Prosím o kontrolu Logu -100% disk už po zapnutí pc (Windows 10)
Napsal: 25 čer 2016 15:33
Zdravím mohly by ste mi prosím skontrolavať log, už po zapnutí pc disk vyskakuje na 100% aj keď nieje nič spustené.
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:26:02, on 25.06.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0420)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\GlassWire\GWIdlMon.exe
C:\WINDOWS\system32\conhost.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\USB Camera\VM331STI.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\GlassWire\GlassWire.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera_crashreporter.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\360\Total Security\safemon\chrome\360webshield.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Users\Home\AppData\Local\Temp\scoped_dir5328_26611\HijackThis.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IgfxTray] "C:\WINDOWS\system32\igfxtray.exe"
O4 - HKLM\..\Run: [HotKeysCmds] "C:\WINDOWS\system32\hkcmd.exe"
O4 - HKLM\..\Run: [Persistence] "C:\WINDOWS\system32\igfxpers.exe"
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [QHSafeTray] "C:\Program Files\360\Total Security\safemon\360Tray.exe" /start
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [GlassWire] "C:\Program Files\GlassWire\glasswire.exe" -hide
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\system32\IntelCpHeciSvc.exe
O23 - Service: GlassWire Control Service (GlassWire) - SecureMix LLC - C:\Program Files\GlassWire\GWCtlSrv.exe
O23 - Service: 360 Total Security (QHActiveDefense) - QIHU 360 SOFTWARE CO. LIMITED - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
--
End of file - 5173 bytes
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:26:02, on 25.06.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0420)
Boot mode: Normal
Running processes:
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\system32\taskhostw.exe
C:\Windows\System32\RuntimeBroker.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\GlassWire\GWIdlMon.exe
C:\WINDOWS\system32\conhost.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\USB Camera\VM331STI.EXE
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\GlassWire\GlassWire.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera_crashreporter.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\360\Total Security\safemon\chrome\360webshield.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\WINDOWS\system32\ApplicationFrameHost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Program Files\Opera\38.0.2220.31\opera.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
C:\Users\Home\AppData\Local\Temp\scoped_dir5328_26611\HijackThis.exe
C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv.exe
C:\WINDOWS\system32\conhost.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IgfxTray] "C:\WINDOWS\system32\igfxtray.exe"
O4 - HKLM\..\Run: [HotKeysCmds] "C:\WINDOWS\system32\hkcmd.exe"
O4 - HKLM\..\Run: [Persistence] "C:\WINDOWS\system32\igfxpers.exe"
O4 - HKLM\..\Run: [331BigDog] "C:\Program Files\USB Camera\VM331STI.EXE"
O4 - HKLM\..\Run: [QHSafeTray] "C:\Program Files\360\Total Security\safemon\360Tray.exe" /start
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [GlassWire] "C:\Program Files\GlassWire\glasswire.exe" -hide
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\system32\IntelCpHeciSvc.exe
O23 - Service: GlassWire Control Service (GlassWire) - SecureMix LLC - C:\Program Files\GlassWire\GWCtlSrv.exe
O23 - Service: 360 Total Security (QHActiveDefense) - QIHU 360 SOFTWARE CO. LIMITED - C:\Program Files\360\Total Security\safemon\QHActiveDefense.exe
O23 - Service: Intel(R) System Usage Report Service SystemUsageReportSvc_WILLAMETTE (SystemUsageReportSvc_WILLAMETTE) - Unknown owner - C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
O23 - Service: User Energy Server Service WILLAMETTE (USER_ESRV_SVC_WILLAMETTE) - Unknown owner - C:\Program Files\Intel\SUR\WILLAMETTE\ESRV\esrv_svc.exe
--
End of file - 5173 bytes