Lenovo
2023-08-04 05:46 - 2022-12-04 23:06 - 005492696 _____ (Lenovo Group Limited) C:\Windows\SysWOW64\PWMTR32V.dll
2023-08-04 05:46 - 2022-12-04 23:06 - 000065016 _____ () C:\Windows\SysWOW64\PowerMgrInst.exe
2023-08-04 05:46 - 2022-12-04 23:04 - 002352344 _____ (Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe
2023-08-04 05:46 - 2022-12-04 23:04 - 000173008 _____ (Lenovo) C:\Windows\SysWOW64\InstHelper.dll
2023-08-04 05:46 - 2022-12-04 23:04 - 000105424 _____ (Lenovo) C:\Windows\SysWOW64\EventLogger.dll
2023-08-03 13:24 - 2023-08-03 12:26 - 000000000 ____D C:\Windows\Panther
2023-08-03 12:55 - 2023-08-03 12:55 - 000000000 ____D C:\Windows\system32\Drivers\mde
2023-08-03 12:45 - 2023-08-04 06:24 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Spelling
2023-08-03 12:45 - 2023-08-03 12:45 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Comms
2023-08-03 12:41 - 2023-08-08 09:33 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2023-08-03 12:41 - 2023-08-08 09:33 - 000000000 __SHD C:\Users\Lenovo\IntelGraphicsProfiles
2023-08-03 12:41 - 2023-08-03 12:41 - 000000200 _____ C:\Windows\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Program Files (x86)\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 ____D C:\Intel
2023-08-03 12:41 - 2023-08-03 12:41 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2023-08-03 12:37 - 2023-08-04 05:42 - 000000000 ____D C:\Users\Lenovo\AppData\Local\PlaceholderTileLogoFolder
2023-08-03 12:35 - 2023-08-08 09:47 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-989978189-555136673-2209958346-1001
2023-08-03 12:35 - 2023-08-03 12:37 - 000000000 ____D C:\Windows\system32\MRT
2023-08-03 12:34 - 2023-08-08 09:47 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-989978189-555136673-2209958346-1001
2023-08-03 12:34 - 2023-08-08 09:34 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2023-08-03 12:34 - 2023-08-03 12:34 - 000676341 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2023-08-03 12:34 - 2023-08-03 12:34 - 000003220 _____ C:\Windows\system32\Tasks\RtHDVBg_Dolby
2023-08-03 12:34 - 2023-08-03 12:34 - 000003216 _____ C:\Windows\system32\Tasks\RTKCPL
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ___RD C:\Users\Lenovo\OneDrive
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek
2023-08-03 12:34 - 2023-08-03 12:34 - 000000000 ____D C:\Program Files\Synaptics
2023-08-03 12:34 - 2021-05-27 20:05 - 000046976 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys
2023-08-03 12:34 - 2020-05-15 05:07 - 002873272 _____ (Sunplus Innovation Technology Inc.) C:\Windows\system32\SPITDevMft64.dll
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\system32\DAX3
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Windows\system32\DAX2
2023-08-03 12:33 - 2023-08-03 12:33 - 000000000 ____D C:\Program Files\Realtek
2023-08-03 12:33 - 2020-04-08 04:48 - 000343600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 004113848 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 003769296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 003353720 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 001353216 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000453384 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000406344 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2APIPCLL.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000193088 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000157240 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000139864 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2023-08-03 12:33 - 2020-04-08 04:47 - 000090280 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 005346888 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOv211.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001971264 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001544160 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOProp.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001372296 _____ (Dolby Laboratories) C:\Windows\system32\DAX3APOv251.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 001259624 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOvlldp.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 000332920 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2023-08-03 12:33 - 2020-04-08 04:46 - 000278176 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 007326304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2023-08-03 12:33 - 2020-04-08 04:44 - 007178376 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 007101640 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 003676976 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2023-08-03 12:33 - 2020-04-08 04:44 - 003404896 _____ (Foretmedia) C:\Windows\system32\FM_Speech_PP64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 003159680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 002930056 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 001159080 _____ (Dolby Laboratories) C:\Windows\system32\DolbyDAX2APOProp.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000378288 _____ (Dolby Laboratories) C:\Windows\system32\HiFiDAX2API.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000122216 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2023-08-03 12:33 - 2020-04-08 04:44 - 000023600 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2023-08-03 12:30 - 2023-08-03 12:30 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2023-08-03 12:29 - 2023-08-03 12:29 - 000000000 ____D C:\Windows\CSC
2023-08-03 12:29 - 2023-08-03 12:29 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Vault
2023-08-03 12:28 - 2023-08-08 09:47 - 000002380 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-08-03 12:28 - 2023-08-04 05:42 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Packages
2023-08-03 12:28 - 2023-08-03 13:28 - 000000000 ____D C:\ProgramData\Packages
2023-08-03 12:28 - 2023-08-03 12:41 - 000000000 ____D C:\Users\Lenovo
2023-08-03 12:28 - 2023-08-03 12:28 - 000002346 _____ C:\Users\Lenovo\Desktop\Microsoft Edge.lnk
2023-08-03 12:28 - 2023-08-03 12:28 - 000000020 ___SH C:\Users\Lenovo\ntuser.ini
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Šablony
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Soubory cookie
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Poslední
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Okolní tiskárny
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Okolní síť
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Nabídka Start
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Dokumenty
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Obrázky
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Hudba
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Documents\Filmy
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\Data aplikací
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 _SHDL C:\Users\Lenovo\AppData\Local\Data aplikací
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\SystemCertificates
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Protect
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Crypto
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___SD C:\Users\Lenovo\AppData\Roaming\Microsoft\Credentials
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ___RD C:\Users\Lenovo\3D Objects
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Microsoft\Network
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Adobe
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\VirtualStore
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Publishers
2023-08-03 12:28 - 2023-08-03 12:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\ConnectedDevicesPlatform
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Šablony
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Poslední
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Okolní síť
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Dokumenty
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Šablony
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Plocha
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Dokumenty
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\ProgramData\Data aplikací
2023-08-03 12:27 - 2023-08-03 12:27 - 000000000 _SHDL C:\Documents and Settings
2023-08-03 12:25 - 2023-08-04 06:24 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-08-03 12:25 - 2023-08-03 13:00 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-08-03 12:25 - 2023-08-03 12:39 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-08-03 12:25 - 2023-08-03 12:30 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-08-03 12:25 - 2023-08-03 12:30 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-08-03 12:25 - 2023-08-03 12:25 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2023-08-03 12:24 - 2023-08-04 06:24 - 000008192 ___SH C:\DumpStack.log.tmp
2023-08-03 12:24 - 2023-08-04 06:10 - 000259768 _____ C:\Windows\system32\FNTCACHE.DAT
2023-08-03 12:24 - 2023-08-04 05:42 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-08-03 12:24 - 2023-08-03 12:24 - 000000000 ____D C:\Windows\ServiceProfiles
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-08-08 10:10 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-08-08 10:03 - 2022-09-08 05:11 - 000000000 ____D C:\Windows\SystemTemp
2023-08-08 09:34 - 2019-12-07 16:43 - 000683426 _____ C:\Windows\system32\perfh005.dat
2023-08-08 09:34 - 2019-12-07 16:43 - 000137206 _____ C:\Windows\system32\perfc005.dat
2023-08-04 06:26 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-08-04 06:24 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-08-04 06:09 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-08-04 06:09 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2023-08-04 06:08 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-08-04 05:42 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-08-04 05:42 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-08-03 13:24 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2023-08-03 12:59 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2023-08-03 12:58 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2023-08-03 12:55 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\cs
2023-08-03 12:55 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\cs
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemApps
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-08-03 12:55 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-08-03 12:53 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2023-08-03 12:52 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2023-08-03 12:52 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2023-08-03 12:45 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2023-08-03 12:44 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2023-08-03 12:29 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2023-08-03 12:29 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2023-08-03 12:28 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2023-08-03 12:27 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2023-08-03 12:25 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-08-2023
Ran by Lenovo (08-08-2023 10:23:49)
Running from C:\Users\Lenovo\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.3271 (X64) (2023-08-03 10:27:19)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-989978189-555136673-2209958346-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-989978189-555136673-2209958346-503 - Limited - Disabled)
Guest (S-1-5-21-989978189-555136673-2209958346-501 - Limited - Disabled)
Lenovo (S-1-5-21-989978189-555136673-2209958346-1001 - Administrator - Enabled) => C:\Users\Lenovo
WDAGUtilityAccount (S-1-5-21-989978189-555136673-2209958346-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 115.0.5790.171 - Google LLC)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 115.0.1901.188 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 115.0.1901.188 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-989978189-555136673-2209958346-1001\...\OneDriveSetup.exe) (Version: 23.153.0724.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Packages:
=========
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_1.1911.21713.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.8204.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.25.20211.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20316.0_x64__8wekyb3d8bbwe [2023-08-03] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.77.0_x64__kzf8qxf38zg5c [2023-08-03] (Skype)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0 [2023-08-03] (Spotify AB) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-11-23] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-989978189-555136673-2209958346-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 195.113.56.8 - 195.113.0.2
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{1119FC63-02E5-4A83-B16E-B958673CF09C}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\115.0.1901.188\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B4964A36-15A4-4904-9FAF-6AD75AAB0473}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{18199FF9-BAE5-490E-987E-0BECC4EA73F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{63635A1E-C0CA-4D42-95F3-A6D286888491}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AB2EB04E-8B8A-4A74-AD9B-7F9E9C68C83C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{505EC41D-DD5A-489D-9D59-06041078B5BC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{EBD2BA57-A2D7-4528-BF82-F42ABB717845}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{392849A8-BD55-4F6E-8730-DFCDE7233813}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C7D52BB5-3D1A-41F7-8A06-FB387EF2F5D4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F8D7C96B-DD45-4158-80E7-B84E29272D34}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0D091EC8-195C-49A0-A363-ECC5376B5254}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.216.947.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9A959D8D-8408-4F51-8889-C9307F8DF7CD}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
03-08-2023 12:32:38 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (08/04/2023 05:45:53 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]
Error: (08/03/2023 12:29:56 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x800704CF
Argument příkazového řádku:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=bd3762d7-270d-4760-8fb3-d829ca45278a;NotificationInterval=1440;Trigger=UserLogon;SessionId=2
Error: (08/03/2023 12:29:16 PM) (Source: SecurityCenter) (EventID: 16) (User: )
Description: Při aktualizaci stavu Windows Defender na SECURITY_PRODUCT_STATE_ON došlo k chybě.
Error: (08/03/2023 12:27:08 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 257) (User: )
Description: Služba Šifrování neinicializovala databázi katalogu. Chyba součásti ESENT: -1409.
System errors:
=============
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9AA46009-3CE0-458A-A354-715610A075E6} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:08 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {3EEF301F-B596-4C0B-BD92-013BEAFCE793} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
Error: (08/04/2023 06:36:07 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-K8DOLU2)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.
==================== Memory info ===========================
BIOS: LENOVO N10ET63W (1.42 ) 07/29/2021
Motherboard: LENOVO 20CLS3SD00
Processor: Intel(R) Core(TM) i5-5200U CPU @ 2.20GHz
Percentage of memory in use: 39%
Total physical RAM: 7887.95 MB
Available physical RAM: 4774.73 MB
Total Virtual: 9807.95 MB
Available Virtual: 6704.98 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:237.9 GB) (Free:208.35 GB) (Model: SAMSUNG MZ7LN256HCHP-000L7) NTFS
\\?\Volume{ec882f6f-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.05 GB) (Free:0.02 GB) NTFS
\\?\Volume{ec882f6f-0000-0000-0000-107d3b000000}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: EC882F6F)
Partition 1: (Active) - (Size=50 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=531 MB) - (Type=27)
==================== End of Addition.txt =======================