Password reset and notification emails are now sending correctly.
If you recently requested a password reset, please check your inbox (and spam folder just in case).
You can now reset your password and log in as normal.
Welcome back to PCHF, and thank you for your patience during our migration process!
— The PCHF Team
Welcome to PC Help Forum!
You’re viewing our community as a guest.
That means you can browse posts, but can’t yet reply or start new topics.
Join us today — it's completely free!
As a member, you'll be able to:
✅ Get personalized tech support from trusted volunteers
🦠 Work one-on-one with our Malware Removal Specialists
PC downloading data without reason even after reset
Hi, I’m not sure but I suppose I got a virus on my pc which was downloading large amounts of data for no reason. I reset my pc (didn’t keep files) but it’s still doing the same thing.
I would be really grateful if someone could help me with this problem. Thank you in advance!
Please download the FRST 32 bit or FRST 64bit version to suit your operating system. It is important FRST is downloaded to your desktop.
If you are unsure if your operating system is 32 or 64 Bit please go HERE.
Once downloaded right click the FRST desktop icon and select “Run as administrator” from the menu"
[IMG alt=“icon2.jpg”]https://pchelpforum.net/attachments/icon2-jpg.794/
If you receive any security warnings, or the User Account Control warning opens at any time whilst using FRST you can safely allow FRST to proceed.
FRST will open with two dialogue boxes, accept the disclaimer.
[ol]
[li]Accept the default whitelist options,[/li][li]If the additions.txt options box is not checked please select it.[/li][li]Then select Scan[/li][/ol]
[IMG alt=“frst.jpg”]https://pchelpforum.net/attachments/frst-jpg.796/
Frst will take a few minutes to scan your computer, and when finished will produce two log files on your desktop, FRST.txt, and Addition.txt. They will display immediately on the desktop, but can be reopened later as a notepad file.
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Addition.txt
[HEADING=1]Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by acco5 (14-09-2022 14:45:38)
Running from C:\Users\acco5\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1889 (X64) (2022-09-13 04:33:03)
Boot Mode: Normal[/HEADING]
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Enabled - Up to date) {9D4501E6-72F6-2877-C789-89AF6F535B2C}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: McAfee Firewall (Enabled) {A57E80C3-3899-292F-ECD6-209A91801C57}
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-895565649-3931333595-811618271-1001\Control Panel\Desktop\Wallpaper → C:\Users\acco5\Desktop\white_flowers_nature_plants-21425.jpg!d.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
Error: (09/12/2022 09:47:19 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: LAPTOP-6ODOHNQP)
Description: Application or service ‘ROG Live Service’ could not be restarted.
Error: (09/12/2022 09:43:28 PM) (Source: ESENT) (EventID: 522) (User: )
Description: StartMenuExperienceHost (9300,P,98) TILEREPOSITORYS-1-5-21-895565649-3931333595-811618271-1001: An attempt to open the device with name “\.\C:” containing "C:" failed with system error 5 (0x00000005): "Access is denied. ". The operation will fail with error -1032 (0xfffffbf8).
Error: (09/12/2022 09:39:54 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\WIN-22BCO55SN2S$ via https://amd-keyid-578c545f7969514212...lates/Aik/scep failed:
GetCACaps
GetCACaps: Not Found
{“Message”:“The authority "amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoft aik.azure.net" does not exist.”}
HTTP/1.1 404 Not Found
Date: Mon, 12 Sep 2022 19:39:53 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 8d2a10e3-7b14-4282-a744-5f11ac412de1
Method: GET(453ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
Error: (09/13/2022 06:34:52 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: License Activation (slui.exe) failed with the following error code:
hr=0x80072EE7
Command-line arguments:
RuleId=3482d82e-ca2c-4e1f-8864-da0267b484b2;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=0567073a-7d74-403b-b2d5-6b35da372d8d;NotificationInterval=1440;Trigger=Tim erEvent
[HEADING=1]System errors:[/HEADING]
Error: (09/12/2022 11:53:52 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error “1115” attempting to start the service wuauserv with arguments “Unavailable” in order to run the server:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}
Error: (09/12/2022 11:53:52 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error “1115” attempting to start the service wuauserv with arguments “Unavailable” in order to run the server:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}
Error: (09/13/2022 06:37:45 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server EnterpriseDeviceManagement.Service.AutoPilot.AutoP ilotServer did not register with DCOM within the required timeout.
Error: (09/13/2022 06:35:15 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server EnterpriseDeviceManagement.Service.AutoPilot.AutoP ilotServer did not register with DCOM within the required timeout.
Error: (09/13/2022 06:32:18 AM) (Source: WinRM) (EventID: 10142) (User: )
Description: The WinRM service cannot migrate the listener with Address * and Transport HTTP. A listener that has the same Address and Transport configuration already exists.
Error: (09/13/2022 06:30:58 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Network List Service service terminated with the following error:
The device is not ready.
Error: (09/13/2022 06:30:58 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {A47979D2-C419-11D9-A5B4-001185AD2B89} did not register with DCOM within the required timeout.
Error: (09/13/2022 06:30:18 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {7D096C5F-AC08-4F1F-BEB7-5C22C517CE39} did not register with DCOM within the required timeout.
Windows Defender:
================Event[0]:
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
[HEADING=1]CodeIntegrity:[/HEADING]
Date: 2022-09-14 14:45:14
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost. exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-09-14 14:45:14
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost. exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.
Date: 2022-09-14 14:39:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClien t.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-09-14 14:39:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClien t.exe) attempted to load \Device\HarddiskVolume3\Program Files\McAfee\MfeAV\AMSIExt.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. G513IC.314 03/30/2022
Motherboard: ASUSTeK COMPUTER INC. G513IC
Processor: AMD Ryzen 7 4800H with Radeon Graphics
Percentage of memory in use: 36%
Total physical RAM: 15792.36 MB
Available physical RAM: 10024.63 MB
Total Virtual: 18736.36 MB
Available Virtual: 10781.53 MB
You have Mcafee and Avast installed, please remove both with GeekUninstaller. then reboot the machine and post new FRST and Addition.txt logs. There is no need for either in windows 10, at least while we work on the machine please remove. You can install at a later time, when we are done.
Prior to running the FRST tool again and after removing the two antivirus applications., please run Adware Cleaner, and malwarebytes.
Adware Cleaner
[ul]
[li]Download AdwCleaner and save it to your Desktop[/li][li]Right-click on AdwCleaner.exeand select[/li]
Run as Administrator
[li]Accept the EULA (I accept), then click on Scan Now[/li][li]Let the scan complete[/li][li]Once the scan completes, make sure that every item listed in the different tabs is checked and click on the Clean & Repair button[/li][li]Subsequently you may be asked to Run Basic Repair. This is optional. I would suggest holding off on this for now.[/li][li]Once the cleaning process is complete, AdwCleaner will ask you to restart your computer[/li][li]Close all other open windows and allow it to restart[/li][li]After the restart, Notepad will open with the AdwCleaner cleaning log[/li][li]Please Attach the contents of that log into your next reply to me[/li][/ul]
Download Malwarebytes v.4 . Install and run.
[ul]
[li]Once the MBAM dashboard opens, click on Settings (gear icon).[/li][li]Click on Security tab and make sure that all four Scan options are enabled.[/li][li]Close Settings and click on the Scan button on the dashboard.[/li][li]Once the scan is completed make sure you have it quarantine any detections it finds.[/li][li]If no detections were found click on the Save results drop-down, then the Export to TXT button and save the file as a Text file to your desktop.[/li][li]If there were detections then once the quarantine has completed click on the View report button, then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and attach that log on your next reply.[/li][li]If the computer restarted to quarantine you can access the logs from the Detection History, then the History tab. Highlight the most recent scan and double-click to open it. Then click the Export drop-down, then the Export to TXT button, and save the file as a Text file to your desktop or other location you can find and include that log on your next reply.[/li][/ul]
I ran the FRST tool but I’m sorry I didn’t run Adwcleaner and Malwarebytes before that, only after. Actually, I’ve been using both for a long time and it has been a while since they have detected anything. Anyway, below are all the reports you asked for. Adwcleaner didn’t open any Notepad file, but I went into Log Files and copied the scan results.
FRST
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Ran by acco5 (administrator) on LAPTOP-6ODOHNQP (ASUSTeK COMPUTER INC. ROG Strix G513IC_G513IC) (15-09-2022 09:48:53)
Running from C:\Users\acco5\Desktop
Loaded Profiles: acco5
Platform: Microsoft Windows 10 Home Version 21H2 19044.1889 (X64) Language: English (United Kingdom)
Default browser: FF
Boot Mode: Normal
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Addition
[HEADING=1]Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by acco5 (15-09-2022 09:49:44)
Running from C:\Users\acco5\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1889 (X64) (2022-09-13 04:33:03)
Boot Mode: Normal[/HEADING]
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-895565649-3931333595-811618271-1001\Control Panel\Desktop\Wallpaper → C:\Users\acco5\Desktop\white_flowers_nature_plants-21425.jpg!d.jpg
DNS Servers: Media is not connected to internet.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Pol icies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Exp lorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== Event log errors: ========================
[HEADING=1]Application errors:[/HEADING]
Error: (09/15/2022 09:47:12 AM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\LAPTOP-6ODOHNQP$ via https://amd-keyid-578c545f7969514212...lates/Aik/scep failed:
GetCACaps
Method: GET(16ms)
Stage: GetCACaps
The server name or address could not be resolved 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)
Error: (09/15/2022 09:46:30 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, A system shutdown is in progress.
.
Error: (09/15/2022 09:46:30 AM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.
]
Error: (09/12/2022 11:54:38 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: SCEP Certificate enrollment initialization for WORKGROUP\LAPTOP-6ODOHNQP$ via https://amd-keyid-578c545f7969514212...lates/Aik/scep failed:
GetCACaps
GetCACaps: Not Found
{“Message”:“The authority "amd-keyid-578c545f796951421221a4a578acdb5f682f89c8.microsoft aik.azure.net" does not exist.”}
HTTP/1.1 404 Not Found
Date: Mon, 12 Sep 2022 21:54:38 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 05291232-8232-4c24-9467-f80c7c308b86
Method: GET(2062ms)
Stage: GetCACaps
Not found (404). 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)
[HEADING=1]System errors:[/HEADING]
Error: (09/15/2022 09:49:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The McAfee WebAdvisor service failed to start due to the following error:
The system cannot find the file specified.
Error: (09/15/2022 09:48:44 AM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY)
Description: A fatal error occurred while creating a TLS client credential. The internal error state is 10013.
Error: (09/15/2022 09:46:26 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-6ODOHNQP)
Description: The server Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutr al_neutral_cw5n1h2txyewy!Windows.Security.Authenti cation.Web.Core.BackgroundGetTokenTask.ClassId.Web AccountProvider did not register with DCOM within the required timeout.
Error: (09/12/2022 11:53:52 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error “1115” attempting to start the service wuauserv with arguments “Unavailable” in order to run the server:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}
Error: (09/12/2022 11:53:52 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: DCOM got error “1115” attempting to start the service wuauserv with arguments “Unavailable” in order to run the server:
{E60687F7-01A1-40AA-86AC-DB1CBF673334}
Error: (09/13/2022 06:37:45 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server EnterpriseDeviceManagement.Service.AutoPilot.AutoP ilotServer did not register with DCOM within the required timeout.
Error: (09/13/2022 06:35:15 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: The server EnterpriseDeviceManagement.Service.AutoPilot.AutoP ilotServer did not register with DCOM within the required timeout.
Error: (09/13/2022 06:32:18 AM) (Source: WinRM) (EventID: 10142) (User: )
Description: The WinRM service cannot migrate the listener with Address * and Transport HTTP. A listener that has the same Address and Transport configuration already exists.
Windows Defender:
================Event[0]:
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
Date: 2022-09-12 21:46:56
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 0.0.0.0
Update Source: Microsoft Malware Protection Center
Security intelligence Type: AntiSpyware
Update Type: Full
Current Engine Version:
Previous Engine Version: 0.0.0.0
Error code: 0x80072ee7
Error description: The server name or address could not be resolved
[HEADING=1]CodeIntegrity:[/HEADING]
Date: 2022-09-15 09:38:34
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost. exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-09-15 09:38:34
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. G513IC.314 03/30/2022
Motherboard: ASUSTeK COMPUTER INC. G513IC
Processor: AMD Ryzen 7 4800H with Radeon Graphics
Percentage of memory in use: 22%
Total physical RAM: 15792.36 MB
Available physical RAM: 12250.46 MB
Total Virtual: 18736.36 MB
Available Virtual: 13453.59 MB
Download attached fixlist.txt file and save it to the Desktop. NOTE. It’s important that both files, FRST/FRST64 and fixlist.txt are in the same location or the fix will not work. NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system Run FRST/FRST64 and press the Fix button just once and wait. If for some reason the tool needs a restart, please make sure you let the system restart normally. After that let the tool complete its run. When finished FRST will generate a log on the Desktop (Fixlog.txt). Please post it to your reply.
C:\Windows\Temp\ASUS Aac_NBDT HAL_20220912204911.log => moved successfully
C:\Windows\Temp\ASUS Aac_NBDT HAL_20220912204911_000_Setup.log => moved successfully
C:\Windows\Temp\ASUS Aac_NBDT HAL_20220912204916.log => moved successfully
C:\Windows\Temp\catalog.json => moved successfully
Could not move “C:\Windows\Temp\FXSAPIDebugLogFile.txt” => Scheduled to move on reboot.
Could not move “C:\Windows\Temp\FXSTIFFDebugLogFile.txt” => Scheduled to move on reboot.
C:\Windows\Temp\gameinputredist.log => moved successfully
C:\Windows\Temp\GameSDK Service_20220912204946.log => moved successfully
C:\Windows\Temp\GameSDK Service_20220912204946_000_Setup.log => moved successfully
C:\Windows\Temp\httputitlity-2022-09-12.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2132.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2132a.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2132b.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2217.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2223.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2354.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220912-2359.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220913-0005.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220914-1434.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220914-1437.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220914-1437a.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-0933.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-0933a.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-0947.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-0952.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-1018.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220915-1837.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220916-1700.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220916-1703.log => moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220916-1703a.log => moved successfully
Could not move “C:\Windows\Temp\LAPTOP-6ODOHNQP-20220916-1704.log” => Scheduled to move on reboot.
C:\Windows\Temp\mbamiservice.log => moved successfully
C:\Windows\Temp\mb_errors999.log => moved successfully
C:\Windows\Temp\MpCmdRun.log => moved successfully
C:\Windows\Temp\MpSigStub.log => moved successfully
C:\Windows\Temp\msedge_installer.log => moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver( 2022091510180615A4).log => moved successfully
Could not move “C:\Windows\Temp\officeclicktorun.exe_streamserver (202209161704121FF4).log” => Scheduled to move on reboot.
C:\Windows\Temp\tem28B5.tmp => moved successfully
C:\Windows\Temp\tem4CC8.tmp => moved successfully
C:\Windows\Temp\WIN-22BCO55SN2S-20220912-2131.log => moved successfully
C:\Windows\Temp{34CD30CE-B06D-442D-9341-179726D8AD0B} - OProcSessId.dat => moved successfully
C:\Windows\Temp{82701D20-85CE-4816-841C-AF807079C066} - OProcSessId.dat => moved successfully
C:\Windows\Temp{C3A428D7-927D-44E5-B01D-AF94C113D7FA} - OProcSessId.dat => moved successfully
========= End → “C:\Windows\Temp*.*” ========
=========== “C:\WINDOWS\system32*.tmp” ==========
not found
========= End → “C:\WINDOWS\system32*.tmp” ========
=========== “C:\WINDOWS\syswow64*.tmp” ==========
not found
========= End → “C:\WINDOWS\syswow64*.tmp” ========
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 16933008 B
Java, Discord, Steam htmlcache => 0 B
Windows/system/drivers => 6065 B
Edge => 0 B
Firefox => 315172895 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 34338 B
NetworkService => 39326 B
acco5 => 214136 B
RecycleBin => 29283223 B
EmptyTemp: => 344.9 MB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 16-09-2022 17:05:37)
C:\Windows\Temp\FXSAPIDebugLogFile.txt => Is moved successfully
C:\Windows\Temp\FXSTIFFDebugLogFile.txt => Is moved successfully
C:\Windows\Temp\LAPTOP-6ODOHNQP-20220916-1704.log => Is moved successfully
C:\Windows\Temp\officeclicktorun.exe_streamserver( 202209161704121FF4).log => Is moved successfully
We process personal data about users of our site, through the use of cookies and other technologies, to deliver our services, personalize advertising, and to analyze site activity. We may share certain information about our users with our advertising and analytics partners. For additional details, refer to our Privacy Policy.
By clicking "I AGREE" below, you agree to our Privacy Policy and our personal data processing and cookie practices as described therein. You also acknowledge that this forum may be hosted outside your country and you consent to the collection, storage, and processing of your data in the country where this forum is hosted.
Comment