Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

ntb sa nevypne ani nereštartuje

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
marsell2607
Návštěvník
Návštěvník
Příspěvky: 27
Registrován: 21 led 2014 01:35

ntb sa nevypne ani nereštartuje

#1 Příspěvek od marsell2607 »

ahojte,
prosím o pomoc, pri vypnutí ntb zhasne obrazovka ale nevypne sa. Pri reštartovaní zase svieti obrazovka ,,Reštartovanie'' ale nič sa nedeje ani po 10min., takže vždycky ntb vypínam na tvrdo.

Ďakujem za pomoc.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19.04.2024 01
Ran by Vladko (administrator) on DESKTOP-1M3JA1H (ASUSTeK Computer Inc. K54LY) (04-05-2024 22:23:56)
Running from C:\Users\Vladko\Desktop\FRST64.exe
Loaded Profiles: Vladko
Platform: Microsoft Windows 10 Pro Version 22H2 19045.3803 (X64) Language: Čeština (Česká republika) -> Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe ->) (Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <8>
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe
(services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Vladko\AppData\Local\Microsoft\OneDrive\24.025.0204.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2310.8.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-1847824463-3033707220-490265522-1001\...\Run: [MicrosoftEdgeAutoLaunch_21A7AA721197B02EEE373BDB0854B704] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4060608 2024-03-07] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1847824463-3033707220-490265522-1007\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\mmico\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [42164600 2023-04-11] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1847824463-3033707220-490265522-1007\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\mmico\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\124.0.6367.119\Installer\chrmstp.exe [2024-05-04] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {958941BB-CD6B-4607-83A0-ADEA3D2FAB5B} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem126.0.6441.0{117B2F8C-F3A0-4215-B525-9DBFBC4EAC0A} => C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
Task: {6E1C227A-6E36-41CD-9167-E3D9E8630440} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [60880 2023-11-14] (HP Inc. -> HP Inc.)
Task: {DD32170E-27D8-45D4-8C63-96F55354F0BC} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [60880 2023-11-14] (HP Inc. -> HP Inc.)
Task: {62B50928-0B37-43C7-B09D-A622C8E36BB3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28491856 2024-03-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {3F7DD7CE-BD8B-4907-B986-15AF508DCE02} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28491856 2024-03-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {EC701080-733A-434B-9FFA-6F010C775ABF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [220824 2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {1F04AF0C-0B37-4BE0-9AAC-6412478F0F4A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [220824 2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {7EE91D8B-201C-4600-BDD3-08DC05AAA9B7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5365459B-A705-4777-A56B-12BE4B51BBFE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5D7D1F05-4DC3-47AA-BB8B-2022C3C1FFAE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7BDEBD3B-FB19-4222-9734-7BF94F1AB182} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpCmdRun.exe [1654168 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 217.119.121.226 217.119.121.225
Tcpip\..\Interfaces\{4ebb927d-3fec-47e3-9fbe-a1868209c216}: [DhcpNameServer] 217.119.121.226 217.119.121.225
Tcpip\..\Interfaces\{c0650127-51dd-453e-a6d9-be419f6abfd0}: [DhcpNameServer] 192.168.0.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default [2024-05-04]
Edge HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT
Edge DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=62744&thru=quicksearch
Edge DefaultSearchKeyword: Default -> seznam
Edge DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
Edge Extension: (Volanie cez Skype) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2021-07-07]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-06]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-05-04]
Edge Extension: (IE Tab) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2024-05-04]
Edge Extension: (Edge relevant text changes) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-03-06]
Edge Extension: (Seznam.cz) - C:\Users\Vladko\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2023-08-21]

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-03-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-03-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-07] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.18 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-07] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.19 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2023-10-07] (VideoLAN -> VideoLAN)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default [2024-05-04]
CHR Notifications: Default -> hxxps://captchafair.top; hxxps://sk.pinterest.com; hxxps://www.facebook.com; hxxps://www.heureka.sk; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT
CHR StartupUrls: Default -> "hxxps://www.google.sk/","hxxp://www.google.com/ ... &bmod=ASUT"
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=62744&thru=quicksearch
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Session Restore: Default -> is enabled.
CHR Extension: (Volanie cez Skype) - C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default\Extensions\blakpkgjpemejpbmfiglncklihnhjkij [2021-07-06]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-05-04]
CHR Extension: (IE Tab) - C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2024-05-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-07-06]
CHR Extension: (Seznam.cz) - C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2023-08-21]
CHR Profile: C:\Users\Vladko\AppData\Local\Google\Chrome\User Data\System Profile [2021-07-06]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14097992 2024-03-04] (Microsoft Corporation -> Microsoft Corporation)
S2 GoogleUpdaterInternalService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
S2 GoogleUpdaterService126.0.6441.0; C:\Program Files (x86)\Google\GoogleUpdater\126.0.6441.0\updater.exe [4789536 2024-04-26] (Google LLC -> Google LLC)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230360 2023-11-14] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MpDefenderCoreService.exe [1459968 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2022-05-13] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.)
R2 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2022-05-13] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\NisSrv.exe [3199648 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24030.9-0\MsMpEng.exe [133576 2024-05-04] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [21160 2012-09-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2021-07-06] (Microsoft Corporation) [File not signed]
S3 usbscan; C:\Windows\system32\DRIVERS\usbscan.sys [49664 2022-09-08] (Microsoft Corporation) [File not signed]
R0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20936 2024-05-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [601376 2024-05-04] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105760 2024-05-04] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-05-04 22:23 - 2024-05-04 22:25 - 000016004 _____ C:\Users\Vladko\Desktop\FRST.txt
2024-05-04 22:23 - 2024-05-04 22:24 - 000000000 ____D C:\FRST
2024-05-04 22:21 - 2024-05-04 22:22 - 002394112 _____ (Farbar) C:\Users\Vladko\Desktop\FRST64.exe
2024-05-04 21:28 - 2024-05-04 21:28 - 000000000 ____D C:\ProgramData\ATI
2024-05-04 21:20 - 2024-05-04 21:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2024-05-04 21:19 - 2024-05-04 21:19 - 000000000 ____D C:\Program Files (x86)\AMD
2024-05-04 21:12 - 2024-05-04 21:18 - 000000000 ____D C:\Windows\LastGood
2024-05-04 21:00 - 2024-05-04 21:00 - 000000000 ____D C:\Windows\system32\Tasks\GoogleSystem
2024-05-04 20:34 - 2024-05-04 20:34 - 000000000 ____D C:\ProgramData\AMD
2024-05-04 20:34 - 2024-05-04 20:34 - 000000000 ____D C:\Program Files (x86)\AMD AVT
2024-05-04 20:33 - 2024-05-04 20:33 - 000000000 ____D C:\Windows\LastGood.Tmp
2024-05-04 20:33 - 2024-05-04 20:33 - 000000000 ____D C:\Program Files (x86)\ATI Technologies
2024-05-04 20:30 - 2024-05-04 20:30 - 000000000 ____D C:\Program Files\ATI
2024-05-04 20:28 - 2014-09-30 02:45 - 286582040 _____ (AMD Inc.) C:\Users\Vladko\Desktop\amd-catalyst-14-9-win7-win8.1-64bit-dd-ccc-whql.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-05-04 22:19 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-05-04 22:18 - 2021-07-06 19:24 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2024-05-04 22:18 - 2019-12-07 16:43 - 000683504 _____ C:\Windows\system32\perfh005.dat
2024-05-04 22:18 - 2019-12-07 16:43 - 000137284 _____ C:\Windows\system32\perfc005.dat
2024-05-04 22:18 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2024-05-04 22:16 - 2021-07-06 19:14 - 000008192 ___SH C:\DumpStack.log.tmp
2024-05-04 21:25 - 2021-07-06 19:14 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-05-04 21:21 - 2021-07-06 19:20 - 000000000 ____D C:\Users\Vladko
2024-05-04 21:21 - 2019-12-07 11:03 - 001048576 _____ C:\Windows\system32\config\BBI
2024-05-04 21:16 - 2021-07-06 19:14 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-05-04 21:07 - 2021-12-26 16:42 - 000000000 ____D C:\Windows\SystemTemp
2024-05-04 21:07 - 2021-07-06 19:35 - 000002259 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-05-04 21:07 - 2021-07-06 19:35 - 000002218 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2024-05-04 21:02 - 2021-07-06 22:01 - 000000000 ____D C:\Program Files\AMD
2024-05-04 21:02 - 2021-07-06 19:32 - 000000000 ____D C:\Program Files (x86)\Google
2024-05-04 20:59 - 2021-07-06 22:01 - 000000000 ____D C:\AMD
2024-05-04 20:58 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2024-05-04 20:57 - 2021-07-06 19:14 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-05-04 20:32 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-05-04 20:14 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19.04.2024 01
Ran by Vladko (04-05-2024 22:27:34)
Running from C:\Users\Vladko\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.3803 (X64) (2021-07-06 17:18:31)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1847824463-3033707220-490265522-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1847824463-3033707220-490265522-503 - Limited - Disabled)
Guest (S-1-5-21-1847824463-3033707220-490265522-501 - Limited - Disabled)
mmico (S-1-5-21-1847824463-3033707220-490265522-1007 - Limited - Enabled) => C:\Users\mmico
Vladko (S-1-5-21-1847824463-3033707220-490265522-1001 - Administrator - Enabled) => C:\Users\Vladko
WDAGUtilityAccount (S-1-5-21-1847824463-3033707220-490265522-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Accelerated Video Transcoding (HKLM\...\{F7CD07B2-565B-D770-0388-9C16A8FA5B1D}) (Version: 13.30.100.40915 - Advanced Micro Devices, Inc.) Hidden
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Catalyst Control Center - Branding (HKLM-x32\...\{11087D24-567D-7D88-69C6-D7A08B5F4C47}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 124.0.6367.119 - Google LLC)
HappyFoto (HKLM\...\{D0D1F06D-B95F-4D95-B509-E145DBE97046}_is1) (Version: - Happy Foto SK)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 122.0.2365.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 122.0.2365.80 - Microsoft Corporation)
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.17328.20162 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1847824463-3033707220-490265522-1001\...\OneDriveSetup.exe) (Version: 24.025.0204.0003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1847824463-3033707220-490265522-1007\...\OneDriveSetup.exe) (Version: 21.220.1024.0005 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.17328.20142 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.17328.20142 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.17328.20108 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.10730.20102 - Microsoft Corporation) Hidden
Samsung USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.7.56.0 - Samsung Electronics Co., Ltd.)
Smart Switch (HKLM-x32\...\{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.3.22112.1 - Samsung Electronics Co., Ltd.) Hidden
Smart Switch (HKLM-x32\...\InstallShield_{74FA5314-85C8-4E2A-907D-D9ECCCB770A7}) (Version: 4.3.22112.1 - Samsung Electronics Co., Ltd.)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.19 - VideoLAN)
WinRAR 5.80 (64-bitová verzia) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)

Packages:
=========

Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-22] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_150.1.1140.0_x64__v10z8vjag6ke6 [2023-11-14] (HP Inc.)
PDF Reader - View, Edit, Share -> C:\Program Files\WindowsApps\0D9A1B2D.PDFReaderUWP_1.23.3.0_x64__jhretta7p24aw [2023-12-21] (Kdan Mobile Software Ltd.)
Roblox -> C:\Program Files\WindowsApps\ROBLOXCORPORATION.ROBLOX_2.605.660.0_x64__55nm5eh3cm0pr [2023-12-16] (Roblox Corporation)
Rozšírenie pre video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.61931.0_x64__8wekyb3d8bbwe [2023-08-21] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-12-04] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Vladko\Desktop\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\Vladko\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikácie Chrome\YouTube.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2024-03-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-03-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2024-03-12] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1847824463-3033707220-490265522-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Vladko\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img1.jpg
HKU\S-1-5-21-1847824463-3033707220-490265522-1007\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 217.119.121.226 - 217.119.121.225
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{3B112DD0-E209-403E-97DE-EA5F346F2E2D}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{510752C0-262E-4E2C-9F22-FEF0794DB396}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{C232AB35-D087-4787-84D1-2A680837FCAF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C66E6F0D-A4DA-454C-B3A4-B85C48EECC12}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7B046FBD-A0D2-444A-9316-E374E03DCD1E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AEC6A0D2-380D-4248-84B2-B2D75200A4C4}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FFEA1F60-7146-4B21-BFED-F30EB99433ED}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{55740779-726A-4C9A-B83B-C2FC35A26294}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{BA64478F-53B6-4489-82BA-D66BB39E730D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2D6B7A24-6050-4B60-A806-B92FADE10DE5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{351C88EE-A36D-4529-BB4F-4D300758CB07}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7E5E988E-2361-4DD0-980C-73C67E308237}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\122.0.2365.80\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{16716746-2105-4959-8600-03A1EECB28B9}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:111.18 GB) (Free:37.48 GB) (34%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (05/04/2024 10:18:10 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCC.exe, verzia: 4.5.0.0, časová značka: 0x54dca1de
Názov chybujúceho modulu: amdmantle64.dll, verzia: 9.1.10.34, časová značka: 0x5417637b
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000040cfa6
Identifikácia chybujúceho procesu: 0x2448
Čas spustenia chybujúcej aplikácie: 0x01da9e6028d03b01
Cesta chybujúcej aplikácie: C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\amdmantle64.dll
Identifikácia hlásenia: 4436d71a-729e-481f-aef9-acf58c0edf61
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (05/04/2024 09:28:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCC.exe, verzia: 4.5.0.0, časová značka: 0x54dca1de
Názov chybujúceho modulu: amdmantle64.dll, verzia: 9.1.10.34, časová značka: 0x5417637b
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000040cfa6
Identifikácia chybujúceho procesu: 0xa44
Čas spustenia chybujúcej aplikácie: 0x01da9e593b1031e8
Cesta chybujúcej aplikácie: C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\amdmantle64.dll
Identifikácia hlásenia: 834ed75e-5e48-4cb3-ae67-b75394fdd264
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (05/04/2024 09:17:44 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program drvinst.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 15c0

Start Time: 01da9e57103deef9

Termination Time: 9

Application Path: C:\Windows\System32\drvinst.exe

Report Id: 1b1e5ff1-4087-4ac7-ba4f-e8e1ecf19d01

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown

Error: (05/04/2024 09:12:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program drvinst.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: 180

Start Time: 01da9e56614d19cf

Termination Time: 4

Application Path: C:\Windows\System32\drvinst.exe

Report Id: 240dfd48-1294-41e1-95cc-9d2a0a178124

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown

Error: (05/04/2024 09:07:59 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program drvinst.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.

Process ID: b8c

Start Time: 01da9e55d0b0ba4b

Termination Time: 14

Application Path: C:\Windows\System32\drvinst.exe

Report Id: 4dae146d-0244-4892-b4e9-40a2713c1d05

Faulting package full name:

Faulting package-relative application ID:

Hang type: Unknown

Error: (05/04/2024 09:00:54 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCC.exe, verzia: 4.5.0.0, časová značka: 0x53ad0dcc
Názov chybujúceho modulu: amdmantle64.dll, verzia: 9.1.10.34, časová značka: 0x5417637b
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000040cfa6
Identifikácia chybujúceho procesu: 0x1860
Čas spustenia chybujúcej aplikácie: 0x01da9e5543cedc0b
Cesta chybujúcej aplikácie: C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\amdmantle64.dll
Identifikácia hlásenia: c49b1ae8-73ef-4e7d-a2cb-03af1e269818
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (05/04/2024 08:41:40 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCC.exe, verzia: 4.5.0.0, časová značka: 0x53ad0dcc
Názov chybujúceho modulu: amdmantle64.dll, verzia: 9.1.10.34, časová značka: 0x5417637b
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000040cfa6
Identifikácia chybujúceho procesu: 0x748
Čas spustenia chybujúcej aplikácie: 0x01da9e52aa3e3eb9
Cesta chybujúcej aplikácie: C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\amdmantle64.dll
Identifikácia hlásenia: 4aba154d-2306-4622-9f51-bb3ddb571cd7
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:

Error: (05/04/2024 08:38:44 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCC.exe, verzia: 4.5.0.0, časová značka: 0x53ad0dcc
Názov chybujúceho modulu: amdmantle64.dll, verzia: 9.1.10.34, časová značka: 0x5417637b
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000040cfa6
Identifikácia chybujúceho procesu: 0x1c94
Čas spustenia chybujúcej aplikácie: 0x01da9e523e744daf
Cesta chybujúcej aplikácie: C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
Cesta chybujúceho modulu: C:\Windows\SYSTEM32\amdmantle64.dll
Identifikácia hlásenia: b48ef2b7-c8c3-4cdc-82d9-26274e1e7942
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:


System errors:
=============
Error: (05/04/2024 10:22:25 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: NT AUTHORITY)
Description: Encrypted volume check: Volume information on F: cannot be read.

Error: (05/04/2024 10:22:05 PM) (Source: Service Control Manager) (EventID: 7046) (User: )
Description: Nasledujúca služba sa opakovane zastavila pri reakcii na požiadavky riadenia služieb: Windows Search

Informujte sa u dodávateľa služby alebo správcu systému, kde možno túto službu vypnúť, kým sa nezistí problém.

Pred vypnutím služby možno budete musieť reštartovať počítač v bezpečnom režime.

Error: (05/04/2024 10:21:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby WSearch bol dosiahnutý časový limit (30000 ms).

Error: (05/04/2024 10:21:00 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby WSearch bol dosiahnutý časový limit (30000 ms).

Error: (05/04/2024 10:20:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby WSearch bol dosiahnutý časový limit (30000 ms).

Error: (05/04/2024 10:20:00 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby WSearch bol dosiahnutý časový limit (30000 ms).

Error: (05/04/2024 10:19:30 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Počas čakania na odpoveď transakcie od služby WSearch bol dosiahnutý časový limit (30000 ms).

Error: (05/04/2024 10:19:25 PM) (Source: Microsoft-Windows-BitLocker-Driver) (EventID: 24620) (User: )
Description: Encrypted volume check: Volume information on F: cannot be read.


Windows Defender:
================
Date: 2024-05-04 21:16:22
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání

Date: 2024-05-04 20:25:30
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání

Date: 2024-01-01 13:24:36
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání

Date: 2023-12-29 10:52:23
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání

Date: 2023-12-09 11:00:20
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Event[0]:

Date: 2023-11-14 17:46:02
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.399.1237.0
Update Source: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Security intelligence Type: Antivirový program
Update Type: Úplné
Current Engine Version:
Previous Engine Version: 1.1.23090.2007
Error code: 0x80070020
Error description: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2023-11-14 17:46:02
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.399.1237.0
Update Source: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Security intelligence Type: Antispywarový program
Update Type: Úplné
Current Engine Version:
Previous Engine Version: 1.1.23090.2007
Error code: 0x80070020
Error description: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2023-11-14 17:46:02
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.399.1237.0
Update Source: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Security intelligence Type: Antivirový program
Update Type: Úplné
Current Engine Version:
Previous Engine Version: 1.1.23090.2007
Error code: 0x80070020
Error description: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2023-11-14 17:41:31
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.399.1237.0
Update Source: Server Microsoft Update
Security intelligence Type: Antivirový program
Update Type: Úplné
Current Engine Version:
Previous Engine Version: 1.1.23090.2007
Error code: 0x80240009
Error description: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2023-10-19 16:40:38
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.399.943.0
Update Source: Server Microsoft Update
Security intelligence Type: Antivirový program
Update Type: Úplné
Current Engine Version:
Previous Engine Version: 1.1.23090.2007
Error code: 0x80070102
Error description: Vypršel časový limit operace čekání.

CodeIntegrity:
===============
Date: 2023-11-22 17:21:36
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.23100.2009-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-10-24 19:40:26
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume2\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. K54LY.207 09/26/2011
Motherboard: ASUSTeK Computer Inc. K54LY
Processor: Intel(R) Celeron(R) CPU B800 @ 1.50GHz
Percentage of memory in use: 75%
Total physical RAM: 4072.13 MB
Available physical RAM: 1009.97 MB
Total Virtual: 4776.13 MB
Available Virtual: 1278.15 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.18 GB) (Free:37.48 GB) (Model: GIGABYTE GP-GSTFS31120GNTD) NTFS
Drive d: (Autocom_2021.11) (CDROM) (Total:2.57 GB) (Free:0 GB) CDFS

\\?\Volume{7da181d7-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.05 GB) (Free:0.02 GB) NTFS
\\?\Volume{7da181d7-0000-0000-0000-90ce1b000000}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: 7DA181D7)
Partition 1: (Active) - (Size=50 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=574 MB) - (Type=27)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118310
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: ntb sa nevypne ani nereštartuje

#2 Příspěvek od Rudy »

Zdravím!
Nejspíš to bude problém systému samotného a nikoliv virový. Nejdřív spusťte tuto utlitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět