Prosím o kontrolu logu (velké vytížení CPU a RAM)
Napsal: 29 lis 2024 09:36
Dobrý den,
prosím o kontrolu mámina PC.
Při brouzdání přes Chrome se PC náhodně, chvilkově seká, nereaguje a vytížení CPU i RAM je 80-90% +.
Děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-11-2024
Ran by kolsp (administrator) on FIREMNÖ (ATComputers PREMIO PROFESSIONAL) (29-11-2024 09:33:23)
Running from C:\Users\kolsp\OneDrive\Plocha\FRST64.exe
Loaded Profiles: kolsp
Platform: Microsoft Windows 11 Pro Version 23H2 22631.4460 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.70\msedgewebview2.exe <13>
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <3>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_8f2d0015d04700ee\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_effe9612081e9042\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b55ed36a9a78cc75\RtkAudUService64.exe <2>
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.200.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24102.48.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kolsp\AppData\Local\Microsoft\OneDrive\24.216.1027.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b55ed36a9a78cc75\RtkAudUService64.exe [3495808 2023-03-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [196520 2024-11-06] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-224497037-1159430352-1889776923-1002\...\Run: [MicrosoftEdgeAutoLaunch_EACF087B84A2D76F0B2C46C28CB4E342] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911232 2024-11-25] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-224497037-1159430352-1889776923-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [12292504 2024-11-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Print\Monitors\C658SeriesPCL Language Monitor: C:\Windows\system32\KOAX5JAL.DLL [35176 2022-09-15] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.86\Installer\chrmstp.exe [2024-11-22] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {607ABC45-4149-4212-8C9C-6B1C72EF6E7C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.)
Task: {007C4EA7-59D9-4868-8587-8B3E3E1A9C6B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{FFFE5622-D8E3-4CCA-88E6-44A481EBC5AC} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{e721e1b0-629d-4a93-8f20-72ffcb260208}: [NameServer] 10.0.0.138,8.8.4.4
Edge:
=======
Edge Profile: C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-11]
Edge Extension: (Edge relevant text changes) - C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-03-21]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\dtplugin\npDeployJava1.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\plugin2\npjp2.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-11-13] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default [2024-11-29]
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.tatryportal.sk
CHR Session Restore: Default -> is enabled.
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-11-29]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-11-26]
CHR Extension: (NoMiner - Block Coin Miners) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfnangjojcioomickmmnfmiadkfhcdmd [2024-08-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-01]
CHR HKU\S-1-5-21-224497037-1159430352-1889776923-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5563760 2024-11-06] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-11-06] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-11-06] (ESET, spol. s r.o. -> ESET)
S2 Intel(R) Platform License Manager Service; C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe [3216064 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe [133544 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [532480 2022-10-08] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [184320 2022-10-08] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [220520 2024-10-30] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [121864 2024-10-30] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2022-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [268568 2024-10-30] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [57872 2024-10-30] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [87784 2024-10-30] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [128552 2024-10-30] (ESET, spol. s r.o. -> ESET)
R3 iaLPSS2_GPIO2_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_302e75596cffa74a\iaLPSS2_GPIO2_ADL.sys [150616 2023-04-03] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_e736c048ca307ed2\iaLPSS2_I2C_ADL.sys [220224 2023-04-03] (Intel Corporation -> Intel Corporation)
R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_d1a236ce16a4bbb1\rt68cx21x64.sys [845280 2024-10-09] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49616 2023-05-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [498944 2023-05-03] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-05-03] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-11-29 09:33 - 2024-11-29 09:33 - 000013786 _____ C:\Users\kolsp\OneDrive\Plocha\FRST.txt
2024-11-29 09:33 - 2024-11-29 09:33 - 000000000 ____D C:\FRST
2024-11-29 09:32 - 2024-11-29 09:32 - 002402816 _____ (Farbar) C:\Users\kolsp\OneDrive\Plocha\FRST64.exe
2024-11-28 10:45 - 2024-11-28 10:45 - 000061783 _____ C:\Users\kolsp\Downloads\190732120227_20241127.pdf
2024-11-27 11:07 - 2024-11-27 11:08 - 000247424 _____ C:\Users\kolsp\OneDrive\Plocha\scan_2021_08_07_13_51_58_933.pdf
2024-11-27 09:52 - 2024-11-27 09:52 - 000060592 _____ C:\Users\kolsp\Downloads\190732120227_20241126.pdf
2024-11-26 13:32 - 2024-11-26 13:32 - 001956085 _____ C:\Users\kolsp\OneDrive\Plocha\PRUVODCE-EUDR_UHUL.pdf
2024-11-26 09:49 - 2024-11-26 09:49 - 000059838 _____ C:\Users\kolsp\Downloads\190732120227_20241125.pdf
2024-11-25 09:07 - 2024-11-25 09:07 - 000060032 _____ C:\Users\kolsp\Downloads\190732120227_20241122.pdf
2024-11-22 10:03 - 2024-11-22 10:03 - 000060027 _____ C:\Users\kolsp\Downloads\190732120227_20241121.pdf
2024-11-21 09:30 - 2024-11-21 09:30 - 000058794 _____ C:\Users\kolsp\Downloads\190732120227_20241120.pdf
2024-11-20 08:58 - 2024-11-20 08:58 - 000060766 _____ C:\Users\kolsp\Downloads\190732120227_20241119.pdf
2024-11-19 09:47 - 2024-11-19 09:47 - 000061799 _____ C:\Users\kolsp\Downloads\190732120227_20241118.pdf
2024-11-18 13:29 - 2024-11-18 13:29 - 000060729 _____ C:\Users\kolsp\Downloads\190732120227_20241115.pdf
2024-11-15 09:47 - 2024-11-29 09:17 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2024-11-15 09:25 - 2024-11-15 09:25 - 000060403 _____ C:\Users\kolsp\Downloads\190732120227_20241114.pdf
2024-11-14 10:46 - 2024-11-14 10:46 - 000725758 _____ C:\Windows\system32\perfh005.dat
2024-11-14 10:46 - 2024-11-14 10:46 - 000151026 _____ C:\Windows\system32\perfc005.dat
2024-11-14 09:57 - 2024-11-14 09:57 - 000061206 _____ C:\Users\kolsp\Downloads\190732120227_20241113.pdf
2024-11-13 09:40 - 2024-11-13 09:40 - 000060640 _____ C:\Users\kolsp\Downloads\190732120227_20241112.pdf
2024-11-11 09:45 - 2024-11-11 09:45 - 000060053 _____ C:\Users\kolsp\Downloads\190732120227_20241108.pdf
2024-11-08 10:03 - 2024-11-08 10:03 - 000059556 _____ C:\Users\kolsp\Downloads\190732120227_20241107.pdf
2024-11-07 14:19 - 2024-11-07 14:20 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Maserati fotky
2024-11-07 09:24 - 2024-11-07 09:24 - 000060376 _____ C:\Users\kolsp\Downloads\190732120227_20241106.pdf
2024-11-06 14:26 - 2024-11-06 14:26 - 000028585 _____ C:\Users\kolsp\OneDrive\Plocha\ceny_kol_21.08.2023.ods
2024-11-06 14:03 - 2024-11-06 14:03 - 000070768 _____ C:\Users\kolsp\Downloads\OCP03_CES_22459217.PDF
2024-11-06 11:10 - 2024-11-06 11:10 - 000062047 _____ C:\Users\kolsp\Downloads\190732120227_20241105.pdf
2024-11-05 10:56 - 2024-11-05 10:57 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\DC-49
2024-11-05 09:42 - 2024-11-05 09:42 - 000062250 _____ C:\Users\kolsp\Downloads\190732120227_20241104.pdf
2024-11-04 13:58 - 2024-11-04 13:58 - 000105111 _____ C:\Users\kolsp\Downloads\Plán_záloh_460005704451.PDF
2024-11-04 13:55 - 2024-11-04 13:55 - 000110229 _____ C:\Users\kolsp\Downloads\Plán_záloh_610005819494.PDF
2024-11-04 11:25 - 2024-11-04 11:25 - 000058528 _____ C:\Users\kolsp\Downloads\190732120227_20241101.pdf
2024-11-01 14:19 - 2024-11-01 14:19 - 000025855 _____ C:\Users\kolsp\Downloads\CÚ Ostrava-žádost.odt
2024-11-01 14:13 - 2024-11-01 14:13 - 000025855 _____ C:\Users\kolsp\OneDrive\Plocha\CÚ Ostrava-žádost.odt
2024-11-01 14:03 - 2024-11-01 14:03 - 000582589 _____ C:\Users\kolsp\Downloads\2965231853.pdf
2024-11-01 13:41 - 2024-11-01 13:41 - 000351497 _____ C:\Users\kolsp\Downloads\523323077.pdf
2024-11-01 11:13 - 2024-11-01 11:13 - 000022279 _____ C:\Users\kolsp\Downloads\Celnice-výkaz 2024-10.odt
2024-11-01 10:16 - 2024-11-01 10:16 - 000059815 _____ C:\Users\kolsp\Downloads\190732120227_20241031.pdf
2024-11-01 09:19 - 2024-11-01 09:19 - 000026650 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-11-01 09:18 - 2024-11-01 09:18 - 000026650 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-10-31 10:51 - 2024-10-31 10:51 - 000102438 _____ C:\Users\kolsp\Downloads\DD2424106184.pdf
2024-10-31 09:40 - 2024-10-31 09:40 - 000059619 _____ C:\Users\kolsp\Downloads\190732120227_20241030.pdf
2024-10-30 10:20 - 2024-10-30 10:20 - 000059177 _____ C:\Users\kolsp\Downloads\190732120227_20241029.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-11-29 09:31 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\AppReadiness
2024-11-29 09:18 - 2023-04-01 10:57 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-11-29 09:17 - 2023-04-01 10:57 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2024-11-29 09:17 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-29 08:54 - 2023-04-01 10:23 - 000000000 ____D C:\Users\kolsp\AppData\Local\D3DSCache
2024-11-29 08:52 - 2023-04-01 10:24 - 000000000 ___RD C:\Users\kolsp\OneDrive
2024-11-29 08:52 - 2023-04-01 10:23 - 000000000 ____D C:\Users\kolsp\AppData\Local\Packages
2024-11-29 08:52 - 2023-03-15 10:22 - 000000000 ____D C:\ProgramData\Packages
2024-11-29 08:52 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-28 14:56 - 2023-04-02 13:50 - 000000000 ____D C:\UCTO2020
2024-11-28 09:22 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SystemTemp
2024-11-27 11:08 - 2023-04-03 14:18 - 000000000 ___RD C:\SCAN
2024-11-27 09:23 - 2023-03-15 10:21 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-26 10:22 - 2023-04-01 10:24 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-224497037-1159430352-1889776923-1002
2024-11-26 10:22 - 2023-04-01 10:24 - 000003362 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-224497037-1159430352-1889776923-1002
2024-11-26 10:22 - 2023-04-01 10:24 - 000002377 _____ C:\Users\kolsp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-11-26 09:25 - 2022-05-07 06:22 - 000000000 ____D C:\Windows\INF
2024-11-25 16:06 - 2023-03-15 10:21 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-11-24 12:06 - 2023-03-15 10:21 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-11-24 12:06 - 2023-03-15 10:21 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-11-22 09:50 - 2023-04-01 10:41 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-11-18 09:38 - 2023-04-01 11:06 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-11-18 09:38 - 2023-04-01 11:06 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-11-18 09:30 - 2023-04-01 10:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-11-14 10:57 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-11-14 10:46 - 2023-03-15 10:28 - 001718036 _____ C:\Windows\system32\PerfStringBackup.INI
2024-11-14 10:42 - 2023-03-15 10:22 - 000001623 _____ C:\Windows\system32\config\VSMIDK
2024-11-14 10:42 - 2023-03-15 10:21 - 000469808 _____ C:\Windows\system32\FNTCACHE.DAT
2024-11-14 10:42 - 2023-03-15 10:21 - 000012288 ___SH C:\DumpStack.log.tmp
2024-11-14 10:42 - 2023-03-15 10:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-11-14 10:42 - 2022-05-07 06:17 - 000786432 _____ C:\Windows\system32\config\BBI
2024-11-14 10:41 - 2023-10-19 08:17 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SystemResources
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\bcastdvr
2024-11-13 10:03 - 2022-05-07 06:17 - 000000000 ____D C:\Windows\CbsTemp
2024-11-13 09:53 - 2023-03-15 10:32 - 000000000 ____D C:\Windows\system32\MRT
2024-11-13 09:52 - 2023-03-15 10:32 - 202035632 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-11-07 15:15 - 2024-02-07 09:37 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Karibik 2024
2024-11-07 12:02 - 2024-09-09 13:45 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\fotky balíků
2024-11-06 11:52 - 2023-06-05 09:08 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Celnice výkazy
2024-11-06 11:44 - 2023-04-02 11:10 - 000000000 ____D C:\Users\kolsp\OneDrive\Dokumenty\TEXTY
2024-11-05 10:55 - 2024-03-15 08:55 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\DC-47
2024-11-01 09:26 - 2022-05-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___SD C:\Windows\system32\UNP
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___RD C:\Windows\PrintDialog
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\ShellExperiences
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\Sgrm
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\setup
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\oobe
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\Dism
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\appraiser
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\ShellExperiences
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\ShellComponents
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\DiagTrack
2024-11-01 09:26 - 2022-05-07 06:17 - 000000000 ____D C:\Windows\servicing
2024-11-01 09:21 - 2022-05-07 06:25 - 000077312 _____ (Khronos Group) C:\Windows\SysWOW64\opencl.dll
2024-11-01 09:21 - 2022-05-07 06:24 - 000118784 _____ (Khronos Group) C:\Windows\system32\opencl.dll
2024-10-30 19:01 - 2022-12-19 15:37 - 000268568 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000220520 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000128552 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000121864 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000087784 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000057872 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
prosím o kontrolu mámina PC.
Při brouzdání přes Chrome se PC náhodně, chvilkově seká, nereaguje a vytížení CPU i RAM je 80-90% +.
Děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 25-11-2024
Ran by kolsp (administrator) on FIREMNÖ (ATComputers PREMIO PROFESSIONAL) (29-11-2024 09:33:23)
Running from C:\Users\kolsp\OneDrive\Plocha\FRST64.exe
Loaded Profiles: kolsp
Platform: Microsoft Windows 11 Pro Version 23H2 22631.4460 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe
(C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.70\msedgewebview2.exe <13>
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe\ms-teams.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <3>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_8f2d0015d04700ee\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_effe9612081e9042\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b55ed36a9a78cc75\RtkAudUService64.exe <2>
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.200.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24102.48.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (Adobe Systems Incorporated -> ) C:\Program Files\WindowsApps\ReaderNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\kolsp\AppData\Local\Microsoft\OneDrive\24.216.1027.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_b55ed36a9a78cc75\RtkAudUService64.exe [3495808 2023-03-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [196520 2024-11-06] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752216 2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-224497037-1159430352-1889776923-1002\...\Run: [MicrosoftEdgeAutoLaunch_EACF087B84A2D76F0B2C46C28CB4E342] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911232 2024-11-25] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-224497037-1159430352-1889776923-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [12292504 2024-11-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Print\Monitors\C658SeriesPCL Language Monitor: C:\Windows\system32\KOAX5JAL.DLL [35176 2022-09-15] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.86\Installer\chrmstp.exe [2024-11-22] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {607ABC45-4149-4212-8C9C-6B1C72EF6E7C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.)
Task: {007C4EA7-59D9-4868-8587-8B3E3E1A9C6B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{FFFE5622-D8E3-4CCA-88E6-44A481EBC5AC} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{e721e1b0-629d-4a93-8f20-72ffcb260208}: [NameServer] 10.0.0.138,8.8.4.4
Edge:
=======
Edge Profile: C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default [2024-03-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-11]
Edge Extension: (Edge relevant text changes) - C:\Users\kolsp\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-03-21]
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\dtplugin\npDeployJava1.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.431.2 -> C:\Program Files\Java\jre1.8.0_431\bin\plugin2\npjp2.dll [2024-09-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-11-13] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default [2024-11-29]
CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.tatryportal.sk
CHR Session Restore: Default -> is enabled.
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-11-29]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2024-11-26]
CHR Extension: (NoMiner - Block Coin Miners) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfnangjojcioomickmmnfmiadkfhcdmd [2024-08-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\kolsp\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-01]
CHR HKU\S-1-5-21-224497037-1159430352-1889776923-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5563760 2024-11-06] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-11-06] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4240120 2024-11-06] (ESET, spol. s r.o. -> ESET)
S2 Intel(R) Platform License Manager Service; C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe [3216064 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe [133544 2023-05-03] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [532480 2022-10-08] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [184320 2022-10-08] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [220520 2024-10-30] (ESET, spol. s r.o. -> ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [121864 2024-10-30] (Microsoft Windows Hardware Compatibility Publisher -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2022-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [268568 2024-10-30] (ESET, spol. s r.o. -> ESET)
R2 ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [57872 2024-10-30] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [87784 2024-10-30] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [128552 2024-10-30] (ESET, spol. s r.o. -> ESET)
R3 iaLPSS2_GPIO2_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_302e75596cffa74a\iaLPSS2_GPIO2_ADL.sys [150616 2023-04-03] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_ADL; C:\Windows\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_e736c048ca307ed2\iaLPSS2_I2C_ADL.sys [220224 2023-04-03] (Intel Corporation -> Intel Corporation)
R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_d1a236ce16a4bbb1\rt68cx21x64.sys [845280 2024-10-09] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49616 2023-05-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [498944 2023-05-03] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-05-03] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-11-29 09:33 - 2024-11-29 09:33 - 000013786 _____ C:\Users\kolsp\OneDrive\Plocha\FRST.txt
2024-11-29 09:33 - 2024-11-29 09:33 - 000000000 ____D C:\FRST
2024-11-29 09:32 - 2024-11-29 09:32 - 002402816 _____ (Farbar) C:\Users\kolsp\OneDrive\Plocha\FRST64.exe
2024-11-28 10:45 - 2024-11-28 10:45 - 000061783 _____ C:\Users\kolsp\Downloads\190732120227_20241127.pdf
2024-11-27 11:07 - 2024-11-27 11:08 - 000247424 _____ C:\Users\kolsp\OneDrive\Plocha\scan_2021_08_07_13_51_58_933.pdf
2024-11-27 09:52 - 2024-11-27 09:52 - 000060592 _____ C:\Users\kolsp\Downloads\190732120227_20241126.pdf
2024-11-26 13:32 - 2024-11-26 13:32 - 001956085 _____ C:\Users\kolsp\OneDrive\Plocha\PRUVODCE-EUDR_UHUL.pdf
2024-11-26 09:49 - 2024-11-26 09:49 - 000059838 _____ C:\Users\kolsp\Downloads\190732120227_20241125.pdf
2024-11-25 09:07 - 2024-11-25 09:07 - 000060032 _____ C:\Users\kolsp\Downloads\190732120227_20241122.pdf
2024-11-22 10:03 - 2024-11-22 10:03 - 000060027 _____ C:\Users\kolsp\Downloads\190732120227_20241121.pdf
2024-11-21 09:30 - 2024-11-21 09:30 - 000058794 _____ C:\Users\kolsp\Downloads\190732120227_20241120.pdf
2024-11-20 08:58 - 2024-11-20 08:58 - 000060766 _____ C:\Users\kolsp\Downloads\190732120227_20241119.pdf
2024-11-19 09:47 - 2024-11-19 09:47 - 000061799 _____ C:\Users\kolsp\Downloads\190732120227_20241118.pdf
2024-11-18 13:29 - 2024-11-18 13:29 - 000060729 _____ C:\Users\kolsp\Downloads\190732120227_20241115.pdf
2024-11-15 09:47 - 2024-11-29 09:17 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2024-11-15 09:25 - 2024-11-15 09:25 - 000060403 _____ C:\Users\kolsp\Downloads\190732120227_20241114.pdf
2024-11-14 10:46 - 2024-11-14 10:46 - 000725758 _____ C:\Windows\system32\perfh005.dat
2024-11-14 10:46 - 2024-11-14 10:46 - 000151026 _____ C:\Windows\system32\perfc005.dat
2024-11-14 09:57 - 2024-11-14 09:57 - 000061206 _____ C:\Users\kolsp\Downloads\190732120227_20241113.pdf
2024-11-13 09:40 - 2024-11-13 09:40 - 000060640 _____ C:\Users\kolsp\Downloads\190732120227_20241112.pdf
2024-11-11 09:45 - 2024-11-11 09:45 - 000060053 _____ C:\Users\kolsp\Downloads\190732120227_20241108.pdf
2024-11-08 10:03 - 2024-11-08 10:03 - 000059556 _____ C:\Users\kolsp\Downloads\190732120227_20241107.pdf
2024-11-07 14:19 - 2024-11-07 14:20 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Maserati fotky
2024-11-07 09:24 - 2024-11-07 09:24 - 000060376 _____ C:\Users\kolsp\Downloads\190732120227_20241106.pdf
2024-11-06 14:26 - 2024-11-06 14:26 - 000028585 _____ C:\Users\kolsp\OneDrive\Plocha\ceny_kol_21.08.2023.ods
2024-11-06 14:03 - 2024-11-06 14:03 - 000070768 _____ C:\Users\kolsp\Downloads\OCP03_CES_22459217.PDF
2024-11-06 11:10 - 2024-11-06 11:10 - 000062047 _____ C:\Users\kolsp\Downloads\190732120227_20241105.pdf
2024-11-05 10:56 - 2024-11-05 10:57 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\DC-49
2024-11-05 09:42 - 2024-11-05 09:42 - 000062250 _____ C:\Users\kolsp\Downloads\190732120227_20241104.pdf
2024-11-04 13:58 - 2024-11-04 13:58 - 000105111 _____ C:\Users\kolsp\Downloads\Plán_záloh_460005704451.PDF
2024-11-04 13:55 - 2024-11-04 13:55 - 000110229 _____ C:\Users\kolsp\Downloads\Plán_záloh_610005819494.PDF
2024-11-04 11:25 - 2024-11-04 11:25 - 000058528 _____ C:\Users\kolsp\Downloads\190732120227_20241101.pdf
2024-11-01 14:19 - 2024-11-01 14:19 - 000025855 _____ C:\Users\kolsp\Downloads\CÚ Ostrava-žádost.odt
2024-11-01 14:13 - 2024-11-01 14:13 - 000025855 _____ C:\Users\kolsp\OneDrive\Plocha\CÚ Ostrava-žádost.odt
2024-11-01 14:03 - 2024-11-01 14:03 - 000582589 _____ C:\Users\kolsp\Downloads\2965231853.pdf
2024-11-01 13:41 - 2024-11-01 13:41 - 000351497 _____ C:\Users\kolsp\Downloads\523323077.pdf
2024-11-01 11:13 - 2024-11-01 11:13 - 000022279 _____ C:\Users\kolsp\Downloads\Celnice-výkaz 2024-10.odt
2024-11-01 10:16 - 2024-11-01 10:16 - 000059815 _____ C:\Users\kolsp\Downloads\190732120227_20241031.pdf
2024-11-01 09:19 - 2024-11-01 09:19 - 000026650 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-11-01 09:18 - 2024-11-01 09:18 - 000026650 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-10-31 10:51 - 2024-10-31 10:51 - 000102438 _____ C:\Users\kolsp\Downloads\DD2424106184.pdf
2024-10-31 09:40 - 2024-10-31 09:40 - 000059619 _____ C:\Users\kolsp\Downloads\190732120227_20241030.pdf
2024-10-30 10:20 - 2024-10-30 10:20 - 000059177 _____ C:\Users\kolsp\Downloads\190732120227_20241029.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-11-29 09:31 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\AppReadiness
2024-11-29 09:18 - 2023-04-01 10:57 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-11-29 09:17 - 2023-04-01 10:57 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2024-11-29 09:17 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-29 08:54 - 2023-04-01 10:23 - 000000000 ____D C:\Users\kolsp\AppData\Local\D3DSCache
2024-11-29 08:52 - 2023-04-01 10:24 - 000000000 ___RD C:\Users\kolsp\OneDrive
2024-11-29 08:52 - 2023-04-01 10:23 - 000000000 ____D C:\Users\kolsp\AppData\Local\Packages
2024-11-29 08:52 - 2023-03-15 10:22 - 000000000 ____D C:\ProgramData\Packages
2024-11-29 08:52 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-28 14:56 - 2023-04-02 13:50 - 000000000 ____D C:\UCTO2020
2024-11-28 09:22 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SystemTemp
2024-11-27 11:08 - 2023-04-03 14:18 - 000000000 ___RD C:\SCAN
2024-11-27 09:23 - 2023-03-15 10:21 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-26 10:22 - 2023-04-01 10:24 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-224497037-1159430352-1889776923-1002
2024-11-26 10:22 - 2023-04-01 10:24 - 000003362 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-224497037-1159430352-1889776923-1002
2024-11-26 10:22 - 2023-04-01 10:24 - 000002377 _____ C:\Users\kolsp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-11-26 09:25 - 2022-05-07 06:22 - 000000000 ____D C:\Windows\INF
2024-11-25 16:06 - 2023-03-15 10:21 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-11-24 12:06 - 2023-03-15 10:21 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-11-24 12:06 - 2023-03-15 10:21 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-11-22 09:50 - 2023-04-01 10:41 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-11-18 09:38 - 2023-04-01 11:06 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-11-18 09:38 - 2023-04-01 11:06 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-11-18 09:30 - 2023-04-01 10:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-11-14 10:57 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-11-14 10:46 - 2023-03-15 10:28 - 001718036 _____ C:\Windows\system32\PerfStringBackup.INI
2024-11-14 10:42 - 2023-03-15 10:22 - 000001623 _____ C:\Windows\system32\config\VSMIDK
2024-11-14 10:42 - 2023-03-15 10:21 - 000469808 _____ C:\Windows\system32\FNTCACHE.DAT
2024-11-14 10:42 - 2023-03-15 10:21 - 000012288 ___SH C:\DumpStack.log.tmp
2024-11-14 10:42 - 2023-03-15 10:21 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-11-14 10:42 - 2022-05-07 06:17 - 000786432 _____ C:\Windows\system32\config\BBI
2024-11-14 10:41 - 2023-10-19 08:17 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SystemResources
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-11-14 10:41 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\bcastdvr
2024-11-13 10:03 - 2022-05-07 06:17 - 000000000 ____D C:\Windows\CbsTemp
2024-11-13 09:53 - 2023-03-15 10:32 - 000000000 ____D C:\Windows\system32\MRT
2024-11-13 09:52 - 2023-03-15 10:32 - 202035632 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-11-07 15:15 - 2024-02-07 09:37 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Karibik 2024
2024-11-07 12:02 - 2024-09-09 13:45 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\fotky balíků
2024-11-06 11:52 - 2023-06-05 09:08 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\Celnice výkazy
2024-11-06 11:44 - 2023-04-02 11:10 - 000000000 ____D C:\Users\kolsp\OneDrive\Dokumenty\TEXTY
2024-11-05 10:55 - 2024-03-15 08:55 - 000000000 ____D C:\Users\kolsp\OneDrive\Plocha\DC-47
2024-11-01 09:26 - 2022-05-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___SD C:\Windows\system32\UNP
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___RD C:\Windows\PrintDialog
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SysWOW64\setup
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\ShellExperiences
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\Sgrm
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\setup
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\oobe
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\Dism
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\system32\appraiser
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\ShellExperiences
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\ShellComponents
2024-11-01 09:26 - 2022-05-07 06:24 - 000000000 ____D C:\Windows\DiagTrack
2024-11-01 09:26 - 2022-05-07 06:17 - 000000000 ____D C:\Windows\servicing
2024-11-01 09:21 - 2022-05-07 06:25 - 000077312 _____ (Khronos Group) C:\Windows\SysWOW64\opencl.dll
2024-11-01 09:21 - 2022-05-07 06:24 - 000118784 _____ (Khronos Group) C:\Windows\system32\opencl.dll
2024-10-30 19:01 - 2022-12-19 15:37 - 000268568 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000220520 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000128552 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000121864 _____ (ESET) C:\Windows\system32\Drivers\edevmon.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000087784 _____ (ESET) C:\Windows\system32\Drivers\epfw.sys
2024-10-30 19:01 - 2022-12-19 15:37 - 000057872 _____ (ESET) C:\Windows\system32\Drivers\ekbdflt.sys
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================