Bezdůvodné zvyšování zátěže CPU Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 08:48

Zdravím,

jednou za čas se mi z ničeho nic začne zvyšovat zatížení CPU, což bych bral jako normální, nicméně jakmile se mrknu na hodnoty v Ryzen master, ty se takřka vteřinu po tom vrátí do normálu. Identifikovat problém nejde ani ve správci úloh, i hned zátěž klesne. Důvod, proč jsem si toho všiml, není ani tak snížení výkonu, což jsem nezaznamenal, ale nenadálá zvýšení otáček na chladiči. Mám podezření na virus a budu rád, když mi zdejší odborníci poradí případné možné řešení. Děkuji.

Logfile of Trend Micro HijackThis v2.0.5
Scan saved at 8:42:16, on 15.12.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.18362.0001)


Boot mode: Normal

Running processes:
C:\Users\pepez\AppData\Roaming\ICQ\bin\icq.exe
C:\Program Files (x86)\Sticky Password\spUIAManager.exe
C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
C:\Program Files (x86)\Sticky Password\spNMHost.exe
C:\Users\pepez\AppData\Local\JDownloader 2.0\JDownloader2.exe
D:\Stažené\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKLM\..\Run: [Wondershare Helper Compact.exe] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
O4 - HKCU\..\Run: [icq.desktop] "C:\Users\pepez\AppData\Roaming\ICQ\bin\icq.exe" /startup
O4 - HKCU\..\Run: [StickyPassword] C:\Program Files (x86)\Sticky Password\stpass.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD Crash Defender Service - Unknown owner - C:\Windows\system32\amdfendrsr.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atiesrxx.exe
O23 - Service: Služba Avast Browser Update (avast) (avast) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Služba Avast Browser Update (avastm) (avastm) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
O23 - Service: Avast Secure Browser Elevation Service (AvastSecureBrowserElevationService) (AvastSecureBrowserElevationService) - AVAST Software - C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6938.199\elevation_service.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\Windows\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_39df3 - Unknown owner - C:\Windows\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files\Google\Chrome\Application\87.0.4280.88\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @oem19.inf,%SERVICE_FRIENDLY_NAME%;Nahimic service (NahimicService) - Unknown owner - C:\Windows\system32\NahimicService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\Windows\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\Windows\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\Windows\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\Windows\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Wondershare Driver Install Service (WsDrvInst) - Wondershare - C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe

--
End of file - 10638 bytes

Reklama
petr22
Guru Level 15
Guru Level 15
Příspěvky: 53597
Registrován: únor 12
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod petr22 » 15 pro 2020 09:01

Bezne chovani Ryzen procesoru.

Je treba prenastavit krivky rizeni otacek ventilatoru v BIOSu.

Problem by to byl pouze v pripade, kdyby bylo zatizeni trvale.

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 09:11

Ono by to asi mělo trvalejší charakter. Jednou jsem to nechal bez povšimnutí cca minutu a CPU nezpomalovalo. To se stalo právě až ve chvíli, kdy jsem se mrkl na hodnoty na Ryzen masteru. To, že ryzen skáče jak zajíc, kor při zapnutém prohlížeči, na to jsem si už zvykl, ale je mi divné, že se to uklidní právě až ve chvíli, kdy se mrknu na hodnoty.

Reálně mi to problém nedělá, alespoň zatím ne, jelikož když jsem u kompu, můžu to ubrzdit hned a když nejsem, tak mám stejně nastavený režim spánku po minutě, ale nerad bych, aby to dělalo ještě nějaké další problémy, pokud to vůbec něco je. Ale otáčky snížím, to jasně.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod jaro3 » 15 pro 2020 16:40

Neinstaloval si v poslední době něco?
že by těžařský vir?

Stáhni si ATF Cleaner
https://www.majorgeeks.com/mg/getmirror ... ner,2.html
Poklepej na ATF Cleaner.exe, klikni na select all, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
http://www.geekstogo.com/forum/files/fi ... -oldtimer/
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode
http://www.bleepingcomputer.com/download/adwcleaner/
http://www.adlice.com/downloadprogress/
pro majitele win7 stáhni zde:
https://filehippo.com/download_adwcleaner/ ( nedávej aktualizaci!)

Ulož si ho na svojí plochu . Klikni na „Souhlasím“ k povrzení podmínek.
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Skenování“
Po skenu se objeví log , který se otevře. ( jinak je uložen systémovem disku jako C:\AdwCleaner [C?].txt ), jeho obsah sem celý vlož.


Stáhni si Malwarebytes' Anti-Malware
https://www.malwarebytes.com/mwb-download/thankyou/

na plochu , nainstaluj a spusť ho
-Pokud není program aktuální , klikni na možnost „Aktualizovat nyní“ či „Opravit nyní“.
- bude nalezena aktualizace a nainstaluje se.
- poté klikni na Spustit skenování
- po proběhnutí skenu se ti objeví hláška vpravo dole, tak klikni na Zobrazit zprávu a vyber Export a vyber Kopírovat do schránky a vlož sem celý log. Nebo klikni na „Textový soubor ( .txt)“ a log si ulož.
-jinak se log nachází v programu po kliknutí na „Zprávy“ , nebo je uložen zde: C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs

- po té klikni na tlačítko Dokončit, a program zavři křížkem vpravo nahoře.
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 18:50

Nejsem si vědom ničeho vyloženě závadného, ale člověk nikdy nemůže vědět tyhle věci jistě. Každopádně ve jsem uděla dle instrukcí a zde jsou výsledky:
AdwCleaner:
# Database: 2020-11-23.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 12-15-2020
# Duration: 00:00:17
# OS: Windows 10 Home
# Scanned: 31920
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Anti-Malware:

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 15.12.20
Čas skenování: 18:43
Logovací soubor: 0df9e53a-3efd-11eb-bb9a-00d861361942.json

-Informace o softwaru-
Verze: 4.3.0.98
Verze komponentů: 1.0.1130
Aktualizovat verzi balíku komponent: 1.0.34383
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 18362.1256)
CPU: x64
Systém souborů: NTFS
Uživatel: DESKTOP-VSG5QD2\pepez

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 262879
Zjištěné hrozby: 0
Hrozby umístěné do karantény: 0
Uplynulý čas: 0 min, 22 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)


Antimalware jsem zkoušel včera, našel cca 8 škodlivých souborů a hodil je do karantény. Vliv na kolísání výkonu u CPU to ale nemělo. Dneska ráno jsem ho odinstaloval, jelikož mi neustále označoval Google Chrome jako škodlivý program.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod jaro3 » 15 pro 2020 18:52

Stáhni si Junkware Removal Tool by Thisisu
http://www.bleepingcomputer.com/downloa ... oval-tool/
https://downloads.malwarebytes.com/file/JRT-EOL
na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.


Sophos Virus Removal Tool je praktický softwarový nástroj, který by mohl odstranit infekce, které antivirový program nedetekuje .
Stáhněte si ho zde z některého odkazu:
http://www.majorgeeks.com/files/details ... _tool.html
http://www.majorgeeks.com/mg/get/sophos ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,2.html

Viry mohou zpomalit počítač, nebo se snaží ukrást vaše data, a ani nevíte , že je máte. Co potřebujete, je rychlý a snadný způsob, jak je najít a zbavit se jich, pokud již máte antivirový program v počítači nainstalován , můžete nainstalovat i nástroj Sophos Virus Removal , který identifikuje a vyčistí zbylé infekce, které mohl Váš antivirový program přehlédnout.
K použití Sophos Virus Removal Tool na něj poklepejte a stiskněte tlačítko „Start scanning“ . Pak bude Sophos Virus Removal Tool vyhledávat a odstraňovat viry, které najde. Může být vyžadován restart.
Pokud byly nalezeny viry , tak po skenu klikni na „Details…“ a potom na „View log file“. Zkopíruj celý log a vlož ho sem. Potom zavři „threat detail“ a klikni na „Start cleanup“.
Jinak se log nachází zde:
C:\ProgramData\Sophos\Sophos Virus Removal Tool\Logs

Stáhni si RogueKiller by Adlice Software
http://www.adlice.com/download/roguekiller/
http://www.bleepingcomputer.com/download/roguekiller/
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7,8,10 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“
- Program skenuje procesy PC. Po proskenování klikni na „Open Report “ , v okně pak na „Open TXT“ a celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 20:22

RogueKiller:

RogueKiller Anti-Malware V14.8.1.0 (x64) [Dec 14 2020] (Premium) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.18363) 64 bits
Started in : Normal mode
User : pepez [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20201215_112755, Driver : Loaded
Mode : Standard Scan, Scan -- Date : 2020/12/15 20:11:30 (Duration : 00:04:54)
Switches : -minimize

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
>>>>>> O87 - Firewall
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{87C508C0-A741-4E72-BCAE-A484AE69C011}C:\windows\temp\files\bin\kmss.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\windows\temp\files\bin\kmss.exe|Name=kmss.exe|Desc=kmss.exe|Defer=User| (C:\windows\temp\files\bin\kmss.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{E4FC9FEC-7B29-48C8-AAAC-F56C2CD57BCA}C:\windows\temp\files\bin\kmss.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\windows\temp\files\bin\kmss.exe|Name=kmss.exe|Desc=kmss.exe|Defer=User| (C:\windows\temp\files\bin\kmss.exe) (missing) -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

JUNKWARE:

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by pepez (Administrator) on 15.12.2020 at 18:58:41,19
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 0





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 15.12.2020 at 18:59:32,16
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 20:23

SOPHOS:

2020-12-15 18:04:01.793 Sophos Virus Removal Tool version 2.7.0
2020-12-15 18:04:01.793 Copyright (c) 2009-2018 Sophos Limited. All rights reserved.

2020-12-15 18:04:01.793 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.

2020-12-15 18:04:01.793 Windows version 6.2 SP 0.0 build 9200 SM=0x300 PT=0x1 WOW64
2020-12-15 18:04:01.793 Checking for updates...
2020-12-15 18:04:01.793 Update progress: proxy server not available
2020-12-15 18:04:06.058 Downloading updates...
2020-12-15 18:04:06.058 Update progress: [I96736] sdds.svrt_v1.20: adding primary package C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED baseVersion=1
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.svrt_v1.20: looking for packages included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.svrt_v1.20: looking for supplements included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2020-12-15 18:04:06.058 Update progress: [V81533] SU::createCachedPackageSource creating cached package source for http://d2.sophosupd.com/update-B: url=SOPHOS
2020-12-15 18:04:06.058 Update progress: [V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
2020-12-15 18:04:06.058 Update progress: [V81533] SU::createCachedPackageSource creating package source to download customer file
2020-12-15 18:04:06.058 Update progress: [V81533] SU::createCachedPackageSource creating cached package source
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: catalogue/sdds.data0910.xml
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: catalogue/sdds.data0910.xml: 47 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a562c6a589215838fe4f843e60971f9dx000.xml: 2522 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a562c6a589215838fe4f843e60971f9dx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 32cdbd6ef10569238d1c34bff0010e75x000.xml: 8673 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 32cdbd6ef10569238d1c34bff0010e75x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE583/1c92fd00a421422e551741ebba66434ex000.xml: 590 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE583/1c92fd00a421422e551741ebba66434ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: SXLSUP/9658bb75e4104455fe802645d41af3dax000.xml: 598 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: SXLSUP/9658bb75e4104455fe802645d41af3dax000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE579/26a1a097a14b8e0bbd28be53a2aafb1ex000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE579/26a1a097a14b8e0bbd28be53a2aafb1ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE580/44559335c6f1bc63dde9d811db091136x000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE580/44559335c6f1bc63dde9d811db091136x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE577/55f0b0a4e526c2d0401e01357d48129ax000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE577/55f0b0a4e526c2d0401e01357d48129ax000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE576/7ed1ad18698b36122cfd3eb25407d6e6x000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE576/7ed1ad18698b36122cfd3eb25407d6e6x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE575/f655ae2aebfe5da4ab6db868c674ba43x000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE575/f655ae2aebfe5da4ab6db868c674ba43x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE578/fd09277a9cc316c7820beadc29555583x000.xml: 601 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE578/fd09277a9cc316c7820beadc29555583x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE582/6f987298c6d0121d0ea65cbc969775a2x000.xml: 9886 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE582/6f987298c6d0121d0ea65cbc969775a2x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: IDE581/ac27a781f955fe1f363fed7ca3ebc5ffx000.xml: 9909 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: IDE581/ac27a781f955fe1f363fed7ca3ebc5ffx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e499540fe0102bd9a2b11010845937ebx000.xml: 615 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e499540fe0102bd9a2b11010845937ebx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4b8b6493af61681b9359850a322b02c7x000.xml: 320 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4b8b6493af61681b9359850a322b02c7x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0c458d84352f35f2b272f8b87e9f9576x000.xml: 753 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0c458d84352f35f2b272f8b87e9f9576x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5c7f0eec8cb5f488397216dcfb7e98e8x000.xml: 331 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5c7f0eec8cb5f488397216dcfb7e98e8x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f68284d0c844770e160f65625b572b5ex000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f68284d0c844770e160f65625b572b5ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b6237eb64a0908d40c9415a7c7ba3843x000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b6237eb64a0908d40c9415a7c7ba3843x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 664cf44531a491f6d94d8e883ebd8013x000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 664cf44531a491f6d94d8e883ebd8013x000.xml: 32 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e633c35f2a494780bd5b5266ac06f13ax000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e633c35f2a494780bd5b5266ac06f13ax000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d48b68b7041bde7c1484c5cb94897672x000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d48b68b7041bde7c1484c5cb94897672x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 28bb8eb241a254452f85129686b027e5x000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 28bb8eb241a254452f85129686b027e5x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2a074ff18c7f3222667dc2edfa46e75fx000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2a074ff18c7f3222667dc2edfa46e75fx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9bb8aeca1b234665832ec72c609610cex000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9bb8aeca1b234665832ec72c609610cex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7009c81b29e1d232da816176e143ae49x000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7009c81b29e1d232da816176e143ae49x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 51d6e7beb10ae1cf1b534f59c6e58e86x000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 51d6e7beb10ae1cf1b534f59c6e58e86x000.xml: 32 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: ff82765819ae95b2d888a3384d7f2c2cx000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: ff82765819ae95b2d888a3384d7f2c2cx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d9a77a07892e11509435eeb503ebcbafx000.xml: 338 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d9a77a07892e11509435eeb503ebcbafx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: edba9d025184cf9e450353e621575fd7x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: edba9d025184cf9e450353e621575fd7x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c3b05924f8bebb2144ddae058798a9e0x000.xml: 320 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c3b05924f8bebb2144ddae058798a9e0x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 143a722a52e62e05945de47738c85c0fx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 143a722a52e62e05945de47738c85c0fx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 15858544ab8b144fb289f49c2e7c806ax000.xml: 332 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 15858544ab8b144fb289f49c2e7c806ax000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b005f37e178c4fc45de9c57268dadc50x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b005f37e178c4fc45de9c57268dadc50x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8dd4490449ab42a73fe4df2c752a7782x000.xml: 332 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8dd4490449ab42a73fe4df2c752a7782x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2bdd7f2449dca74e6c0a452be21fd669x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2bdd7f2449dca74e6c0a452be21fd669x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: ba077c5e28537dafc410507ccaf5f83bx000.xml: 332 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: ba077c5e28537dafc410507ccaf5f83bx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 622ff86f7f51191c0b4211f9198839e1x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 622ff86f7f51191c0b4211f9198839e1x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a717a21f03c0baf80ff3b7efcbee650ex000.xml: 333 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a717a21f03c0baf80ff3b7efcbee650ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b94f44e039005b7e3c8c8defdfff111cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b94f44e039005b7e3c8c8defdfff111cx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7b6b01f7a92c3299cd7ecc6712a282a3x000.xml: 333 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7b6b01f7a92c3299cd7ecc6712a282a3x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7e9506664d6429e608e2fc5e80150e6ex000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7e9506664d6429e608e2fc5e80150e6ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9926f1153226b3461279db0576b8b968x000.xml: 333 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9926f1153226b3461279db0576b8b968x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 11fd91c60b5537ee995139bb1e59dcabx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 11fd91c60b5537ee995139bb1e59dcabx000.xml: 32 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 10cc586b8ee77dd6a51f8dd5075f3acax000.xml: 333 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 10cc586b8ee77dd6a51f8dd5075f3acax000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0c5728402e792e364242aedf969a9619x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0c5728402e792e364242aedf969a9619x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c36aa590e149d1e8c58bfa76d908d58dx000.xml: 333 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c36aa590e149d1e8c58bfa76d908d58dx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7709cac6b0e0c8696437ae40d5f4a2e5x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7709cac6b0e0c8696437ae40d5f4a2e5x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 080cc80eff92b6cecaaeae274cf341ffx000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 080cc80eff92b6cecaaeae274cf341ffx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1f120547cde4b6fc8adf34f7d3d6bf7dx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1f120547cde4b6fc8adf34f7d3d6bf7dx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: ac6ac611c3125f0b0224e97b8cfc4936x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: ac6ac611c3125f0b0224e97b8cfc4936x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: fc68e50bc9832f39d928bca775fe0b9cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: fc68e50bc9832f39d928bca775fe0b9cx000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9cc5dbb4249590a0ab4db2bf92a4823bx000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9cc5dbb4249590a0ab4db2bf92a4823bx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1f64332dd71acc94f66aaedd8d1cae2cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1f64332dd71acc94f66aaedd8d1cae2cx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 98d0e724937c842f0235920e56ab3f7fx000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 98d0e724937c842f0235920e56ab3f7fx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 3aaafb4c32aa1b136ec6bf47fa549977x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 3aaafb4c32aa1b136ec6bf47fa549977x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c273fc4786a7c5e20cbfe175c86dc1d1x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c273fc4786a7c5e20cbfe175c86dc1d1x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a8e63dd3d582daa74c557c8b74da869bx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a8e63dd3d582daa74c557c8b74da869bx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2d5369a16adc35935e40bd4e0917fcb9x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2d5369a16adc35935e40bd4e0917fcb9x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5bc9bf9c36a50906a601c64ca21a3870x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5bc9bf9c36a50906a601c64ca21a3870x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4b812099db60afd66731529870dcfdddx000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4b812099db60afd66731529870dcfdddx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e46cf3f59e09c08f4632a751eb228444x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e46cf3f59e09c08f4632a751eb228444x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 185b17157d6740989cf269926884fbedx000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 185b17157d6740989cf269926884fbedx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 11a7b761da762625b9252ad0eca9e21bx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 11a7b761da762625b9252ad0eca9e21bx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f6d0bf17b45064ff37c855055fdec044x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f6d0bf17b45064ff37c855055fdec044x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2a229e72628b595140faae521eb820e9x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2a229e72628b595140faae521eb820e9x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 20e8d99fd0080fd727c61c169708fe99x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 20e8d99fd0080fd727c61c169708fe99x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 00c6667866530c383bc9507725170927x000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 00c6667866530c383bc9507725170927x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0b460f14889e4e89802b459af8545d51x000.xml: 335 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0b460f14889e4e89802b459af8545d51x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: bc2c5e7314423265da7857c71bf782e5x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: bc2c5e7314423265da7857c71bf782e5x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5e7460873006b214fd68e9307c8b01cfx000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5e7460873006b214fd68e9307c8b01cfx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f222f289153e3ed05abafd3fa3e91c64x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f222f289153e3ed05abafd3fa3e91c64x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5460d93c864bcac80628c717f3c5cad4x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5460d93c864bcac80628c717f3c5cad4x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: df3a4de52142d5fc6506775e1114924cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: df3a4de52142d5fc6506775e1114924cx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4c9d868240075771bc631fd70ffeb16ex000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4c9d868240075771bc631fd70ffeb16ex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4eac5d58eaa7027016f336e941c20e03x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4eac5d58eaa7027016f336e941c20e03x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b4b5ea57a2c3ebf1d2d8b13470bee761x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b4b5ea57a2c3ebf1d2d8b13470bee761x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5d1d99fd3f7fe3de9da46d177eb9872cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5d1d99fd3f7fe3de9da46d177eb9872cx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 00221b86018a1a9f486e7f8d3afc1607x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 00221b86018a1a9f486e7f8d3afc1607x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c6eb697ca554f7656b875d8975c2c204x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c6eb697ca554f7656b875d8975c2c204x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2631c86b4d54d95167e94e0af8efdd0dx000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2631c86b4d54d95167e94e0af8efdd0dx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d419ff734350263f3ea5229d8494a763x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d419ff734350263f3ea5229d8494a763x000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 303946e68b324d60ecce2eb79a1265a9x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 303946e68b324d60ecce2eb79a1265a9x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4fea943908090fea4ce54d42e6a8d63cx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4fea943908090fea4ce54d42e6a8d63cx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 46b53c8c400ba0b5f0ba5f5af433180fx000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 46b53c8c400ba0b5f0ba5f5af433180fx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5479e6c1fd454379a09450fdf960dd10x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5479e6c1fd454379a09450fdf960dd10x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a3a9d4c9159578b14300adbacc533e7ax000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a3a9d4c9159578b14300adbacc533e7ax000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: ea86ddefe491482d9d21f40d7a64d7ebx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: ea86ddefe491482d9d21f40d7a64d7ebx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 6986765f6535230a3c867f1cf5e111e6x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 6986765f6535230a3c867f1cf5e111e6x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5df1e15bd950f6636297a2443e91332bx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5df1e15bd950f6636297a2443e91332bx000.xml: 31 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 3ce0a7e01a1ba3f71ec640dc9b001801x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 3ce0a7e01a1ba3f71ec640dc9b001801x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1bb8f856988a42b9f3675c7acbf46dc4x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1bb8f856988a42b9f3675c7acbf46dc4x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0393d948872ce4b27e290b4839b39648x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0393d948872ce4b27e290b4839b39648x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5cc8dfcd766d6ea2706a76c5e3369a3dx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5cc8dfcd766d6ea2706a76c5e3369a3dx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 533d3759ebcb48dd1a9ba752edd164fax000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 533d3759ebcb48dd1a9ba752edd164fax000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b48888e6eaaff687109f190051608730x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b48888e6eaaff687109f190051608730x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 282c18d102daef7b4b2b697afa6c4bb6x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 282c18d102daef7b4b2b697afa6c4bb6x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f8adfca9d000f4d972c8991333b5f710x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f8adfca9d000f4d972c8991333b5f710x000.xml: 32 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e9539119d0beec27fc3ba78a60f1c132x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e9539119d0beec27fc3ba78a60f1c132x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a980367ca95cfb9ba11ac74057b9f833x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a980367ca95cfb9ba11ac74057b9f833x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a5f7c4b9bc9e10b2abf6d913ca0f416dx000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a5f7c4b9bc9e10b2abf6d913ca0f416dx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d05778823a713782d5f325d6d91fbab3x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d05778823a713782d5f325d6d91fbab3x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 269257b45b2cfa91af801b062dfb86eex000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 269257b45b2cfa91af801b062dfb86eex000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7a345d0770fbe9368241a63614b6b5bdx000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7a345d0770fbe9368241a63614b6b5bdx000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8dd737edbb9988958cbaee7f9c1b35b1x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8dd737edbb9988958cbaee7f9c1b35b1x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 50a8cfbf06b755aadababdeaf7061eb3x000.xml: 877 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 50a8cfbf06b755aadababdeaf7061eb3x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 60aac09c9397edecc1b3ce557394d39dx000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 60aac09c9397edecc1b3ce557394d39dx000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: da82c4321ed3a85c851dd96613257cf6x000.xml: 1027 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: da82c4321ed3a85c851dd96613257cf6x000.xml: 16 ms
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d6f82f98826028071fb6ad3490b7ce39x000.xml: 336 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d6f82f98826028071fb6ad3490b7ce39x000.xml: 15 ms
2020-12-15 18:04:06.058 Update progress: [I49502] sdds.data0910.xml: found supplement IDE579 LATEST path= baseVersion= [included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=]
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE579 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE579 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I49502] sdds.data0910.xml: found supplement IDE580 LATEST path= baseVersion= [included from product IDE579 LATEST path=]
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE580 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE580 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I49502] sdds.data0910.xml: found supplement IDE581 LATEST path= baseVersion= [included from product IDE580 LATEST path=]
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE581 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE581 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I49502] sdds.data0910.xml: found supplement IDE582 LATEST path= baseVersion= [included from product IDE581 LATEST path=]
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE582 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE582 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I49502] sdds.data0910.xml: found supplement IDE583 LATEST path= baseVersion= [included from product IDE582 LATEST path=]
2020-12-15 18:04:06.058 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE583 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE583 LATEST path=
2020-12-15 18:04:06.058 Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2020-12-15 18:04:06.058 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c90fc61d20c95b97fb8f24a79b020a22x000.xml: 58196 bytes
2020-12-15 18:04:06.058 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c90fc61d20c95b97fb8f24a79b020a22x000.xml: 78 ms
2020-12-15 18:04:06.058 Update progress: [I19463] Product download size 175118518 bytes
2020-12-15 18:04:07.040 Option all = no
2020-12-15 18:04:07.040 Option recurse = yes
2020-12-15 18:04:07.040 Option archive = no
2020-12-15 18:04:07.040 Option service = yes
2020-12-15 18:04:07.040 Option confirm = yes
2020-12-15 18:04:07.040 Option sxl = yes
2020-12-15 18:04:07.042 Option max-data-age = 35
2020-12-15 18:04:07.042 Option vdl-logging = yes
2020-12-15 18:04:07.042 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2020-12-15 18:04:07.042 Machine ID: 1301f6f9eb8240baa1bfacbabf418e9d
2020-12-15 18:04:07.042 Component SVRTcli.exe version 2.7.0
2020-12-15 18:04:07.045 Component control.dll version 2.7.0
2020-12-15 18:04:07.045 Component SVRTservice.exe version 2.7.0
2020-12-15 18:04:07.045 Component engine\osdp.dll version 1.44.1.2420
2020-12-15 18:04:07.045 Component engine\veex.dll version 3.73.0.2420
2020-12-15 18:04:07.045 Component engine\savi.dll version 9.0.11.2420
2020-12-15 18:04:07.045 Component rkdisk.dll version 1.5.33.1
2020-12-15 18:04:07.045 Version info: Product version 2.7.0
2020-12-15 18:04:07.045 Version info: Detection engine 3.73.0
2020-12-15 18:04:07.045 Version info: Detection data 5.55
2020-12-15 18:04:07.045 Version info: Build date 18.09.2018
2020-12-15 18:04:07.045 Version info: Data files added 173
2020-12-15 18:04:07.045 Version info: Last successful update (not yet updated)
2020-12-15 18:05:00.771 Update progress: [I19463] Syncing product IDE579 LATEST path=
2020-12-15 18:05:00.771 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e4c2bcd4c718673e16f63e09efff1a8ex000.xml: 38198 bytes
2020-12-15 18:05:00.771 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e4c2bcd4c718673e16f63e09efff1a8ex000.xml: 63 ms
2020-12-15 18:05:00.771 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b350cc271725af5e09080684fe07fd9ax000.xml: 397 bytes
2020-12-15 18:05:00.771 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b350cc271725af5e09080684fe07fd9ax000.xml: 16 ms
2020-12-15 18:05:00.771 Update progress: [I19463] Product download size 3368792 bytes
2020-12-15 18:05:17.086 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 38abbb46de8c01cbcf468de45d8d03afx000.xml: 6827 bytes
2020-12-15 18:05:17.086 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 38abbb46de8c01cbcf468de45d8d03afx000.xml: 31 ms
2020-12-15 18:05:17.227 Update progress: [I19463] Syncing product IDE580 LATEST path=
2020-12-15 18:05:17.227 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: fa14ac969204291e5569af27e2082366x000.xml: 39399 bytes
2020-12-15 18:05:17.227 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: fa14ac969204291e5569af27e2082366x000.xml: 125 ms
2020-12-15 18:05:17.227 Update progress: [I19463] Product download size 2835246 bytes
2020-12-15 18:05:34.605 Update progress: [I19463] Syncing product IDE581 LATEST path=
2020-12-15 18:05:34.605 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 17f809780a173606a6bb5e40b9ae96bcx000.xml: 22780 bytes
2020-12-15 18:05:34.605 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 17f809780a173606a6bb5e40b9ae96bcx000.xml: 31 ms
2020-12-15 18:05:34.605 Update progress: [I19463] Product download size 1593214 bytes
2020-12-15 18:05:37.687 Update progress: [I19463] Syncing product IDE582 LATEST path=
2020-12-15 18:05:37.687 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 49d4dca3ce80148d561e36224443fba6x000.xml: 4860 bytes
2020-12-15 18:05:37.687 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 49d4dca3ce80148d561e36224443fba6x000.xml: 32 ms
2020-12-15 18:05:37.687 Update progress: [I19463] Product download size 315884 bytes
2020-12-15 18:05:38.275 Update progress: [I19463] Syncing product IDE583 LATEST path=
2020-12-15 18:05:38.275 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f430c089bf466bb070b959d79391e4c2x000.xml: 124 bytes
2020-12-15 18:05:38.275 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f430c089bf466bb070b959d79391e4c2x000.xml: 16 ms
2020-12-15 18:05:38.290 Installing updates...
2020-12-15 18:05:38.916 Error level 1
2020-12-15 18:05:41.638 Update successful
2020-12-15 18:05:47.322 Option all = no
2020-12-15 18:05:47.322 Option recurse = yes
2020-12-15 18:05:47.322 Option archive = no
2020-12-15 18:05:47.322 Option service = yes
2020-12-15 18:05:47.322 Option confirm = yes
2020-12-15 18:05:47.322 Option sxl = yes
2020-12-15 18:05:47.338 Option max-data-age = 35
2020-12-15 18:05:47.338 Option vdl-logging = yes
2020-12-15 18:05:47.338 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2020-12-15 18:05:47.338 Machine ID: 1301f6f9eb8240baa1bfacbabf418e9d
2020-12-15 18:05:47.338 Component SVRTcli.exe version 2.7.0
2020-12-15 18:05:47.338 Component control.dll version 2.7.0
2020-12-15 18:05:47.338 Component SVRTservice.exe version 2.7.0
2020-12-15 18:05:47.338 Component engine\osdp.dll version 1.44.1.2490
2020-12-15 18:05:47.338 Component engine\veex.dll version 3.79.0.2490
2020-12-15 18:05:47.338 Component engine\savi.dll version 9.0.20.2490
2020-12-15 18:05:47.338 Component rkdisk.dll version 1.5.33.1
2020-12-15 18:05:47.338 Version info: Product version 2.7.0
2020-12-15 18:05:47.338 Version info: Detection engine 3.79.0
2020-12-15 18:05:47.338 Version info: Detection data 5.78
2020-12-15 18:05:47.338 Version info: Build date 08.09.2020
2020-12-15 18:05:47.338 Version info: Data files added 421
2020-12-15 18:05:47.338 Version info: Last successful update 15.12.2020 19:05:41

2020-12-15 18:13:23.988 Could not open C:\hiberfil.sys
2020-12-15 18:13:28.707 Could not open C:\pagefile.sys
2020-12-15 18:13:35.221 Could not open C:\Program Files\Microsoft Office\root\client\AppvIsvStream32.dll
2020-12-15 18:13:35.222 Could not open C:\Program Files\Microsoft Office\root\client\AppvIsvStream64.dll
2020-12-15 18:13:38.389 Could not open C:\Program Files\Microsoft Office\root\Office16\AppvIsvStream64.dll
2020-12-15 18:13:41.764 Could not open C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\EQUATION\AppvIsvStream32.dll
2020-12-15 18:13:42.413 Could not open C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AppvIsvStream64.dll
2020-12-15 18:13:43.908 Could not open C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\EQUATION\AppvIsvStream32.dll
2020-12-15 18:13:45.852 Could not open C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\AppvIsvStream32.dll
2020-12-15 18:14:58.098 Could not open C:\swapfile.sys
2020-12-15 18:14:58.111 Could not open C:\System Volume Information\{148171ff-3ded-11eb-846f-00d861361942}{3808876b-c176-4e48-b7ae-04046e6cc752}
2020-12-15 18:14:58.111 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2020-12-15 18:14:58.111 Could not open C:\System Volume Information\{9745292a-3efc-11eb-847e-00d861361942}{3808876b-c176-4e48-b7ae-04046e6cc752}
2020-12-15 18:15:10.484 Could not open C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Sessions\Session_13252529413346431
2020-12-15 18:15:10.484 Could not open C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Sessions\Tabs_13252529413376027
2020-12-15 18:15:16.141 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2020-12-15 18:15:16.141 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.7.exe
2020-12-15 18:15:16.142 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2020-12-15 18:15:16.144 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
2020-12-15 18:15:16.145 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\MicrosoftEdge.exe
2020-12-15 18:15:16.145 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\python.exe
2020-12-15 18:15:16.146 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\python3.7.exe
2020-12-15 18:15:16.146 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\python3.exe
2020-12-15 18:15:16.146 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\Spotify.exe
2020-12-15 18:15:16.148 Could not open C:\Users\pepez\AppData\Local\Microsoft\WindowsApps\SpotifyAB.SpotifyMusic_zpdnekdrzrea0\Spotify.exe
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file C:\Users\pepez\AppData\Roaming\Unarchiver\Unarchiver.exe
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file C:\Users\pepez\AppData\Roaming\Unarchiver\Unarchiver.exe
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file C:\Users\pepez\AppData\Roaming\Unarchiver\Unarchiver.exe
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file C:\Windows\System32\Tasks\ContentManagement
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.289 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ContentManagement
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file C:\Windows\System32\Tasks\ContentManagement
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ContentManagement
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file C:\Windows\System32\Tasks\ContentManagement
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AF863EA7-C5E7-4718-98FD-DE9DE27A5A3C}
2020-12-15 18:15:34.290 >>> Virus 'Mal/Generic-S' found in file HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ContentManagement
2020-12-15 18:18:18.924 Could not open C:\Windows\System32\config\BBI
2020-12-15 18:25:41.674 >>> Virus 'Mal/Behav-009' found in file D:\ME3Explorer\exec\Texmod.exe
2020-12-15 18:25:41.674 >>> Virus 'Mal/Behav-009' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 18:25:41.674 >>> Virus 'Mal/Behav-009' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 18:26:38.545 Could not open D:\Program Files\Microsoft Office\root\client\AppvIsvStream32.dll
2020-12-15 18:26:38.545 Could not open D:\Program Files\Microsoft Office\root\client\AppvIsvStream64.dll
2020-12-15 18:26:51.315 Could not open D:\Program Files\Microsoft Office\root\Office16\AppvIsvStream64.dll
2020-12-15 18:27:01.285 Could not open D:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\EQUATION\AppvIsvStream32.dll
2020-12-15 18:27:03.071 Could not open D:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AppvIsvStream64.dll
2020-12-15 18:27:08.421 Could not open D:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\EQUATION\AppvIsvStream32.dll
2020-12-15 18:27:14.191 Could not open D:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\AppvIsvStream32.dll
2020-12-15 18:29:56.011 >>> Virus 'Mal/VMProtBad-A' found in file D:\Sky Force Anniversary\steam_api.dll
2020-12-15 18:29:56.011 >>> Virus 'Mal/VMProtBad-A' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 18:29:56.011 >>> Virus 'Mal/VMProtBad-A' found in file HKU\S-1-5-21-1052500245-4000738843-1171477049-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3\1208
2020-12-15 19:03:18.995 The following items will be cleaned up:
2020-12-15 19:03:18.995 Mal/Generic-S
2020-12-15 19:03:18.995 Mal/Behav-009
2020-12-15 19:03:18.995 Mal/VMProtBad-A

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod jaro3 » 15 pro 2020 21:09

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“,
po jeho skončení - vše zatrhni (dej zatržítka vlevo od nálezů , do bílých políček)
- pak klikni na "Remove Selected"
- Počkej, dokud Status box nezobrazí " Removal finished, please review result "
- Klikni na "Open report " a pak na " Open TXT“ a zkopíruj ten log a vlož obsah té zprávy prosím sem. Log je možno nalézt v C:\ProgramData\RogueKiller\Logs - Zavři RogueKiller.


Vypni antivir i firewall.
Stáhni Zoek.exe
http://download.bleepingcomputer.com/smeenk/zoek.exe
https://uloz.to/file/nFH1LwSrGioP/zoek1-rar

Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.


Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Můžeš si zatrhnout i vytvoření bodu obnovy:
Klikni na ozubené kolečko , poté na „Skenování“ a zatrhni „vytvářet body obnovy“.
Vrať se zpět ( klikni na domeček).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Další“. Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, objeví se tisková zpráva , zkopíruj sem celý obsah té zprávy.
Jinak můžeš zprávy vidět , když klikneš vpravo nahoře na „ zprávy“.


Vlož nový log z HJT + informuj o problémech
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 21:57

Rogue:

RogueKiller Anti-Malware V14.8.1.0 (x64) [Dec 14 2020] (Premium) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.18363) 64 bits
Started in : Normal mode
User : pepez [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20201215_112755, Driver : Loaded
Mode : Standard Scan, Delete -- Date : 2020/12/15 21:26:16 (Duration : 00:04:52)

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Delete ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[Suspicious.Path (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{87C508C0-A741-4E72-BCAE-A484AE69C011}C:\windows\temp\files\bin\kmss.exe -- [%SystemRoot%\temp\files\bin\kmss.exe] -> Deleted
[Suspicious.Path (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{E4FC9FEC-7B29-48C8-AAAC-F56C2CD57BCA}C:\windows\temp\files\bin\kmss.exe -- [%SystemRoot%\temp\files\bin\kmss.exe] -> Deleted

ZOEK:

==== Firefox XPI-files found: ======================

- Sticky Password extension - C:\Program Files (x86)\Sticky Password\spautofill.xpi
- Sticky Password extension - C:\Program Files (x86)\Sticky Password\spautofillMoz.xpi
- __MSG_appName__ - C:\Program Files (x86)\Sticky Password\spautofillMozWE.xpi
- Sticky Password extension - C:\Program Files (x86)\Sticky Password\spautofillTb.xpi
- Sticky Password extension - C:\Program Files (x86)\Sticky Password\spautofillTbWE.xpi

==== Chromium Look ======================

Chrome Media Router - pepez\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02

==== Reset Google Chrome ======================

C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pepez\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\pepez\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\pepez\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\pepez\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Edge Cache ======================

Edge Cache is not empty, a reboot is needed

==== Empty Chrome Cache ======================

C:\Users\pepez\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=4165 folders=931 953545541 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\pepez\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\Windows\Temp successfully emptied
C:\Users\pepez\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\Users\pepez\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\MicrosoftEdge" not found
"C:\Users\pepez\AppData\Local\Packages\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\AC\Temp" not found

==== EOF on 15.12.2020 at 21:42:07,40 ======================

ZEMAN:

Název produktu    :  Zemana AntiMalware
Stav kontroly    :  Dokončena
Datum kontroly    :  15.12.2020 21:47:13
Typ kontroly    :  Inteligentní kontrola
Čas trvání    :  00:00:12
Zkontrolované objekty    :  1683
Zjištěné objekty    :  0
Vyloučené objekty    :  0
Automatické odesílání    :  Ne
Operační systém    :  Windows 10 x64
Procesor    :  12X AMD Ryzen 5 3600 6-Core Processor
Režim systému BIOS    :  Legacy
Informace o doméně    :  WORKGROUP,False,NetSetupWorkgroupName
CUID    :  14F0E802F88A9505378402

SequelPepe
Level 1.5
Level 1.5
Příspěvky: 143
Registrován: listopad 19
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod SequelPepe » 15 pro 2020 21:57

HIJACK:

Logfile of HiJackThis Fork by Alex Dragokas v.2.9.0.26

Platform: x64 Windows 10 (Home), 10.0.18363.1256 (ReleaseId: 1909), Service Pack: 0
Time: 15.12.2020 - 21:50 (UTC+01:00)
Language: OS: Czech (0x405). Display: Czech (0x405). Non-Unicode: Czech (0x405)
Elevated: Yes
Ran by: pepez (group: Administrator) on DESKTOP-VSG5QD2, FirstRun: yes

Chrome: 87.0.4280.88
Edge: 11.0.18362.1171
Internet Explorer: 11.0.18362.1
Default: "C:\Program Files\Google\Chrome\Application\chrome.exe" --single-argument %1 (Google Chrome)

Boot mode: Normal

Running processes:
Number | Path
1 C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe
1 C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe
1 C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe
1 C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe
1 C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
1 C:\Program Files\AMD\CNext\CNext\amdow.exe
1 C:\Program Files\Classic Shell\ClassicStartMenu.exe
1 C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
1 C:\Program Files\WinRAR\WinRAR.exe
1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeApp.exe
1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
1 C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe
1 C:\Program Files\WindowsApps\Microsoft.WindowsStore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
1 C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
1 C:\Users\pepez\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
1 C:\Users\pepez\AppData\Roaming\ICQ\bin\icq.exe
1 C:\Users\pepez\OneDrive\Plocha\HiJackThis.exe
1 C:\Windows\ImmersiveControlPanel\SystemSettings.exe
1 C:\Windows\System32\ApplicationFrameHost.exe
1 C:\Windows\System32\AudioDeviceService.exe
1 C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atieclxx.exe
1 C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atiesrxx.exe
1 C:\Windows\System32\MicrosoftEdgeCP.exe
1 C:\Windows\System32\MicrosoftEdgeSH.exe
1 C:\Windows\System32\NahimicService.exe
6 C:\Windows\System32\RuntimeBroker.exe
1 C:\Windows\System32\SearchFilterHost.exe
1 C:\Windows\System32\SearchIndexer.exe
2 C:\Windows\System32\SearchProtocolHost.exe
1 C:\Windows\System32\SecurityHealthService.exe
1 C:\Windows\System32\SecurityHealthSystray.exe
1 C:\Windows\System32\SettingSyncHost.exe
1 C:\Windows\System32\SgrmBroker.exe
1 C:\Windows\System32\amdfendrsr.exe
1 C:\Windows\System32\audiodg.exe
1 C:\Windows\System32\browser_broker.exe
2 C:\Windows\System32\csrss.exe
1 C:\Windows\System32\ctfmon.exe
3 C:\Windows\System32\dllhost.exe
1 C:\Windows\System32\dwm.exe
2 C:\Windows\System32\fontdrvhost.exe
1 C:\Windows\System32\lsass.exe
1 C:\Windows\System32\notepad.exe
1 C:\Windows\System32\services.exe
1 C:\Windows\System32\sihost.exe
1 C:\Windows\System32\smartscreen.exe
1 C:\Windows\System32\smss.exe
1 C:\Windows\System32\spoolsv.exe
66 C:\Windows\System32\svchost.exe
1 C:\Windows\System32\taskhostw.exe
2 C:\Windows\System32\wbem\WmiPrvSE.exe
1 C:\Windows\System32\wininit.exe
1 C:\Windows\System32\winlogon.exe
1 C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe
1 C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
1 C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
1 C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe
1 C:\Windows\explorer.exe

R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: [SuggestionsURLFallback] = http://clients5.google.com/complete/search?hl={language}&q={searchTerms}&client=ie8&inputencoding={inputEncoding}&outputencoding={outputEncoding} - Google
R4 - SearchScopes: HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}: [URL] = http://www.google.com/search?q={searchTerms} - Google
O2 - HKLM\..\BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll
O2 - HKLM\..\BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll
O2-32 - HKLM\..\BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O2-32 - HKLM\..\BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O3 - HKLM\..\Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll
O3-32 - HKLM\..\Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O4 - HKCU\..\Run: [StickyPassword] = C:\Program Files (x86)\Sticky Password\stpass.exe
O4 - HKCU\..\Run: [icq.desktop] = C:\Users\pepez\AppData\Roaming\ICQ\bin\icq.exe /startup
O4 - HKLM\..\Run: [Classic Start Menu] = C:\Program Files\Classic Shell\ClassicStartMenu.exe -autorun
O4-32 - HKLM\..\Run: [HG9015G Audio 7.1] = C:\Program Files (x86)\HG9015G Audio 7.1\HG9015G Audio 7.1.exe -boot
O4-32 - HKLM\..\Run: [Wondershare Helper Compact.exe] = C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (file missing)
O9 - Button: HKLM\..\{56753E59-AF1D-4FBA-9E15-31557124ADA2}: (no name) - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Tools menu item: HKLM\..\{56753E59-AF1D-4FBA-9E15-31557124ADA2}: Classic IE Settings - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9-32 - Button: HKLM\..\{56753E59-AF1D-4FBA-9E15-31557124ADA2}: (no name) - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9-32 - Tools menu item: HKLM\..\{56753E59-AF1D-4FBA-9E15-31557124ADA2}: Classic IE Settings - C:\Program Files\Classic Shell\ClassicIE_32.exe
O17 - DHCP DNS 1: 78.157.167.7
O17 - DHCP DNS 2: 78.157.167.57
O21 - HKLM\..\ShellIconOverlayIdentifiers\ShareOverlay: ShareOverlay Class - {594D4122-1F87-41E2-96C7-825FB4796516} - C:\Program Files\Classic Shell\ClassicExplorer64.dll
O21-32 - HKLM\..\ShellIconOverlayIdentifiers\ShareOverlay: ShareOverlay Class - {594D4122-1F87-41E2-96C7-825FB4796516} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_AC - C:\Windows\system32\MusNotification.exe /RunOnAC RebootDialog (Microsoft)
O22 - Task: (disabled) (update) \Microsoft\Windows\UpdateOrchestrator\Reboot_Battery - C:\Windows\system32\MusNotification.exe /RunOnBattery RebootDialog (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentFallBack2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload mininterval:2880 (Microsoft)
O22 - Task: (telemetry) \Microsoft\Office\OfficeTelemetryAgentLogOn2016 - C:\Program Files\Microsoft Office\root\Office16\msoia.exe scan upload (Microsoft)
O22 - Task: (update) \Microsoft\Windows\UpdateOrchestrator\USO_UxBroker - C:\Windows\system32\MusNotification.exe (Microsoft)
O22 - Task: AMDAutoUpdate - C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe
O22 - Task: AMDInstallLauncher - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe /InstallAUEP
O22 - Task: AMDLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -AMDLinkUpdate
O22 - Task: AMHelper - C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe /UPDATE
O22 - Task: ContentManagement - C:\Users\pepez\AppData\Roaming\Unarchiver\Unarchiver.exe (file missing)
O22 - Task: GoogleUpdateTaskMachineCore - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
O22 - Task: GoogleUpdateTaskMachineUA - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
O22 - Task: ModifyLinkUpdate - C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe -UpdateCurrentUser
O22 - Task: PCIeBus - C:\Windows\system32\wevtutil.exe cl Application
O22 - Task: PCIeBusQueue - C:\Windows\system32\wevtutil.exe cl System
O22 - Task: StartCN - C:\Program Files\AMD\CNext\CNext\cncmd.exe startwithdelay
O22 - Task: StartDVR - C:\Program Files\AMD\CNext\CNext\RSServCmd.exe
O22 - Task: \Microsoft\Windows\RetailDemo\CleanupOfflineContent - {61f77d5e-afe9-400b-a5e6-e9e80fc8e601} - C:\Windows\System32\RDXTaskFactory.dll (Microsoft)
O22 - Task: \Microsoft\Windows\SMB\UninstallSMB1ClientTask - C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe -ExecutionPolicy Unrestricted -NonInteractive -NoProfile -WindowStyle Hidden "& C:\Windows\system32\WindowsPowerShell\v1.0\Modules\SmbShare\DisableUnusedSmb1.ps1 -Scenario Client"
O22 - Task: \Microsoft\Windows\SMB\UninstallSMB1ServerTask - C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe -ExecutionPolicy Unrestricted -NonInteractive -NoProfile -WindowStyle Hidden "& C:\Windows\system32\WindowsPowerShell\v1.0\Modules\SmbShare\DisableUnusedSmb1.ps1 -Scenario Server"
O23 - Service R2: AMD Crash Defender Service - C:\Windows\system32\amdfendrsr.exe
O23 - Service R2: AMD External Events Utility - C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atiesrxx.exe
O23 - Service R2: AudioDeviceService - C:\Windows\system32\AudioDeviceService.exe
O23 - Service R2: Nahimic service - (NahimicService) - C:\Windows\system32\NahimicService.exe
O23 - Service S2: RogueKiller RTP - (rkrtservice) - C:\Program Files\RogueKiller\RogueKillerSvc.exe
O23 - Service S2: Služba Aktualizace Google (gupdate) - (gupdate) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /svc
O23 - Service S2: Služba Avast Browser Update (avast) - (avast) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe /svc
O23 - Service S3: Avast Secure Browser Elevation Service (AvastSecureBrowserElevationService) - (AvastSecureBrowserElevationService) - C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6938.199\elevation_service.exe
O23 - Service S3: Google Chrome Elevation Service (GoogleChromeElevationService) - (GoogleChromeElevationService) - C:\Program Files\Google\Chrome\Application\87.0.4280.88\elevation_service.exe
O23 - Service S3: Office 64 Source Engine - (ose64) - C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE
O23 - Service S3: Služba Aktualizace Google (gupdatem) - (gupdatem) - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /medsvc
O23 - Service S3: Služba Avast Browser Update (avastm) - (avastm) - C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe /medsvc
O23 - Service S3: Wondershare Driver Install Service - (WsDrvInst) - C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe (file missing)


--
End of file - Time spent: 6,9 sec. - 23130 bytes, CRC32: FFFFFFFF. Sign: ᵊ᳡

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Bezdůvodné zvyšování zátěže CPU

Příspěvekod jaro3 » 15 pro 2020 23:03

Vlož tento log z HJT:
http://www.pc-help.cz/viewtopic.php?f=70&t=5119
a co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 8 hostů