Kontrola logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Skeleton
Level 3.5
Level 3.5
Příspěvky: 743
Registrován: říjen 12
Bydliště: Kutná Hora
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod Skeleton » 25 črc 2017 14:04

Fix result of Farbar Recovery Scan Tool (x64) Version: 23-07-2017
Ran by Pepa (25-07-2017 13:50:31) Run:1
Running from C:\Users\Pepa\Desktop
Loaded Profiles: Pepa (Available Profiles: Pepa)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
SearchScopes: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: No Name -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
Toolbar: HKLM - No Name - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - No File
S3 cpuz143; C:\Users\Pepa\AppData\Local\Temp\cpuz143\cpuz143_x64.sys [48952 2017-07-22] (CPUID) <==== ATTENTION
C:\3590F75ABA9E485486C100C1A9D4FF06Z..Z..Z.Z......Z
C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ
C:\ProgramData\Spybot - Search & Destroy
C:\Program Files (x86)\Spybot - Search & Destroy 2
C:\ProgramData\SoftwareUpdateTemp.xml
C:\Users\Pepa\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Pepa\AppData\Local\Temp\sfareca00001.dll
ContextMenuHandlers01: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => -> No File
ContextMenuHandlers01: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File
ContextMenuHandlers05: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers06: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => -> No File
Task: {370FB2CE-D9C7-4E0B-8C2D-D93AAF8EAFAB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-20] (Google Inc.)
Task: {921C6413-5D44-41B1-8696-F70A518AC81C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2017-03-20] (Google Inc.)
AlternateDataStreams: C:\3590F75ABA9E485486C100C1A9D4FF06Z..Z..Z.Z......Z:1 [898]
AlternateDataStreams: C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ:1 [882]
AlternateDataStreams: C:\ProgramData\Reprise:wupeogjxlctlfudivq`qsp`28hfm [0]
IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com
IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com
IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com
IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com
IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com
IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com
IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com
IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com
There are 7936 more sites.
IE trusted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\sharepoint.com -> hxxps://campuscvut-files.sharepoint.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\007guard.com -> install.007guard.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\008k.com -> www.008k.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\00hq.com -> www.00hq.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\010402.com -> 010402.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\0scan.com -> www.0scan.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\1-2005-search.com -> www.1-2005-search.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\1000gratisproben.com -> www.1000gratisproben.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\1001namen.com -> www.1001namen.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\100888290cs.com -> mir.100888290cs.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\100sexlinks.com -> www.100sexlinks.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\10sek.com -> www.10sek.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\12-26.net -> user1.12-26.net
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\12-27.net -> user1.12-27.net
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\123fporn.info -> www.123fporn.info
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\123moviedownload.com -> www.123moviedownload.com
IE restricted site: HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\...\123simsen.com -> www.123simsen.com
There are 7936 more sites.

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} => key removed successfully
HKLM\Software\Classes\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => key removed successfully
HKLM\Software\Classes\CLSID\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => value removed successfully
HKLM\Software\Classes\CLSID\{9421DD08-935F-4701-A9CA-22DF90AC4EA6} => key not found.
cpuz143 => service not found.
C:\3590F75ABA9E485486C100C1A9D4FF06Z..Z..Z.Z......Z => moved successfully
C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ => moved successfully
C:\ProgramData\Spybot - Search & Destroy => moved successfully
C:\Program Files (x86)\Spybot - Search & Destroy 2 => moved successfully
C:\ProgramData\SoftwareUpdateTemp.xml => moved successfully
C:\Users\Pepa\AppData\Local\Temp\sfamcc00001.dll => moved successfully
C:\Users\Pepa\AppData\Local\Temp\sfareca00001.dll => moved successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PDFXChange Editor Context menu => key removed successfully
HKLM\Software\Classes\CLSID\{2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => key not found.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\WinRAR32 => key removed successfully
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} => key not found.
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => key removed successfully
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => key not found.
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\WinRAR32 => key removed successfully
HKLM\Software\Classes\CLSID\{B41DB860-8EE4-11D2-9906-E49FADC173CA} => key not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{370FB2CE-D9C7-4E0B-8C2D-D93AAF8EAFAB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{370FB2CE-D9C7-4E0B-8C2D-D93AAF8EAFAB} => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{921C6413-5D44-41B1-8696-F70A518AC81C} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{921C6413-5D44-41B1-8696-F70A518AC81C} => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => key removed successfully
"C:\3590F75ABA9E485486C100C1A9D4FF06Z..Z..Z.Z......Z" => ":1" ADS not found.
"C:\3590F75ABA9E485486C100C1A9D4FF06ZZZ..Z.....ZZZZZ" => ":1" ADS not found.
C:\ProgramData\Reprise => ":wupeogjxlctlfudivq`qsp`28hfm" ADS removed successfully.
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0scan.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-2005-search.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1000gratisproben.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001namen.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\12-26.net => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\12-27.net => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123fporn.info => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123haustiereundmehr.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123moviedownload.com => key removed successfully
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123simsen.com => key removed successfully
There are 7936 more sites. => Error: No automatic fix found for this entry.
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\sharepoint.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\007guard.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\010402.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\032439.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0scan.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-2005-search.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1000gratisproben.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001namen.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100888290cs.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\10sek.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\12-26.net => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\12-27.net => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123fporn.info => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123haustiereundmehr.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123moviedownload.com => key removed successfully
HKU\S-1-5-21-4106156512-3336392037-3228977710-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\123simsen.com => key removed successfully
There are 7936 more sites. => Error: No automatic fix found for this entry.

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 102848417 B
Java, Flash, Steam htmlcache => 7331955 B
Windows/system/drivers => 3263569 B
Edge => 29690 B
Chrome => 167936 B
Firefox => 377126005 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 7168 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 0 B
NetworkService => 52322 B
Pepa => 543380319 B

RecycleBin => 0 B
EmptyTemp: => 995.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 13:50:52 ====
► Zobrazit spoiler

Reklama
Uživatelský avatar
Skeleton
Level 3.5
Level 3.5
Příspěvky: 743
Registrován: říjen 12
Bydliště: Kutná Hora
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod Skeleton » 25 črc 2017 14:07

Crash Dump Analysis
--------------------------------------------------------------------------------

Crash dump directory: C:\WINDOWS\Minidump

Crash dumps are enabled on your computer.

On Mon 24.7.2017 10:54:12 your computer crashed
crash dump file: C:\WINDOWS\Minidump\072417-29312-01.dmp
This was probably caused by the following module: aswmbr.sys (0xFFFFF80079FD95AE)
Bugcheck code: 0xD1 (0xFFFF9A000453B010, 0xFF, 0x0, 0xFFFFF80079FD95AE)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: aswmbr.sys .
Google query: aswmbr.sys DRIVER_IRQL_NOT_LESS_OR_EQUAL



On Mon 24.7.2017 10:54:12 your computer crashed
crash dump file: C:\WINDOWS\memory.dmp
This was probably caused by the following module: aswmbr.sys (aswMBR+0x95AE)
Bugcheck code: 0xD1 (0xFFFF9A000453B010, 0xFF, 0x0, 0xFFFFF80079FD95AE)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: aswmbr.sys .
Google query: aswmbr.sys DRIVER_IRQL_NOT_LESS_OR_EQUAL



On Sun 23.7.2017 9:35:32 your computer crashed
crash dump file: C:\WINDOWS\Minidump\072317-36343-01.dmp
This was probably caused by the following module: aswmbr.sys (0xFFFFF800232D95AE)
Bugcheck code: 0xD1 (0xFFFFA28098923010, 0xFF, 0x0, 0xFFFFF800232D95AE)
Error: DRIVER_IRQL_NOT_LESS_OR_EQUAL
Bug check description: This indicates that a kernel-mode driver attempted to access pageable memory at a process IRQL that was too high.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: aswmbr.sys .
Google query: aswmbr.sys DRIVER_IRQL_NOT_LESS_OR_EQUAL



On Sun 23.7.2017 9:30:44 your computer crashed
crash dump file: C:\WINDOWS\Minidump\072317-28171-01.dmp
This was probably caused by the following module: aswvmm.sys (0xFFFFF800546F78BE)
Bugcheck code: 0x50 (0xFFFFF6FB7DBEDCE0, 0x0, 0xFFFFF800546F78BE, 0x2)
Error: PAGE_FAULT_IN_NONPAGED_AREA
Bug check description: This indicates that invalid system memory has been referenced.
This appears to be a typical software driver bug and is not likely to be caused by a hardware problem.
A third party driver was identified as the probable root cause of this system error. It is suggested you look for an update for the following driver: aswvmm.sys .
Google query: aswvmm.sys PAGE_FAULT_IN_NONPAGED_AREA





--------------------------------------------------------------------------------
Conclusion
--------------------------------------------------------------------------------

4 crash dumps have been found and analyzed. 2 third party drivers have been identified to be causing system crashes on your computer. It is strongly suggested that you check for updates for these drivers on their company websites. Click on the links below to search with Google for updates for these drivers:

aswvmm.sys
aswmbr.sys

If no updates for these drivers are available, try searching with Google on the names of these drivers in combination with the errors that have been reported for these drivers. Include the brand and model name of your computer as well in the query. This often yields interesting results from discussions on the web by users who have been experiencing similar problems.


Read the topic general suggestions for troubleshooting system crashes for more information.

Note that it's not always possible to state with certainty whether a reported driver is responsible for crashing your system or that the root cause is in another module. Nonetheless it's suggested you look for updates for the products that these drivers belong to and regularly visit Windows update or enable automatic updates for Windows. In case a piece of malfunctioning hardware is causing trouble, a search with Google on the bug check errors together with the model name and brand of your computer may help you investigate this further.
► Zobrazit spoiler

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod jaro3 » 25 črc 2017 18:46

"STOP 0×00000050: PAGE_FAULT_IN_NONPAGED_AREA – aswvmm.sys" PAGE_FAULT_IN_NONPAGED_AREA
neměnil si v poslední době nějaký hardware?

Co problémy po OTL?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Skeleton
Level 3.5
Level 3.5
Příspěvky: 743
Registrován: říjen 12
Bydliště: Kutná Hora
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod Skeleton » 25 črc 2017 19:25

Měnil jsem před týdnem procesor za i7 4790k namísto mého předešlého i5 4440

co je přesně OTL?
► Zobrazit spoiler

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod jaro3 » 25 črc 2017 21:40

Procesor , no , možná by to chtělo přeinstalovat avast.

Otl , to jsem se spletl , myslel jsem FRST.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Skeleton
Level 3.5
Level 3.5
Příspěvky: 743
Registrován: říjen 12
Bydliště: Kutná Hora
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod Skeleton » 26 črc 2017 08:41

Já ale nemám v PC žádný antivir kromě Defendru
► Zobrazit spoiler

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu

Příspěvekod jaro3 » 26 črc 2017 09:19

Stáhni si zde DelFix
https://toolslib.net/downloads/viewdownload/2-delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7 a 8, musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 12 hostů