Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Supper slow computer windows 10 virus [Solved]

virus windows 10 slow

  • This topic is locked This topic is locked

#31
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

Another example I have 6 Chrome tabs open running fine, I open task manager and disc jumps to 100% showing Service Host: SysMain as using all the disk and I cant move the cursor etc... after 30 seconds it stops to drop and goes back to 2% disc and no usage from Service Host: SysMain.

 

Same thing if I open for example excel, when I open it task manger shows disc jumps to 100% for 15 seconds or so as it loads with Service Host: SysMain using all the disc then it slows goes down again.


Edited by daniel.karakas, 17 December 2023 - 09:02 AM.

  • 0

Advertisements


#32
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Hi.
 
You have 12 tabs open in Chrome and expect it to run without any slowness? The computer is not so new, and as you see, when you are using it, it uses almost the whole available RAM:
 
BIOS: American Megatrends Inc. R01-A1 11/10/2015
Motherboard: Acer Aspire TC-710
Processor: Intel® Core™ i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 95%
Total physical RAM: 8097.83 MB
Available physical RAM: 381.21 MB
 
 
I would like you to try 2 things:
 
1. Disable SysMain

  • Type services in the Search box to open it. 
  • Find SysMain and right-click it to choose Properties.
  • Change the Startup Type to Disabled and click the Apply button. 
  • Restart and let me know if you still have slowness issues.

 

2. Check what happens in Safe mode

  • Press the Windows icon on the keyboard together with the letter I, to get into the Settings.
  • Choose Update and Security.
  • From the menu at the left, choose Recovery.
  • Under the title Advanced startup at the right, choose Restart now.
  • From the window that will appear choose Troubleshoot and then Advanced options.
  • Choose Startup Settings and then Restart.
  • Press number 5, for choosing Safe mode with networking.
  • You will know that you are in Safe mode, if the background is black and Safe mode is written at the four corners of the screen.
  • Let me know if you are having the same slowness issues in Safe mode. 

  • 0

#33
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Hello.

 

Have you tried the above recommendations? 


  • 0

#34
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

I took a few days to answer because I have noticed that the computer will work fine for a day or two and then go back to how it was.

 

Disabling sysmain seemed to work, I was able to work unimpeded for a day or two. Now it is back to how it was. It works fine with maybe two tabs opened in chrome and 1 word document, anymore and it starts to load very slowly, around 20 seconds to get change from one open tab to the next. When this happens I get black screen for the tab and then it loads after around 20 seconds. Also when multiple tabs are opened in chrome I get the memory usage details on each tab, which is something I have never seen before.

 

When I go back to just two or three tabs opened then it runs normally again. Even with this 6th generation intel and 8GB ram, it used to be able to handle having more than just 2/3 tabs opened on Chrome.

 

For example, right now with two tabs opened and 1 word document it takes about 30 seconds to open the windows tab and get to settings; or, I just tried to save my word document 18 seconds to be able to save as.

 

It is running way slower than it used to; I have used this computer for 8 hours a day for the last seven years so I am aware of when it is running slower than usual, and by slower I mean like 20X slower at least. Again it seems to come and go, and twice,  over the last 3 days freezes and I have to manually shut down.

 

I am completely unable to open it in safemode, I have tried to do so several times and get through to troubleshoot advance options, startup settings, restart. When I do this it goes black screen and then one beep and nothing. I then have to manually turn off from tower to restart.

This was why I was unable to do a reboot from my usb.

 

Thanks!


  • 0

#35
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Question: is it slow only when using Chrome? Is the same issue present in other browsers too? 


  • 0

#36
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts
Due to lack of feedback, this topic has been closed.
 
If you need this topic reopened, please contact a staff member, or send me a personal message (hoover with the mouse on my profile name and choose Send message).

  • 0

#37
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Topic reopened after user's request. 

 

daniel.karakas, please have in mind the following:

 

 

 

5. You have to reply to my posts within 3 daysIf you need some additional time, just let me know. Otherwise, I will leave the topic due to lack of feedback. If you are able, I would request you to check this thread at least once per day so that we can resolve your issues effectively and efficiently.

 

 

Since many days passed since your last reply, I'll need (again) fresh FRST logs.

 

Also, I would like a reply to my question:

 

 

Question: is it slow only when using Chrome? Is the same issue present in other browsers too? 

 

Since you can't sign in with Safe mode, I suspect other issues, but let's see the above first. 


  • 0

#38
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

Question: is it slow only when using Chrome? Is the same issue present in other browsers too? 

 

Hi, thanks for reopening. No, it is also slow with MSEdge and also has been slow with just a single word document open and a single excel document open.

 

Here are fresh FRST logs:

 

 

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-12-2023
Ran by karakas (administrator) on DESKTOP-8ID5J9T (Acer Aspire TC-710) (29-12-2023 19:28:51)
Running from C:\Users\karakas\Desktop\FRST64.exe
Loaded Profiles: karakas
Platform: Microsoft Windows 10 Home Version 22H2 19045.3803 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
 
==================== Processes (Whitelisted) =================
 
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
 
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\karakas\AppData\Local\Microsoft\OneDrive\23.246.1127.0002\Microsoft.SharePoint.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Foxit Software Incorporated -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(svchost.exe ->) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(wbem\WmiPrvSE.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe
 
==================== Registry (Whitelisted) ===================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2017-03-22] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\Run: [MicrosoftEdgeAutoLaunch_8B6B36A51FDD9942B0BDEE33C0F85C3E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [3854280 2023-12-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\karakas\AppData\Local\Microsoft\Teams\Update.exe [2588520 2023-09-05] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\Policies\Explorer: [DisallowCpl] 1
HKLM\...\Windows x64\Print Processors\BJ Print Processor3: C:\Windows\System32\spool\prtprocs\x64\CNBPP3.DLL [83968 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\BJ Language Monitor3_2: C:\WINDOWS\system32\CNBLM3_2.DLL [211456 2009-07-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON Stylus Photo RX580 Series 64MonitorBA: C:\WINDOWS\system32\E_ILMBPA.DLL [108032 2007-12-07] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\120.0.6099.130\Installer\chrmstp.exe [2023-12-26] (Google LLC -> Google LLC)
Startup: C:\Users\karakas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk [2023-05-15]
ShortcutTarget: OneNote 2007 Screen Clipper and Launcher.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy-Firefox-x32: Restriction <==== ATTENTION
 
==================== Scheduled Tasks (Whitelisted) =================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
Task: {39D48088-4082-41BA-B7C5-30B6D3BC5A29} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {E7BD4E4F-A6E1-4CCE-92E9-01108211C9A9} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65824 2017-09-26] (Acer Incorporated -> Acer Incorporated)
Task: {FA2B11B5-3F7A-4888-84E6-60623353EB5B} - System32\Tasks\FUBTrackingByPLD => C:\OEM\Preload\FubTracking\FubTracking.exe [30976 2015-05-13] (Acer Incorporated -> )
Task: {7DD2F012-EB25-407E-B920-B80907B89D5B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-09] (Google LLC -> Google LLC)
Task: {91B66BFE-20BF-4292-8902-4AC1791B90D7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-09] (Google LLC -> Google LLC)
Task: {E263E803-D6BF-4EAC-BA46-EFAF47E734BA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1E8ED8ED-2A57-463C-BEA6-5EC419B72116} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AB02B0AC-B1A3-4D05-9771-174FE81A803E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {185BEA04-0EB9-443B-A31B-6698E1F1EBF8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {0414E387-E2BF-47C2-A4F0-4802B32C0539} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [696304 2021-05-24] (Mozilla Corporation -> Mozilla Foundation)
Task: {CF89C499-6DD1-4ABC-A8D4-C5A07BB4D41E} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472928 2015-07-10] (Acer Incorporated -> Acer Incorporated)
 
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
 
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
 
==================== Internet (Whitelisted) ====================
 
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
 
Tcpip\Parameters: [DhcpNameServer] 64.59.144.100 64.59.150.143
Tcpip\..\Interfaces\{26ee6f90-3278-42b1-9877-54b81bdb78da}: [DhcpNameServer] 64.59.144.100 64.59.150.143
Tcpip\..\Interfaces\{26ee6f90-3278-42b1-9877-54b81bdb78da}: [DhcpDomain] vc.shawcable.net
Tcpip\..\Interfaces\{486657a2-4b8f-46dc-ba15-ddc9d9f2b981}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{486657a2-4b8f-46dc-ba15-ddc9d9f2b981}: [DhcpDomain] hitronhub.home
Tcpip\..\Interfaces\{486657a2-4b8f-46dc-ba15-ddc9d9f2b981}\35841475D2439364633403D25374: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{486657a2-4b8f-46dc-ba15-ddc9d9f2b981}\35841475D2439364633403D25374: [DhcpDomain] hitronhub.home
Tcpip\..\Interfaces\{a26cefaa-f6ff-448f-9018-4ef6bcfb773d}: [DhcpNameServer] 45.44.103.26 45.44.103.27
 
Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\karakas\AppData\Local\Microsoft\Edge\User Data\Default [2023-12-29]
Edge DownloadDir: Default -> C:\Users\karakas\Downloads
Edge Extension: (Google Docs Offline) - C:\Users\karakas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-17]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\karakas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-12-22]
Edge Extension: (Edge relevant text changes) - C:\Users\karakas\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-30]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
 
FireFox:
========
FF DefaultProfile: 1wh4cpt7.default
FF ProfilePath: C:\Users\karakas\AppData\Roaming\Mozilla\Firefox\Profiles\1wh4cpt7.default [2023-12-14]
FF Homepage: Mozilla\Firefox\Profiles\1wh4cpt7.default -> www.google.com
FF Extension: (Dashlane) - C:\Users\karakas\AppData\Roaming\Mozilla\Firefox\Profiles\1wh4cpt7.default\Extensions\[email protected] [2021-05-24] [UpdateUrl:hxxps://ws1.dashlane.com/5/binaries/query?logins=&platform=firefox&target=ff_web_extension&format=json&version=]
FF Extension: (English (US) Language Pack) - C:\Users\karakas\AppData\Roaming\Mozilla\Firefox\Profiles\1wh4cpt7.default\Extensions\[email protected] [2021-05-24]
FF Extension: (Acer Locale Fix) - C:\Users\karakas\AppData\Roaming\Mozilla\Firefox\Profiles\1wh4cpt7.default\features\{9917c7b2-023d-4dcd-b634-a2a6730e6935}\[email protected] [2018-05-08] [Legacy]
FF Extension: (English (US) Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\[email protected] [2021-05-24] [Legacy] [not signed]
FF HKLM\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Extension: (Foxit PDF Creator) - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi [2016-11-14] [Legacy]
FF HKLM-x32\...\Firefox\Extensions: [[email protected]] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\FirefoxAddin\FFExtnHTML2PDF.xpi
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-11-04] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PHANTOMPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-09] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PHANTOMPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-09] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PHANTOMPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-09] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PHANTOMPDF\plugins\npFoxitPhantomPDFPlugin.dll [2016-11-09] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-11-29] (VideoLAN -> VideoLAN)
 
Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\karakas\AppData\Local\Google\Chrome\User Data\Default [2023-12-29]
CHR DownloadDir: C:\Users\karakas\Downloads
CHR Notifications: Default -> hxxps://teams.microsoft.com
CHR Extension: (Google Docs Offline) - C:\Users\karakas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-19]
CHR Extension: (Chrome Web Store Payments) - C:\Users\karakas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Profile: C:\Users\karakas\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-12-14]
CHR Profile: C:\Users\karakas\AppData\Local\Google\Chrome\User Data\System Profile [2023-12-11]
CHR HKLM\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2016-11-10]
CHR HKU\S-1-5-21-1880840183-2522925994-863313883-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [cifnddnffldieaamihfkhkdgnbhfmaci] - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\ChromeAddin\ChromeAddin.crx [2016-11-10]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fjoaledfpmneenckfbpdfhkmimnjocfa]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
 
Opera: 
=======
OPR Profile: C:\Users\karakas\AppData\Roaming\Opera Software\Opera Stable [2023-12-08]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
 
==================== Services (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S4 AMInstantService; C:\Program Files (x86)\GameHouse Games\aminstantservice.exe [2122432 2022-12-13] (GameHouse Europe B.V. -> GameHouse)
R2 FoxitPhantomService; C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\FoxitConnectedPDFService.exe [1659592 2016-11-15] (Foxit Software Incorporated -> Foxit Software Inc.)
S4 Intel® Security Assist; C:\Program Files (x86)\Intel\Intel® Security Assist\isa.exe [335872 2015-07-06] (Intel Corporation) [File not signed]
S4 isaHelperSvc; C:\Program Files (x86)\Intel\Intel® Security Assist\isaHelperService.exe [7680 2015-07-06] () [File not signed]
S4 IsAppService; C:\Program Files (x86)\Iskysoft\IAF\2.4.3.241\IsAppService.exe [495240 2018-07-26] (Shenzhen Yi Xing Investment Co., Ltd. -> Iskysoft)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9405400 2023-12-17] (Malwarebytes Inc. -> Malwarebytes)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-11-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
S2 secureboot; C:\ProgramData\WindowsPowerShell\Modules\SecureBoot\secureboot.exe [699259556 2023-11-16] () [File not signed] <==== ATTENTION
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation)
 
===================== Drivers (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222784 2023-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-04-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2023-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MpKsl3e19f172; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{BE6A12FA-1F80-4BA3-807C-CEF400C2451C}\MpKslDrv.sys [263560 2023-12-29] (Microsoft Windows -> Microsoft Corporation)
R2 NDivert; C:\Program Files\NordVPN\7.16.4.0\Drivers\NDivert.sys [131472 2023-08-04] (nordvpn s.a. -> Nordvpn S.A.)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2022-02-22] (nordvpn s.a. -> TEFINCOM S.A.)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> )
S3 RimVSerPort; C:\WINDOWS\system32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Microsoft Windows Hardware Compatibility Publisher -> Research in Motion Ltd)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2018-07-24] (TEFINCOM S.A. -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-06] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [29592 2022-03-10] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2023-02-22] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 MpKsl8082e1a4; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B1A2B5B-0166-4435-9AB7-02E9E75140D2}\MpKslDrv.sys [X]
 
==================== NetSvcs (Whitelisted) ===================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
 
==================== One month (created) (Whitelisted) =========
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2023-12-29 18:53 - 2023-12-29 18:55 - 001293632 _____ (ALCPU ) C:\Users\karakas\Downloads\Core-Temp-setup-v1.18.1.0.exe
2023-12-27 12:53 - 2023-12-27 12:53 - 000116309 _____ C:\Users\karakas\Desktop\Sequoia Company of Restaurants.pdf
2023-12-27 09:51 - 2023-12-27 13:55 - 000000000 ____D C:\Users\karakas\Desktop\Dec27
2023-12-27 09:29 - 2023-12-27 09:29 - 000011118 _____ C:\Users\karakas\Downloads\RPG0046467.xlsx
2023-12-20 07:50 - 2023-12-20 19:20 - 000000000 ____D C:\Users\karakas\Desktop\dec20
2023-12-20 07:21 - 2023-12-20 07:21 - 000011523 _____ C:\Users\karakas\Downloads\RPG0046371.xlsx
2023-12-17 05:58 - 2023-12-17 06:00 - 000011461 _____ C:\Users\karakas\Downloads\RPG0046275.xlsx
2023-12-16 20:06 - 2023-12-16 20:06 - 000000000 ____D C:\WINDOWS\InboxApps
2023-12-15 14:45 - 2023-12-15 14:45 - 000007412 _____ C:\Users\karakas\Desktop\ListChkdskResult.txt
2023-12-15 08:15 - 2023-12-15 08:15 - 000016707 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2023-12-15 00:35 - 2023-12-15 00:35 - 000000000 ___HD C:\$WinREAgent
2023-12-14 12:13 - 2023-12-14 12:13 - 000197679 _____ C:\Users\karakas\Desktop\ListChkdskResult.exe
2023-12-14 11:52 - 2023-12-14 12:00 - 000002002 _____ C:\Users\karakas\Desktop\Fixlog.txt
2023-12-13 09:58 - 2023-12-13 10:18 - 000044980 _____ C:\Users\karakas\Desktop\Addition.txt
2023-12-13 09:27 - 2023-12-29 19:32 - 000019944 _____ C:\Users\karakas\Desktop\FRST.txt
2023-12-11 12:10 - 2023-12-11 12:10 - 000000000 ____D C:\Users\karakas\AppData\Local\MediaHuman
2023-12-11 12:09 - 2023-12-11 12:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MediaHuman
2023-12-11 12:08 - 2023-12-11 12:08 - 000000000 ____D C:\Program Files\MediaHuman
2023-12-11 11:48 - 2023-12-11 11:52 - 000000000 ____D C:\Users\karakas\AppData\Roaming\youtube-dl-gui
2023-12-11 11:48 - 2023-12-11 11:48 - 000000000 ____D C:\Users\karakas\AppData\Local\youtube-dl-gui-updater
2023-12-11 11:22 - 2023-12-11 19:17 - 000000000 ____D C:\Users\karakas\Desktop\MP3 downloads
2023-12-11 11:22 - 2023-12-11 11:22 - 000000753 _____ C:\Users\karakas\Videos - Shortcut.lnk
2023-12-11 11:19 - 2023-12-11 11:26 - 000000000 ____D C:\Users\karakas\AppData\Roaming\youtube-dlg
2023-12-10 11:34 - 2023-12-10 11:35 - 000000000 ____D C:\Users\karakas\Desktop\FRST
2023-12-08 09:52 - 2023-12-09 08:32 - 000000000 ____D C:\AdwCleaner
2023-12-08 09:51 - 2023-12-08 09:51 - 008791352 _____ (Malwarebytes) C:\Users\karakas\Desktop\AdwCleaner.exe
2023-12-07 17:41 - 2023-12-29 19:16 - 002387456 _____ (Farbar) C:\Users\karakas\Desktop\FRST64.exe
2023-12-07 17:41 - 2023-12-29 19:16 - 000000000 ____D C:\Users\karakas\Desktop\FRST-OlderVersion
2023-12-06 22:23 - 2023-12-06 22:23 - 000299543 _____ C:\Users\karakas\Desktop\bookmarks_12_6_23.html
2023-12-06 22:09 - 2023-12-06 22:10 - 000000000 ____D C:\Users\karakas\Desktop\Music Cabinet
2023-12-06 20:07 - 2023-12-06 20:07 - 000000000 ____D C:\Users\karakas\Desktop\Docs2023
2023-12-06 20:00 - 2023-12-21 15:20 - 000000000 ____D C:\Users\karakas\Desktop\Travel Places
2023-12-06 09:50 - 2023-12-06 18:19 - 000000000 ____D C:\Users\karakas\Desktop\DEC06
2023-12-02 16:39 - 2023-12-02 16:49 - 001497468 _____ C:\WINDOWS\Minidump\120223-55562-01.dmp
2023-12-01 09:43 - 2023-12-01 09:45 - 000000000 ____D C:\Program Files\Guilty Pleasure
2023-11-29 09:24 - 2023-11-29 09:24 - 000000165 ____H C:\Users\karakas\Downloads\~$RPG0046053.xlsx
 
==================== One month (modified) ==================
 
(If an entry is included in the fixlist, the file/folder will be moved.)
 
2023-12-29 19:30 - 2018-07-21 10:00 - 000000000 ____D C:\FRST
2023-12-29 19:22 - 2021-12-15 00:43 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-12-29 19:22 - 2016-04-16 16:58 - 000000000 ____D C:\Program Files (x86)\Google
2023-12-29 18:49 - 2021-01-31 23:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-12-29 08:57 - 2019-12-07 01:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-12-29 07:58 - 2023-05-07 03:17 - 000000000 ____D C:\Users\karakas\AppData\Local\Malwarebytes
2023-12-29 07:55 - 2021-02-01 00:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-12-29 07:55 - 2021-01-31 23:40 - 000008192 ___SH C:\DumpStack.log.tmp
2023-12-27 23:04 - 2020-10-07 13:54 - 000000000 ____D C:\Users\karakas\Desktop\new downloads
2023-12-27 13:56 - 2022-08-11 16:10 - 000000000 ____D C:\Users\karakas\AppData\Roaming\audacity
2023-12-27 12:40 - 2016-04-20 06:51 - 000000000 ____D C:\Users\karakas\AppData\Roaming\Microsoft\Word
2023-12-27 11:09 - 2019-12-07 01:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-12-27 11:09 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-12-26 21:55 - 2023-02-09 11:03 - 000000000 ____D C:\Users\karakas\AppData\Local\NordVPN
2023-12-26 21:51 - 2021-11-09 14:43 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-12-23 09:14 - 2021-08-18 20:23 - 000000000 ____D C:\Users\karakas\Desktop\SE Work
2023-12-23 09:13 - 2017-01-14 06:13 - 000000000 ____D C:\Users\karakas\AppData\Roaming\Microsoft\Excel
2023-12-23 02:17 - 2021-05-20 17:47 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-12-22 10:31 - 2023-08-14 08:57 - 000239576 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2023-12-22 10:23 - 2018-03-21 14:08 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2023-12-22 10:23 - 2018-03-21 14:07 - 000337638 _____ C:\WINDOWS\ntbtlog.txt
2023-12-22 10:21 - 2019-12-07 01:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-12-22 10:18 - 2021-01-31 23:46 - 000000000 ____D C:\Users\karakas
2023-12-20 22:43 - 2019-08-28 18:06 - 000000000 ____D C:\Users\karakas\Desktop\Master Marks
2023-12-18 22:22 - 2016-04-18 05:09 - 000000000 ____D C:\Users\karakas\AppData\Roaming\Microsoft\Office
2023-12-17 21:53 - 2018-07-05 10:43 - 000000000 ____D C:\Users\karakas\AppData\Local\D3DSCache
2023-12-17 06:57 - 2017-03-22 13:45 - 000000000 ___RD C:\Users\karakas\Desktop\File Cabinet
2023-12-16 20:33 - 2019-12-07 01:13 - 000000000 ____D C:\WINDOWS\INF
2023-12-16 20:31 - 2021-01-31 23:58 - 000840598 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-12-16 20:25 - 2021-01-31 23:40 - 000463376 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\Provisioning
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-12-16 20:06 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-12-16 20:06 - 2019-12-07 01:03 - 000000000 ____D C:\WINDOWS\servicing
2023-12-15 18:48 - 2021-12-10 19:40 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1880840183-2522925994-863313883-1001
2023-12-15 18:48 - 2021-02-01 00:08 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1880840183-2522925994-863313883-1001
2023-12-15 18:48 - 2021-01-31 23:46 - 000002389 _____ C:\Users\karakas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-12-15 08:24 - 2019-12-07 01:52 - 000023040 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2023-12-15 08:24 - 2019-12-07 01:52 - 000020827 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2023-12-15 08:24 - 2019-12-07 01:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-12-14 12:10 - 2017-12-03 11:19 - 000000000 ____D C:\Users\karakas\AppData\Local\Packages
2023-12-14 12:06 - 2023-02-09 11:03 - 000000000 ____D C:\ProgramData\NordVPN
2023-12-13 11:55 - 2021-01-31 23:44 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-12-13 09:48 - 2016-05-18 23:57 - 000000000 ____D C:\Users\karakas\AppData\Local\CrashDumps
2023-12-13 08:44 - 2023-02-09 11:03 - 000000000 ____D C:\Program Files\NordVPN
2023-12-09 17:58 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2023-12-09 15:31 - 2021-05-31 12:38 - 000000000 ____D C:\Users\karakas\AppData\LocalLow\IGDump
2023-12-09 08:33 - 2016-04-16 13:37 - 000000000 ____D C:\Users\karakas\AppData\Local\Acer
2023-12-09 08:33 - 2015-09-07 19:58 - 000000000 ____D C:\Program Files\Acer
2023-12-09 08:33 - 2015-09-07 19:52 - 000000000 ____D C:\ProgramData\Acer
2023-12-09 08:33 - 2015-09-07 19:52 - 000000000 ____D C:\Program Files (x86)\Acer
2023-12-08 09:01 - 2016-11-15 19:00 - 000000000 ____D C:\Users\karakas\AppData\LocalLow\Temp
2023-12-06 23:13 - 2020-05-29 14:49 - 000000000 ____D C:\Users\karakas\Desktop\Jessica
2023-12-06 20:59 - 2018-02-28 20:38 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2023-12-06 19:36 - 2017-03-22 13:51 - 000000000 ____D C:\Users\karakas\Desktop\Photos Destop Transfer Oct 2022
2023-12-06 15:15 - 2021-11-09 14:41 - 000003714 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-12-06 15:15 - 2021-11-09 14:41 - 000003590 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-12-05 11:55 - 2016-06-20 09:02 - 000000000 ____D C:\Users\karakas\Desktop\downloaded
2023-12-02 16:49 - 2022-02-26 15:14 - 000000000 ____D C:\WINDOWS\Minidump
2023-12-02 16:47 - 2019-02-25 12:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Paw Patrol On A Roll
2023-12-02 16:39 - 2019-12-31 06:51 - 1471840439 _____ C:\WINDOWS\MEMORY.DMP
2023-12-02 16:34 - 2016-08-07 15:07 - 000000000 ____D C:\Program Files (x86)\epson
2023-12-01 09:46 - 2017-02-04 04:40 - 000000000 ____D C:\Users\karakas\AppData\Roaming\RenPy
 
==================== Files in the root of some directories ========
 
2017-03-06 23:04 - 2018-12-08 15:36 - 000000770 _____ () C:\Users\karakas\AppData\Roaming\Rim.Desktop.Exception.log
2017-03-06 23:03 - 2019-05-13 15:31 - 000001937 _____ () C:\Users\karakas\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2017-03-06 23:04 - 2018-12-08 15:36 - 000000770 _____ () C:\Users\karakas\AppData\Roaming\Rim.DesktopHelper.Exception.log
 
==================== SigCheck ============================
 
(There is no automatic fix for files that do not pass verification.)
 
==================== End of FRST.txt ========================
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-12-2023
Ran by karakas (29-12-2023 19:35:16)
Running from C:\Users\karakas\Desktop
Microsoft Windows 10 Home Version 22H2 19045.3803 (X64) (2021-02-01 08:09:23)
Boot Mode: Normal
==========================================================
 
 
==================== Accounts: =============================
 
 
(If an entry is included in the fixlist, it will be removed.)
 
Administrator (S-1-5-21-1880840183-2522925994-863313883-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1880840183-2522925994-863313883-503 - Limited - Disabled)
Guest (S-1-5-21-1880840183-2522925994-863313883-501 - Limited - Disabled)
karakas (S-1-5-21-1880840183-2522925994-863313883-1001 - Administrator - Enabled) => C:\Users\karakas
WDAGUtilityAccount (S-1-5-21-1880840183-2522925994-863313883-504 - Limited - Disabled)
 
==================== Security Center ========================
 
(If an entry is included in the fixlist, it will be removed.)
 
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 
==================== Installed Programs ======================
 
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
 
4K YouTube to MP3 3.7 (HKLM\...\{921BEBDC-5874-4DEF-9A5F-CB2D03991FD6}) (Version: 3.7.2.2902 - Open Media LLC)
7-Zip 15.14 (x64) (HKLM\...\7-Zip) (Version: 15.14 - Igor Pavlov)
abFiles (HKLM-x32\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.03.2003 - Acer Incorporated)
abPhoto (HKLM-x32\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 23.006.20380 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601053}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Audacity 3.3.3 (HKLM\...\Audacity_is1) (Version: 3.3.3 - Audacity Team)
Bonjour (HKLM\...\{B91110FB-33B4-468B-90C2-4D5E8AE3FAE1}) (Version: 2.0.2.0 - Apple Inc.)
Core Temp 1.15.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.15.1 - ALCPU)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3013 - Acer Incorporated)
Epson Print CD (HKLM-x32\...\{D16A31F9-276D-4968-A753-FFEAC56995D0}) (Version: 2.00.00 - SEIKO EPSON CORPORATION)
EPSON Printer Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
Foxit PhantomPDF Business (HKLM-x32\...\{CAAA99A8-AB12-11E6-AA93-000C29FC3B44}) (Version: 8.1.1.1115 - Foxit Software Inc.)
GameHouse Games (HKLM-x32\...\GameHouse Games) (Version: 8.60.65 - GameHouse)
GenuTax Standard (HKLM-x32\...\{238715a6-57bf-488b-af18-c5247f885931}) (Version: 1.79 - GenuSource Consulting Inc) Hidden
GenuTax Standard (HKLM-x32\...\{2FB6BA60-4F55-486F-B7B9-AF0283344B85}) (Version: 1.79 - GenuSource Consulting Inc)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 120.0.6099.130 - Google LLC)
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.32.7 - Google Inc.) Hidden
Instagiffer version 1.62 (HKLM-x32\...\{13DEF8F8-5280-4555-95A4-E815C3F9540F}_is1) (Version: 1.62 - Justin Todd)
Intel® Chipset Device Software (HKLM\...\{12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD}) (Version: 10.1.1.13 - Intel Corporation) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel® Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1177 - Intel Corporation)
Intel® Management Engine Components (HKLM\...\{3C6C11C6-E094-4548-B032-73B4E4D0DEF7}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel® Management Engine Components (HKLM\...\{9E80CC7F-966F-4282-BE0A-36B5BA5F19B1}) (Version: 11.0.0.1177 - Intel Corporation) Hidden
Intel® ME UninstallLegacy (HKLM\...\{1377B2D9-D825-441C-A775-318D25DA3F18}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel® Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4550 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 14.8.0.1042 - Intel Corporation)
Intel® Rapid Storage Technology (HKLM\...\{B66F70B4-34E5-429A-9F55-7129E0833A45}) (Version: 14.8.0.1042 - Intel Corporation) Hidden
Intel® Wireless Bluetooth® (HKLM-x32\...\{9A287643-10C5-4463-B9D1-B2404CE18CCF}) (Version: 17.1.1529.1620 - Intel Corporation)
Intel® PROSet/Wireless Software (HKLM-x32\...\{8c595286-0f9e-42de-a0d4-969aba282637}) (Version: 20.50.0 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{E6F800A9-64D3-4E93-8E8E-AB53E21D4840}) (Version: 20.50.0.1450 - Intel Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{3D45BD48-F215-4C69-B23F-256C83D1D7F0}) (Version: 1.0.0.534 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{7D84E343-A23D-451C-B123-0195B2D903A6}) (Version: 1.42.17.0 - Intel Corporation) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.0.6.4 - PandoraTV)
Malwarebytes version 4.6.7.301 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.6.7.301 - Malwarebytes)
MediaHuman YouTube to MP3 Converter 3.9.9.87 (HKLM-x32\...\MediaHuman YouTube to MP3 Converter_is1) (Version: 3.9.9.87 - MediaHuman)
Microsoft Azure Information Protection (HKLM-x32\...\{21b41fcc-93c0-498f-a284-659d275b4076}) (Version: 1.54.59.0 - Microsoft Corporation)
Microsoft Azure Information Protection (HKLM-x32\...\{7FA8B359-E9D7-4037-8DE1-A28F2603D742}) (Version: 1.54.59.0 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 120.0.2210.91 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 120.0.2210.91 - Microsoft Corporation)
Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00A1-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00BA-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0114-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0115-0409-0000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0116-0409-1000-0000000FF1CE}_ENTERPRISE_{98333358-268C-4164-B6D4-C96DF5153727}) (Version:  - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0117-0409-0000-0000000FF1CE}_ENTERPRISE_{AAA19365-932B-49BD-8138-BE28CEE9C4B4}) (Version:  - Microsoft) Hidden
Microsoft Office Access MUI (English) 2007 (HKLM-x32\...\{90120000-0015-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Access Setup Metadata MUI (English) 2007 (HKLM-x32\...\{90120000-0117-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel MUI (English) 2007 (HKLM-x32\...\{90120000-0016-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (English) 2007 (HKLM-x32\...\{90120000-00BA-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove Setup Metadata MUI (English) 2007 (HKLM-x32\...\{90120000-0114-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (English) 2007 (HKLM-x32\...\{90120000-0044-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (English) 2007 (HKLM-x32\...\{90120000-00A1-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (English) 2007 (HKLM-x32\...\{90120000-001A-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (English) 2007 (HKLM-x32\...\{90120000-0018-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (HKLM-x32\...\{90120000-001F-040C-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Spanish) 2007 (HKLM-x32\...\{90120000-001F-0C0A-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2007 (HKLM-x32\...\{90120000-002C-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-040C-0000-0000000FF1CE}_ENTERPRISE_{71F055E8-E2C6-4214-BB3D-BFE03561B89E}) (Version:  - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0C0A-0000-0000000FF1CE}_ENTERPRISE_{2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}) (Version:  - Microsoft) Hidden
Microsoft Office Publisher MUI (English) 2007 (HKLM-x32\...\{90120000-0019-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (English) 2007 (HKLM\...\{90120000-002A-0409-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007 (HKLM\...\{90120000-0116-0409-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2007 (HKLM-x32\...\{90120000-006E-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2007 (HKLM-x32\...\{90120000-0115-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (English) 2007 (HKLM-x32\...\{90120000-001B-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\OneDriveSetup.exe) (Version: 23.246.1127.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29910 (HKLM-x32\...\{53f1dc9d-ed94-4650-a079-129785ce7905}) (Version: 14.28.29910.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.29.30135 (HKLM-x32\...\{b7a2b241-3f54-4d7d-94d1-8ce0146e03c7}) (Version: 14.29.30135.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29910 (HKLM\...\{06F1FCFD-8F77-488A-A477-6CA8A783EDD7}) (Version: 14.28.29910 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29910 (HKLM\...\{DE015560-04E3-4915-8F99-5B29289E3998}) (Version: 14.28.29910 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.29.30135 (HKLM-x32\...\{77EB1EA9-8E1B-459D-8CDC-1984D0FF15B6}) (Version: 14.29.30135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.29.30135 (HKLM-x32\...\{36A1E79B-581A-4FE5-843D-84C2D3C9431E}) (Version: 14.29.30135 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Minecraft1.7.7 (HKLM-x32\...\Minecraft1.7.7) (Version:  - )
MiniTool Partition Wizard Free 10.2.3 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version:  - MiniTool Solution Ltd.)
Mozilla Firefox 88.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 88.0.1 (x64 en-US)) (Version: 88.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 88.0.1.7794 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.4.0.132 - Nord Security)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.16.4.0 - Nord Security)
NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN)
Potplayer-64 Bits (HKLM\...\PotPlayer64) (Version:  - Kakao Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7712 - Realtek Semiconductor Corp.)
Revo Uninstaller 2.0.6 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.0.6 - VS Revo Group, Ltd.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{7B63012A-4AC6-40C6-B6AF-B24A84359DD5}) (Version: 8.93.0.0 - Microsoft Corporation)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.8 - VideoLAN)
Windows PC Health Check (HKLM\...\{6798C408-2636-448C-8AC6-F4E341102D27}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Zoom (HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\ZoomUMX) (Version: 5.15.7 (20303) - Zoom Video Communications, Inc.)
 
Packages:
=========
Acer Explorer -> C:\Program Files\WindowsApps\AcerIncorporated.AcerExplorer_2.0.3007.0_x86__48frkmn4z8aw4 [2022-07-13] (Acer Incorporated)
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2023-11-14] ()
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x64__8wekyb3d8bbwe [2021-11-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for JavaScript -> C:\Program Files\WindowsApps\Microsoft.Advertising.JavaScript_10.1805.2.0_x86__8wekyb3d8bbwe [2021-11-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-11-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-11-09] (Microsoft Corporation) [MS Ad]
Music Maker Jam -> C:\Program Files\WindowsApps\MAGIX.MusicMakerJam_3.1.1.0_x64__a2t3txkz9j1jw [2021-11-09] (MAGIX)
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-09] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.18.11020.0_x64__8wekyb3d8bbwe [2023-11-05] (Microsoft Studios) [MS Ad]
Spider Solitaire++ -> C:\Program Files\WindowsApps\12291raymond.li.31631ED225837_1.1.16.0_x64__szs6zaftcmqhc [2022-02-25] (raymond.li)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-11-09] (Twitter Inc.)
 
==================== Custom CLSID (Whitelisted): ==============
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
CustomCLSID: HKU\S-1-5-21-1880840183-2522925994-863313883-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-1880840183-2522925994-863313883-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-1880840183-2522925994-863313883-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> nordvpn S.A.)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-01] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files (x86)\Acer\shellext\x64\shellext_win.dll [2017-10-01] (Acer Incorporated -> Acer Incorporated)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-02-27] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_e43bf4f1a295d985\igfxDTCM.dll [2016-12-07] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2015-12-31] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Foxit_ConvertToPDF] -> {C5269811-4A29-4818-A4BB-111F9FC63A5F} => C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2023-02-27] (Malwarebytes Inc. -> Malwarebytes)
 
==================== Codecs (Whitelisted) ====================
 
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
 
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
 
==================== Shortcuts & WMI ========================
 
==================== Loaded Modules (Whitelisted) =============
 
2016-04-21 08:51 - 2015-12-31 06:15 - 000077312 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2016-08-07 15:22 - 2007-12-07 01:08 - 000108032 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\WINDOWS\System32\E_ILMBPA.DLL
 
==================== Alternate Data Streams (Whitelisted) ========
 
(If an entry is included in the fixlist, only the ADS will be removed.)
 
AlternateDataStreams: C:\Users\karakas\Downloads\RPG0046467.xlsx:shield [104]
 
==================== Safe Mode (Whitelisted) ==================
 
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
 
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
 
==================== Association (Whitelisted) =================
 
==================== Internet Explorer (Whitelisted) ==========
 
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:newsfeed
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer15.msn.com/?pc=ACTE
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Foxit PhantomPDF Create PDF ToolBar Helper -> {A5DD10F7-5ABB-4EEF-B4C8-6748D44DAF2A} -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2016-11-14] (Foxit Software Incorporated -> )
Toolbar: HKLM-x32 - Foxit PhantomPDF Create PDF ToolBar - {BFD9D8A8-57FF-488A-B919-065EC77CF82F} - C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\Creator\IEAddin\IEAddin.dll [2016-11-14] (Foxit Software Incorporated -> )
Handler: intu-tt2020 - {BA9B9DDA-C208-4938-90D6-0FAB2903CECE} - C:\Program Files (x86)\TurboTax 2020\ic2020pp.dll No File
 
==================== Hosts content: =========================
 
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
 
2015-07-10 03:04 - 2015-07-10 03:02 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
 
==================== Other Areas ===========================
 
(Currently there is no automatic fix for this section.)
 
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL;C:\Program Files\Intel\Intel® Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT;C:\Program Files\Intel\Intel® Management Engine Components\IPT;C:\PROGRA~2\ThriXXX\3D SexVilla;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\karakas\Desktop\File Cabinet\desktop background\NASA-news-Hubble-Space-Telescope-pictures-colliding-galaxies-UGC-2369-2005834.jpg
DNS Servers: 64.59.144.100 - 64.59.150.143
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0)
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\SOFTWARE\Microsoft\Windows Security Health\State => (AppAndBrowser_StoreAppsSmartScreenOff: 0)
Windows Firewall is enabled.
 
Network Binding:
=============
Ethernet 2: NordVPN LightWeight Firewall -> NordLwf (enabled) 
Wi-Fi: NordVPN LightWeight Firewall -> NordLwf (enabled) 
Ethernet: NordVPN LightWeight Firewall -> NordLwf (enabled) 
 
==================== MSCONFIG/TASK MANAGER disabled items ==
 
(If an entry is included in the fixlist, it will be removed.)
 
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AMInstantService => 2
MSCONFIG\Services: BlackBerry Device Manager => 3
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: cphs => 3
MSCONFIG\Services: cplspcon => 3
MSCONFIG\Services: EvtEng => 2
MSCONFIG\Services: FoxitPhantomService => 2
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: ibtsiva => 2
MSCONFIG\Services: igfxCUIService2.0.0.0 => 2
MSCONFIG\Services: Intel® Capability Licensing Service TCP IP Interface => 3
MSCONFIG\Services: Intel® Security Assist => 3
MSCONFIG\Services: isaHelperSvc => 2
MSCONFIG\Services: IsAppService => 2
MSCONFIG\Services: jhi_service => 2
MSCONFIG\Services: LMS => 2
MSCONFIG\Services: MozillaMaintenance => 3
MSCONFIG\Services: MyWiFiDHCPDNS => 3
MSCONFIG\Services: NitroDriverReadSpool9 => 2
MSCONFIG\Services: NitroUpdateService => 2
MSCONFIG\Services: nlsX86cc => 2
MSCONFIG\Services: nordsec-threatprotection-service => 3
MSCONFIG\Services: NordUpdaterService => 2
MSCONFIG\Services: nordvpn-service => 2
MSCONFIG\Services: QASvc => 2
MSCONFIG\Services: RegSrvc => 2
MSCONFIG\Services: Steam Client Service => 3
MSCONFIG\Services: UEIPSvc => 2
MSCONFIG\Services: ZeroConfigService => 2
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run32: => "RIMBBLaunchAgent.exe"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\StartupFolder: => "OneNote 2007 Screen Clipper and Launcher.lnk"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "CyberGhost"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "Dashlane"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "DashlanePlugin"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "NordVPN"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_8B6B36A51FDD9942B0BDEE33C0F85C3E"
HKU\S-1-5-21-1880840183-2522925994-863313883-1001\...\StartupApproved\Run: => "com.squirrel.Teams.Teams"
 
==================== FirewallRules (Whitelisted) ================
 
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
 
FirewallRules: [TCP Query User{8BD62413-17C7-4450-9088-80577C1D7389}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{11457BE3-1611-49AE-AAE7-42AA8551338D}C:\program files\google\chrome\application\chrome.exe] => (Block) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{167FDA60-0062-409B-BC12-27E94A9D8573}] => (Allow) C:\Users\karakas\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{24F65356-D996-4C17-AEAE-991E8EB8C9C4}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9F727A8B-C5FA-490A-8902-F135AB4BA138}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{23B87CB2-2D26-4850-BB2D-B0A3D0ECB28E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{3939D4EC-A9FC-4EB3-910E-F14386939EDF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.110.3218.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{4CC4D8AD-58B8-4D7E-9937-E9087D067897}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.91\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8B7089F0-19CF-4DCC-84AE-B33DD4F09D14}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{E1868808-D3F8-4B78-85AB-3F5D655F4413}] => (Allow) C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe (nordvpn s.a. -> nordvpn S.A.)
FirewallRules: [{6E626FD6-4C4C-40D8-9704-1E503F556F72}] => (Allow) C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe (nordvpn s.a. -> nordvpn S.A.)
 
==================== Restore Points =========================
 
21-12-2023 02:49:37 Scheduled Checkpoint
 
==================== Faulty Device Manager Devices ============
 
 
==================== Event log errors: ========================
 
Application errors:
==================
Error: (12/29/2023 07:25:46 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW.  hr = 0x80070006, The handle is invalid..
 
Operation:
   Executing Asynchronous Operation
 
Context:
   Current State: DoSnapshotSet
 
Error: (12/29/2023 07:12:46 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine QueryFullProcessImageNameW.  hr = 0x80070006, The handle is invalid..
 
Operation:
   Executing Asynchronous Operation
 
Context:
   Current State: DoSnapshotSet
 
Error: (12/29/2023 07:09:55 PM) (Source: VSS) (EventID: 8194) (User: )
Description: Volume Shadow Copy Service error: Unexpected error querying for the IVssWriterCallback interface.  hr = 0x80070005, Access is denied..This is often caused by incorrect security settings in either the writer or requestor process.
 
 
Operation:
   Gathering Writer Data
 
Context:
   Writer Class Id: {e8132975-6f93-4464-a53e-1050253ae220}
   Writer Name: System Writer
   Writer Instance ID: {40fe5576-185e-4d8f-a0ac-c6c653170adc}
 
Error: (12/29/2023 07:59:23 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: secureboot.exe, version: 0.0.0.0, time stamp: 0x65567c73
Faulting module name: ntdll.dll, version: 10.0.19041.3636, time stamp: 0x9b64aa6f
Exception code: 0xc0000005
Fault offset: 0x00000000000a22c7
Faulting process id: 0xfdc
Faulting application start time: 0x01da3a6f761e9cb4
Faulting application path: C:\ProgramData\WindowsPowerShell\Modules\SecureBoot\secureboot.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 21717e85-c689-4b5e-a155-9d10827eb5cb
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/27/2023 09:32:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program SearchApp.exe version 10.0.19041.3758 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 2e90
 
Start Time: 01da3887483f8422
 
Termination Time: 4294967295
 
Application Path: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe
 
Report Id: 65526955-208a-4cc9-b7d3-21d3283b1ac5
 
Faulting package full name: Microsoft.Windows.Search_1.14.10.19041_neutral_neutral_cw5n1h2txyewy
 
Faulting package-relative application ID: CortanaUI
 
Hang type: Cross-process
 
Error: (12/27/2023 12:16:24 AM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: The storage optimizer couldn't complete retrim on Acer (C:) because: The operation requested is not supported by the hardware backing the volume. (0x8900002A)
 
Error: (12/22/2023 10:34:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: secureboot.exe, version: 0.0.0.0, time stamp: 0x65567c73
Faulting module name: ntdll.dll, version: 10.0.19041.3636, time stamp: 0x9b64aa6f
Exception code: 0xc0000005
Fault offset: 0x00000000000a22c7
Faulting process id: 0xf98
Faulting application start time: 0x01da3504f4115818
Faulting application path: C:\ProgramData\WindowsPowerShell\Modules\SecureBoot\secureboot.exe
Faulting module path: C:\WINDOWS\SYSTEM32\ntdll.dll
Report Id: 2173c7d9-8a6f-4548-9778-a25d5da051b7
Faulting package full name: 
Faulting package-relative application ID:
 
Error: (12/22/2023 09:44:28 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program svchost.exe version 10.0.19041.3636 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
 
Process ID: 924
 
Start Time: 01da3300d6531b32
 
Termination Time: 4294967295
 
Application Path: C:\Windows\System32\svchost.exe
 
Report Id: d1a86dbc-0821-4708-aa9b-eeac9dd93d8f
 
Faulting package full name: 
 
Faulting package-relative application ID: 
 
Hang type: Unknown
 
 
System errors:
=============
Error: (12/29/2023 07:59:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The secureboot service failed to start due to the following error: 
The service did not respond to the start or control request in a timely fashion.
 
Error: (12/29/2023 07:59:59 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (960000 milliseconds) while waiting for the secureboot service to connect.
 
Error: (12/29/2023 07:55:36 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The shpamsvc service terminated with the following error: 
Catastrophic failure
 
Error: (12/29/2023 07:55:13 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: The previous system shutdown at 7:28:43 PM on ‎12/‎28/‎2023 was unexpected.
 
Error: (12/29/2023 07:54:42 AM) (Source: Microsoft-Windows-Kernel-Boot) (EventID: 29) (User: NT AUTHORITY)
Description: 3221225684A fatal error occurred processing the restoration data.
 
Error: (12/27/2023 08:24:58 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-8ID5J9T)
Description: The server {94269C4E-071A-4116-90E6-52E557067E4E} did not register with DCOM within the required timeout.
 
Error: (12/27/2023 11:25:09 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-8ID5J9T)
Description: The server {94269C4E-071A-4116-90E6-52E557067E4E} did not register with DCOM within the required timeout.
 
Error: (12/26/2023 09:56:25 PM) (Source: Server) (EventID: 2505) (User: )
Description: The server could not bind to the transport \Device\NetBT_Tcpip_{26EE6F90-3278-42B1-9877-54B81BDB78DA} because another computer on the network has the same name.  The server could not start.
 
 
Windows Defender:
================
Date: 2023-12-29 10:23:48
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2023-12-28 02:00:56
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2023-12-26 23:27:04
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2023-12-22 01:02:59
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
 
Date: 2023-12-21 01:50:16
Description: 
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Event[0]:
 
Date: 2023-12-22 10:23:04
Description: 
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode 
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.
 
Date: 2023-12-17 22:00:57
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.403.674.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.23110.2
Error code: 0x8007043c
Error description: This service cannot be started in Safe Mode 
 
Date: 2023-12-17 21:50:41
Description: 
Microsoft Defender Antivirus Real-Time Protection feature has encountered an error and failed.
Feature: On Access
Error Code: 0x8007043c
Error description: This service cannot be started in Safe Mode 
Reason: Antimalware security intelligence has stopped functioning for an unknown reason. In some instances, restarting the service may resolve the problem.
 
Date: 2023-08-18 22:37:37
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.395.511.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.23070.1005
Error code: 0x80070020
Error description: The process cannot access the file because it is being used by another process. 
 
Date: 2023-08-18 22:37:37
Description: 
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 
Previous security intelligence Version: 1.395.511.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version: 
Previous Engine Version: 1.1.23070.1005
Error code: 0x80070020
Error description: The process cannot access the file because it is being used by another process. 
 
CodeIntegrity:
===============
Date: 2023-12-29 08:10:41
Description: 
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_e43bf4f1a295d985\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
 
 
==================== Memory info =========================== 
 
BIOS: American Megatrends Inc. R01-A1 11/10/2015
Motherboard: Acer Aspire TC-710
Processor: Intel® Core™ i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 93%
Total physical RAM: 8097.83 MB
Available physical RAM: 535.64 MB
Total Virtual: 18849.83 MB
Available Virtual: 3952.08 MB
 
==================== Drives ================================
 
Drive c: (Acer) (Fixed) (Total:930.91 GB) (Free:592.58 GB) (Model: WDC WD10EZEX-21WN4A0) NTFS
 
\\?\Volume{3614c06c-99c1-4f1c-a29d-2de8ea94e04e}\ (Recovery) (Fixed) (Total:0.49 GB) (Free:0.06 GB) NTFS
\\?\Volume{831f2bc5-6046-4056-abd0-dc56be36db65}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32
 
==================== MBR & Partition Table ====================
 
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 3A81C23D)
 
Partition: GPT.
 
==================== End of Addition.txt =======================

  • 0

#39
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Hello.
 
Again, everything indicates that you need more RAM to run your programs:
 
Percentage of memory in use: 93%
Total physical RAM: 8097.83 MB
Available physical RAM: 535.64 MB
 
So, I strongly recommend you to install additional RAM. Here you can run a free RAM wizard to determine which RAM is compatible with your motherboard. You download and run a small program, which will scan your computer and then recommend compatible RAM. You don't have to buy from them, but you can find out how much RAM the computer can accept. 
 
Regardless of the RAM issue, you said that you are not able to sign in with Safe mode. So, I would like you to try a few more things.
 
 
 
1. FRST fix

Please do the following to run a FRST fix.

NOTICE: This script was written specifically for this user. Running it on another machine may cause damage to your operating system

  • Select the entire contents of the code box below, from the "Start::" line to "End::", including both lines. Right-click and select "Copy ". No need to paste anything to anywhere.
Start::
CreateRestorePoint:
CloseProcesses:
GroupPolicy-Firefox-x32: Restriction <==== ATTENTION
S3 MpKsl8082e1a4; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B1A2B5B-0166-4435-9AB7-02E9E75140D2}\MpKslDrv.sys [X]
AlternateDataStreams: C:\Users\karakas\Downloads\RPG0046467.xlsx:shield [104]
Handler: intu-tt2020 - {BA9B9DDA-C208-4938-90D6-0FAB2903CECE} - C:\Program Files (x86)\TurboTax 2020\ic2020pp.dll No File 
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: SFC /scannow
EmptyTemp:
End::
  • Right-click on FRST64 on your Desktop, to run it as administrator. When the tool opens, click "yes" to the disclaimer.
  • Press the Fix button once and wait.
  • FRST will process fixlist.txt
  • When finished, it will produce a log fixlog.txt on your Desktop.
  • Post the log in your next reply.

 

2. Check disk with CrystalDiskInfo

  • Download CrystalDiskInfo from here and save it to your Desktop.
  • Run the installer to install the program.
  • When finished, open the installed program by double clicking on it.
  • If everything is working properly, you should see the status “Good“ displayed. Other statuses you might see include “Bad” (which usually indicates a drive that’s dead or near death), “Caution” (which indicates a drive that you should most likely be thinking about backing up and replacing), and “Unknown” (which just means that information could not be obtained).
  • Take a screenshot of what you got.

 

 

In your next reply please post:

  1. The fixlog.txt
  2. The CrystalDiskInfo screenshot

  • 0

#40
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

Thank you for your reply.

 

Yes, I have thought that buying another 8GB ram is necessary and a cheap upgrade. 

When I ran the FRST I had nothing else running; so that fact that 8GB of RAM is used to run that and windows seems abnormal.

 

Just to give some background I have used this exact setup as a work computer for the last 7 years, logging at least 50 hours a week on it, so I am quite familiar with the way it performs and it has suddenly become erratically slow, to the point of completely unusable, at times. What I find especially odd is it will run fine for several hours and then all of a sudden get really bad with no correlation to programs being opened. When this happens, even doing the slightest maneuver, for example, going from nothing open at all to opening a folder can take 20 seconds. 

 

Because of this I thought it might be an overheating issue and I cleaned the heat sink fans and dust out, and monitored core temp. It does not seem to be heat related and sometimes can be slow when turning on in the morning. 

 

Of course, the fact that I can't boot into safe mode is a red flag as well.

 

 

 

Fixlog:

 

Fix result of Farbar Recovery Scan Tool (x64) Version: 30-12-2023
Ran by karakas (30-12-2023 09:33:39) Run:4
Running from C:\Users\karakas\Desktop
Loaded Profiles: karakas
Boot Mode: Normal
==============================================
 
fixlist content:
*****************
Start::
CreateRestorePoint:
CloseProcesses:
GroupPolicy-Firefox-x32: Restriction <==== ATTENTION
S3 MpKsl8082e1a4; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0B1A2B5B-0166-4435-9AB7-02E9E75140D2}\MpKslDrv.sys [X]
AlternateDataStreams: C:\Users\karakas\Downloads\RPG0046467.xlsx:shield [104]
Handler: intu-tt2020 - {BA9B9DDA-C208-4938-90D6-0FAB2903CECE} - C:\Program Files (x86)\TurboTax 2020\ic2020pp.dll No File 
CMD: DISM /Online /Cleanup-Image /RestoreHealth
CMD: SFC /scannow
EmptyTemp:
End::
*****************
 
Restore point was successfully created.
Processes closed successfully.
C:\Program Files (x86)\Mozilla Firefox\distribution\policies.json => moved successfully
MpKsl8082e1a4 => service not found.
C:\Users\karakas\Downloads\RPG0046467.xlsx => ":shield" ADS removed successfully
HKLM\Software\Classes\PROTOCOLS\Handler\intu-tt2020 => not found
 
========= DISM /Online /Cleanup-Image /RestoreHealth =========
 
 
Deployment Image Servicing and Management tool
Version: 10.0.19041.3636
 
Image Version: 10.0.19045.3803
 
 
[==                         3.8%                           ] 
 
[==                         3.8%                           ] 
 
[==                         3.9%                           ] 
 
[==                         4.0%                           ] 
 
[==                         4.2%                           ] 
 
[==                         4.2%                           ] 
 
[==                         4.2%                           ] 
 
[==                         4.3%                           ] 
 
[==                         4.4%                           ] 
 
[==                         4.5%                           ] 
 
[==                         4.5%                           ] 
 
[==                         4.6%                           ] 
 
[==                         4.7%                           ] 
 
[==                         4.7%                           ] 
 
[==                         4.8%                           ] 
 
[==                         5.0%                           ] 
 
[==                         5.1%                           ] 
 
[===                        5.2%                           ] 
 
[===                        5.4%                           ] 
 
[===                        5.4%                           ] 
 
[===                        5.6%                           ] 
 
[===                        5.7%                           ] 
 
[===                        5.8%                           ] 
 
[===                        6.0%                           ] 
 
[===                        6.0%                           ] 
 
[===                        6.2%                           ] 
 
[===                        6.3%                           ] 
 
[===                        6.3%                           ] 
 
[===                        6.4%                           ] 
 
[===                        6.4%                           ] 
 
[===                        6.5%                           ] 
 
[===                        6.6%                           ] 
 
[===                        6.6%                           ] 
 
[===                        6.7%                           ] 
 
[===                        6.8%                           ] 
 
[===                        6.9%                           ] 
 
[====                       6.9%                           ] 
 
[====                       7.1%                           ] 
 
[====                       7.2%                           ] 
 
[====                       7.3%                           ] 
 
[====                       7.4%                           ] 
 
[====                       7.5%                           ] 
 
[====                       7.6%                           ] 
 
[====                       7.8%                           ] 
 
[====                       8.0%                           ] 
 
[====                       8.2%                           ] 
 
[====                       8.4%                           ] 
 
[====                       8.5%                           ] 
 
[====                       8.6%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.8%                           ] 
 
[=====                      8.9%                           ] 
 
[=====                      9.0%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.1%                           ] 
 
[=====                      9.3%                           ] 
 
[=====                      9.4%                           ] 
 
[=====                      9.4%                           ] 
 
[=====                      9.5%                           ] 
 
[=====                      9.6%                           ] 
 
[=====                      9.7%                           ] 
 
[=====                      9.8%                           ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.0%                          ] 
 
[=====                      10.2%                          ] 
 
[======                     10.4%                          ] 
 
[======                     10.5%                          ] 
 
[======                     10.7%                          ] 
 
[======                     10.8%                          ] 
 
[======                     10.9%                          ] 
 
[======                     10.9%                          ] 
 
[======                     11.1%                          ] 
 
[======                     11.2%                          ] 
 
[======                     11.3%                          ] 
 
[======                     11.4%                          ] 
 
[======                     11.5%                          ] 
 
[======                     11.6%                          ] 
 
[======                     11.7%                          ] 
 
[======                     11.8%                          ] 
 
[======                     11.8%                          ] 
 
[======                     11.9%                          ] 
 
[=======                    12.1%                          ] 
 
[=======                    12.3%                          ] 
 
[=======                    12.4%                          ] 
 
[=======                    12.5%                          ] 
 
[=======                    12.6%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    12.8%                          ] 
 
[=======                    12.9%                          ] 
 
[=======                    13.1%                          ] 
 
[=======                    13.2%                          ] 
 
[=======                    13.4%                          ] 
 
[=======                    13.5%                          ] 
 
[=======                    13.6%                          ] 
 
[=======                    13.7%                          ] 
 
[=======                    13.7%                          ] 
 
[========                   13.9%                          ] 
 
[========                   14.1%                          ] 
 
[========                   14.2%                          ] 
 
[========                   14.3%                          ] 
 
[========                   14.4%                          ] 
 
[========                   14.6%                          ] 
 
[========                   14.7%                          ] 
 
[========                   14.8%                          ] 
 
[========                   14.9%                          ] 
 
[========                   15.0%                          ] 
 
[========                   15.0%                          ] 
 
[========                   15.1%                          ] 
 
[========                   15.2%                          ] 
 
[========                   15.2%                          ] 
 
[========                   15.3%                          ] 
 
[========                   15.5%                          ] 
 
[=========                  15.5%                          ] 
 
[=========                  15.7%                          ] 
 
[=========                  15.8%                          ] 
 
[=========                  15.9%                          ] 
 
[=========                  16.1%                          ] 
 
[=========                  16.2%                          ] 
 
[=========                  16.3%                          ] 
 
[=========                  16.5%                          ] 
 
[=========                  16.7%                          ] 
 
[=========                  16.8%                          ] 
 
[=========                  16.9%                          ] 
 
[=========                  17.0%                          ] 
 
[=========                  17.1%                          ] 
 
[=========                  17.2%                          ] 
 
[==========                 17.4%                          ] 
 
[==========                 17.5%                          ] 
 
[==========                 17.6%                          ] 
 
[==========                 17.7%                          ] 
 
[==========                 17.9%                          ] 
 
[==========                 18.0%                          ] 
 
[==========                 18.1%                          ] 
 
[==========                 18.3%                          ] 
 
[==========                 18.4%                          ] 
 
[==========                 18.5%                          ] 
 
[==========                 18.6%                          ] 
 
[==========                 18.8%                          ] 
 
[==========                 18.9%                          ] 
 
[===========                19.0%                          ] 
 
[===========                19.1%                          ] 
 
[===========                19.2%                          ] 
 
[===========                19.4%                          ] 
 
[===========                19.6%                          ] 
 
[===========                19.7%                          ] 
 
[===========                19.8%                          ] 
 
[===========                19.8%                          ] 
 
[===========                20.0%                          ] 
 
[===========                20.1%                          ] 
 
[===========                20.2%                          ] 
 
[===========                20.3%                          ] 
 
[===========                20.5%                          ] 
 
[===========                20.5%                          ] 
 
[===========                20.6%                          ] 
 
[===========                20.7%                          ] 
 
[===========                20.7%                          ] 
 
[============               20.8%                          ] 
 
[============               20.8%                          ] 
 
[============               21.0%                          ] 
 
[============               21.1%                          ] 
 
[============               21.2%                          ] 
 
[============               21.2%                          ] 
 
[============               21.2%                          ] 
 
[============               21.2%                          ] 
 
[============               21.3%                          ] 
 
[============               21.3%                          ] 
 
[============               21.3%                          ] 
 
[============               21.4%                          ] 
 
[============               21.4%                          ] 
 
[============               21.4%                          ] 
 
[============               21.6%                          ] 
 
[============               21.7%                          ] 
 
[============               21.9%                          ] 
 
[============               22.0%                          ] 
 
[============               22.1%                          ] 
 
[============               22.3%                          ] 
 
[=============              22.5%                          ] 
 
[=============              23.1%                          ] 
 
[=============              23.9%                          ] 
 
[=============              24.1%                          ] 
 
[==============             24.3%                          ] 
 
[==============             24.5%                          ] 
 
[==============             24.8%                          ] 
 
[==============             24.9%                          ] 
 
[==============             25.1%                          ] 
 
[==============             25.2%                          ] 
 
[==============             25.4%                          ] 
 
[==============             25.7%                          ] 
 
[==============             25.8%                          ] 
 
[===============            26.2%                          ] 
 
[===============            26.4%                          ] 
 
[===============            26.6%                          ] 
 
[===============            26.9%                          ] 
 
[===============            27.2%                          ] 
 
[===============            27.5%                          ] 
 
[================           27.7%                          ] 
 
[================           27.7%                          ] 
 
[================           27.8%                          ] 
 
[================           28.2%                          ] 
 
[================           28.2%                          ] 
 
[================           28.4%                          ] 
 
[================           28.5%                          ] 
 
[================           28.8%                          ] 
 
[================           28.9%                          ] 
 
[================           29.1%                          ] 
 
[================           29.2%                          ] 
 
[================           29.3%                          ] 
 
[================           29.3%                          ] 
 
[=================          29.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          29.4%                          ] 
 
[=================          29.6%                          ] 
 
[=================          29.7%                          ] 
 
[=================          29.7%                          ] 
 
[=================          29.8%                          ] 
 
[=================          30.0%                          ] 
 
[=================          30.1%                          ] 
 
[=================          30.3%                          ] 
 
[=================          30.4%                          ] 
 
[=================          30.6%                          ] 
 
[=================          30.7%                          ] 
 
[=================          30.9%                          ] 
 
[=================          30.9%                          ] 
 
[==================         31.2%                          ] 
 
[==================         31.3%                          ] 
 
[==================         31.4%                          ] 
 
[==================         31.5%                          ] 
 
[==================         31.6%                          ] 
 
[==================         31.8%                          ] 
 
[==================         32.0%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.2%                          ] 
 
[==================         32.4%                          ] 
 
[==================         32.4%                          ] 
 
[==================         32.5%                          ] 
 
[==================         32.5%                          ] 
 
[==================         32.6%                          ] 
 
[==================         32.7%                          ] 
 
[===================        32.9%                          ] 
 
[===================        33.0%                          ] 
 
[===================        33.1%                          ] 
 
[===================        33.2%                          ] 
 
[===================        33.4%                          ] 
 
[===================        33.5%                          ] 
 
[===================        33.7%                          ] 
 
[===================        33.7%                          ] 
 
[===================        33.9%                          ] 
 
[===================        34.0%                          ] 
 
[===================        34.3%                          ] 
 
[====================       34.5%                          ] 
 
[====================       34.5%                          ] 
 
[====================       34.7%                          ] 
 
[====================       34.9%                          ] 
 
[====================       34.9%                          ] 
 
[====================       35.0%                          ] 
 
[====================       35.2%                          ] 
 
[====================       35.2%                          ] 
 
[====================       35.3%                          ] 
 
[====================       35.3%                          ] 
 
[====================       35.4%                          ] 
 
[====================       35.5%                          ] 
 
[====================       35.6%                          ] 
 
[====================       35.8%                          ] 
 
[====================       35.8%                          ] 
 
[====================       36.0%                          ] 
 
[====================       36.1%                          ] 
 
[====================       36.2%                          ] 
 
[=====================      36.2%                          ] 
 
[=====================      36.3%                          ] 
 
[=====================      36.4%                          ] 
 
[=====================      36.5%                          ] 
 
[=====================      36.7%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.8%                          ] 
 
[=====================      36.9%                          ] 
 
[=====================      37.1%                          ] 
 
[=====================      37.1%                          ] 
 
[=====================      37.2%                          ] 
 
[=====================      37.2%                          ] 
 
[=====================      37.4%                          ] 
 
[=====================      37.4%                          ] 
 
[=====================      37.6%                          ] 
 
[=====================      37.7%                          ] 
 
[=====================      37.8%                          ] 
 
[======================     38.0%                          ] 
 
[======================     38.1%                          ] 
 
[======================     38.3%                          ] 
 
[======================     38.3%                          ] 
 
[======================     38.3%                          ] 
 
[======================     38.4%                          ] 
 
[======================     38.5%                          ] 
 
[======================     38.5%                          ] 
 
[======================     38.6%                          ] 
 
[======================     38.6%                          ] 
 
[======================     38.6%                          ] 
 
[======================     38.7%                          ] 
 
[======================     38.8%                          ] 
 
[======================     38.9%                          ] 
 
[======================     38.9%                          ] 
 
[======================     39.0%                          ] 
 
[======================     39.1%                          ] 
 
[======================     39.3%                          ] 
 
[======================     39.5%                          ] 
 
[=======================    39.7%                          ] 
 
[=======================    39.8%                          ] 
 
[=======================    39.8%                          ] 
 
[=======================    39.8%                          ] 
 
[=======================    39.8%                          ] 
 
[=======================    39.9%                          ] 
 
[=======================    40.1%                          ] 
 
[=======================    40.2%                          ] 
 
[=======================    40.2%                          ] 
 
[=======================    40.4%                          ] 
 
[=======================    40.4%                          ] 
 
[=======================    40.5%                          ] 
 
[=======================    40.6%                          ] 
 
[=======================    40.8%                          ] 
 
[=======================    40.8%                          ] 
 
[=======================    40.8%                          ] 
 
[=======================    41.0%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.1%                          ] 
 
[=======================    41.2%                          ] 
 
[=======================    41.2%                          ] 
 
[=======================    41.3%                          ] 
 
[=======================    41.3%                          ] 
 
[=======================    41.4%                          ] 
 
[=======================    41.4%                          ] 
 
[=======================    41.4%                          ] 
 
[========================   41.4%                          ] 
 
[========================   41.4%                          ] 
 
[========================   41.4%                          ] 
 
[========================   41.5%                          ] 
 
[========================   41.5%                          ] 
 
[========================   41.6%                          ] 
 
[========================   41.6%                          ] 
 
[========================   41.6%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.7%                          ] 
 
[========================   41.8%                          ] 
 
[========================   41.8%                          ] 
 
[========================   41.9%                          ] 
 
[========================   41.9%                          ] 
 
[========================   42.0%                          ] 
 
[========================   42.0%                          ] 
 
[========================   42.0%                          ] 
 
[========================   42.0%                          ] 
 
[========================   42.1%                          ] 
 
[========================   42.2%                          ] 
 
[========================   42.2%                          ] 
 
[========================   42.3%                          ] 
 
[========================   42.3%                          ] 
 
[========================   42.4%                          ] 
 
[========================   42.4%                          ] 
 
[========================   42.4%                          ] 
 
[========================   42.5%                          ] 
 
[========================   42.5%                          ] 
 
[========================   42.5%                          ] 
 
[========================   42.6%                          ] 
 
[========================   42.6%                          ] 
 
[========================   42.6%                          ] 
 
[========================   42.7%                          ] 
 
[========================   42.7%                          ] 
 
[========================   42.8%                          ] 
 
[========================   42.8%                          ] 
 
[========================   42.8%                          ] 
 
[========================   42.8%                          ] 
 
[========================   42.9%                          ] 
 
[========================   42.9%                          ] 
 
[========================   42.9%                          ] 
 
[========================   42.9%                          ] 
 
[========================   43.0%                          ] 
 
[========================   43.0%                          ] 
 
[========================   43.0%                          ] 
 
[========================   43.1%                          ] 
 
[========================   43.1%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.2%                          ] 
 
[=========================  43.3%                          ] 
 
[=========================  43.3%                          ] 
 
[=========================  43.3%                          ] 
 
[=========================  43.4%                          ] 
 
[=========================  43.4%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.5%                          ] 
 
[=========================  43.6%                          ] 
 
[=========================  43.6%                          ] 
 
[=========================  43.7%                          ] 
 
[=========================  43.7%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.8%                          ] 
 
[=========================  43.9%                          ] 
 
[=========================  43.9%                          ] 
 
[=========================  44.0%                          ] 
 
[=========================  44.1%                          ] 
 
[=========================  44.2%                          ] 
 
[=========================  44.2%                          ] 
 
[=========================  44.2%                          ] 
 
[=========================  44.3%                          ] 
 
[=========================  44.4%                          ] 
 
[=========================  44.4%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.5%                          ] 
 
[=========================  44.6%                          ] 
 
[=========================  44.7%                          ] 
 
[=========================  44.7%                          ] 
 
[=========================  44.8%                          ] 
 
[========================== 44.8%                          ] 
 
[========================== 44.9%                          ] 
 
[========================== 45.0%                          ] 
 
[========================== 45.0%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.1%                          ] 
 
[========================== 45.2%                          ] 
 
[========================== 45.2%                          ] 
 
[========================== 45.3%                          ] 
 
[========================== 45.4%                          ] 
 
[========================== 45.4%                          ] 
 
[========================== 45.4%                          ] 
 
[========================== 45.5%                          ] 
 
[========================== 45.7%                          ] 
 
[========================== 45.7%                          ] 
 
[========================== 45.7%                          ] 
 
[========================== 45.8%                          ] 
 
[========================== 45.8%                          ] 
 
[========================== 45.9%                          ] 
 
[========================== 45.9%                          ] 
 
[========================== 46.0%                          ] 
 
[========================== 46.0%                          ] 
 
[========================== 46.0%                          ] 
 
[========================== 46.1%                          ] 
 
[========================== 46.1%                          ] 
 
[========================== 46.1%                          ] 
 
[========================== 46.2%                          ] 
 
[========================== 46.3%                          ] 
 
[========================== 46.3%                          ] 
 
[========================== 46.3%                          ] 
 
[========================== 46.3%                          ] 
 
[========================== 46.4%                          ] 
 
[========================== 46.5%                          ] 
 
[===========================46.6%                          ] 
 
[===========================46.6%                          ] 
 
[===========================46.6%                          ] 
 
[===========================46.7%                          ] 
 
[===========================46.7%                          ] 
 
[===========================46.8%                          ] 
 
[===========================46.9%                          ] 
 
[===========================46.9%                          ] 
 
[===========================46.9%                          ] 
 
[===========================46.9%                          ] 
 
[===========================47.0%                          ] 
 
[===========================47.1%                          ] 
 
[===========================47.2%                          ] 
 
[===========================47.2%                          ] 
 
[===========================47.3%                          ] 
 
[===========================47.4%                          ] 
 
[===========================47.5%                          ] 
 
[===========================47.5%                          ] 
 
[===========================47.5%                          ] 
 
[===========================47.6%                          ] 
 
[===========================47.7%                          ] 
 
[===========================47.8%                          ] 
 
[===========================47.9%                          ] 
 
[===========================47.9%                          ] 
 
[===========================48.0%                          ] 
 
[===========================48.1%                          ] 
 
[===========================48.2%                          ] 
 
[===========================48.2%                          ] 
 
[===========================48.2%                          ] 
 
[===========================48.3%                          ] 
 
[===========================48.3%                          ] 
 
[===========================48.5%                          ] 
 
[===========================48.5%                          ] 
 
[===========================48.5%                          ] 
 
[===========================48.5%                          ] 
 
[===========================48.6%                          ] 
 
[===========================48.6%                          ] 
 
[===========================48.7%                          ] 
 
[===========================48.8%                          ] 
 
[===========================49.0%                          ] 
 
[===========================49.1%                          ] 
 
[===========================49.1%                          ] 
 
[===========================49.3%                          ] 
 
[===========================49.4%                          ] 
 
[===========================49.5%                          ] 
 
[===========================49.7%                          ] 
 
[===========================49.8%                          ] 
 
[===========================50.1%                          ] 
 
[===========================50.5%                          ] 
 
[===========================50.9%                          ] 
 
[===========================51.1%                          ] 
 
[===========================51.2%                          ] 
 
[===========================51.4%                          ] 
 
[===========================51.5%                          ] 
 
[===========================51.9%                          ] 
 
[===========================52.2%                          ] 
 
[===========================52.2%                          ] 
 
[===========================52.3%                          ] 
 
[===========================52.4%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.5%                          ] 
 
[===========================52.7%                          ] 
 
[===========================52.8%                          ] 
 
[===========================52.9%                          ] 
 
[===========================53.1%                          ] 
 
[===========================53.3%                          ] 
 
[===========================53.5%                          ] 
 
[===========================53.7%                          ] 
 
[===========================53.7%                          ] 
 
[===========================53.9%                          ] 
 
[===========================53.9%                          ] 
 
[===========================53.9%                          ] 
 
[===========================53.9%                          ] 
 
[===========================53.9%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.0%                          ] 
 
[===========================54.1%                          ] 
 
[===========================54.1%                          ] 
 
[===========================54.2%                          ] 
 
[===========================54.2%                          ] 
 
[===========================54.2%                          ] 
 
[===========================54.2%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.3%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.4%                          ] 
 
[===========================54.5%                          ] 
 
[===========================54.5%                          ] 
 
[===========================54.5%                          ] 
 
[===========================54.5%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.6%                          ] 
 
[===========================54.7%                          ] 
 
[===========================54.7%                          ] 
 
[===========================54.7%                          ] 
 
[===========================54.7%                          ] 
 
[===========================54.8%                          ] 
 
[===========================54.8%                          ] 
 
[===========================54.8%                          ] 
 
[===========================54.8%                          ] 
 
[===========================54.9%                          ] 
 
[===========================54.9%                          ] 
 
[===========================54.9%                          ] 
 
[===========================54.9%                          ] 
 
[===========================54.9%                          ] 
 
[===========================54.9%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.0%                          ] 
 
[===========================55.1%                          ] 
 
[===========================55.1%                          ] 
 
[===========================55.1%                          ] 
 
[===========================55.1%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.2%                          ] 
 
[===========================55.3%                          ] 
 
[===========================55.3%                          ] 
 
[===========================55.4%                          ] 
 
[===========================55.4%                          ] 
 
[===========================55.4%                          ] 
 
[===========================55.4%                          ] 
 
[===========================55.4%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.5%                          ] 
 
[===========================55.6%                          ] 
 
[===========================55.6%                          ] 
 
[===========================55.6%                          ] 
 
[===========================55.6%                          ] 
 
[===========================55.7%                          ] 
 
[===========================55.7%                          ] 
 
[===========================55.7%                          ] 
 
[===========================55.7%                          ] 
 
[===========================55.7%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.8%                          ] 
 
[===========================55.9%                          ] 
 
[===========================55.9%                          ] 
 
[===========================55.9%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.0%                          ] 
 
[===========================56.1%                          ] 
 
[===========================56.1%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.2%                          ] 
 
[===========================56.3%                          ] 
 
[===========================56.3%                          ] 
 
[===========================56.3%                          ] 
 
[===========================56.3%                          ] 
 
[===========================56.4%                          ] 
 
[===========================56.4%                          ] 
 
[===========================56.4%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.5%                          ] 
 
[===========================56.6%                          ] 
 
[===========================56.6%                          ] 
 
[===========================56.6%                          ] 
 
[===========================56.6%                          ] 
 
[===========================56.7%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.8%                          ] 
 
[===========================56.9%=                         ] 
 
[===========================56.9%=                         ] 
 
[===========================56.9%=                         ] 
 
[===========================57.1%=                         ] 
 
[===========================57.4%=                         ] 
 
[===========================57.4%=                         ] 
 
[===========================57.6%=                         ] 
 
[===========================57.6%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.7%=                         ] 
 
[===========================57.8%=                         ] 
 
[===========================57.8%=                         ] 
 
[===========================57.9%=                         ] 
 
[===========================57.9%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.0%=                         ] 
 
[===========================58.3%=                         ] 
 
[===========================58.3%=                         ] 
 
[===========================58.4%=                         ] 
 
[===========================59.2%==                        ] 
 
[===========================59.2%==                        ] 
 
[===========================59.2%==                        ] 
 
[===========================59.6%==                        ] 
 
[===========================59.7%==                        ] 
 
[===========================59.8%==                        ] 
 
[===========================60.2%==                        ] 
 
[===========================60.2%==                        ] 
 
[===========================60.3%==                        ] 
 
[===========================62.3%====                      ] 
 
[===========================84.9%=================         ] 
 
[==========================100.0%==========================] 
The restore operation completed successfully.
The operation completed successfully.
 
 
========= End of CMD: =========
 
 
========= SFC /scannow =========
 
 
 
Beginning system scan.  This process will take some time.
 
 
 
Beginning verification phase of system scan.
 
 
Verification 0% complete.
Verification 1% complete.
Verification 1% complete.
Verification 2% complete.
Verification 2% complete.
Verification 3% complete.
Verification 4% complete.
Verification 4% complete.
Verification 5% complete.
Verification 5% complete.
Verification 6% complete.
Verification 7% complete.
Verification 7% complete.
Verification 8% complete.
Verification 8% complete.
Verification 9% complete.
Verification 10% complete.
Verification 10% complete.
Verification 11% complete.
Verification 11% complete.
Verification 12% complete.
Verification 13% complete.
Verification 13% complete.
Verification 14% complete.
Verification 14% complete.
Verification 15% complete.
Verification 16% complete.
Verification 16% complete.
Verification 17% complete.
Verification 17% complete.
Verification 18% complete.
Verification 19% complete.
Verification 19% complete.
Verification 20% complete.
Verification 20% complete.
Verification 21% complete.
Verification 22% complete.
Verification 22% complete.
Verification 23% complete.
Verification 23% complete.
Verification 24% complete.
Verification 25% complete.
Verification 25% complete.
Verification 26% complete.
Verification 26% complete.
Verification 27% complete.
Verification 28% complete.
Verification 28% complete.
Verification 29% complete.
Verification 29% complete.
Verification 30% complete.
Verification 31% complete.
Verification 31% complete.
Verification 32% complete.
Verification 32% complete.
Verification 33% complete.
Verification 34% complete.
Verification 34% complete.
Verification 35% complete.
Verification 35% complete.
Verification 36% complete.
Verification 37% complete.
Verification 37% complete.
Verification 38% complete.
Verification 38% complete.
Verification 39% complete.
Verification 40% complete.
Verification 40% complete.
Verification 41% complete.
Verification 41% complete.
Verification 42% complete.
Verification 43% complete.
Verification 43% complete.
Verification 44% complete.
Verification 44% complete.
Verification 45% complete.
Verification 46% complete.
Verification 46% complete.
Verification 47% complete.
Verification 47% complete.
Verification 48% complete.
Verification 49% complete.
Verification 49% complete.
Verification 50% complete.
Verification 50% complete.
Verification 51% complete.
Verification 52% complete.
Verification 52% complete.
Verification 53% complete.
Verification 53% complete.
Verification 54% complete.
Verification 55% complete.
Verification 55% complete.
Verification 56% complete.
Verification 56% complete.
Verification 57% complete.
Verification 58% complete.
Verification 58% complete.
Verification 59% complete.
Verification 59% complete.
Verification 60% complete.
Verification 61% complete.
Verification 61% complete.
Verification 62% complete.
Verification 62% complete.
Verification 63% complete.
Verification 64% complete.
Verification 64% complete.
Verification 65% complete.
Verification 65% complete.
Verification 66% complete.
Verification 67% complete.
Verification 67% complete.
Verification 68% complete.
Verification 68% complete.
Verification 69% complete.
Verification 70% complete.
Verification 70% complete.
Verification 71% complete.
Verification 71% complete.
Verification 72% complete.
Verification 73% complete.
Verification 73% complete.
Verification 74% complete.
Verification 74% complete.
Verification 75% complete.
Verification 76% complete.
Verification 76% complete.
Verification 77% complete.
Verification 77% complete.
Verification 78% complete.
Verification 79% complete.
Verification 79% complete.
Verification 80% complete.
Verification 80% complete.
Verification 81% complete.
Verification 82% complete.
Verification 82% complete.
Verification 83% complete.
Verification 83% complete.
Verification 84% complete.
Verification 85% complete.
Verification 85% complete.
Verification 86% complete.
Verification 86% complete.
Verification 87% complete.
Verification 88% complete.
Verification 88% complete.
Verification 89% complete.
Verification 89% complete.
Verification 90% complete.
Verification 91% complete.
Verification 91% complete.
Verification 92% complete.
Verification 92% complete.
Verification 93% complete.
Verification 94% complete.
Verification 94% complete.
Verification 95% complete.
Verification 95% complete.
Verification 96% complete.
Verification 97% complete.
Verification 97% complete.
Verification 98% complete.
Verification 98% complete.
Verification 99% complete.
Verification 100% complete.
 
 
Windows Resource Protection did not find any integrity violations.
 
 
 
========= End of CMD: =========
 
 
=========== EmptyTemp: ==========
 
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 31658456 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 628328 B
Edge => 0 B
Chrome => 1141048987 B
Firefox => 0 B
Opera => 0 B
 
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 12870 B
karakas => 86134277 B
 
RecycleBin => 1138 B
EmptyTemp: => 1.2 GB temporary data Removed.
 
================================
 
 
The system needed a reboot.
 
==== End of Fixlog 10:31:31 ====

  • 0

Advertisements


#41
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

CrystalDiskInfo:
 
 
Not sure how to post the screen shot. I keep getting an error that I am not allowed to post image extension.
 
The health status shows GOOOD
Temperature: 41 C

 

OK I was able to attach the screen shot thx!

Attached Files


  • 0

#42
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Hi.
 
A computer with so many programs installed, and so old (you talked about 7 years of usage which doesn't mean that you need a new computer, but it's a considerable time period) can use so much RAM. It's not strange. 
 
Purposely, I asked you to run once again DISM and SFC. No corruptions were found, and according to the screenshot you posted, no disk issue, something which confirms earlier checks (chkdsk scan). 
 
The only remaining thing we could do here, is an in-place upgrade, which is going to re-install the operating system, fixing any errors, without removing any program/data. If after that the computer behaves with the same manner, then, I suggest you to open a new topic at the Windows 10 Forum, describing the problem and mentioning that the computer is clean, with SFC, DISM, CHKDSK checks already done. 

 

For the in-place upgrade which hopefully will resolve any issue:

 

• Go to this Microsoft page and under the title Create Windows 10 installation media press on Download tool now.
• Save the tool on your Desktop and double click to run it.
• On the License terms page, if you accept the license terms, select Accept.
• On the What do you want to do page, select Create installation media (USB....) and then select Next.
• Choose the ISO file option. Once the download is complete, right click the ISO and select the option Mount.
• Open the Windows File Explorer and open mounted ISO, and run the setup.exe file.
• Follow the instructions and click on the option Choose what to keep.
• Select the option Keep personal files and apps and click next.
• Windows Setup will now start the in-place upgrade installation to repair Windows.

 

The above, will take some time, perhaps a couple of hours or more. I'll be waiting for your reply with your feedback. 


  • 0

#43
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

Hi appreciate this suggestion. I will try the in-place upgrade and let you know. 

 

Yes I am actively looking for a new desktop.

 

Thanks again.


  • 0

#44
daniel.karakas

daniel.karakas

    Member

  • Topic Starter
  • Member
  • PipPipPip
  • 146 posts

I'm going away for new years and will perform the in-place upgrade when I return. I will get back to you by January6.

 

Thank you,

 

Regards,


  • 0

#45
DR M

DR M

    The Grecian Geek

  • Malware Removal
  • 4,123 posts

Happy New Year to you and your family.

 

I'll be waiting for your feedback at January 6th. 


  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP