Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zamrzání systému, někdy black screeny

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Zamrzání systému, někdy black screeny

#1 Příspěvek od Kulervo »

Ahoj,
posledni dva mesice me trapi takovej neprijemnej problem a to, ze mi PC zamrzne (pri zadne speciani prilezitosti, proste staci ve windowsech neco delat), pripadne zcernaji obrazovky... Je tam clean instal windows 11 (jsou tam uz dva roky a dosud bez problemu, jak to zacalo hned jsem zformatoval disk a dal to tam clean 11). Jedine co me napada je, ze jsem daval podpeti na CPU, protoze to mam v NZXT H1, kde to dosahuje neprijemnych teplot. To jsem ale zrusil a vratil do puvodniho stavu a presto to zamrzlo. CPU dosahne na teploty 80°C, ale to jen vyjimecne, grafika je v pohode na nejakych 38°C.
Uz jsem z toho celkem zoufalej, nechapu proc se to deje. Trochu se obavam ze by to mohlo byt virem, ale chrani me eset...

Sestava:
Ryzen 9 5900X
ASUS TUF 3080
ASUS B550-i
Kingston DDR4 2x16GB CL17
2xSSD samsung 980 (jeden 2TB druhej 250GB se systemem)
to cele v prvni verzi NZXT H1.
Additiion:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 06-10-2023
Ran by dankr (21-10-2023 19:45:17)
Running from C:\Users\dankr\Downloads
Microsoft Windows 11 Pro Version 22H2 22621.2428 (X64) (2023-08-08 15:07:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1762210102-729344704-2828090106-500 - Administrator - Disabled)
dankr (S-1-5-21-1762210102-729344704-2828090106-1001 - Administrator - Enabled) => C:\Users\dankr
DefaultAccount (S-1-5-21-1762210102-729344704-2828090106-503 - Limited - Disabled)
Guest (S-1-5-21-1762210102-729344704-2828090106-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1762210102-729344704-2828090106-504 - Limited - Disabled)
winpostgr (S-1-5-21-1762210102-729344704-2828090106-1002 - Limited - Enabled) => C:\Users\winpostgr

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ABRA Flexi (HKLM-x32\...\WinStrom 10) (Version: - ABRA Flexi s.r.o.)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 23.006.20360 - Adobe)
Adobe After Effects 2024 (HKLM-x32\...\AEFT_24_0_1) (Version: 24.0.1 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 6.0.0.571 - Adobe Inc.)
Adobe Illustrator 2024 (HKLM-x32\...\ILST_28_0) (Version: 28.0 - Adobe Inc.)
Adobe Media Encoder 2024 (HKLM-x32\...\AME_24_0) (Version: 24.0 - Adobe Inc.)
Adobe Photoshop (Beta) (HKLM-x32\...\PHSPBETA_25_2) (Version: 25.2.0.2368 - Adobe Inc.)
Adobe Photoshop 2024 (HKLM-x32\...\PHSP_25_0) (Version: 25.0.0.37 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
aescripts + aeplugins components (HKLM-x32\...\{44A79C1B-673F-4061-9CB0-17E555F4993D}) (Version: 1.111.0.0 - aescripts + aeplugins)
aescripts + aeplugins desktop apps (HKLM-x32\...\{6e15cd99-cba6-4578-82e3-cf46f2ea2b19}) (Version: 1.8.94.0 - aescripts + aeplugins) Hidden
AIDA64 6.30.5500 (HKLM-x32\...\AIDA64_is1) (Version: 6.30.5500 - lrepacks.ru)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.118 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.83 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.17.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 7.0.4.4 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{cf77cf6b-71ff-4a71-802d-43adb9b271b7}) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.) Hidden
AniMe Matrix MB EN (HKLM\...\{399B6DA7-B609-426E-95F8-B9A83FB7D06E}) (Version: 1.0.1 - ASUS)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
ARMOURY CRATE Lite Service (HKLM\...\{EF3944FF-2501-4568-B15C-5701E726719E}) (Version: 5.6.10 - ASUS)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.2.7.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{3ffa1d70-3db5-45b0-b2f5-a03caabf1f59}) (Version: 1.2.7.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{4EBEAC95-76BC-46A8-8644-6E2F1C87CF70}) (Version: 1.3.9.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{a51a52ef-375e-4963-8736-c98fae7373c4}) (Version: 1.3.9.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.04.32 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA VGA Component (HKLM\...\{71BB96A6-EAC4-45AE-A17D-D3ED43FF1D14}) (Version: 0.0.6.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS AURA VGA Component (HKLM-x32\...\{20a5b340-899f-4e14-904f-8cb333ce9663}) (Version: 0.0.6.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.0.1.3 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 4.01.16 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.107 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{6FB66775-BB93-4D0A-9871-4CC9B2E87BF3}) (Version: 1.1.23 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{179f415f-2ff3-4db1-bcc1-d5730f746db8}) (Version: 1.1.23 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.36 - ASUS)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.36 - ASUS)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.07.17 - ASUSTeK Computer Inc.) Hidden
AURA Service (HKLM-x32\...\{be345e17-83f7-4b5f-b533-6f975b9a8180}) (Version: 3.07.17 - ASUSTeK Computer Inc.)
CPUID HWMonitor 1.52 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.52 - CPUID, Inc.)
Custom locale cs-CZ (HKLM-x32\...\{88195905-2D39-4F0F-8B04-075A640FFC5E}) (Version: 1.0.0 - Unknown Publisher)
Dead Island 2 (HKLM-x32\...\Dead Island 2_is1) (Version: 0.0.0 - DODI-Repacks)
Discord (HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Discord) (Version: 1.0.9016 - Discord Inc.)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.43.1 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{eb2aaa1d-e416-485a-b3a3-312289fbb33d}) (Version: 1.1.43.1 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.10.3 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{79e8502b-eaf7-4831-b53d-2da128540d16}) (Version: 1.0.10.3 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{AEB35C6C-B6D4-4AA0-8452-DE699737B5F6}) (Version: 1.3.82.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{35905844-0610-427D-86A0-2103FABE3D4D}) (Version: 2.0.42.0 - Epic Games, Inc.)
ESET Security (HKLM\...\{32DA3D18-091D-4B85-BFD4-C17C514674ED}) (Version: 16.2.15.0 - ESET, spol. s r.o.)
FakerInput (HKLM\...\{BF63C434-BF91-4666-B817-AD7B5C34AE91}) (Version: 0.1.0 - Ryochan7)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 118.0.5993.89 - Google LLC)
HidHide (HKLM\...\{48DD38C8-443E-4474-A249-AB32389E08F6}) (Version: 1.2.128 - Nefarius Software Solutions e.U.)
iCloud Outlook (HKLM\...\{AC76D136-36CC-4606-8361-4939FE5D2381}) (Version: 14.2.0.108 - Apple Inc.)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
Java 8 Update 141 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180141F0}) (Version: 8.0.1410.15 - Oracle Corporation)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.19 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{33f6b854-2612-4216-ac10-ab6bf158ce06}) (Version: 1.1.19 - KINGSTON COMPONENTS INC.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Magic Bullet Suite (HKLM\...\Magic Bullet Suite v2023.0.0) (Version: - Maxon Computer GmbH)
Maxon Cinema 4D 2023 (HKLM\...\Maxon Cinema 4D 2023) (Version: 2023 - Maxon)
Microsoft .NET Host - 6.0.21 (x64) (HKLM\...\{26FF35F7-ADBB-4C9F-97DA-79120DB80EC6}) (Version: 48.87.64667 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.21 (x64) (HKLM\...\{D937EF87-F11D-4778-973C-B71E178F95D0}) (Version: 48.87.64667 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.21 (x64) (HKLM\...\{8D2EC92E-5903-4B25-9406-182B8EFA834F}) (Version: 48.87.64667 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 118.0.2088.57 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 118.0.2088.46 - Microsoft Corporation)
Microsoft Office LTSC Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Volume - cs-cz) (Version: 16.0.14332.20582 - Microsoft Corporation)
Microsoft Office LTSC Professional Plus 2021 - en-us (HKLM\...\ProPlus2021Volume - en-us) (Version: 16.0.14332.20582 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.204.1001.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{43D501A5-E5E3-46EC-8F33-9E15D2A2CBD5}) (Version: 5.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.21 (x64) (HKLM\...\{AF6BF7DD-2B12-40C5-919C-2EC99054BBE1}) (Version: 48.87.64723 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.21 (x64) (HKLM-x32\...\{0f39db03-9030-48f3-82ef-5384bed81d85}) (Version: 6.0.21.32717 - Microsoft Corporation)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 545.84 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 545.84 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20582 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14332.20582 - Microsoft Corporation) Hidden
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.7 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{1d74a898-7a92-484d-8f3b-e3b68dfb1264}) (Version: 1.0.9.7 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: 230905 - Kakao Corp.)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 4.5.4 - The qBittorrent project)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 2.2.5.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Sackboy.A.Big.Adventure.REPACK-KaOs (HKLM\...\Sackboy.A.Big.Adventure.REPACK-KaOs_is1) (Version: - ReMiX)
SetupApp version 2.1 (HKLM-x32\...\SetupApp_is1) (Version: 2.1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Switch 5.2 (HKLM\...\{9A63AE86-A3CA-42F4-886D-363D8DC42AAF}) (Version: 5.2.0.3019 - Telestream)
Teamwork Desktop 1.2.0 (HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\71b5ce26-e29c-5111-bcfd-03be3e0b4c2e) (Version: 1.2.0 - Teamwork.com)
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.6 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{82f9b0cd-20fe-4ed6-a632-ef6daefb3c0d}) (Version: 1.0.0.6 - PD) Hidden
UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.)
VGA (HKLM-x32\...\{0f87ebb7-aabb-43e5-9c5d-28744f517468}) (Version: 3.01.04 - ASUSTek Computer Inc.)
ViGEm Bus Driver (HKLM\...\{9C581C76-2D68-40F8-AA6F-94D3C5215C05}) (Version: 1.21.442 - Nefarius Software Solutions e.U.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Windows Manager (HKLM-x32\...\{C845414C-903C-4218-9DE7-132AB97FDF62}) (Version: 1.0.0 - AW Manager) Hidden <==== ATTENTION
WinRAR 6.22 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.22.0 - win.rar GmbH)
ZXP UXP installer (HKLM-x32\...\{012DB1D5-24DC-451A-84DB-CA4F907EAC24}) (Version: 1.8.94.0 - aescripts + aeplugins)

Packages:
=========
Adobe Acrobat -> D:\Program Files\Acrobat DC [2023-10-19] ()
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc [2023-09-19] (Adobe Systems Incorporated)
ARMOURY CRATE -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_5.7.3.0_x64__qmba6cd70vzyy [2023-10-11] (ASUSTeK COMPUTER INC.)
Cortana -> C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2308.1005.0_x64__8wekyb3d8bbwe [2023-09-19] (Microsoft Corporation)
DTS Sound Unbound -> C:\Program Files\WindowsApps\DTSInc.DTSSoundUnbound_2023.3.13.0_x64__t5j2fzbtdg37r [2023-09-19] (DTS, Inc.)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2023-10-21] (Sparse Package)
Microsoft.WindowsAppRuntime.CBS -> C:\Windows\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2023-10-12] (Microsoft Corporation)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.98.1805.0_x64__mcm4njqhnhss8 [2023-09-19] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-10-21] (NVIDIA Corp.)
Příslušenství pro Xbox -> C:\Program Files\WindowsApps\Microsoft.XboxDevices_2209.2209.14005.0_x64__8wekyb3d8bbwe [2023-09-19] (Microsoft Corporation)
QuickLook -> C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.7.3.0_neutral__egxr34yet59cg [2023-09-30] (Paddy Xu) [Startup Task]
Shutdown Timer Classic -> C:\Program Files\WindowsApps\19341LukasLangrock.ShutdownTimerClassic_1.2.3.0_x64__jnfph5tq58r4j [2023-09-19] (Lukas Langrock)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.17.10160.0_x64__8wekyb3d8bbwe [2023-10-19] (Microsoft Studios) [MS Ad]
Sonic Radar 3 -> C:\Program Files\WindowsApps\A-Volute.28054DF1F58B4_3.16.21.0_x64__w2gh52qy24etm [2023-09-19] (A-Volute)
Sonic Studio 3 -> C:\Program Files\WindowsApps\A-Volute.SonicStudio3_3.16.21.0_x64__w2gh52qy24etm [2023-09-19] (A-Volute)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0 [2023-10-11] (Spotify AB) [Startup Task]
WeMod Overlay -> C:\Program Files\WindowsApps\WeMod.WeModOverlay_1.0.10.0_x64__t7g4ya3tqt6sw [2023-09-19] (WeMod)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2341.3.0_x64__cv1g1gvanyjgm [2023-10-19] (WhatsApp Inc.) [Startup Task]
Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2023-10-12] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2023-08-08] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1762210102-729344704-2828090106-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-9F3234432B3E} -> [Creative Cloud Files] => C:\Users\dankr\Creative Cloud Files [2023-10-16 10:26]
CustomCLSID: HKU\S-1-5-21-1762210102-729344704-2828090106-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.)
CustomCLSID: HKU\S-1-5-21-1762210102-729344704-2828090106-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> D:\Program Files\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-1762210102-729344704-2828090106-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-29] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-29] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-29] (Adobe Inc. -> )
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-29] (Adobe Inc. -> )
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => D:\Program Files\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2023-09-07] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2023-09-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2023-09-26] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncShell64.dll [2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_4eef80c06561d01a\nvshext.dll [2023-10-12] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-29] (Adobe Inc. -> )
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => D:\Program Files\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2023-09-07] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2023-09-26] (ESET, spol. s r.o. -> ESET)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2023-08-08 17:25 - 2023-07-19 19:31 - 000322048 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\ac_node_addon\build\Release\ac_node_addon.node
2023-08-08 17:25 - 2023-07-17 16:37 - 000175616 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\ffi-napi\build\Release\ffi_bindings.node
2023-08-08 17:25 - 2023-04-14 14:18 - 000159744 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\ref-napi\prebuilds\win32-ia32\electron.napi.node
2023-08-08 17:25 - 2023-04-14 14:18 - 000319488 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\sharp\build\Release\sharp-win32-ia32.node
2023-08-08 17:25 - 2023-04-26 16:06 - 000541696 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\usb\prebuilds\win32-ia32\node.napi.node
2022-08-09 06:04 - 2022-08-09 06:04 - 002246656 _____ () [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libxml2.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 001850401 _____ (Free Software Foundation) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libiconv-2.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 000475769 _____ (Free Software Foundation) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libintl-9.dll
2023-10-21 19:28 - 2023-10-21 19:28 - 000331033 _____ (Java(TM) Native Access (JNA)) [File not signed] C:\Windows\Temp\jna4759733585295479003.tmp
2022-08-09 06:04 - 2022-08-09 06:04 - 000052736 _____ (MingW-W64 Project. All rights reserved.) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libwinpthread-1.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 000305152 _____ (PostgreSQL Global Development Group) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\LIBPQ.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 028399104 _____ (The ICU Project) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\icudt67.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 002686976 _____ (The ICU Project) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\icuin67.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 001934336 _____ (The ICU Project) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\icuuc67.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 002853376 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libcrypto-1_1-x64.dll
2022-08-09 06:04 - 2022-08-09 06:04 - 000685568 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\libssl-1_1-x64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_141\bin\ssv.dll [2023-08-08] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_141\bin\jp2ssv.dll [2023-08-08] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2023-08-01] (Adobe Inc. -> Adobe Systems Incorporated)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;C:\ProgramData\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\dotnet\
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\dankr\OneDrive\Obrázky\926292-ultrawide-road-house-artwork-Tales-From-The-Loop.jpg
HKU\S-1-5-21-1762210102-729344704-2828090106-1002\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "APSDaemon"
HKLM\...\StartupApproved\Run32: => "TeamsMachineInstaller"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_B6E103896BC5BE3491F550480C67F368"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "WallpaperEngine"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{32C0922E-E8B7-438A-B481-3F36B23ADB60}] => (Allow) C:\Users\dankr\AppData\Local\Packages\B9ECED6F.ArmouryCrate_qmba6cd70vzyy\LocalState\GridUpdateFile\ASUSGCDriverUpdateClient.exe (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
FirewallRules: [{C6CFF137-F5C3-496C-AA33-81CF1DA511D5}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{4F437B1D-D2B0-4155-B1A7-23194666BF57}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{09DAB0DB-7689-4A0C-B26D-EBA80BF7408A}] => (Allow) D:\Programs\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{50CAC94D-B5D3-48EB-8266-26F5970DEDA8}] => (Allow) D:\Programs\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BCC6147C-F315-4677-AD61-78C092E0C086}] => (Allow) D:\Programs\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BE169D0A-3814-4CEE-8836-F63752A51B31}] => (Allow) D:\Programs\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C39A3832-F560-4C6C-92EE-430EAFEB6D6A}] => (Allow) D:\Programs\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> )
FirewallRules: [{148FA97A-C6CB-4E37-8C9D-7B48BC759FAF}] => (Allow) D:\Programs\Steam\steamapps\common\wallpaper_engine\launcher.exe (Skutta, Kristjan -> )
FirewallRules: [{C5A66D59-699C-45EF-BF01-74E2B79C6FDF}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{842C20F7-F2FF-4F50-928F-FB87C753FCEB}] => (Allow) D:\Programs\Steam\steamapps\common\Green Hell\GH.exe () [File not signed]
FirewallRules: [{0284DAD6-B0E4-4EB4-8DBD-0F97B417AE16}] => (Allow) D:\Programs\Steam\steamapps\common\Green Hell\GH.exe () [File not signed]
FirewallRules: [{8E2E3A3B-E12F-4FE4-9EC1-4ED07968D3B9}] => (Allow) D:\Programs\Steam\steamapps\common\Sea of Thieves\Athena\Binaries\Win64\SoTGame.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DD31A0E8-AE2A-4B6E-9BDC-583C78A00A43}] => (Allow) D:\Programs\Steam\steamapps\common\Sea of Thieves\Athena\Binaries\Win64\SoTGame.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C009ACC0-B080-4FE5-98D3-0122BA504E7D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{5F73C4C9-CD1F-4FE6-A29C-C560CF5C2A09}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{75041180-F019-4D1A-B4CA-F868AF27083B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{0E3EDF0F-E6B3-4AAB-B7EA-C3F02FCD50AE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{9701264C-6BB2-4A6E-9A08-9E3D3D77C210}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{A114467A-5B4D-45DC-B386-8B3840B80775}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{A073C9C4-2A2B-43C7-BD65-8737A10DE3D1}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
FirewallRules: [{1424D723-62D5-4583-9A48-80251508C539}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{158E8273-AB65-4C7E-98BB-63579DF33201}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{E3136B74-0E81-4356-9929-CCA25BD12CA9}] => (Allow) C:\Users\dankr\AppData\Local\Programs\Opera GX\102.0.4880.55\opera.exe => No File
FirewallRules: [{7E48C780-08F6-486F-976D-CD10E6A017B3}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23247.1113.2398.2671_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C90D3ED4-721F-4A44-9482-E2F5E7731EBF}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23247.1113.2398.2671_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{73375B30-E6A0-435C-87D7-18FC98099707}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A1460EE5-C75B-4794-B160-CF89D2EEC5EA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3629FA03-D35A-4671-8FA4-5652616ABDD4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6D6C5096-FC79-4FC4-9ABA-BA3FE2CB0019}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{152A250D-0331-468E-94FF-BAF75809EC1B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{89B9EC87-400D-4D32-9216-398414611564}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3ED2B9A8-F373-4ADD-B366-48F37036FF69}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E9973515-16D9-4B1C-B19E-6492CEE7052B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{AB2B201B-1258-441A-82B7-1733AC820A42}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{79622AAD-CB30-499E-8B3E-F5FC43BD4621}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.222.982.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E0533409-C9EA-4240-B96C-B09D22122D80}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{822269E3-5AF2-49D9-BF5C-64BFF05700A8}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{F4AA624C-ECB4-406B-8472-954A355AE1C0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{387EB23F-5033-4AE0-874F-19D3CD270C75}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{077EF963-707D-47C9-8B98-D51D9582CC2C}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DCDFBEB3-E077-4AD6-AB09-A074ECA65B11}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1EB0EE5D-464A-4891-AF81-BFBA0A090CC1}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A5DAB369-B995-4736-B692-D00AD29D9118}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\118.0.2088.46\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6DB22006-FCF9-4A53-8F17-81E445142917}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{60FAB456-5398-4772-B77A-1C138C475DFD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2D294DA9-2C9C-4DB3-BDE4-3123BED95D7C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9401B8E5-3729-4134-940C-5766C6454B66}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7D9A985E-3294-49F4-B8BC-D64AF488CBF6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.106.3212.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

17-10-2023 13:07:23 Windows Update
21-10-2023 17:24:30 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/21/2023 07:28:17 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\KULERVO$ přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-907d65e9b562315997dd5ad086b2b7598957b92c.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sat, 21 Oct 2023 17:28:15 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 25b53e07-ce76-4931-b9eb-716a71e190b4

Metoda: GET(297ms)
Fáze: GetCACaps
Nenalezeno (404) 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)

Error: (10/21/2023 07:28:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-907d65e9b562315997dd5ad086b2b7598957b92c.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sat, 21 Oct 2023 17:28:14 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 864a4b31-5169-45e1-9550-3387c0a93a38

Metoda: GET(375ms)
Fáze: GetCACaps
Nenalezeno (404) 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)

Error: (10/21/2023 07:26:56 PM) (Source: PostgreSQL) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/21/2023 07:26:56 PM) (Source: PostgreSQL) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/21/2023 07:26:56 PM) (Source: PostgreSQL) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/21/2023 07:26:56 PM) (Source: PostgreSQL) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/21/2023 07:26:56 PM) (Source: PostgreSQL) (EventID: 0) (User: )
Description: Event-ID 0

Error: (10/21/2023 07:26:43 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\KULERVO$ přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-907d65e9b562315997dd5ad086b2b7598957b92c.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Sat, 21 Oct 2023 17:26:42 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: b7443156-4be6-4423-9768-04efcefcb0ac

Metoda: GET(297ms)
Fáze: GetCACaps
Nenalezeno (404) 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)


System errors:
=============
Error: (10/21/2023 07:26:31 PM) (Source: Microsoft-Windows-WER-SystemErrorReporting) (EventID: 1001) (User: NT AUTHORITY)
Description: 0x00000116 (0xffffbe8bf83a8010, 0xfffff8012a364570, 0xffffffffc000009a, 0x0000000000000004)C:\Windows\Minidump\102123-8781-01.dmp82d55a2b-b050-4f46-ba6e-f147fa86b1d9

Error: (10/21/2023 07:26:24 PM) (Source: volmgr) (EventID: 162) (User: )
Description: Soubor se stavem systému byl úspěšně vygenerován.

Error: (10/21/2023 07:26:32 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (19:25:02, ‎21.‎10.‎2023) bylo neočekávané.

Error: (10/21/2023 07:25:02 PM) (Source: nvlddmkm) (EventID: 14) (User: )
Description: Event-ID 14

Error: (10/21/2023 07:25:02 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (19:17:57, ‎21.‎10.‎2023) bylo neočekávané.

Error: (10/21/2023 07:22:01 PM) (Source: DCOM) (EventID: 10010) (User: KULERVO)
Description: Server {8CFC164F-4BE5-4FDD-94E9-E2AF73ED4A19} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/21/2023 07:17:22 PM) (Source: DCOM) (EventID: 10010) (User: KULERVO)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/21/2023 07:17:22 PM) (Source: DCOM) (EventID: 10010) (User: KULERVO)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================Event[0]

Date: 2023-09-19 22:43:31
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

CodeIntegrity:
===============
Date: 2023-10-21 19:41:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 2423 08/11/2021
Motherboard: ASUSTeK COMPUTER INC. ROG STRIX B550-I GAMING
Processor: AMD Ryzen 9 5900X 12-Core Processor
Percentage of memory in use: 30%
Total physical RAM: 32656.51 MB
Available physical RAM: 22559.39 MB
Total Virtual: 52112.51 MB
Available Virtual: 38578.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:222.26 GB) (Free:77.01 GB) (Model: KINGSTON SUV400S37240G) NTFS
Drive d: () (Fixed) (Total:1863.01 GB) (Free:181.73 GB) (Model: Samsung SSD 970 EVO Plus 2TB) NTFS

\\?\Volume{35a19927-ef19-4e73-8e36-4743a1adea21}\ () (Fixed) (Total:0.66 GB) (Free:0.08 GB) NTFS
\\?\Volume{21daaceb-d79f-459f-9fec-285b7729d3bb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 04BB7976)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 957B471D)
Partition 1: (Not Active) - (Size=1863 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Size: 232.9 GB) (Disk ID: 3CCCCD36)

Partition: GPT.

==================== End of Addition.txt =======================

FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2023
Ran by dankr (administrator) on KULERVO (ASUS System Product Name) (21-10-2023 19:44:31)
Running from C:\Users\dankr\Downloads\FRST64.exe
Loaded Profiles: dankr & winpostgr
Platform: Microsoft Windows 11 Pro Version 22H2 22621.2428 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Adobe Crash Processor.exe
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Creative Cloud UI Helper.exe <3>
(C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\nvrla.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\PresentMon_x64.exe <2>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.23500.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\118.0.2088.46\msedgewebview2.exe <6>
(D:\Programs\Abra 2\WinStrom\pgsql\bin\pg_ctl.exe ->) (PostgreSQL Global Development Group) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\postgres.exe <7>
(D:\Programs\Abra 2\WinStrom\WinStromService.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Java\jre1.8.0_141\bin\java.exe
(D:\Programs\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) D:\Programs\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <6>
(Discord Inc. -> Discord Inc.) C:\Users\dankr\AppData\Local\Discord\app-1.0.9020\Discord.exe <6>
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) D:\Program Files\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <35>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) D:\Programs\Steam\steam.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.20\AsusFanControlService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.02.23\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (FlexiBee Systems s.r.o.) [File not signed] D:\Programs\Abra 2\WinStrom\WinStromService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_4eef80c06561d01a\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
(services.exe ->) (PostgreSQL Global Development Group) [File not signed] D:\Programs\Abra 2\WinStrom\pgsql\bin\pg_ctl.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (CE36AF3D-FF94-43EB-9908-7EC8FD1D29FB -> pooi.moe) C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.7.3.0_neutral__egxr34yet59cg\Package\QuickLook.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2341.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <9>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (FinalWire Ltd.) [File not signed] D:\Programs\Aida64\aida64.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.23500.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [193984 2023-09-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-12] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2023-08-09] (Adobe Inc. -> )
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1131488 2023-09-19] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\dankr\AppData\Local\Microsoft\Teams\Update.exe [2454240 2023-10-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [MicrosoftEdgeAutoLaunch_B6E103896BC5BE3491F550480C67F368] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187088 2023-10-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2588584 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [Steam] => D:\Programs\Steam\steam.exe [4375912 2023-09-29] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [WallpaperEngine] => D:\Programs\Steam\steamapps\common\wallpaper_engine\wallpaper32.exe [3050080 2023-08-08] (Skutta, Kristjan -> )
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [Discord] => C:\Users\dankr\AppData\Local\Discord\Update.exe [1525016 2023-07-31] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [Adobe Acrobat Synchronizer] => D:\Program Files\Acrobat DC\Acrobat\AdobeCollabSync.exe [11516888 2023-10-09] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-1762210102-729344704-2828090106-1001\...\Run: [EpicGamesLauncher] => D:\Games\Epic 2\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37104080 2023-10-13] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1762210102-729344704-2828090106-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2588584 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2023-08-01] (Adobe Inc. -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\118.0.5993.89\Installer\chrmstp.exe [2023-10-20] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {287728C8-80C0-44E0-B80B-250D6B7021D6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {A443BDD4-4CA6-4A4B-A7D4-7DFCB9EEDDB1} - System32\Tasks\AdvancedUpdater => C:\Program Files (x86)\AW Manager\Windows Manager\Windows Updater.exe /silentall -nofreqcheck -nogui (No File) <==== ATTENTION
Task: {E082E2E5-6FD5-4504-BE4C-F2E8BE85D68D} - System32\Tasks\AIDA64 AutoStart => D:\Programs\Aida64\aida64.exe [17044888 2020-10-28] (FinalWire Ltd.) [File not signed]
Task: {9203917D-924E-4B90-97F3-4B0300D45CEB} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [313192 2023-07-25] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {46E74F19-8C8F-4846-9761-B91831D33613} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [1898344 2023-07-25] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {23F9B8EC-593C-4CB4-8648-431E610810B1} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d9ca0c74387916 => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-08-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {7EE2A1A0-3B74-4085-80A9-8E72E400B541} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-08-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {0899D97A-7F0E-4351-96D8-137A1AAD169D} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [139091304 2023-07-19] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
Task: {49949E12-C87D-47D9-B5D0-03BB6A21A1E1} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1254760 2023-07-05] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {1EA48141-74A5-45F0-9F8F-40761488BD51} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {C154448A-AE50-4CA5-A0BB-991CB2F95D5A} - System32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {7E462E14-1409-4789-B24B-CEAC993038E6} - System32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {4C86D510-2442-4C0A-AE9F-27F748DF06C4} - System32\Tasks\HidHide_Updater => D:\Programs\Drivers\HidHide\HidHide_Updater.exe [1206200 2023-05-06] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)
Task: {BE46AB90-0E5D-4608-A834-898A409EDB68} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21915760 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {3C0688FE-0F0E-402B-B801-82D3EECF8C65} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21915760 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {BEF83DCB-5F1B-4A64-94F9-790BDC8706D7} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141352 2023-10-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {ED70B717-8CCC-4832-AEDC-16394EDA95D9} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141352 2023-10-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB720BDF-7114-4851-9E4B-69A011D5AEBE} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\UCPD velocity => C:\Windows\system32\UCPDMgr.exe [58880 2023-09-06] (Microsoft Windows -> Microsoft Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {AF68C432-924E-4AF8-9BDD-67DE86413D0F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2023-08-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {F50F847C-EB54-42DA-8F0A-DA3A9CF2EA90} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-08-15] (Nvidia Corporation -> NVIDIA Corporation)
Task: {DC0FA5EF-BE6F-4EB5-9291-DD1BDF15A2DA} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {025A2336-6F9B-468D-82FC-727676BF3C2B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E8AD4A0-83AD-4D60-86C1-CBDE6806B111} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D97598C1-719F-4B28-9216-C0C4710D72E1} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {96CB39B5-E024-43DF-8F42-46DA3A2A2EF9} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {32D68374-BD37-4333-9318-98D595BDE0F6} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {11DFE2F1-C3C1-4C43-9EAB-850071F3A76D} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2B35E116-4D53-48BB-BC63-82D47762C0BD} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130832 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {5A8CF3F7-FE16-4477-9A3A-597F1CE7A97F} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1762210102-729344704-2828090106-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130832 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {F4CC143B-0459-4689-AB98-68F56C397476} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1762210102-729344704-2828090106-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130832 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {BDFB43A8-1E05-41CB-A32D-489019937353} - System32\Tasks\Opera GX scheduled Autoupdate 1695286435 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
Task: {4CA83809-1E8F-4E57-84D7-A3A85BB8FFD0} - System32\Tasks\Opera GX scheduled Autoupdate 1695287103 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
Task: {E060DEFF-D7D4-4317-A5D8-4F01C13C5060} - System32\Tasks\ViGEmBus_Updater => D:\Programs\Drivers\ViGEmBus_Updater.exe [1117096 2022-09-27] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{92525855-5238-4edf-a8df-4eea72cddb47}: [DhcpNameServer] 10.0.0.138

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default [2023-10-21]
Edge Session Restore: Default -> is enabled.
Edge Extension: (Shift Click Image Extractor) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aonflkdebcjkiimklgpgkclmjohclbbf [2023-08-08]
Edge Extension: (Tlačítko Uložit pro Pinterest) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkgoflemacdadndiohhdnphcmdhacabg [2023-08-08]
Edge Extension: (Clear Cache) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cppjkneekbjaeellbfkmgnhonkkjfpdn [2023-08-08]
Edge Extension: (VCCGenerator - Credit Card Generator Tool) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dgplfcheafegcicpddiagmghacgomfko [2023-08-08]
Edge Extension: (ZemanBlock) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\dkmkngddjdildamjdkadffknbegcmebg [2023-08-08]
Edge Extension: (Netflix List Exporter) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\emfcadhohobddccfnjpcajjpkogpilim [2023-08-08]
Edge Extension: (uBlock) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2023-08-08]
Edge Extension: (GoFullPage - Full Page Screen Capture) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl [2023-08-08]
Edge Extension: (Dark Theme for Google™) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\flinoafkglcecbpipdiokmpfjkkhhchi [2023-08-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-29]
Edge Extension: (Tampermonkey) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2023-08-08]
Edge Extension: (Save to Facebook) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmfikkaogpplgnfjmbjdpalkhclendgd [2023-08-08]
Edge Extension: (Edge relevant text changes) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-14]
Edge Extension: (Stop Clickbait) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kaefiffdnngdbjcaefipcglldjchhipl [2023-08-08]
Edge Extension: (I still don't care about cookies) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kkacdgacpkediooahopgcbdahlpipheh [2023-08-08]
Edge Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2023-10-18]
Edge Extension: (Speedtest by Ookla) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pgjjikdiikihdfpoppgaidccahalehjh [2023-08-08]
Edge Extension: (f*ck overlays) - C:\Users\dankr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ppedokobpbdajgiejhnjfbdjlgobcpkp [2023-08-08]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - D:\Program Files\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - D:\Program Files\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - D:\Program Files\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> D:\Program Files\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-10-09] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2023-09-19] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.141.2 -> C:\Program Files (x86)\Java\jre1.8.0_141\bin\dtplugin\npDeployJava1.dll [2023-08-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.141.2 -> C:\Program Files (x86)\Java\jre1.8.0_141\bin\plugin2\npjp2.dll [2023-08-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-10-11] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2023-09-19] (Adobe Inc. -> Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\dankr\AppData\Local\Google\Chrome\User Data\Default [2023-09-27]
CHR Extension: (Adobe Acrobat: nástroje pro úpravu, převod a podpis souborů PDF) - C:\Users\dankr\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-09-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\dankr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\dankr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-27]
CHR HKU\S-1-5-21-1762210102-729344704-2828090106-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [944096 2023-09-19] (Adobe Inc. -> Adobe Inc.)
R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe [399992 2023-09-06] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.02.23\atkexComSvc.exe [896872 2023-05-19] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-08-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [501608 2023-08-18] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.20\AsusFanControlService.exe [1722216 2023-05-19] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [156008 2023-08-08] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusUpdateCheck; C:\Windows\System32\AsusUpdateCheck.exe [1134480 2023-10-21] (ASUSTeK Computer Inc. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9201848 2023-09-27] (Microsoft Corporation -> Microsoft Corporation)
S3 CloudBackupRestoreSvc; C:\Windows\System32\CloudRestoreLauncher.dll [1261568 2023-10-11] (Microsoft Windows -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811496 2022-10-09] (EasyAntiCheat Oy -> Epic Games, Inc)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [2528888 2023-09-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3860080 2023-09-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3860080 2023-09-26] (ESET, spol. s r.o. -> ESET)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-05-01] (Epic Games Inc. -> Epic Games, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncHelper.exe [3504552 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [4283240 2023-05-31] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.204.1001.0003\OneDriveUpdaterService.exe [3841976 2023-10-21] (Microsoft Corporation -> Microsoft Corporation)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [1799640 2023-09-20] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402264 2023-10-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Service1; D:\Programs\Abra 2\WinStrom\winstromservice.exe [587264 2022-08-18] (FlexiBee Systems s.r.o.) [File not signed]
S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [402816 2023-07-24] () [File not signed]
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-30] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-30] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinStrom-PostgreSQL; D:\Programs\Abra 2\WinStrom\pgsql\bin\pg_ctl.exe [116736 2022-08-09] (PostgreSQL Global Development Group) [File not signed]
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_4eef80c06561d01a\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_4eef80c06561d01a\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AIDA64Driver; D:\Programs\Aida64\kerneld.x64 [68608 2020-10-26] (FinalWire Kft. -> )
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [55608 2023-06-27] (Apple Inc. -> Apple Inc.)
R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [59440 2023-08-17] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 cpuz157; C:\Windows\temp\cpuz157\cpuz157_x64.sys [43016 2023-09-06] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R1 CTIAIO; C:\Windows\system32\drivers\CtiAIo64.sys [32840 2023-08-08] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 e2f68; C:\Windows\System32\drivers\e2f68.sys [507904 2022-05-06] (Microsoft Windows -> Intel Corporation)
S3 e2fexpress; C:\Windows\System32\DriverStore\FileRepository\e2f.inf_amd64_2d5cb0c750512550\e2f.sys [536168 2022-07-18] (Intel Corporation -> Intel Corporation)
R3 e2fnexpress; C:\Windows\System32\DriverStore\FileRepository\e2fn.inf_amd64_fcb868ac03f43b71\e2fn.sys [1427528 2023-07-03] (Intel Corporation -> Intel Corporation)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [208704 2023-08-04] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [118904 2023-08-04] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2023-08-03] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [249544 2023-08-04] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [55424 2023-08-04] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [81712 2023-08-04] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [123040 2023-08-04] (ESET, spol. s r.o. -> ESET)
R3 HidHide; C:\Windows\System32\drivers\HidHide.sys [66584 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
R4 IOMap; C:\Windows\system32\drivers\IOMap64.sys [54752 2023-05-05] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-08-15] (Nvidia Corporation -> NVIDIA Corporation)
S4 UCPD; C:\Windows\System32\drivers\UCPD.sys [29184 2023-09-06] (Microsoft Windows -> Microsoft Corporation)
R1 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [55872 2023-08-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [574872 2023-08-30] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-30] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-10-21 19:44 - 2023-10-21 19:44 - 000037183 _____ C:\Users\dankr\Downloads\FRST.txt
2023-10-21 19:44 - 2023-10-21 19:44 - 000000000 ____D C:\FRST
2023-10-21 19:43 - 2023-10-21 19:43 - 002383360 _____ (Farbar) C:\Users\dankr\Downloads\FRST64.exe
2023-10-21 19:35 - 2023-10-21 19:35 - 000725758 _____ C:\Windows\system32\perfh005.dat
2023-10-21 19:35 - 2023-10-21 19:35 - 000151026 _____ C:\Windows\system32\perfc005.dat
2023-10-21 17:24 - 2023-10-21 17:24 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2023-10-21 10:11 - 2023-10-21 10:12 - 000000000 ____D C:\Windows\LastGood.Tmp
2023-10-21 10:09 - 2023-10-12 15:40 - 001487904 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 001423960 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 001423960 _____ C:\Windows\system32\vulkan-1.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 001246296 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 001246296 _____ C:\Windows\SysWOW64\vulkan-1.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 001226760 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2023-10-21 10:09 - 2023-10-12 15:40 - 000850512 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2023-10-21 10:09 - 2023-10-12 15:40 - 000850512 _____ C:\Windows\system32\vulkaninfo.exe
2023-10-21 10:09 - 2023-10-12 15:40 - 000731216 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-10-21 10:09 - 2023-10-12 15:40 - 000731216 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2023-10-21 10:09 - 2023-10-12 15:37 - 000958072 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2023-10-21 10:09 - 2023-10-12 15:37 - 000670344 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2023-10-21 10:09 - 2023-10-12 15:37 - 000504840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 002171528 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 001624184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 001540728 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 001198728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 000996984 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2023-10-21 10:09 - 2023-10-12 15:36 - 000810104 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2023-10-21 10:09 - 2023-10-12 15:36 - 000774280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 015095944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 012375584 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 006462600 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 005862520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 005849736 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 003620488 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2023-10-21 10:09 - 2023-10-12 15:35 - 000853536 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2023-10-21 10:09 - 2023-10-12 15:35 - 000459272 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2023-10-21 10:09 - 2023-10-12 03:41 - 000113783 _____ C:\Windows\system32\nvinfo.pb
2023-10-21 02:13 - 2023-10-21 02:13 - 000001078 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop (Beta).lnk
2023-10-20 11:34 - 2023-10-20 11:34 - 000001250 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2024.lnk
2023-10-17 14:25 - 2023-10-17 14:25 - 000000000 ____D C:\Users\dankr\OneDrive\Dokumenty\Vlastní šablony Office
2023-10-17 13:11 - 2023-10-17 14:25 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Word
2023-10-17 13:11 - 2023-10-17 13:11 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Proof
2023-10-16 10:26 - 2023-10-21 19:29 - 000000000 ___RD C:\Users\dankr\Creative Cloud Files
2023-10-16 10:20 - 2023-10-16 10:20 - 000000866 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder 2024.lnk
2023-10-12 09:35 - 2023-10-12 09:35 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2023-10-12 09:31 - 2023-10-21 16:03 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2023-10-12 09:29 - 2023-10-21 09:42 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1762210102-729344704-2828090106-1002
2023-10-12 09:29 - 2023-10-12 09:42 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Teams
2023-10-12 09:29 - 2023-10-12 09:29 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Teams
2023-10-11 13:39 - 2023-10-17 13:16 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Excel
2023-10-11 13:39 - 2023-10-17 13:11 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\UProof
2023-10-11 13:39 - 2023-10-17 13:11 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Office
2023-10-11 13:39 - 2023-10-11 13:39 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\AddIns
2023-10-11 13:34 - 2023-10-21 09:42 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2023-10-11 13:34 - 2023-10-21 09:42 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-10-11 13:34 - 2023-10-12 09:29 - 000000000 ___RD C:\Users\winpostgr\OneDrive
2023-10-11 13:34 - 2023-10-11 13:34 - 000000000 ___RD C:\Users\Default\OneDrive
2023-10-11 13:33 - 2023-10-11 17:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2023-10-11 13:33 - 2023-10-11 13:33 - 000002517 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002483 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002476 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002409 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000002405 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2023-10-11 13:33 - 2023-10-11 13:33 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2023-10-11 13:31 - 2023-10-17 12:50 - 000000000 ____D C:\Program Files\Microsoft Office
2023-10-11 13:31 - 2023-10-11 13:31 - 000000000 ____D C:\Program Files\Microsoft Office 15
2023-10-11 13:01 - 2023-10-11 13:01 - 000384145 _____ C:\Users\dankr\OneDrive\Dokumenty\Gotham-Font.zip
2023-10-11 13:01 - 2023-10-11 13:01 - 000000000 ____D C:\Users\dankr\OneDrive\Dokumenty\Gotham-Font
2023-10-11 11:34 - 2023-10-11 11:34 - 000060462 _____ C:\Windows\SysWOW64\ctac.json
2023-10-11 11:33 - 2023-10-11 11:33 - 000060462 _____ C:\Windows\system32\ctac.json
2023-10-11 11:33 - 2023-10-11 11:33 - 000016239 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2023-10-11 11:31 - 2023-10-11 11:32 - 000000000 ___HD C:\$WinREAgent
2023-10-10 14:23 - 2023-10-10 14:23 - 000001369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Illustrator 2024.lnk
2023-10-10 09:24 - 2023-10-21 02:13 - 000000000 ___HD C:\adobeTemp
2023-10-06 09:37 - 2023-10-06 09:37 - 000000000 ____D C:\Users\dankr\AppData\LocalLow\Temp
2023-10-06 00:09 - 2023-10-06 00:09 - 003072259 _____ C:\Users\dankr\Downloads\DRV_Bluetooth_Intel_AX200_TP_W11_64_V2219002_20230130R.zip
2023-10-06 00:09 - 2023-10-06 00:09 - 000000000 ____D C:\Users\dankr\Downloads\DRV_Bluetooth_Intel_AX200_TP_W11_64_V2219002_20230130R
2023-10-06 00:08 - 2023-10-06 00:08 - 000000000 ____D C:\Users\dankr\AppData\Roaming\AMD
2023-10-06 00:08 - 2023-10-06 00:08 - 000000000 ____D C:\Program Files (x86)\AMD
2023-10-06 00:08 - 2023-10-06 00:08 - 000000000 ____D C:\AMD
2023-10-06 00:06 - 2023-10-06 00:06 - 000000000 ____D C:\Users\dankr\AppData\Local\ElevatedDiagnostics
2023-10-04 21:27 - 2023-08-14 12:13 - 005182888 _____ (Intel Corporation) C:\Windows\system32\Drivers\Netwtw10.sys
2023-10-04 21:27 - 2023-08-14 12:13 - 001475496 _____ (Intel Corporation) C:\Windows\system32\IntelIHVRouter10.dll
2023-10-04 11:16 - 2023-10-20 17:31 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Teamwork Desktop
2023-10-04 11:16 - 2023-10-04 11:16 - 000002524 _____ C:\Users\dankr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Teamwork Desktop.lnk
2023-10-04 11:16 - 2023-10-04 11:16 - 000000000 ____D C:\Users\dankr\AppData\Local\teamwork-projects-desktop-updater
2023-09-29 13:43 - 2023-09-29 13:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2023-09-27 21:11 - 2023-10-20 10:15 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-09-27 21:11 - 2023-09-27 21:11 - 000000000 ____D C:\Users\dankr\AppData\Local\Google
2023-09-27 21:11 - 2023-09-27 21:11 - 000000000 ____D C:\Program Files\Google
2023-09-27 21:10 - 2023-10-21 19:30 - 000000000 ____D C:\Program Files (x86)\Google
2023-09-27 21:10 - 2023-09-27 21:10 - 000003844 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64}
2023-09-27 21:10 - 2023-09-27 21:10 - 000003720 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632}
2023-09-26 23:27 - 2023-09-26 23:27 - 000002091 _____ C:\Users\dankr\OneDrive\Dokumenty\NZXT AIO.txt
2023-09-24 22:04 - 2023-09-24 22:04 - 037590056 _____ (Gemfor s.r.o.) C:\Users\dankr\Downloads\dslman.exe
2023-09-24 17:24 - 2023-09-24 17:34 - 000000000 ____D C:\Users\dankr\AppData\Local\Epic Games
2023-09-24 17:24 - 2023-09-24 17:27 - 000000000 ____D C:\ProgramData\Epic
2023-09-24 17:24 - 2023-09-24 17:24 - 000000979 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2023-09-24 17:24 - 2023-09-24 17:24 - 000000000 ____D C:\Users\dankr\AppData\Local\UnrealEngineLauncher
2023-09-24 17:24 - 2023-09-24 17:24 - 000000000 ____D C:\Program Files (x86)\Epic Games
2023-09-24 17:14 - 2023-10-13 18:44 - 000000000 ____D C:\Users\dankr\AppData\Local\EpicGamesLauncher
2023-09-24 17:14 - 2023-09-24 17:36 - 000000000 ____D C:\Users\dankr\AppData\Local\DeadIsland
2023-09-24 12:33 - 2023-09-24 12:33 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\MMC
2023-09-21 14:58 - 2023-09-21 15:07 - 000000000 ____D C:\Users\dankr\AppData\Roaming\AEViewer
2023-09-21 14:58 - 2023-09-21 14:58 - 000000000 ___HD C:\Users\dankr\AppData\Roaming\isoqgkgtbaiftxx
2023-09-21 14:58 - 2023-09-21 14:58 - 000000000 ____D C:\Users\dankr\OneDrive\Dokumenty\Aeviewer Packs
2023-09-21 14:58 - 2023-09-21 14:58 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Motion Land
2023-09-21 14:58 - 2023-09-21 14:58 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Aescripts
2023-09-21 14:58 - 2023-09-21 14:58 - 000000000 ____D C:\ProgramData\aescripts
2023-09-21 14:53 - 2023-09-21 14:53 - 000000000 ____D C:\Users\dankr\AppData\Local\CefSharp
2023-09-21 14:53 - 2023-09-21 14:53 - 000000000 ____D C:\Users\dankr\AppData\Local\aescripts.com
2023-09-21 14:53 - 2023-09-21 14:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ZXP UXP installer
2023-09-21 14:53 - 2023-09-21 14:53 - 000000000 ____D C:\Program Files (x86)\aescripts + aeplugins
2023-09-21 11:05 - 2023-09-21 11:05 - 000004174 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1695287103
2023-09-21 10:54 - 2023-09-21 11:05 - 000000000 ____D C:\Users\dankr\AppData\Local\Opera Software
2023-09-21 10:54 - 2023-09-21 10:54 - 000004174 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1695286435
2023-09-21 10:53 - 2023-09-21 12:12 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DigitalPulse
2023-09-21 10:53 - 2023-09-21 12:12 - 000000000 ____D C:\Users\dankr\AppData\Roaming\DigitalPulse
2023-09-21 10:52 - 2023-09-21 11:04 - 000003936 _____ C:\Windows\system32\Tasks\AdvancedUpdater
2023-09-21 10:52 - 2023-09-21 10:52 - 000000000 ____D C:\Users\dankr\AppData\Local\AdvinstAnalytics
2023-09-21 10:52 - 2023-09-21 10:52 - 000000000 ____D C:\Program Files (x86)\AW Manager
2023-09-21 10:49 - 2023-09-21 11:04 - 000000000 ____D C:\Program Files (x86)\SetupApp
2023-09-21 10:49 - 2023-09-21 11:01 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Opera Software

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-10-21 19:38 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-10-21 19:35 - 2023-08-08 17:14 - 001718036 _____ C:\Windows\system32\PerfStringBackup.INI
2023-10-21 19:35 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF
2023-10-21 19:30 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp
2023-10-21 19:29 - 2023-08-08 19:24 - 000000000 ____D C:\Users\dankr\AppData\Roaming\discord
2023-10-21 19:29 - 2023-08-08 19:24 - 000000000 ____D C:\Users\dankr\AppData\Local\Discord
2023-10-21 19:28 - 2023-09-06 02:04 - 000000000 ____D C:\ProgramData\NVIDIA
2023-10-21 19:28 - 2023-08-08 17:11 - 000000000 ____D C:\Users\dankr
2023-10-21 19:28 - 2023-08-08 17:04 - 001173024 _____ C:\Windows\system32\wpbbin.exe
2023-10-21 19:28 - 2023-08-08 17:04 - 001134480 _____ C:\Windows\system32\AsusUpdateCheck.exe
2023-10-21 19:28 - 2023-08-08 17:04 - 000012288 ___SH C:\DumpStack.log.tmp
2023-10-21 19:28 - 2023-08-08 17:04 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-10-21 19:28 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState
2023-10-21 19:26 - 2023-08-30 08:11 - 000000000 ____D C:\Windows\Minidump
2023-10-21 19:26 - 2023-08-08 18:42 - 000000000 ____D C:\Users\winpostgr
2023-10-21 19:26 - 2023-08-08 17:04 - 002761284 ____N C:\Windows\Minidump\102123-8781-01.dmp
2023-10-21 19:26 - 2023-08-08 17:04 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-10-21 19:18 - 2023-08-08 17:52 - 000000000 ____D C:\Users\dankr\AppData\Roaming\asus_framework
2023-10-21 19:17 - 2022-05-07 07:17 - 000524288 _____ C:\Windows\system32\config\BBI
2023-10-21 17:25 - 2023-08-08 17:24 - 000000000 ____D C:\Program Files\ASUS
2023-10-21 16:17 - 2023-08-08 17:04 - 014443409 ____N C:\Windows\Minidump\102123-9609-01.dmp
2023-10-21 16:10 - 2023-09-06 01:59 - 000000000 ____D C:\Users\dankr\AppData\Local\D3DSCache
2023-10-21 10:33 - 2023-08-11 18:31 - 000000000 ____D C:\Users\dankr\AppData\Local\CrashDumps
2023-10-21 10:12 - 2023-08-09 15:28 - 000000000 ____D C:\Users\dankr\AppData\LocalLow\NVIDIA
2023-10-21 10:12 - 2023-08-08 17:16 - 000000000 ____D C:\Users\dankr\AppData\Local\NVIDIA
2023-10-21 10:12 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness
2023-10-21 10:11 - 2023-09-06 02:04 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2023-10-21 10:10 - 2023-09-06 02:04 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-10-21 09:42 - 2023-08-08 17:15 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1762210102-729344704-2828090106-1001
2023-10-21 09:42 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2023-10-21 06:18 - 2023-08-19 22:30 - 000000000 ____D C:\Users\dankr\AppData\Roaming\vlc
2023-10-21 04:57 - 2023-08-08 17:13 - 000000000 ____D C:\Users\dankr\AppData\Local\Packages
2023-10-20 11:34 - 2023-08-09 14:05 - 000000000 ____D C:\Program Files\Adobe
2023-10-20 10:16 - 2023-08-08 17:04 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-10-19 14:32 - 2023-08-09 15:27 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-10-19 14:32 - 2023-08-09 15:27 - 000001721 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller.lnk
2023-10-19 14:32 - 2023-08-09 15:27 - 000001712 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-10-19 13:53 - 2023-08-08 17:04 - 005242392 ____N C:\Windows\Minidump\101923-12578-01.dmp
2023-10-18 09:44 - 2023-08-08 17:04 - 003662673 ____N C:\Windows\Minidump\101823-10031-01.dmp
2023-10-16 10:53 - 2023-08-08 17:15 - 000000000 ____D C:\Users\dankr\OneDrive\Dokumenty\Adobe
2023-10-16 10:06 - 2023-08-09 14:07 - 000000000 __RHD C:\Users\dankr\Creative Cloud Files dan.krajcovic@xproduction.cz 4853a15d97c8f09eb59fe4fde342f7d29a179a47a8c8c55d3b55d088bc0952ec
2023-10-13 11:15 - 2023-08-08 17:04 - 005480757 ____N C:\Windows\Minidump\101323-10296-01.dmp
2023-10-12 15:34 - 2023-09-06 02:03 - 007866464 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2023-10-12 15:34 - 2023-09-06 02:01 - 006746288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2023-10-12 09:42 - 2023-08-08 17:07 - 000000000 ____D C:\ProgramData\Packages
2023-10-12 09:39 - 2023-08-08 17:15 - 000000000 ___RD C:\Users\dankr\OneDrive
2023-10-12 09:36 - 2023-08-08 17:04 - 000482488 _____ C:\Windows\system32\FNTCACHE.DAT
2023-10-12 09:35 - 2022-05-07 12:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\UUS
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\setup
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\setup
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\migwiz
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-10-12 09:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr
2023-10-12 09:29 - 2023-08-08 19:24 - 000000000 ____D C:\Users\dankr\AppData\Local\SquirrelTemp
2023-10-11 13:33 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-10-11 13:30 - 2023-08-08 18:10 - 000000000 ____D C:\Users\dankr\AppData\Roaming\qBittorrent
2023-10-11 12:33 - 2023-08-08 17:04 - 000000000 ____D C:\ProgramData\ASUS
2023-10-11 11:37 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp
2023-10-11 11:34 - 2023-08-08 17:06 - 003210752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-10-10 23:39 - 2023-08-09 22:00 - 181553176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-10-10 14:20 - 2023-08-09 14:06 - 000000000 ____D C:\ProgramData\Adobe
2023-10-10 14:20 - 2023-08-09 14:05 - 000000000 ____D C:\Program Files\Common Files\Adobe
2023-10-10 13:36 - 2023-08-08 17:13 - 000000000 ____D C:\Users\dankr\AppData\Roaming\Adobe
2023-10-09 12:04 - 2023-08-09 14:01 - 000000000 ____D C:\Users\dankr\AppData\Roaming\com.adobe.dunamis
2023-10-03 12:59 - 2023-08-08 17:11 - 000000000 ___SD C:\Users\dankr\AppData\Roaming\Microsoft\Credentials
2023-10-03 12:58 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\NDF
2023-09-29 14:09 - 2023-08-08 18:43 - 000000000 ____D C:\Users\dankr\AppData\Roaming\.winstrom
2023-09-24 17:26 - 2023-08-08 17:24 - 000000000 ____D C:\ProgramData\Package Cache
2023-09-23 22:57 - 2023-09-06 08:35 - 000000000 ____D C:\Users\dankr\AppData\Local\NVIDIA Corporation

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Diky za pripadne rady.
Naposledy upravil(a) Kulervo dne 21 říj 2023 19:00, celkem upraveno 1 x.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzání systému, někdy black screeny

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Re: Zamrzání systému, někdy black screeny

#3 Příspěvek od Kulervo »

# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2023-07-19.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-21-2023
# Duration: 00:00:00
# OS: Windows 11 (Build 22621.2428)
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1420 octets] - [21/10/2023 22:07:25]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzání systému, někdy black screeny

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:

Start

CloseProcesses:
FirewallRules: [{E3136B74-0E81-4356-9929-CCA25BD12CA9}] => (Allow) C:\Users\dankr\AppData\Local\Programs\Opera GX\102.0.4880.55\opera.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {C154448A-AE50-4CA5-A0BB-991CB2F95D5A} - System32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {7E462E14-1409-4789-B24B-CEAC993038E6} - System32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {1EA48141-74A5-45F0-9F8F-40761488BD51} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {BDFB43A8-1E05-41CB-A32D-489019937353} - System32\Tasks\Opera GX scheduled Autoupdate 1695286435 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
Task: {4CA83809-1E8F-4E57-84D7-A3A85BB8FFD0} - System32\Tasks\Opera GX scheduled Autoupdate 1695287103 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632}

EmptyTemp:
End
Uložte do C:\Users\dankr\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Dále otevřte adresář C:\windows\minidump. Jeho obsah zabalte do raru a přiložte k vašemu příštímu postu.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Re: Zamrzání systému, někdy black screeny

#5 Příspěvek od Kulervo »

Omlouvám se za nečinnost, dostal jsem se k tomu bohužel až teď, mockrát děkuji za ochotu.

Zde je minidump https://we.tl/t-UB3E3bChkt

Ještě se chci zeptat, je nějak možný kompletně odstranit software od Armoury crate? respektive ovladaci agent pro Asus ROG desky...?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzání systému, někdy black screeny

#6 Příspěvek od Rudy »

Dejte, prosím, minidump sem do fóra. Tam ho nemohu otevřít (nejde). Potřebuji vědět, co zpsobuje ten bluescreen. Potřebuji také vdět, jak dopadl fix. Dejte sem obsah souboru fixlog.txt. Máte ho v C:\Users\dankr\Downloads.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

altrok
Moderátor
Moderátor
Příspěvky: 7264
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Zamrzání systému, někdy black screeny

#7 Příspěvek od altrok »

Zdarec,

s dovolenim zkusim pomoct s resenim. Jako prvni vse pretaktovane/podtaktovane vrat na default. Jaky mas na CPU vetrak, ze mas CPU na 80°C? Je to opravdu jeho nejvyssi teplota? ESET te ocividne chrani dobre, protoze uplne zaplevelene to nevidim.

Kód: Vybrat vše

BIOS: American Megatrends Inc. 2423 08/11/2021

Sice pouzivas Armoury Crate, ale vlastne nepouzivas. Aktualizuj BIOS na aktualni 3301. Ve starsich verzich je par chyb, ktere obcas zpusobily nestabilitu celeho systemu. Kdyz uz Armoury Crate budes mit otevrenej, aktualizuj i ostatni ovladace (pripadne pouzij stranky vyrobce).
Kulervo píše:Ještě se chci zeptat, je nějak možný kompletně odstranit software od Armoury crate? respektive ovladaci agent pro Asus ROG desky...?
Tak urcite. Da se odstranit. Pokud se ti sam nainstaloval ihned po reinstalu operacniho systemu, musis ho pred dalsim reinstalem zakazat v BIOSu. Tbh, mas nainstalovano plno zbytecnosti (nejsem priznivcem barvicek, sorry jako).


Vsechny minidumpy, ktere jsi poslal se vztahuji ke grafickemu subsystemu.

Kód: Vybrat vše

Image path: nvlddmkm.sys
Timestamp: Wed Oct 11 23:06:19 2023 (65270E4B)
Ackoliv mas ovladac GPU aktualni, zkusil bych ho odinstalovat a nainstalovat starsi verze. Pripadne jej lze i kompletne odinstalovat pomoci nastroje DDU.

Tez me zajima obsah fixlogu.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Re: Zamrzání systému, někdy black screeny

#8 Příspěvek od Kulervo »

Rudy píše: 26 říj 2023 19:49 Dejte, prosím, minidump sem do fóra. Tam ho nemohu otevřít (nejde). Potřebuji vědět, co zpsobuje ten bluescreen. Potřebuji také vdět, jak dopadl fix. Dejte sem obsah souboru fixlog.txt. Máte ho v C:\Users\dankr\Downloads.

Omouvám se, ale ten minidump ma pres 3MB a system tady mi hlásí MAX_ATTACHMENT_FILESIZE. Vadí ten link na wetransfer? Nebo můžu vložit kamkoliv a poslat.

Fix tady:
Fix result of Farbar Recovery Scan Tool (x64) Version: 06-10-2023
Ran by dankr (26-10-2023 19:50:02) Run:1
Running from C:\Users\dankr\Downloads
Loaded Profiles: dankr & winpostgr
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
FirewallRules: [{E3136B74-0E81-4356-9929-CCA25BD12CA9}] => (Allow) C:\Users\dankr\AppData\Local\Programs\Opera GX\102.0.4880.55\opera.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {C154448A-AE50-4CA5-A0BB-991CB2F95D5A} - System32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {7E462E14-1409-4789-B24B-CEAC993038E6} - System32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-09-27] (Google LLC -> Google LLC)
Task: {1EA48141-74A5-45F0-9F8F-40761488BD51} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {BDFB43A8-1E05-41CB-A32D-489019937353} - System32\Tasks\Opera GX scheduled Autoupdate 1695286435 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
Task: {4CA83809-1E8F-4E57-84D7-A3A85BB8FFD0} - System32\Tasks\Opera GX scheduled Autoupdate 1695287103 => C:\Users\dankr\AppData\Local\Programs\Opera GX\launcher.exe --scheduledautoupdate $(Arg0) (No File)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632}

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E3136B74-0E81-4356-9929-CCA25BD12CA9}" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C154448A-AE50-4CA5-A0BB-991CB2F95D5A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C154448A-AE50-4CA5-A0BB-991CB2F95D5A}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7E462E14-1409-4789-B24B-CEAC993038E6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7E462E14-1409-4789-B24B-CEAC993038E6}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1EA48141-74A5-45F0-9F8F-40761488BD51}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1EA48141-74A5-45F0-9F8F-40761488BD51}" => removed successfully
C:\Windows\System32\Tasks\ASUS\P508PowerAgent_sdk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\P508PowerAgent_sdk" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => removed successfully
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{BDFB43A8-1E05-41CB-A32D-489019937353}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BDFB43A8-1E05-41CB-A32D-489019937353}" => removed successfully
C:\Windows\System32\Tasks\Opera GX scheduled Autoupdate 1695286435 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera GX scheduled Autoupdate 1695286435" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4CA83809-1E8F-4E57-84D7-A3A85BB8FFD0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CA83809-1E8F-4E57-84D7-A3A85BB8FFD0}" => removed successfully
C:\Windows\System32\Tasks\Opera GX scheduled Autoupdate 1695287103 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Opera GX scheduled Autoupdate 1695287103" => removed successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{E4966088-1C35-4996-BAB5-8E97088C8F64}" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{EEA579FE-8036-4212-BC37-5469B70F7632}" => not found

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 206364778 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 204056185 B
Windows/system/drivers => 85815523 B
Edge => 0 B
Chrome => 12520744 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 431068 B
NetworkService => 467658 B
dankr => 16310032996 B
winpostgr => 16310032996 B

RecycleBin => 371781 B
EmptyTemp: => 30.9 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:53:29 ====

Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Re: Zamrzání systému, někdy black screeny

#9 Příspěvek od Kulervo »

altrok píše: 27 říj 2023 00:53 Zdarec,

s dovolenim zkusim pomoct s resenim. Jako prvni vse pretaktovane/podtaktovane vrat na default. Jaky mas na CPU vetrak, ze mas CPU na 80°C? Je to opravdu jeho nejvyssi teplota? ESET te ocividne chrani dobre, protoze uplne zaplevelene to nevidim.

Kód: Vybrat vše

BIOS: American Megatrends Inc. 2423 08/11/2021

Sice pouzivas Armoury Crate, ale vlastne nepouzivas. Aktualizuj BIOS na aktualni 3301. Ve starsich verzich je par chyb, ktere obcas zpusobily nestabilitu celeho systemu. Kdyz uz Armoury Crate budes mit otevrenej, aktualizuj i ostatni ovladace (pripadne pouzij stranky vyrobce).
Kulervo píše:Ještě se chci zeptat, je nějak možný kompletně odstranit software od Armoury crate? respektive ovladaci agent pro Asus ROG desky...?
Tak urcite. Da se odstranit. Pokud se ti sam nainstaloval ihned po reinstalu operacniho systemu, musis ho pred dalsim reinstalem zakazat v BIOSu. Tbh, mas nainstalovano plno zbytecnosti (nejsem priznivcem barvicek, sorry jako).


Vsechny minidumpy, ktere jsi poslal se vztahuji ke grafickemu subsystemu.

Kód: Vybrat vše

Image path: nvlddmkm.sys
Timestamp: Wed Oct 11 23:06:19 2023 (65270E4B)
Ackoliv mas ovladac GPU aktualni, zkusil bych ho odinstalovat a nainstalovat starsi verze. Pripadne jej lze i kompletne odinstalovat pomoci nastroje DDU.

Tez me zajima obsah fixlogu.

CPU je uz standard takt, nic pres nebo pod. Vetrak je NZXT vodník, přepastovanej asi 3 týdny zpět. Jako když dělám render, dostanu se i na 91°, ale teď v normálním procesu jsem na 51°.

No co jsem četl na AMD forech a Redditu, tak AMD vlastně nikdy z úplně tenhle fail nevyřešilo žádným updatem, ani BIOS nepomohl, ale samozřejmě zkusím taky. Paradoxně dokud jsem ten update BIOSu neudělal, tak jelo vše v porádku přes dva roky. Nicméně jestě jsem se dočetl, že Armoury soft včetně balastu na světýlka toto může způsobovat, tak se snažím odstranit vše co s tím má ASUS společný, a to i klidně barviček. Bohužel stále vidím, že nějaký zbytky tam zůstaly. Kde přesně bych to mohl zakázat pls?

AMD ještě radilo, že se má DRAM pustit vyšší napětí (1,4V), což jsem udělal, je to trochu lepší, ale většinou to je tak, že zapnu PC, systém tak 5min jede v pohodě a pak kompletně zmrzne a musim na hardreset. Po druhé už to téměř nedělá, ale protože mě živí motion grafika a After Effects, tak bych nerad aby mě tohle překvapilo...

Jasně, zkusím nějaký stable drivery na GPU.

Díky moc za vše.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzání systému, někdy black screeny

#10 Příspěvek od Rudy »

Za mne: Bylo smazáno, po stránce zbytečností je PC v pořádku. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Kulervo
Návštěvník
Návštěvník
Příspěvky: 15
Registrován: 17 čer 2017 14:49

Re: Zamrzání systému, někdy black screeny

#11 Příspěvek od Kulervo »

Rudy píše: 27 říj 2023 17:47 Za mne: Bylo smazáno, po stránce zbytečností je PC v pořádku. Nemáte zač! :)
Moc děkuju! Tahle komunita je skvělá 🖤

Můžu poprosit o nezamykani topicu? Kolega nahoře sem dává ještě zajímavé pointy.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zamrzání systému, někdy black screeny

#12 Příspěvek od Rudy »

Nemáte zač. Nechám otevřené. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

altrok
Moderátor
Moderátor
Příspěvky: 7264
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Zamrzání systému, někdy black screeny

#13 Příspěvek od altrok »

Budeš u mě muset trpět delší odezvy, protože si udělat čas na forum každý den nezvládám.

Kdy jsi aktualizoval BIOS? Nepamatuješ si, z jaké to bylo verze a opravdu tam tehdy byl systém stabilní?

Ok, idle teploty jsou v normě, když renderuješ, tak vyšší teploty chápu. Tady se přiznám, že nevím, jestli je 91°C při renderování ok, ale furt jsme pod maximální teplotou, kterou doporučuje výrobce. Tady bych problém neviděl.

Máš k dispozici jinej disk, na kterej bys mohl udělat čistou instalačku Windowsů? Snažím se vymyslet něco, jak otestovat čistý systém bez toho, aniž bys přišel o data formátováním (samozřejmostí by bylo vyndat oba disky a nechat jen ten náhradní).

Doporučuji postup:
- update BIOSu viz výše a jako další krok hodit v BIOSu vše na default (bývá to pojmenované load optimized defaults... abysme se zbavili hrátek s napětím). Následně zakázat Armoury Crate v BIOSu, cituji zdroj:

Kód: Vybrat vše

2) Go in your BIOS (Del) > Advanced Mode (F7) > Tool tab > ASUS Armoury Crate > Download & Install ARMOURY CRATE app : Disabled.

Pak bych reinstaloval OS (klidně na jiný disk z bootable flashky - Microsoft má přímo ofiko Media Creation Tool stažitelný z jejich webu, malý hint pro postup bez nutnosti připojit se Microsoft účtem - odpojit ethernet/nepřipojovat na WiFi a vygoogli si how to install windows without internet).

Rád bych otestoval stabilitu systému s novým BIOSem (v defaultu) na čistých Windowsech bez bloatwaru, což pro mě Armoury Crate a barvičky jsou. Tím bysme vyloučili SW problem. Samozřejmě když uděláš i část z toho, tak se můžeme hnout z místa.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Odpovědět