Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu, blbne prohlizec a hry

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
pan Hankey
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 30 čer 2017 21:18

Prosim o kontrolu, blbne prohlizec a hry

#1 Příspěvek od pan Hankey »

Prosím o kontrolu, poslední dobou mi blbne prohlizec Opera a hry se třeba zničeho nic minimalizuji nebo vypnou. Děkuju za pomoc.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-11-2023 02
Ran by Asus (administrator) on DESKTOP-L3OICG3 (16-11-2023 15:50:41)
Running from C:\Users\Asus\Desktop\FRST64.exe
Loaded Profiles: Asus
Platform: Microsoft Windows 10 Home Version 22H2 19045.3448 (X64) Language: Čeština (Česko)
Default browser: Vivaldi
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\Opera GX\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Program Files\Opera GX\102.0.4880.117\opera_crashreporter.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Opera Norway AS -> Opera Software) C:\Program Files\Opera GX\opera.exe <20>
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_5412865deb6a559e\Display.NvContainer\NVDisplay.Container.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102832 2022-07-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Opera GX Browser Assistant] => C:\Program Files\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37104080 2023-10-16] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [MicrosoftEdgeAutoLaunch_E27E50BD5633453D54C19716A813DFE6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3894824 2023-11-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482168 2022-09-04] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\MountPoints2: {ba2e7a32-2aa0-11ed-aa8e-704d7b2f69b1} - "H:\Autorun.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\119.0.6045.159\Installer\chrmstp.exe [2023-11-15] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FxSound.lnk [2023-06-07]
ShortcutTarget: FxSound.lnk -> C:\Program Files\FxSound LLC\FxSound\FxSound.exe (FxSound, LLC -> FxSound LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {B0D9112E-0429-479E-9644-6473E1184B8E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform)
Task: {72C64C00-A416-433F-9BD8-7391CC50A286} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "cecf7d29-ab40-47ca-a73d-17e7fe11c654" --version "6.09.10300" --silent
Task: {DA8C1B17-6328-4EF0-828E-1AE8B7F99CC0} - System32\Tasks\CCleanerSkipUAC - Asus => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {73C5A17A-0D3A-40DB-91AE-D83BE82F9EEF} - System32\Tasks\Driver Booster SkipUAC (Asus) => "E:\Driver Booster\7.2.0\DriverBooster.exe" /skipuac (No File)
Task: {6E1D78EF-72E8-4C66-B967-08D4B8E831A5} - System32\Tasks\Driver Booster Update => "E:\Driver Booster\7.2.0\AutoUpdate.exe" /auto (No File)
Task: {BFD6CB24-3561-40BD-B0C2-F8E78FFBE020} - System32\Tasks\FxSound\Update => C:\Program -> Files\FxSound LLC\FxSound\updater.exe /silent
Task: {188B5077-FA62-49BD-9536-99675E92F62F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
Task: {66CCF188-EBFC-4AD6-87A1-9F6844A5ED92} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
Task: {49C2930A-EF0B-498D-B96E-5314AB87A107} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {EB06EC07-0516-439F-85C3-1F33F5CC81A9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0A0E21AA-3233-4056-9650-D31CE88D3D16} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D4CA0E68-4A10-48C9-8361-4795A9261E3D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A05D2216-69AC-4C66-A520-244DB83ADE89} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MpCmdRun.exe [1604680 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FA4F86B4-B36F-44E1-8E9C-A99D65D68C10} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {C2EEEF9F-94D5-4F86-A5F5-CED3593572B5} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
Task: {5119D698-C43A-40C7-B773-A08398B7766C} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {883A80E7-FC8F-4859-B143-3E3736FBC204} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5E0B61AB-B410-4BD0-884A-231DF3340C89} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F616F317-A15A-485F-8F36-720F301CB2D5} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C49987E2-1A8B-4273-80CD-BEC4DDFAF390} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {23C06E80-4651-4452-A58C-5B8D51BE18C1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C05EBBC1-EC1F-4A24-B673-E50CB95826BA} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {145394DF-4260-422E-A3CA-8CF3D1A1B757} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1661775523 => C:\Program Files\Opera GX\launcher.exe [2687392 2023-10-30] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Program Files\Opera GX\assistant" $(Arg0)
Task: {E68E988D-EE85-41E7-98E5-900BAD367BAE} - System32\Tasks\Opera GX scheduled Autoupdate 1660932806 => C:\Program Files\Opera GX\launcher.exe [2687392 2023-10-30] (Opera Norway AS -> Opera Software)
Task: {8BCC4AE7-2539-4CC7-B3AF-47626858F1A5} - System32\Tasks\VivaldiUpdateCheck-e0b05087cc3ed2aa => C:\Users\Asus\AppData\Local\Vivaldi\Application\update_notifier.exe [3723152 2023-11-08] (Vivaldi Technologies AS -> Vivaldi Technologies AS)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 185.73.101.1 185.73.108.1
Tcpip\..\Interfaces\{21d68787-928a-4380-99cc-e1e2eb862fa6}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{21d68787-928a-4380-99cc-e1e2eb862fa6}: [DhcpNameServer] 185.73.101.1 185.73.108.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default [2023-11-16]
Edge Extension: (Dokumenty Google offline) - C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-03]
Edge Extension: (Edge relevant text changes) - C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-06]
Edge Extension: (AdBlocker Ultimate) - C:\Users\Asus\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pciakllldcajllepkbbihkmfkikheffb [2023-10-25]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default [2023-11-16]
CHR DownloadDir: G:\Downloads
CHR Session Restore: Default -> is enabled.
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-11-11]
CHR Extension: (uBlock Origin) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-11-11]
CHR Extension: (Stahovač videí) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkbccihpiccbcheieabdbjikohfdfaje [2023-11-06]
CHR Extension: (video downloader - CocoCut) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\gddbgllpilhpnjpkdbopahnpealaklle [2023-11-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-17]
CHR Extension: (Morpheon Dark) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2023-11-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Asus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-26]

Opera:
=======
StartMenuInternet: (HKLM) Opera GXStable - C:\Program Files\Opera GX\Launcher.exe

Vivaldi:
=======
VIV Profile: C:\Users\Asus\AppData\Local\Vivaldi\User Data\Default [2023-11-16]
VIV DownloadDir: G:\Downloads
VIV Notifications: Default -> hxxps://www.youtube.com
VIV Extension: (Blokátor reklam AdGuard) - C:\Users\Asus\AppData\Local\Vivaldi\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2023-11-10]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1001272 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2023-06-18] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [16029456 2023-02-26] (Epic Games Inc. -> Epic Games, Inc.)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2348000 2023-05-07] (GOG sp. z o.o -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7178720 2023-05-07] (GOG sp. z o.o -> GOG.com)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_5412865deb6a559e\Display.NvContainer\NVDisplay.Container.exe [1275544 2023-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\NisSrv.exe [3121120 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe [133704 2023-11-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2022-09-04] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2022-09-04] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 e1dexpress; C:\Windows\System32\DriverStore\FileRepository\e1d.inf_amd64_e64afe811c7e4662\e1d.sys [607400 2022-07-26] (Intel Corporation -> Intel Corporation)
R3 FXVAD; C:\Windows\system32\drivers\fxvad.sys [326656 2022-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2022-07-26] (Martin Malik - REALiX -> REALiX(tm))
R3 MpKsl6ad53d1c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{459D8279-7CA8-4668-965A-3D51B3FDB40C}\MpKslDrv.sys [263560 2023-11-16] (Microsoft Windows -> Microsoft Corporation)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
S3 tapwindscribe0901; C:\Windows\System32\drivers\tapwindscribe0901.sys [57768 2023-03-17] (Windscribe Limited -> The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55744 2023-11-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [578856 2023-11-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105768 2023-11-07] (Microsoft Windows -> Microsoft Corporation)
S3 windtun420; C:\Windows\System32\drivers\windtun420.sys [47544 2023-03-17] (Windscribe Limited -> WireGuard LLC)
R3 WireGuard; C:\Windows\System32\drivers\wireguard.sys [489368 2023-03-17] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-11-16 15:50 - 2023-11-16 15:51 - 000018088 _____ C:\Users\Asus\Desktop\FRST.txt
2023-11-16 15:50 - 2023-11-16 15:50 - 000000000 ____D C:\FRST
2023-11-16 15:48 - 2023-11-16 15:48 - 002383872 _____ (Farbar) C:\Users\Asus\Desktop\FRST64.exe
2023-11-10 19:44 - 2023-11-16 14:13 - 000000527 _____ C:\Users\Asus\.vivaldi_reporting_data
2023-11-10 19:44 - 2023-11-10 19:44 - 000003834 _____ C:\Windows\system32\Tasks\VivaldiUpdateCheck-e0b05087cc3ed2aa
2023-11-10 19:44 - 2023-11-10 19:44 - 000002380 _____ C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk
2023-11-10 19:44 - 2023-11-10 19:44 - 000002343 _____ C:\Users\Asus\Desktop\Vivaldi.lnk
2023-11-10 19:44 - 2023-11-10 19:44 - 000000000 ____D C:\Users\Asus\AppData\Local\Vivaldi
2023-11-02 12:44 - 2023-11-16 12:20 - 000002222 _____ C:\Users\Asus\Desktop\Discord.lnk
2023-10-31 19:31 - 2023-10-31 19:31 - 000000000 ____D C:\Users\Asus\AppData\Roaming\HelloGames
2023-10-31 19:21 - 2023-10-31 19:21 - 000000000 ____D C:\Users\Asus\AppData\Roaming\NVIDIA
2023-10-31 19:16 - 2023-10-31 19:16 - 000000000 ____D C:\Windows\system32\lxss
2023-10-31 19:16 - 2023-10-31 19:16 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2023-10-31 19:13 - 2023-10-27 02:29 - 000121880 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2023-10-31 19:12 - 2023-10-30 11:37 - 001424080 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2023-10-31 19:12 - 2023-10-30 11:37 - 001424080 _____ C:\Windows\system32\vulkan-1.dll
2023-10-31 19:12 - 2023-10-30 11:37 - 001246408 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2023-10-31 19:12 - 2023-10-30 11:37 - 001246408 _____ C:\Windows\SysWOW64\vulkan-1.dll
2023-10-31 19:12 - 2023-10-30 11:37 - 000850640 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2023-10-31 19:12 - 2023-10-30 11:37 - 000850640 _____ C:\Windows\system32\vulkaninfo.exe
2023-10-31 19:12 - 2023-10-30 11:37 - 000731344 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2023-10-31 19:12 - 2023-10-30 11:37 - 000731344 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2023-10-31 19:12 - 2023-10-30 11:36 - 001487920 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2023-10-31 19:12 - 2023-10-30 11:36 - 001226776 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2023-10-31 19:12 - 2023-10-30 11:33 - 000670248 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2023-10-31 19:12 - 2023-10-30 11:33 - 000504856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2023-10-31 19:12 - 2023-10-30 11:32 - 001540744 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2023-10-31 19:12 - 2023-10-30 11:32 - 001198744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2023-10-31 19:12 - 2023-10-30 11:32 - 000958088 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2023-10-31 19:12 - 2023-10-30 11:31 - 002171016 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2023-10-31 19:12 - 2023-10-30 11:31 - 001624616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2023-10-31 19:12 - 2023-10-30 11:31 - 000997416 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2023-10-31 19:12 - 2023-10-30 11:31 - 000810536 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2023-10-31 19:12 - 2023-10-30 11:31 - 000773656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 015095424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 012375600 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 006462088 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 005862424 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 005860480 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 003620400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2023-10-31 19:12 - 2023-10-30 11:30 - 000459824 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2023-10-31 19:12 - 2023-10-30 11:29 - 000853128 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2023-10-31 19:12 - 2023-10-30 11:28 - 007866464 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2023-10-31 19:12 - 2023-10-30 11:28 - 006745768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2023-10-31 19:11 - 2023-10-27 02:29 - 000113883 _____ C:\Windows\system32\nvinfo.pb
2023-10-28 13:26 - 2023-10-28 13:26 - 000000000 ____D C:\Users\Asus\AppData\Local\My Games
2023-10-20 12:52 - 2023-10-20 12:52 - 000000000 ____D C:\Windows\LastGood
2023-10-20 12:52 - 2023-10-20 12:52 - 000000000 ____D C:\Users\Asus\AppData\LocalLow\NVIDIA

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-11-16 15:33 - 2022-07-25 17:11 - 001693136 _____ C:\Windows\system32\PerfStringBackup.INI
2023-11-16 15:33 - 2019-12-07 15:41 - 000716764 _____ C:\Windows\system32\perfh005.dat
2023-11-16 15:33 - 2019-12-07 15:41 - 000144942 _____ C:\Windows\system32\perfc005.dat
2023-11-16 15:33 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2023-11-16 15:28 - 2023-03-15 04:00 - 000000000 ____D C:\Program Files\CCleaner
2023-11-16 15:28 - 2022-07-26 10:37 - 000000000 ____D C:\Windows\SystemTemp
2023-11-16 15:28 - 2022-07-26 10:11 - 000000000 ____D C:\Program Files (x86)\Google
2023-11-16 15:28 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-11-16 15:26 - 2022-08-19 20:59 - 000000000 ____D C:\ProgramData\NVIDIA
2023-11-16 15:26 - 2022-08-19 14:51 - 000000000 ____D C:\Intel
2023-11-16 15:26 - 2022-07-25 17:05 - 000008192 ___SH C:\DumpStack.log.tmp
2023-11-16 15:26 - 2022-07-25 17:05 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-11-16 15:25 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-11-16 15:24 - 2022-07-26 11:00 - 000000000 ____D C:\Program Files (x86)\Steam
2023-11-16 15:23 - 2022-10-28 13:52 - 000000000 ____D C:\Users\Asus\AppData\Local\CrashDumps
2023-11-16 15:19 - 2022-07-26 11:00 - 000000000 ____D C:\Users\Asus\AppData\Roaming\discord
2023-11-16 13:25 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2023-11-16 13:20 - 2022-07-26 11:00 - 000000000 ____D C:\Users\Asus\AppData\Local\Discord
2023-11-16 13:16 - 2022-07-25 17:05 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-11-15 23:20 - 2022-07-26 10:12 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-11-15 23:20 - 2022-07-26 10:12 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-11-15 11:32 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-11-14 19:05 - 2022-07-25 17:15 - 000000000 ____D C:\Users\Asus\AppData\Local\D3DSCache
2023-11-14 07:56 - 2022-07-26 10:05 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2952531924-954414202-286695955-1001
2023-11-14 07:56 - 2022-07-26 10:04 - 000003374 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2952531924-954414202-286695955-1001
2023-11-14 07:56 - 2022-07-25 17:15 - 000002374 _____ C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-11-14 00:14 - 2022-07-26 10:11 - 000003830 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-11-14 00:14 - 2022-07-26 10:11 - 000003706 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-11-11 13:05 - 2022-07-25 17:05 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-11-11 13:05 - 2022-07-25 17:05 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-11-10 19:44 - 2022-07-25 17:15 - 000000000 ____D C:\Users\Asus
2023-11-07 08:21 - 2022-07-25 17:05 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-11-03 11:45 - 2022-07-25 17:15 - 000000000 ____D C:\Users\Asus\AppData\Local\Packages
2023-11-02 23:55 - 2023-10-06 20:44 - 000012288 _____ C:\Users\Asus\AppData\Roaming\emp.bin
2023-10-31 19:18 - 2022-08-19 19:13 - 000000000 ____D C:\Program Files\Opera GX
2023-10-31 19:17 - 2022-08-19 20:59 - 000000000 ____D C:\Users\Asus\AppData\Local\NVIDIA
2023-10-31 19:16 - 2022-07-26 10:08 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2023-10-31 02:24 - 2022-08-19 19:13 - 000003970 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1660932806
2023-10-31 02:24 - 2022-08-19 19:13 - 000001142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2023-10-28 13:26 - 2023-07-14 13:41 - 000000000 ____D C:\Users\Asus\AppData\Roaming\Goldberg UplayEmu Saves
2023-10-26 22:59 - 2022-07-25 17:05 - 000003638 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-10-26 22:59 - 2022-07-25 17:05 - 000003514 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-10-21 19:25 - 2022-07-26 11:02 - 000000000 ____D C:\Users\Asus\AppData\Local\Steam

==================== Files in the root of some directories ========

2023-10-06 20:44 - 2023-11-02 23:55 - 000012288 _____ () C:\Users\Asus\AppData\Roaming\emp.bin
2022-12-15 20:15 - 2022-12-15 20:15 - 000000260 _____ () C:\Users\Asus\AppData\Roaming\MelonLoader.Installer.cfg
2023-02-24 16:09 - 2023-02-24 16:09 - 000000218 _____ () C:\Users\Asus\AppData\Local\recently-used.xbel
2022-09-20 14:00 - 2023-07-08 23:21 - 000007646 _____ () C:\Users\Asus\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-11-2023 02
Ran by Asus (16-11-2023 15:51:44)
Running from C:\Users\Asus\Desktop
Microsoft Windows 10 Home Version 22H2 19045.3448 (X64) (2022-07-25 16:07:36)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2952531924-954414202-286695955-500 - Administrator - Disabled)
Asus (S-1-5-21-2952531924-954414202-286695955-1001 - Administrator - Enabled) => C:\Users\Asus
DefaultAccount (S-1-5-21-2952531924-954414202-286695955-503 - Limited - Disabled)
Guest (S-1-5-21-2952531924-954414202-286695955-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2952531924-954414202-286695955-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.01 alpha (x64) (HKLM\...\7-Zip) (Version: 19.01 alpha - Igor Pavlov)
CCleaner (HKLM\...\CCleaner) (Version: 6.09 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1996 - Disc Soft Ltd)
Discord (HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Discord) (Version: 1.0.9005 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FxSound (HKLM\...\{D94039A4-F44B-48D3-92F2-28C4EA6ABB78}) (Version: 1.1.17.0 - FxSound LLC) Hidden
FxSound (HKLM\...\FxSound 1.1.17.0) (Version: 1.1.17.0 - FxSound LLC)
GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: 2.0.62.26 - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 119.0.6045.159 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
HWiNFO64 Version 7.26 (HKLM\...\HWiNFO64_is1) (Version: 7.26 - Martin Malik - REALiX)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 119.0.2151.58 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 119.0.2151.58 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\OneDriveSetup.exe) (Version: 23.221.1024.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{2953E19B-9F91-4A49-A23B-7E25970A1951}) (Version: 3.73.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.4.7 - Notepad++ Team)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 546.01 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 546.01 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.1.9 (HKLM-x32\...\{AF1550B8-D3D6-425E-A6C1-F21C157DF754}) (Version: 4.19.9805 - Apache Software Foundation)
Opera GX Stable 102.0.4880.117 (HKLM-x32\...\Opera GX 102.0.4880.117) (Version: 102.0.4880.117 - Opera Software)
Paradox Launcher v2 (HKLM\...\{66DA3501-823A-4F07-A20D-C64495A59DC8}) (Version: 2.1.0 - Paradox Interactive)
PotPlayer-64 bit (HKLM\...\PotPlayer64) (Version: 230208 - Kakao Corp.)
r2modman 3.1.42 (HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\ac231ef6-6414-5f8d-b36f-3b57705721dd) (Version: 3.1.42 - ebkr)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9205.1 - Realtek Semiconductor Corp.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.1.0 - Nikse)
The Witcher 3: Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 4.02_Hotfix - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.01 - Ghisler Software GmbH)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 134.0.10731 - Ubisoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{C270D21B-2327-49B8-85F7-395133A93C75}) (Version: 8.92.0.0 - Microsoft Corporation)
Vivaldi (HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Vivaldi) (Version: 6.4.3160.42 - Vivaldi Technologies AS.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.11 - VideoLAN)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)

Packages:
=========
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-10-31] (NVIDIA Corp.)
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5237.0_x64__8j3eq9eme6ctt [2023-11-09] (INTEL CORP) [Startup Task]
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-11-05] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{087B3AE3-E237-4467-B8DB-5A38AB959AC9}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) [File not signed]
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{3B092F0C-7696-40E3-A80F-68D74DA84210}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) [File not signed]
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{63542C48-9552-494A-84F7-73AA6A7C99C1}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) [File not signed]
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{7BC0E710-5703-45BE-A29D-5D46D8B39262}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\ooofilt_x64.dll (Apache Software Foundation) [File not signed]
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{A7AA41EC-E201-4D59-B851-9083E6A35F7C}\localserver32 -> C:\Users\Asus\AppData\Local\Vivaldi\Application\6.4.3160.42\notification_helper.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS)
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{AE424E85-F6DF-4910-A6A9-438797986431}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\propertyhdl_x64.dll (Apache Software Foundation) [File not signed]
CustomCLSID: HKU\S-1-5-21-2952531924-954414202-286695955-1001_Classes\CLSID\{C52AF81D-F7A0-4AAB-8E87-F80A60CCD396}\InprocServer32 -> C:\Program Files (x86)\OpenOffice 4\program\shlxthdl\shlxthdl_x64.dll (Apache Software Foundation) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2022-11-08] (Notepad++ -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_5412865deb6a559e\nvshext.dll [2023-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-09-05] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-07-26 10:05 - 2019-09-05 06:00 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2952531924-954414202-286695955-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\viber-image.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "FxSound.lnk"
HKLM\...\StartupApproved\Run32: => "Opera GX Browser Assistant"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_E27E50BD5633453D54C19716A813DFE6"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "GalaxyClient"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "GogGalaxy"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "Delete Cached Standalone Update Binary"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "Delete Cached Update Binary"
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\StartupApproved\Run: => "Uninstall 23.184.0903.0002"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{823E2880-3CE1-4315-AFAE-31310A0F22CA}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{EF1CC11A-6B93-49DD-9BD6-27408C7B0DC3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AE120544-3E90-40D8-AC8D-D0B50498A247}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A6BA92B1-A3D2-454E-85F3-4F4775FB5A55}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{1D52956C-47F3-4CD6-81A9-F4AE481503B7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{21A47D71-168F-4FB0-AD00-81C79C6130DB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{54908F1B-1FD4-4D0E-B20D-2EA2BC48C7BE}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{C5936AE9-F59A-4364-9BE7-69F67AD90E5E}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{81317EC4-9137-435E-9BE3-43A586849A49}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C97586B-A344-41A4-A7CF-31DDC8EF608E}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{5D641892-789F-4FF1-965D-41F2E539E5C5}] => (Block) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{36A39334-D161-43EB-9C3B-6B52B95AEAEB}] => (Block) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{33D4CD0F-1CAA-4C16-BE40-E70301B40C76}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{CC2DAA84-5A88-4F7D-9706-983635D12322}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{2BDD33F0-3A70-49D1-AA6C-B97DBC75C309}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{516B28F4-449D-4DA0-B02A-1D11E4A393DA}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{6A794DFC-EECE-438C-9F37-5D08F9B8E546}C:\program files\ch aurora\aurora.exe] => (Block) C:\program files\ch aurora\aurora.exe (Dingo Webworks, LLC -> Cheat Happens)
FirewallRules: [UDP Query User{2A216048-ADA2-4D32-916D-3E27F0623680}C:\program files\ch aurora\aurora.exe] => (Block) C:\program files\ch aurora\aurora.exe (Dingo Webworks, LLC -> Cheat Happens)
FirewallRules: [{223E8DC6-BF78-40FF-A89A-EB8AB29F627A}] => (Allow) G:\SteamLibrary\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{A198BB29-F4E4-437F-BEB8-61D30C6D56F5}] => (Allow) G:\SteamLibrary\steamapps\common\Mashinky\Mashinky.exe () [File not signed]
FirewallRules: [{5F876EF1-D592-46CE-9463-4961289BAAA9}] => (Allow) C:\Program Files\Opera GX\102.0.4880.114\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{45466B7F-6988-43FE-AF5B-E264B9D7E178}] => (Allow) C:\Program Files\Opera GX\102.0.4880.117\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{77760081-56C4-49DD-A0E0-99D7FB164084}] => (Allow) G:\SteamLibrary\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [File not signed]
FirewallRules: [{A507AC58-076D-4280-9709-D4CD5974FE7A}] => (Allow) G:\SteamLibrary\steamapps\common\No Man's Sky\Binaries\NMS.exe (Hello Games) [File not signed]
FirewallRules: [{D482DFF0-A7B9-439C-981C-E7ACC826F167}] => (Allow) C:\Users\Asus\AppData\Local\Vivaldi\Application\vivaldi.exe (Vivaldi Technologies AS -> Vivaldi Technologies AS)
FirewallRules: [{4574A2B5-CC99-4026-BF68-35F9BCE6A807}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\119.0.2151.58\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8B3BF079-75F7-40D7-92C3-E8DE905716FA}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

24-10-2023 01:03:07 Naplánovaný kontrolní bod
01-11-2023 18:41:45 Naplánovaný kontrolní bod
06-11-2023 21:23:47 Odstraněno Garfield

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/15/2023 10:17:16 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SearchApp.exe, verze: 10.0.19041.3393, časové razítko: 0x81c6e58e
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.3393, časové razítko: 0x6b4de7c9
Kód výjimky: 0xc000027b
Posun chyby: 0x000000000012d9b2
ID chybujícího procesu: 0x2aa8
Čas spuštění chybující aplikace: 0x01da156d7f406cde
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: bbfe492f-e6b5-445f-ba97-29735cad591d
Úplný název chybujícího balíčku: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: CortanaUI

Error: (11/11/2023 12:31:07 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program NMS.exe verze 45503.0.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 22e4

Čas spuštění: 01da13d003498461

Čas ukončení: 4

Cesta k aplikaci: G:\SteamLibrary\steamapps\common\No Man's Sky\Binaries\NMS.exe

ID hlášení: 4557b1e7-b42c-4ee0-a4eb-c01bb8f1f128

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Cross-thread

Error: (11/03/2023 12:25:47 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (11/03/2023 12:25:47 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (10/09/2023 08:42:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SubtitleEdit.exe verze 4.0.1.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 207c

Čas spuštění: 01d9fae160a6e051

Čas ukončení: 19

Cesta k aplikaci: C:\Program Files\Subtitle Edit\SubtitleEdit.exe

ID hlášení: 2e00de7b-b44b-475b-9357-ef5707bdfc69

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Unknown


System errors:
=============
Error: (11/16/2023 03:26:15 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba cplspcon byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (11/16/2023 03:20:33 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba cplspcon byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (11/03/2023 12:26:12 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba cplspcon byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (11/01/2023 02:26:40 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba cplspcon byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (11/01/2023 02:26:15 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-L3OICG3)
Description: Server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/31/2023 07:18:17 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba cplspcon byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (10/31/2023 07:16:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Intel(R) Content Protection HDCP Service byla ukončena s následující chybou:
Nespecifikovaná chyba

Error: (10/31/2023 07:16:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.


Windows Defender:
================
Date: 2023-11-16 11:33:15
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8CD4DE47-7CA4-40D4-BCA3-BCD8E6897C73}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-11-14 08:37:58
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {01F0EBF9-783A-4C05-8CC6-E60DB133995D}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-11-13 11:39:30
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {541319D4-E125-42D1-A687-9A7E7565D71A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-11-12 11:33:08
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {A5CF33BC-7ACC-4CB0-BDE1-5DE00E76E11E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-11-11 11:43:41
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {50E3EEC7-F411-4903-BC5B-412DBB315883}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===============
Date: 2022-08-19 16:48:42
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 0401 01/18/2016
Motherboard: ASUSTeK COMPUTER INC. B150M PRO GAMING
Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 17%
Total physical RAM: 16307.57 MB
Available physical RAM: 13424.1 MB
Total Virtual: 21939.57 MB
Available Virtual: 17790.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:222.96 GB) (Free:136.93 GB) (Model: KINGSTON SUV400S37240G) NTFS
Drive g: (Hry) (Fixed) (Total:931.51 GB) (Free:122.78 GB) (Model: ST1000DM010-2EP102) NTFS

\\?\Volume{d526127f-3a5b-48d6-976d-d51838d31d24}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{bcea24a6-ced3-4c88-8b6f-bd651e5a2585}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 9809E9A1)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118276
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu, blbne prohlizec a hry

#2 Příspěvek od Rudy »

Zdravím!
Herní problematikou se naše fórum nezabývá. Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pan Hankey
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 30 čer 2017 21:18

Re: Prosim o kontrolu, blbne prohlizec a hry

#3 Příspěvek od pan Hankey »

O ty hry mi ani nejde, tam bude asi jiny problem, ale když jsem poslední 2 roky používal Operu a všechno fungovalo bez problému a najednou se podivně zobrazují stránky + prostě se ten prohlížeč začal chovat divně tak jsem si myslel že tam bude zřejmě nějaký vir. Posledních pár dní jsem začal na zkoušku používat Vivaldi a tam ty problémy nemám, ale rád bych zas tu Operu používal. Jen se bojím že v PC není něco v pořádku. Ve správci uloh taky ted často vidím divný aktivity a taky nevím co to je. Skočí tam třeba Console host a hned je to zase pryč.

# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2023-07-19.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-16-2023
# Duration: 00:00:00
# OS: Windows 10 (Build 19045.3448)
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1719 octets] - [29/10/2022 16:41:45]
AdwCleaner[C00].txt - [1851 octets] - [29/10/2022 16:43:10]
AdwCleaner[S01].txt - [1542 octets] - [16/11/2023 16:50:34]
AdwCleaner[S02].txt - [1603 octets] - [16/11/2023 16:58:39]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C02].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118276
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu, blbne prohlizec a hry

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\MountPoints2: {ba2e7a32-2aa0-11ed-aa8e-704d7b2f69b1} - "H:\Autorun.exe"
Task: {73C5A17A-0D3A-40DB-91AE-D83BE82F9EEF} - System32\Tasks\Driver Booster SkipUAC (Asus) => "E:\Driver Booster\7.2.0\DriverBooster.exe" /skipuac (No File)
Task: {6E1D78EF-72E8-4C66-B967-08D4B8E831A5} - System32\Tasks\Driver Booster Update => "E:\Driver Booster\7.2.0\AutoUpdate.exe" /auto (No File)
C:\DumpStack.log.tmp
Task: {188B5077-FA62-49BD-9536-99675E92F62F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
Task: {66CCF188-EBFC-4AD6-87A1-9F6844A5ED92} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pan Hankey
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 30 čer 2017 21:18

Re: Prosim o kontrolu, blbne prohlizec a hry

#5 Příspěvek od pan Hankey »

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-11-2023 02
Ran by Asus (16-11-2023 18:05:38) Run:1
Running from C:\Users\Asus\Desktop
Loaded Profiles: Asus
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-2952531924-954414202-286695955-1001\...\MountPoints2: {ba2e7a32-2aa0-11ed-aa8e-704d7b2f69b1} - "H:\Autorun.exe"
Task: {73C5A17A-0D3A-40DB-91AE-D83BE82F9EEF} - System32\Tasks\Driver Booster SkipUAC (Asus) => "E:\Driver Booster\7.2.0\DriverBooster.exe" /skipuac (No File)
Task: {6E1D78EF-72E8-4C66-B967-08D4B8E831A5} - System32\Tasks\Driver Booster Update => "E:\Driver Booster\7.2.0\AutoUpdate.exe" /auto (No File)
C:\DumpStack.log.tmp
Task: {188B5077-FA62-49BD-9536-99675E92F62F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
Task: {66CCF188-EBFC-4AD6-87A1-9F6844A5ED92} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2022-07-26] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
"HKU\S-1-5-21-2952531924-954414202-286695955-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GalaxyClient" => removed successfully
HKU\S-1-5-21-2952531924-954414202-286695955-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ba2e7a32-2aa0-11ed-aa8e-704d7b2f69b1} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{73C5A17A-0D3A-40DB-91AE-D83BE82F9EEF}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{73C5A17A-0D3A-40DB-91AE-D83BE82F9EEF}" => removed successfully
C:\Windows\System32\Tasks\Driver Booster SkipUAC (Asus) => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster SkipUAC (Asus)" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{6E1D78EF-72E8-4C66-B967-08D4B8E831A5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6E1D78EF-72E8-4C66-B967-08D4B8E831A5}" => removed successfully
C:\Windows\System32\Tasks\Driver Booster Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Booster Update" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{188B5077-FA62-49BD-9536-99675E92F62F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{188B5077-FA62-49BD-9536-99675E92F62F}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{66CCF188-EBFC-4AD6-87A1-9F6844A5ED92}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{66CCF188-EBFC-4AD6-87A1-9F6844A5ED92}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore" => not found

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 12802762 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1271223941 B
Windows/system/drivers => 5799283 B
Edge => 0 B
Chrome => 355882117 B
Vivaldi => 49189475 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
Asus => 3358271 B

RecycleBin => 0 B
EmptyTemp: => 1.6 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 16-11-2023 18:06:37)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 18:06:37 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118276
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu, blbne prohlizec a hry

#6 Příspěvek od Rudy »

Smazáno. Nastala změna k lepšímu?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pan Hankey
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 30 čer 2017 21:18

Re: Prosim o kontrolu, blbne prohlizec a hry

#7 Příspěvek od pan Hankey »

Všechno se zdá v pohodě, tak snad je to už ok. Mám ještě něco udělat?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118276
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu, blbne prohlizec a hry

#8 Příspěvek od Rudy »

Pokud je opravdu vše OK, pak je to vše. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

pan Hankey
Návštěvník
Návštěvník
Příspěvky: 55
Registrován: 30 čer 2017 21:18

Re: Prosim o kontrolu, blbne prohlizec a hry

#9 Příspěvek od pan Hankey »

Zatim (do ted) nic neblbne, tak moc děkuju.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118276
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosim o kontrolu, blbne prohlizec a hry

#10 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno