Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
problém s diskom
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: problém s diskom
Super, poskodene subory boli opravene
Pokial bude zatazenie vysoke odsleduj cez taskmgr, ktore procesy sa na nom podielaju ?
Cpu, Ram, Hdd - tam, kde to bude vysoke
Pokial bude zatazenie vysoke odsleduj cez taskmgr, ktore procesy sa na nom podielaju ?
Cpu, Ram, Hdd - tam, kde to bude vysoke
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: problém s diskom
odsledujem, len nechápem prečo teraz tak rýchlo pribúdajú tie vadné sektory po tých kontrolach...inokedy jeden sektor pribudne možno raz za tri mesiace
Re: problém s diskom
Predpokladam, ze pribudaju premapovane clustre
Ak by pribudali vadne, tak to su tie, kde sa testuje povrch a vadne su cervene, dobre zelene -
Vtedy by bolo nutne vymenit disk
Ak by pribudali vadne, tak to su tie, kde sa testuje povrch a vadne su cervene, dobre zelene -
Vtedy by bolo nutne vymenit disk
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: problém s diskom
Reallocated Sector Count pribudaju...tých je 274 ale píše že hodnota je normál
a Current Pending Sector Count su 2 chybne ale píše že bez chyby...zvyšok je ok
edit// divné CPU je v pohode...ale disk skáče stale hore, dole v percentach hoci ho podla spravcu uloh nic nevyťažuje
a Current Pending Sector Count su 2 chybne ale píše že bez chyby...zvyšok je ok
edit// divné CPU je v pohode...ale disk skáče stale hore, dole v percentach hoci ho podla spravcu uloh nic nevyťažuje
Re: problém s diskom
položka registry a system vyťažuje disk...konečne som prišiel nato
Re: problém s diskom
ak si tak este neurobil, vycisti registre s CCleanerom
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: problém s diskom
skusil som a nepomohlo...kedze je to systemom a registrami co vytazuju disk...aby som to nenatahoval...keby si mi urobil ten script vo frst na precistenie systemu, nepomoze to? asi ako poslednu vec
zajtra vyjde aktualizacia windows, mozno to pomoze
zajtra vyjde aktualizacia windows, mozno to pomoze
Re: problém s diskom
vloz oba logy FRST - aktualne
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: problém s diskom
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2023
Ran by igorv (administrator) on DESKTOP-PB3B57S (TOSHIBA Satellite L650) (12-06-2023 12:34:42)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 10 Home Version 22H2 19045.3031 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe <2>
(C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.391.1144.0.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\75.0.3.0\crashpad_handler.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.391.1144.0.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4362600 2023-05-30] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4113872 2023-06-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {26A753D1-02F0-4A1C-B5B1-C33739702073} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {604884BC-0FC1-47A1-90A8-A12B6579BFDF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B8B9D8C5-35A8-4B82-951B-6E535EED5282} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CC4D0EC1-6A8F-44F3-A5DC-76BC90F9224A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FA0DD4B2-28A4-46D0-8355-D124F6F7E274} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{1b830fbc-5f0e-4a85-a095-15d1aeb2d45b}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{2835ed5a-0fac-45c6-bfda-73ae710e5958}: [DhcpNameServer] 192.168.31.248 8.8.8.8
Tcpip\..\Interfaces\{32da1b4d-71a3-4ab2-9485-70b9003b58a1}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{7ae0656c-d38d-4fa0-9319-481e1e5b4555}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge DefaultProfile: Profile 4
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4 [2023-06-12]
Edge DownloadDir: Profile 4 -> C:\Users\igorv\Downloads
Edge HomePage: Profile 4 -> hxxp://www.google.sk/
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-24]
FireFox:
========
FF DefaultProfile: k7ed2nsh.default
FF ProfilePath: C:\Users\igorv\AppData\Roaming\Mozilla\Firefox\Profiles\k7ed2nsh.default [2023-05-09]
FF ProfilePath: C:\Users\igorv\AppData\Roaming\Mozilla\Firefox\Profiles\85ef0y11.default-release-1684762872361 [2023-06-11]
Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2023-06-11]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-06]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-05-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-05-06]
CHR HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR Profile: C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable [2023-06-11]
OPR DefaultSearchURL: Opera Stable -> hxxps://opera.com
OPR Extension: (Rich Hints Agent) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-05-07]
OPR Extension: (Opera Wallet) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-05-07]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2023-05-07]
OPR Extension: (Opera AI Prompts) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\mljbnbeedpkgakdchcmfapkjhfcogaoc [2023-05-07]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\DSDFunctionKeyCtlService.exe [714864 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 DSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\DSDTabSysSvc.exe [301192 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 DSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\RMService.exe [451248 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 dynabookSettingService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\dynabookSystemService.exe [44797568 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe [3228464 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe [133592 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 dhotkey; C:\Windows\System32\drivers\dhotkey.sys [52360 2022-08-25] (Dynabook Inc. -> Dynabook Inc.)
R1 dsrvctldrv; C:\Windows\System32\drivers\dsrvctldrv.sys [29328 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
R0 DVALZ_O; C:\Windows\System32\drivers\DVALZ_O.SYS [47464 2022-07-18] (Dynabook Inc. -> Dynabook Inc.)
R1 googledrivefs31092; C:\Windows\System32\DRIVERS\googledrivefs31092.sys [384600 2023-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
S3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [49120 2021-11-17] (Dynabook Inc. -> Dynabook Inc.)
R1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TosSrvCtlDrv.sys [26816 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46656 2021-11-18] (Dynabook Inc. -> Dynabook Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49616 2023-06-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [498984 2023-06-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-06-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-06-12 12:34 - 2023-06-12 12:38 - 000011767 _____ C:\Users\igorv\Downloads\FRST.txt
2023-06-12 12:33 - 2023-06-12 12:37 - 000000000 ____D C:\FRST
2023-06-12 12:31 - 2023-06-12 12:31 - 002383360 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2023-06-10 15:36 - 2023-06-10 15:36 - 000000000 ____D C:\Users\igorv\AppData\Roaming\HD Tune Pro
2023-06-09 21:59 - 2023-06-09 21:59 - 000000000 __SHD C:\found.001
2023-06-09 11:14 - 2023-06-09 11:14 - 000002064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2023-06-09 11:13 - 2023-06-11 20:04 - 000003454 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-06-09 11:13 - 2023-06-11 20:04 - 000003230 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-06-04 10:23 - 2023-06-04 10:23 - 000000000 ____D C:\Users\igorv\AppData\Local\Apps\2.0
2023-05-26 16:06 - 2023-05-26 16:06 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-06-12 12:21 - 2022-03-09 11:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-06-12 12:15 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-06-11 20:57 - 2022-03-09 11:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-06-11 20:57 - 2020-02-21 12:41 - 000008192 ___SH C:\DumpStack.log.tmp
2023-06-11 20:56 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI
2023-06-11 20:23 - 2022-03-09 11:52 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2023-06-11 19:56 - 2022-12-25 19:56 - 000000000 ____D C:\Program Files (x86)\Steam
2023-06-11 19:55 - 2022-10-07 20:11 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2023-06-11 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2023-06-11 19:25 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2023-06-10 12:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-06-09 23:52 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-06-09 20:11 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-06-09 19:27 - 2022-03-09 11:22 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-06-09 10:54 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-06-08 19:19 - 2022-03-09 11:20 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-06-08 19:19 - 2022-03-09 11:20 - 000003508 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-06-06 00:03 - 2022-03-09 11:52 - 000000000 ____D C:\Users\igorv
2023-06-04 14:35 - 2022-10-17 09:26 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-06-04 14:35 - 2022-07-04 15:36 - 000000000 ____D C:\Windows\Minidump
2023-06-03 15:44 - 2022-03-09 11:55 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2023-06-01 09:55 - 2022-03-09 11:18 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-05-26 18:13 - 2022-03-09 11:49 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2023-05-26 18:07 - 2022-03-09 11:17 - 000438936 _____ C:\Windows\system32\FNTCACHE.DAT
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-05-26 17:13 - 2022-03-09 11:21 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-05-25 11:47 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF
2023-05-24 19:29 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-05-24 19:21 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files\Google
==================== Files in the root of some directories ========
2022-03-09 12:38 - 2022-03-09 12:38 - 000007602 _____ () C:\Users\igorv\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by igorv (administrator) on DESKTOP-PB3B57S (TOSHIBA Satellite L650) (12-06-2023 12:34:42)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 10 Home Version 22H2 19045.3031 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe <2>
(C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.391.1144.0.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\75.0.3.0\crashpad_handler.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(wuauclt.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta_Patch_1.391.1144.0.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4362600 2023-05-30] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4113872 2023-06-08] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\75.0.3.0\GoogleDriveFS.exe [53970712 2023-06-09] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {26A753D1-02F0-4A1C-B5B1-C33739702073} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {604884BC-0FC1-47A1-90A8-A12B6579BFDF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B8B9D8C5-35A8-4B82-951B-6E535EED5282} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CC4D0EC1-6A8F-44F3-A5DC-76BC90F9224A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FA0DD4B2-28A4-46D0-8355-D124F6F7E274} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MpCmdRun.exe [1649976 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{1b830fbc-5f0e-4a85-a095-15d1aeb2d45b}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{2835ed5a-0fac-45c6-bfda-73ae710e5958}: [DhcpNameServer] 192.168.31.248 8.8.8.8
Tcpip\..\Interfaces\{32da1b4d-71a3-4ab2-9485-70b9003b58a1}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{7ae0656c-d38d-4fa0-9319-481e1e5b4555}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge DefaultProfile: Profile 4
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4 [2023-06-12]
Edge DownloadDir: Profile 4 -> C:\Users\igorv\Downloads
Edge HomePage: Profile 4 -> hxxp://www.google.sk/
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 4\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-04-24]
FireFox:
========
FF DefaultProfile: k7ed2nsh.default
FF ProfilePath: C:\Users\igorv\AppData\Roaming\Mozilla\Firefox\Profiles\k7ed2nsh.default [2023-05-09]
FF ProfilePath: C:\Users\igorv\AppData\Roaming\Mozilla\Firefox\Profiles\85ef0y11.default-release-1684762872361 [2023-06-11]
Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2023-06-11]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-06]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-05-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-05-06]
CHR HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR Profile: C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable [2023-06-11]
OPR DefaultSearchURL: Opera Stable -> hxxps://opera.com
OPR Extension: (Rich Hints Agent) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-05-07]
OPR Extension: (Opera Wallet) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-05-07]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2023-05-07]
OPR Extension: (Opera AI Prompts) - C:\Users\igorv\AppData\Roaming\Opera Software\Opera Stable\Extensions\mljbnbeedpkgakdchcmfapkjhfcogaoc [2023-05-07]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 DSDFunctionKeyCtlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\DSDFunctionKeyCtlService.exe [714864 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 DSDTabletControlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\DSDTabSysSvc.exe [301192 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 DSDWirelessLEDCtlService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\RMService.exe [451248 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
S3 dynabookSettingService; C:\Windows\System32\DriverStore\FileRepository\dsrvctldrv.inf_amd64_6c2a100d8d6221dc\dynabookSystemService.exe [44797568 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\NisSrv.exe [3228464 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe [133592 2023-06-01] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 dhotkey; C:\Windows\System32\drivers\dhotkey.sys [52360 2022-08-25] (Dynabook Inc. -> Dynabook Inc.)
R1 dsrvctldrv; C:\Windows\System32\drivers\dsrvctldrv.sys [29328 2022-08-26] (Dynabook Inc. -> Dynabook Inc.)
R0 DVALZ_O; C:\Windows\System32\drivers\DVALZ_O.SYS [47464 2022-07-18] (Dynabook Inc. -> Dynabook Inc.)
R1 googledrivefs31092; C:\Windows\System32\DRIVERS\googledrivefs31092.sys [384600 2023-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
S3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [49120 2021-11-17] (Dynabook Inc. -> Dynabook Inc.)
R1 TosSrvCtlDrv; C:\Windows\System32\DriverStore\FileRepository\tossrvctl.inf_amd64_5be63eebe47f1577\TosSrvCtlDrv.sys [26816 2022-02-15] (Dynabook Inc. -> Dynabook Inc.)
S0 TVALZ_O; C:\Windows\System32\drivers\TVALZ_O.SYS [46656 2021-11-18] (Dynabook Inc. -> Dynabook Inc.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49616 2023-06-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [498984 2023-06-01] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-06-01] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-06-12 12:34 - 2023-06-12 12:38 - 000011767 _____ C:\Users\igorv\Downloads\FRST.txt
2023-06-12 12:33 - 2023-06-12 12:37 - 000000000 ____D C:\FRST
2023-06-12 12:31 - 2023-06-12 12:31 - 002383360 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2023-06-10 15:36 - 2023-06-10 15:36 - 000000000 ____D C:\Users\igorv\AppData\Roaming\HD Tune Pro
2023-06-09 21:59 - 2023-06-09 21:59 - 000000000 __SHD C:\found.001
2023-06-09 11:14 - 2023-06-09 11:14 - 000002064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2023-06-09 11:13 - 2023-06-11 20:04 - 000003454 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-06-09 11:13 - 2023-06-11 20:04 - 000003230 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-06-04 10:23 - 2023-06-04 10:23 - 000000000 ____D C:\Users\igorv\AppData\Local\Apps\2.0
2023-05-26 16:06 - 2023-05-26 16:06 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-06-12 12:21 - 2022-03-09 11:17 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-06-12 12:15 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-06-11 20:57 - 2022-03-09 11:18 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-06-11 20:57 - 2020-02-21 12:41 - 000008192 ___SH C:\DumpStack.log.tmp
2023-06-11 20:56 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI
2023-06-11 20:23 - 2022-03-09 11:52 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2023-06-11 19:56 - 2022-12-25 19:56 - 000000000 ____D C:\Program Files (x86)\Steam
2023-06-11 19:55 - 2022-10-07 20:11 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2023-06-11 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2023-06-11 19:25 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files (x86)\Google
2023-06-10 12:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-06-09 23:52 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-06-09 20:11 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-06-09 19:27 - 2022-03-09 11:22 - 000002451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-06-09 10:54 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-06-08 19:19 - 2022-03-09 11:20 - 000003632 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-06-08 19:19 - 2022-03-09 11:20 - 000003508 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-06-06 00:03 - 2022-03-09 11:52 - 000000000 ____D C:\Users\igorv
2023-06-04 14:35 - 2022-10-17 09:26 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2023-06-04 14:35 - 2022-07-04 15:36 - 000000000 ____D C:\Windows\Minidump
2023-06-03 15:44 - 2022-03-09 11:55 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2023-06-01 09:55 - 2022-03-09 11:18 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-05-26 18:13 - 2022-03-09 11:49 - 000795738 _____ C:\Windows\system32\PerfStringBackup.INI
2023-05-26 18:07 - 2022-03-09 11:17 - 000438936 _____ C:\Windows\system32\FNTCACHE.DAT
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-05-26 18:01 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-05-26 17:13 - 2022-03-09 11:21 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-05-25 11:47 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF
2023-05-24 19:29 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-05-24 19:21 - 2022-03-09 16:05 - 000000000 ____D C:\Program Files\Google
==================== Files in the root of some directories ========
2022-03-09 12:38 - 2022-03-09 12:38 - 000007602 _____ () C:\Users\igorv\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Re: problém s diskom
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-05-2023
Ran by igorv (12-06-2023 12:41:12)
Running from C:\Users\igorv\Downloads
Microsoft Windows 10 Home Version 22H2 19045.3031 (X64) (2022-03-09 09:45:21)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2415662125-1334251306-1017844622-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2415662125-1334251306-1017844622-503 - Limited - Disabled)
Guest (S-1-5-21-2415662125-1334251306-1017844622-501 - Limited - Disabled)
igorv (S-1-5-21-2415662125-1334251306-1017844622-1001 - Administrator - Enabled) => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2415662125-1334251306-1017844622-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
AIDA64 Extreme v6.88 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 6.88 - FinalWire Ltd.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 75.0.3.0 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.43 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.43 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.4.3.38 - Synaptics Incorporated)
Packages:
=========
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2305.14002.0_x64__8wekyb3d8bbwe [2023-06-07] (Microsoft Corporation) [Startup Task]
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.851.1712.0_x64__8wekyb3d8bbwe [2023-05-25] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.851.1712.0_x86__8wekyb3d8bbwe [2023-05-25] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers4: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\igorv\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory="Profile 4"
==================== Loaded Modules (Whitelisted) =============
2023-02-16 11:33 - 2023-02-16 11:33 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\9f1e47e3bc4248cd6d936e82c88be3ee\A4.Foundation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\987e01dc09d807404fe27e04839537b0\AEM.Actions.CCAA.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\94cc8ddab127ba255822d7a328d11052\AEM.Plugin.EEU.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\797cdcb0faba2f139f7bda874976a36d\AEM.Plugin.Hotkeys.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\6b6d7a89c243174f80ab3c56950a7435\AEM.Plugin.DPPE.Shared.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\b0d6be4bca14fb63dc8d3786670f2d8f\AEM.Plugin.Source.Kit.Server.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\c0a3f1d86b07c03a9799aa8d5daef6f5\AEM.Plugin.WinMessages.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\7499eb3f7119e47912b81f17a2795ad0\AEM.Plugin.REG.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\507c9351f234d4dc528d91e23df0b611\AEM.Plugin.GD.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\2f8ba73f47de8cd24f722e64fd5a220a\AEM.Server.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\148c6db9068a64018728770b21d3bd61\AEM.Server.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\5e525acf043397d25f78c9cf232209d3\APM.Foundation.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\b82c6517aaffbcb5cc076fa88fbc63d0\ATICCCom.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\98737e1ec3ead14c45d7735d417ca79f\CCC.Implementation.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\11510326fb2fe726ae9b04aa35f2616f\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\ddaef0c7cdcdcf59c44b5ebec819603a\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\0c033839caadc8da82b445f824545187\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\9407538825ce41da0ff616b4e6d00651\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\c31cdf7980afd075fdbc62635deddbfa\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\2871f4bfc5b3464d37952cf293403966\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\232fda7b8e45194b7e6e34b2325170d5\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\787ca13e8d30350758565a89b2c43857\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\26221ab88386e6f20c9a514d834c1309\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\8be61e6e3adaaf27219f9ca926e59c53\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\f21c9ce80195e634bea447fbc817963b\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\90d213817263294c9469ad59ce72ab95\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\b64823afd61f298c0f30f1cba49a2db9\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\2c5b790740282780758816a6752af774\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\e1f9f0d3d0a39c6631cfd5cae40077d3\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\72339d02f3536fa490485bf7103e4040\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\6936ce77cf37ec28e6398104c7b9edcf\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\499181ac4396a8199a0dd96e9f45b8d2\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\d230d203bdd9e2c9d6c7b602a159d9c9\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\81eeac0df85b1de0b095f3ffa20b28a0\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\066b8b548e2c7207937c0e039a9e928c\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\3120ef91a0f38231ce4a9fb32db64b3c\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\e6ac95fb17fc32f8fda4aa17d01d6fb3\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\d59f5fdf28e3e608bdf41be3ebd531b9\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\69a27cf50b003b14c0641ee2d39d870e\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\dba6ff5ce55a1ac920fafc2316ed99bc\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\8523d51471861a69a4c66ce794a1f9b8\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\9195e54af26afee283d24040027f3ec1\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\2bd678d981638322f04fe50e21962af4\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\698ec06cbde831e733804000a9465d81\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\d87afedf7c7d13cea33c346344822e61\CLI.Caste.A4.Runtime.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\0f22ea570708da254e97f605975e96fc\CLI.Caste.A4.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\443eccebb74d7738e395debb5409a073\CLI.Caste.A4.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\e8ef96e6332c7d7a913a6add03856534\CLI.Caste.Fuel.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\eaec8904dcb62047d9ef97d087e29b1d\CLI.Caste.Fuel.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\bc2d4b65d30ce739e60747dba7d955a2\CLI.Caste.Fuel.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\d11a8bb540dda75005110f287becd4ae\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\203828a915cc5b8c32adb1b8cf9992ef\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\3ceb77f374bab2f29ce9016628cacace\CLI.Caste.Graphics.Dashboard.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\fd64fb1cb4890d46d6e4db2190e2e042\CLI.Caste.HydraVision.Runtime.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\d423944dc931ce14be764cf611f51740\CLI.Caste.HydraVision.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\ffc9d46d635c5970ebbff217c314629d\CLI.Caste.HydraVision.Dashboard.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\dd3376d9529ee043b81d95a28a3970aa\CLI.Caste.Platform.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\d843c8ba8508fefea1ab1e86796ec38d\CLI.Caste.Platform.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\27419033ccee7294978c6211984dc64f\CLI.Caste.Platform.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\dd804fed1d889598ed6cebf3a15546d8\CLI.Component.Runtime.Shared.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\d8b4535b7755942e7d4de29b782314ac\CLI.Component.Systemtray.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\b604c4e816d5855f3817c8c100730d53\CLI.Component.Dashboard.ProfileManager2.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\27179b1a24a8fec1d2c0e4d20afee12c\CLI.Component.Runtime.Shared.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\a2483154ba8cbd599cf50495aca70d00\CLI.Component.Runtime.Extension.EEU.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\ac5e115d01508821191e0283094b5079\CLI.Component.Dashboard.Shared.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\b74a5ee5e7496b5886280f8e80f3baff\CLI.Component.Client.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\bfdd67d41a4fa1aa3c9d9a7bf9586ea9\CLI.Component.Dashboard.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\26897721e98fb1589b96c19a756ab868\CLI.Foundation.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\baece4e7b6b82fa10d2dd7f7a8fbffaf\CLI.Foundation.XManifest.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\266aec9ad0e116601a3caf7524bb6a10\CLI.Foundation.CoreAudioAPI.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\30d541ae56f7bd228b96f5e59e8e0db9\CLI.Foundation.Client.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\fd136233ef8f1b07bc6f317a9c794620\CLI.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\316c1b454a28be96113095ece0e963f8\DEM.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\54d14e8e569c6803a95af2e3b5bc18d4\DEM.Graphics.I0601.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\fb8dbb32151697489f62312f84cb6d2d\DEM.Graphics.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\62e1cd64877e3111800a17e46d662c3d\Fuel.Foundation.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\e2f3c96769c275f207ae2132a3c1e51b\LOG.Foundation.Implementation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\92f3a8b54c6ce3da09b773f4e8f3cd36\LOG.Foundation.Private.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\5ff9786af2b67e979a5c851fdd28d3ed\LOG.Foundation.Implementation.Private.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\59f4b3a653df3cc24ad11eea00889fd3\LOG.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\0c78a9c53f477bca90b8e8c1ca963236\MOM.Foundation.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\9cbd7053a2529728dfad77cd01edde4e\MOM.Implementation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\8cb1991468b74700485a6d3c8bed0383\NEWAEM.Foundation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\bedf1628f1c29f47a67d67976eea3304\ADL.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\d890192f1aaa1e20d00e85f21bd7b50b\APM.Server.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\f926beb59cf33d878b2fee2ec4fec23e\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\836a507457dfbc755368e3014f86d2bc\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\3adcb2e754a430c5ae1de464e9212d80\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\93053ada8163573b86c08fe13cd1a950\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\105767733f141b63aaae614cd6f1884c\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\89b8aa9842d5c82cfc0587d363dab918\CLI.Component.Client.Shared.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\b0fe802c8985cd6ed5d7dcc6a24b4154\CLI.Component.Runtime.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\2578d66833ba712d941ff8fdc8ffa9fa\CLI.Component.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\b36e2773f4bedd0a49d50728200cf924\DEM.Graphics.I0706.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\780904238054bbc224646f4ad9f5bdf5\DEM.Graphics.I0709.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\7c47ddef4497dc94cb5e507afdb568ac\DEM.Graphics.I0712.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\740f18842e6f5e8a0d85e91bae5208a9\DEM.Graphics.I0804.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\cf9e156e37d79efe9d35adb797a3c2ec\DEM.Graphics.I0805.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\9c77770e27b8cac23cc38d040d9b70b4\DEM.Graphics.I0812.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\15d4922003303f2bc5a0a6e0244a4e55\DEM.Graphics.I0906.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\b7c94a2a02494ed32ec5466e6bff1f5c\DEM.Graphics.I0912.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\983299df3727ce44bdf8cbb794dcafb8\DEM.Graphics.I1010.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\f0f57298b28740fe45b487eaa291700a\Localization.Foundation.Private.ni.dll
2023-05-25 13:01 - 2023-05-25 13:01 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\6c0bb03a96388e19c6139179184c4699\ResourceManagement.Foundation.Implementation.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\dfa8ac73be3b5fb88c0dfab4f2845e4c\ResourceManagement.Foundation.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\8d29fdfd62f1737f91fad5c055cf55ff\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\ac61f84e4afbdeb6d61f68b6ae1bc7be\CLI.Caste.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\795cfb378f189b45cb7d1be6a8577cf5\CLI.Caste.Graphics.Runtime.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000335360 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\ab61644e542a80aadb0def3e7be2e16c\Microsoft.WindowsAPICodePack.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 002546688 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\6e18b2e643119bd2d6f7f8540e3c364e\Microsoft.WindowsAPICodePack.Shell.ni.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\Control Panel\Desktop\\Wallpaper -> c:\users\igorv\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\windows 11 wallpaper 1.jpg
DNS Servers: 192.168.31.248 - 1.1.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "ccleaner_update_helper"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "GoogleDriveFS"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "Steam"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{E2E37EFC-C0D6-45BF-8798-4FE7A7E5C461}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C4B0D9E5-2B6D-49F3-94C9-5C9291C4517C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49A65B66-3CAB-455A-9D77-CCE4F27C2BA7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A5F809E2-5668-4BFB-BD8F-FFE48AF64825}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9EA0E6CC-8B79-4CA8-BE94-0873FED99104}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A8CC7E57-0438-4208-B9C5-5E6159C13898}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AF26F163-09D8-4743-A91C-C6C1BCD939F5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A0AA3EB9-8AF0-44F0-B726-2C0CA0AF04B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{CD97DFAA-6D04-401D-936A-DF504C28FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{583C8364-38E5-4D33-B290-EB38C06A4A83}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{ABF3A4BA-9222-4C9F-B3E3-5487B1414EB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Doom 3\Doom3.exe (id Software) [File not signed]
FirewallRules: [{4E1DC548-21D7-480B-BE26-0AEFAA532D73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Doom 3\Doom3.exe (id Software) [File not signed]
FirewallRules: [{912CF928-DED3-4B9A-B4A3-DA31904998D2}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.43\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Description: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (06/11/2023 07:55:08 PM) (Source: ESENT) (EventID: 489) (User: )
Description: taskhostw (4564,G,0) An attempt to open the file "C:\Users\igorv\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (06/11/2023 07:54:42 PM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Službe Windows Search sa nepodarilo spracovať zoznam zahrnutých a vylúčených umiestnení, pretože sa vyskytla chyba <30, 0x80040d07, "iehistory://{S-1-5-21-2415662125-1334251306-1017844622-1001}/">.
Error: (06/11/2023 07:54:22 PM) (Source: ESENT) (EventID: 489) (User: )
Description: taskhostw (4564,G,0) An attempt to open the file "C:\Users\igorv\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (06/09/2023 08:34:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Microsoft.Media.Player.exe version 11.2304.2.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 1d04
Start Time: 01d99aeac175a2f0
Termination Time: 4294967295
Application Path: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
Report Id: 8fcf5bc2-a133-4d7d-8bef-14cf6872120a
Faulting package full name: Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: Microsoft.ZuneMusic
Hang type: Quiesce
Error: (06/09/2023 11:49:45 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program FRST64 (1).exe version 29.5.2023.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 2410
Start Time: 01d99ab74e813d15
Termination Time: 4294967295
Application Path: C:\Users\igorv\Downloads\FRST64 (1).exe
Report Id: ef678f92-051e-4475-9327-c880f00e11f9
Faulting package full name:
Faulting package-relative application ID:
Hang type: Top level window is idle
Error: (06/09/2023 11:35:23 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Data (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)
Error: (06/09/2023 09:15:14 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3031 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 1c8c
Start Time: 01d99aa1c39fb556
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Report Id: a3596e2a-88f4-4002-adcf-0c72961cf400
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI
Hang type: Activation
Error: (06/08/2023 09:10:53 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-PB3B57S)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
System errors:
=============
Error: (06/11/2023 09:00:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Update Health Service zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (06/11/2023 09:00:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Microsoft Update Health Service bol dosiahnutý časový limit (30000 ms).
Error: (06/11/2023 04:36:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba DSDWirelessLEDCtlService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 04:36:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba dynabook Function Key control service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 04:35:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba dynabookSettingService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 03:37:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Update Health Service zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (06/11/2023 03:37:07 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Microsoft Update Health Service bol dosiahnutý časový limit (30000 ms).
Error: (06/11/2023 03:35:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správca stiahnutých máp sa pri spustení zablokovala.
Windows Defender:
================
Date: 2023-06-11 11:42:13
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-09 10:39:37
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-08 10:54:07
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-07 13:50:28
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-05 10:07:29
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:
Date: 2023-06-05 16:04:13
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.391.491.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.23050.3
Error code: 0x80240009
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
Date: 2023-05-30 19:36:44
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.389.2763.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.20300.3
Error code: 0x80240438
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
CodeIntegrity:
===============
Date: 2023-06-11 20:26:45
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\75.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.
Date: 2023-05-23 18:00:35
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2023-05-10 18:00:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\74.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.
Date: 2023-05-02 19:34:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: INSYDE 1.40 05/17/2010
Motherboard: TOSHIBA Portable PC
Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 59%
Total physical RAM: 3958.85 MB
Available physical RAM: 1615.15 MB
Total Virtual: 5366.85 MB
Available Virtual: 2800 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:296.96 GB) (Free:256.53 GB) (Model: TOSHIBA MK6465GSX) NTFS
Drive d: (Data) (Fixed) (Total:297.92 GB) (Free:296.61 GB) (Model: TOSHIBA MK6465GSX) NTFS
\\?\Volume{18c6abd2-0000-0000-0000-100000000000}\ (SYSTEM) (Fixed) (Total:0.39 GB) (Free:0.18 GB) NTFS
\\?\Volume{18c6abd2-0000-0000-0000-a0564a000000}\ () (Fixed) (Total:0.89 GB) (Free:0.3 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 18C6ABD2)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=915 MB) - (Type=27)
Partition 4: (Not Active) - (Size=297.9 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================
Ran by igorv (12-06-2023 12:41:12)
Running from C:\Users\igorv\Downloads
Microsoft Windows 10 Home Version 22H2 19045.3031 (X64) (2022-03-09 09:45:21)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2415662125-1334251306-1017844622-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2415662125-1334251306-1017844622-503 - Limited - Disabled)
Guest (S-1-5-21-2415662125-1334251306-1017844622-501 - Limited - Disabled)
igorv (S-1-5-21-2415662125-1334251306-1017844622-1001 - Administrator - Enabled) => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2415662125-1334251306-1017844622-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
AIDA64 Extreme v6.88 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 6.88 - FinalWire Ltd.)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 75.0.3.0 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.43 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.43 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.34.31931 (HKLM-x32\...\{d4cecf3b-b68f-4995-8840-52ea0fab646e}) (Version: 14.34.31931.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.34.31931 (HKLM\...\{EAE242B1-0A26-485A-BFEB-0292EE9F03CB}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.34.31931 (HKLM\...\{CF4C347D-954E-4543-88D2-EC17F07F466F}) (Version: 14.34.31931 - Microsoft Corporation) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.4.3.38 - Synaptics Incorporated)
Packages:
=========
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2305.14002.0_x64__8wekyb3d8bbwe [2023-06-07] (Microsoft Corporation) [Startup Task]
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.851.1712.0_x64__8wekyb3d8bbwe [2023-05-25] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.851.1712.0_x86__8wekyb3d8bbwe [2023-05-25] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers4: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\75.0.3.0\drivefsext.dll [2023-06-09] (Google LLC -> Google, Inc.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\igorv\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Microsoft Edge.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe (Microsoft Corporation) -> --profile-directory="Profile 4"
==================== Loaded Modules (Whitelisted) =============
2023-02-16 11:33 - 2023-02-16 11:33 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\9f1e47e3bc4248cd6d936e82c88be3ee\A4.Foundation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\987e01dc09d807404fe27e04839537b0\AEM.Actions.CCAA.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\94cc8ddab127ba255822d7a328d11052\AEM.Plugin.EEU.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\797cdcb0faba2f139f7bda874976a36d\AEM.Plugin.Hotkeys.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\6b6d7a89c243174f80ab3c56950a7435\AEM.Plugin.DPPE.Shared.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\b0d6be4bca14fb63dc8d3786670f2d8f\AEM.Plugin.Source.Kit.Server.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\c0a3f1d86b07c03a9799aa8d5daef6f5\AEM.Plugin.WinMessages.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\7499eb3f7119e47912b81f17a2795ad0\AEM.Plugin.REG.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\507c9351f234d4dc528d91e23df0b611\AEM.Plugin.GD.Shared.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\2f8ba73f47de8cd24f722e64fd5a220a\AEM.Server.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\148c6db9068a64018728770b21d3bd61\AEM.Server.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\5e525acf043397d25f78c9cf232209d3\APM.Foundation.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\b82c6517aaffbcb5cc076fa88fbc63d0\ATICCCom.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\98737e1ec3ead14c45d7735d417ca79f\CCC.Implementation.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\11510326fb2fe726ae9b04aa35f2616f\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\ddaef0c7cdcdcf59c44b5ebec819603a\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\0c033839caadc8da82b445f824545187\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\9407538825ce41da0ff616b4e6d00651\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\c31cdf7980afd075fdbc62635deddbfa\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\2871f4bfc5b3464d37952cf293403966\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\232fda7b8e45194b7e6e34b2325170d5\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\787ca13e8d30350758565a89b2c43857\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\26221ab88386e6f20c9a514d834c1309\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\8be61e6e3adaaf27219f9ca926e59c53\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\f21c9ce80195e634bea447fbc817963b\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\90d213817263294c9469ad59ce72ab95\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\b64823afd61f298c0f30f1cba49a2db9\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\2c5b790740282780758816a6752af774\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\e1f9f0d3d0a39c6631cfd5cae40077d3\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\72339d02f3536fa490485bf7103e4040\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\6936ce77cf37ec28e6398104c7b9edcf\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\499181ac4396a8199a0dd96e9f45b8d2\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\d230d203bdd9e2c9d6c7b602a159d9c9\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\81eeac0df85b1de0b095f3ffa20b28a0\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\066b8b548e2c7207937c0e039a9e928c\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\3120ef91a0f38231ce4a9fb32db64b3c\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\e6ac95fb17fc32f8fda4aa17d01d6fb3\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\d59f5fdf28e3e608bdf41be3ebd531b9\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\69a27cf50b003b14c0641ee2d39d870e\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\dba6ff5ce55a1ac920fafc2316ed99bc\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\8523d51471861a69a4c66ce794a1f9b8\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\9195e54af26afee283d24040027f3ec1\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\2bd678d981638322f04fe50e21962af4\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\698ec06cbde831e733804000a9465d81\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\d87afedf7c7d13cea33c346344822e61\CLI.Caste.A4.Runtime.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\0f22ea570708da254e97f605975e96fc\CLI.Caste.A4.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\443eccebb74d7738e395debb5409a073\CLI.Caste.A4.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\e8ef96e6332c7d7a913a6add03856534\CLI.Caste.Fuel.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\eaec8904dcb62047d9ef97d087e29b1d\CLI.Caste.Fuel.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\bc2d4b65d30ce739e60747dba7d955a2\CLI.Caste.Fuel.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\d11a8bb540dda75005110f287becd4ae\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\203828a915cc5b8c32adb1b8cf9992ef\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\3ceb77f374bab2f29ce9016628cacace\CLI.Caste.Graphics.Dashboard.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\fd64fb1cb4890d46d6e4db2190e2e042\CLI.Caste.HydraVision.Runtime.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\d423944dc931ce14be764cf611f51740\CLI.Caste.HydraVision.Shared.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\ffc9d46d635c5970ebbff217c314629d\CLI.Caste.HydraVision.Dashboard.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\dd3376d9529ee043b81d95a28a3970aa\CLI.Caste.Platform.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\d843c8ba8508fefea1ab1e86796ec38d\CLI.Caste.Platform.Runtime.ni.dll
2023-05-25 11:40 - 2023-05-25 11:40 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\27419033ccee7294978c6211984dc64f\CLI.Caste.Platform.Dashboard.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\dd804fed1d889598ed6cebf3a15546d8\CLI.Component.Runtime.Shared.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\d8b4535b7755942e7d4de29b782314ac\CLI.Component.Systemtray.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\b604c4e816d5855f3817c8c100730d53\CLI.Component.Dashboard.ProfileManager2.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\27179b1a24a8fec1d2c0e4d20afee12c\CLI.Component.Runtime.Shared.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\a2483154ba8cbd599cf50495aca70d00\CLI.Component.Runtime.Extension.EEU.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\ac5e115d01508821191e0283094b5079\CLI.Component.Dashboard.Shared.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\b74a5ee5e7496b5886280f8e80f3baff\CLI.Component.Client.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\bfdd67d41a4fa1aa3c9d9a7bf9586ea9\CLI.Component.Dashboard.Shared.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\26897721e98fb1589b96c19a756ab868\CLI.Foundation.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\baece4e7b6b82fa10d2dd7f7a8fbffaf\CLI.Foundation.XManifest.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\266aec9ad0e116601a3caf7524bb6a10\CLI.Foundation.CoreAudioAPI.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\30d541ae56f7bd228b96f5e59e8e0db9\CLI.Foundation.Client.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\fd136233ef8f1b07bc6f317a9c794620\CLI.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\316c1b454a28be96113095ece0e963f8\DEM.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\54d14e8e569c6803a95af2e3b5bc18d4\DEM.Graphics.I0601.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\fb8dbb32151697489f62312f84cb6d2d\DEM.Graphics.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\62e1cd64877e3111800a17e46d662c3d\Fuel.Foundation.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\e2f3c96769c275f207ae2132a3c1e51b\LOG.Foundation.Implementation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\92f3a8b54c6ce3da09b773f4e8f3cd36\LOG.Foundation.Private.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\5ff9786af2b67e979a5c851fdd28d3ed\LOG.Foundation.Implementation.Private.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\59f4b3a653df3cc24ad11eea00889fd3\LOG.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\0c78a9c53f477bca90b8e8c1ca963236\MOM.Foundation.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\9cbd7053a2529728dfad77cd01edde4e\MOM.Implementation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\8cb1991468b74700485a6d3c8bed0383\NEWAEM.Foundation.ni.dll
2023-02-16 11:33 - 2023-02-16 11:33 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\bedf1628f1c29f47a67d67976eea3304\ADL.Foundation.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\d890192f1aaa1e20d00e85f21bd7b50b\APM.Server.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\f926beb59cf33d878b2fee2ec4fec23e\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\836a507457dfbc755368e3014f86d2bc\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\3adcb2e754a430c5ae1de464e9212d80\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\93053ada8163573b86c08fe13cd1a950\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 001159680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\105767733f141b63aaae614cd6f1884c\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\89b8aa9842d5c82cfc0587d363dab918\CLI.Component.Client.Shared.Private.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\b0fe802c8985cd6ed5d7dcc6a24b4154\CLI.Component.Runtime.ni.dll
2023-05-25 13:00 - 2023-05-25 13:00 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\2578d66833ba712d941ff8fdc8ffa9fa\CLI.Component.Dashboard.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\b36e2773f4bedd0a49d50728200cf924\DEM.Graphics.I0706.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\780904238054bbc224646f4ad9f5bdf5\DEM.Graphics.I0709.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\7c47ddef4497dc94cb5e507afdb568ac\DEM.Graphics.I0712.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\740f18842e6f5e8a0d85e91bae5208a9\DEM.Graphics.I0804.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\cf9e156e37d79efe9d35adb797a3c2ec\DEM.Graphics.I0805.ni.dll
2023-02-16 11:37 - 2023-02-16 11:37 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\9c77770e27b8cac23cc38d040d9b70b4\DEM.Graphics.I0812.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\15d4922003303f2bc5a0a6e0244a4e55\DEM.Graphics.I0906.ni.dll
2023-02-16 11:35 - 2023-02-16 11:35 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\b7c94a2a02494ed32ec5466e6bff1f5c\DEM.Graphics.I0912.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\983299df3727ce44bdf8cbb794dcafb8\DEM.Graphics.I1010.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\f0f57298b28740fe45b487eaa291700a\Localization.Foundation.Private.ni.dll
2023-05-25 13:01 - 2023-05-25 13:01 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\6c0bb03a96388e19c6139179184c4699\ResourceManagement.Foundation.Implementation.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\dfa8ac73be3b5fb88c0dfab4f2845e4c\ResourceManagement.Foundation.Private.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\8d29fdfd62f1737f91fad5c055cf55ff\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2023-05-25 11:38 - 2023-05-25 11:38 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\ac61f84e4afbdeb6d61f68b6ae1bc7be\CLI.Caste.Graphics.Shared.ni.dll
2023-02-16 11:36 - 2023-02-16 11:36 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\795cfb378f189b45cb7d1be6a8577cf5\CLI.Caste.Graphics.Runtime.ni.dll
2023-02-16 11:34 - 2023-02-16 11:34 - 000335360 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\ab61644e542a80aadb0def3e7be2e16c\Microsoft.WindowsAPICodePack.ni.dll
2023-05-25 11:39 - 2023-05-25 11:39 - 002546688 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\6e18b2e643119bd2d6f7f8540e3c364e\Microsoft.WindowsAPICodePack.Shell.ni.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\Control Panel\Desktop\\Wallpaper -> c:\users\igorv\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\windows 11 wallpaper 1.jpg
DNS Servers: 192.168.31.248 - 1.1.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "StartCCC"
HKLM\...\StartupApproved\Run32: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "ccleaner_update_helper"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "GoogleDriveFS"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2415662125-1334251306-1017844622-1001\...\StartupApproved\Run: => "Steam"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{E2E37EFC-C0D6-45BF-8798-4FE7A7E5C461}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C4B0D9E5-2B6D-49F3-94C9-5C9291C4517C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{49A65B66-3CAB-455A-9D77-CCE4F27C2BA7}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A5F809E2-5668-4BFB-BD8F-FFE48AF64825}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.80.194.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9EA0E6CC-8B79-4CA8-BE94-0873FED99104}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A8CC7E57-0438-4208-B9C5-5E6159C13898}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AF26F163-09D8-4743-A91C-C6C1BCD939F5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A0AA3EB9-8AF0-44F0-B726-2C0CA0AF04B1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{CD97DFAA-6D04-401D-936A-DF504C28FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{583C8364-38E5-4D33-B290-EB38C06A4A83}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{ABF3A4BA-9222-4C9F-B3E3-5487B1414EB3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Doom 3\Doom3.exe (id Software) [File not signed]
FirewallRules: [{4E1DC548-21D7-480B-BE26-0AEFAA532D73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Doom 3\Doom3.exe (id Software) [File not signed]
FirewallRules: [{912CF928-DED3-4B9A-B4A3-DA31904998D2}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.43\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Description: Qualcomm Atheros AR8152 PCI-E Fast Ethernet Controller (NDIS 6.30)
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Qualcomm Atheros
Service: L1C
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.
Name: PCI Simple Communications Controller
Description: PCI Simple Communications Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (06/11/2023 07:55:08 PM) (Source: ESENT) (EventID: 489) (User: )
Description: taskhostw (4564,G,0) An attempt to open the file "C:\Users\igorv\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (06/11/2023 07:54:42 PM) (Source: Windows Search Service) (EventID: 1019) (User: )
Description: Službe Windows Search sa nepodarilo spracovať zoznam zahrnutých a vylúčených umiestnení, pretože sa vyskytla chyba <30, 0x80040d07, "iehistory://{S-1-5-21-2415662125-1334251306-1017844622-1001}/">.
Error: (06/11/2023 07:54:22 PM) (Source: ESENT) (EventID: 489) (User: )
Description: taskhostw (4564,G,0) An attempt to open the file "C:\Users\igorv\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat" for read only access failed with system error 32 (0x00000020): "The process cannot access the file because it is being used by another process. ". The open file operation will fail with error -1032 (0xfffffbf8).
Error: (06/09/2023 08:34:37 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Microsoft.Media.Player.exe version 11.2304.2.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 1d04
Start Time: 01d99aeac175a2f0
Termination Time: 4294967295
Application Path: C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
Report Id: 8fcf5bc2-a133-4d7d-8bef-14cf6872120a
Faulting package full name: Microsoft.ZuneMusic_11.2304.2.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: Microsoft.ZuneMusic
Hang type: Quiesce
Error: (06/09/2023 11:49:45 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program FRST64 (1).exe version 29.5.2023.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 2410
Start Time: 01d99ab74e813d15
Termination Time: 4294967295
Application Path: C:\Users\igorv\Downloads\FRST64 (1).exe
Report Id: ef678f92-051e-4475-9327-c880f00e11f9
Faulting package full name:
Faulting package-relative application ID:
Hang type: Top level window is idle
Error: (06/09/2023 11:35:23 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť opätovné vystrihnutie v Data (D:), pretože: Hardvér, ktorý podporuje tento zväzok, nepodporuje požadovanú operáciu. (0x8900002A)
Error: (06/09/2023 09:15:14 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3031 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 1c8c
Start Time: 01d99aa1c39fb556
Termination Time: 4294967295
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
Report Id: a3596e2a-88f4-4002-adcf-0c72961cf400
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
Faulting package-relative application ID: CortanaUI
Hang type: Activation
Error: (06/08/2023 09:10:53 AM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-PB3B57S)
Description: Unable to open the Server service performance object. The first four bytes (DWORD) of the Data section contains the status code.
System errors:
=============
Error: (06/11/2023 09:00:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Update Health Service zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (06/11/2023 09:00:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Microsoft Update Health Service bol dosiahnutý časový limit (30000 ms).
Error: (06/11/2023 04:36:09 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba DSDWirelessLEDCtlService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 04:36:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba dynabook Function Key control service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 04:35:59 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba dynabookSettingService sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.
Error: (06/11/2023 03:37:07 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Microsoft Update Health Service zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (06/11/2023 03:37:07 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Microsoft Update Health Service bol dosiahnutý časový limit (30000 ms).
Error: (06/11/2023 03:35:33 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Správca stiahnutých máp sa pri spustení zablokovala.
Windows Defender:
================
Date: 2023-06-11 11:42:13
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-09 10:39:37
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-08 10:54:07
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-07 13:50:28
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2023-06-05 10:07:29
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:
Date: 2023-06-05 16:04:13
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.391.491.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.23050.3
Error code: 0x80240009
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
Date: 2023-05-30 19:36:44
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.389.2763.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.20300.3
Error code: 0x80240438
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
CodeIntegrity:
===============
Date: 2023-06-11 20:26:45
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\75.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.
Date: 2023-05-23 18:00:35
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2023-05-10 18:00:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\ImmersiveControlPanel\SystemSettings.exe) attempted to load \Device\HarddiskVolume2\Program Files\Google\Drive File Stream\74.0.3.0\crashpad_handler.exe that did not meet the Microsoft signing level requirements.
Date: 2023-05-02 19:34:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: INSYDE 1.40 05/17/2010
Motherboard: TOSHIBA Portable PC
Processor: Intel(R) Core(TM) i3 CPU M 330 @ 2.13GHz
Percentage of memory in use: 59%
Total physical RAM: 3958.85 MB
Available physical RAM: 1615.15 MB
Total Virtual: 5366.85 MB
Available Virtual: 2800 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:296.96 GB) (Free:256.53 GB) (Model: TOSHIBA MK6465GSX) NTFS
Drive d: (Data) (Fixed) (Total:297.92 GB) (Free:296.61 GB) (Model: TOSHIBA MK6465GSX) NTFS
\\?\Volume{18c6abd2-0000-0000-0000-100000000000}\ (SYSTEM) (Fixed) (Total:0.39 GB) (Free:0.18 GB) NTFS
\\?\Volume{18c6abd2-0000-0000-0000-a0564a000000}\ () (Fixed) (Total:0.89 GB) (Free:0.3 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 18C6ABD2)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=915 MB) - (Type=27)
Partition 4: (Not Active) - (Size=297.9 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================
Re: problém s diskom
fixlist - citat:
Tvorba fixlistu pro FRST
•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript >>
•Ulozte vytvoreny TXT jako fixlist.txt
•Presunte vytvoreny fixlist vedle FRST
Spustte znovu FRST.exe
•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt
Restart PC a dejte mi sem fixlog.txt
Tvorba fixlistu pro FRST
•Spustte poznamkovy blok (Start-spustit-notepad)
•Zkopirujte skript >>
Kód: Vybrat vše
Start
CloseProcesses:
Task: {26A753D1-02F0-4A1C-B5B1-C33739702073} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
ContextMenuHandlers1: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers4: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
FirewallRules: [{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{CD97DFAA-6D04-401D-936A-DF504C28FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{583C8364-38E5-4D33-B290-EB38C06A4A83}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
EmptyTemp:
Reboot:
End
•Presunte vytvoreny fixlist vedle FRST
Spustte znovu FRST.exe
•Kliknete na Fix
•Probehne oprava a vytvori log Fixlog.txt
Restart PC a dejte mi sem fixlog.txt
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: problém s diskom
Fix result of Farbar Recovery Scan Tool (x64) Version: 12-06-2023
Ran by igorv (12-06-2023 13:44:28) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
Task: {26A753D1-02F0-4A1C-B5B1-C33739702073} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
ContextMenuHandlers1: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers4: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
FirewallRules: [{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{CD97DFAA-6D04-401D-936A-DF504C28FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{583C8364-38E5-4D33-B290-EB38C06A4A83}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26A753D1-02F0-4A1C-B5B1-C33739702073}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26A753D1-02F0-4A1C-B5B1-C33739702073}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CD97DFAA-6D04-401D-936A-DF504C28FF73}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{583C8364-38E5-4D33-B290-EB38C06A4A83}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 9470034 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 99279996 B
Windows/system/drivers => 1912367 B
Edge => 0 B
Chrome => 176128 B
Firefox => 18517991 B
Opera => 1218336 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
igorv => 2946833 B
RecycleBin => 0 B
EmptyTemp: => 128.6 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 13:45:05 ====
Ran by igorv (12-06-2023 13:44:28) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
Task: {26A753D1-02F0-4A1C-B5B1-C33739702073} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
Task: {54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2023-06-09] (Google LLC -> Google LLC)
ContextMenuHandlers1: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
ContextMenuHandlers4: [DriveFS 28 or later] -> [CC]{EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => -> No File
FirewallRules: [{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{CD97DFAA-6D04-401D-936A-DF504C28FF73}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\KM_TPR.exe () [File not signed]
FirewallRules: [{583C8364-38E5-4D33-B290-EB38C06A4A83}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
FirewallRules: [{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Knights and Merchants Historical Version\hd\Knights_and_Merchants_steam.exe () [File not signed]
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{26A753D1-02F0-4A1C-B5B1-C33739702073}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{26A753D1-02F0-4A1C-B5B1-C33739702073}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{54AD9515-0E0F-4FCC-BBE0-629E1BE8F0D3}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\DriveFS 28 or later => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4BA7DA0F-72D5-4DAF-9B19-DE2BC6B39702}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CD97DFAA-6D04-401D-936A-DF504C28FF73}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{583C8364-38E5-4D33-B290-EB38C06A4A83}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C6CE158E-8CCA-4033-B2B8-DE62F34C21AA}" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 9470034 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 99279996 B
Windows/system/drivers => 1912367 B
Edge => 0 B
Chrome => 176128 B
Firefox => 18517991 B
Opera => 1218336 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
igorv => 2946833 B
RecycleBin => 0 B
EmptyTemp: => 128.6 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 13:45:05 ====
Re: problém s diskom
vie mi niekto pomôcť prosím? problém nie je stále vyriešený a zhoršilo sa to aj
Re: problém s diskom
Toto nie je virovy problem
Moj osobny pocit, je ze najvhodnejsie by bolo vymenit HDD za SSD
Moj osobny pocit, je ze najvhodnejsie by bolo vymenit HDD za SSD
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/