Kontrola logu - velmi zpomalený notebook Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 09 led 2016 21:51

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:09-01-2015
Ran by Juraj Havel (administrator) on JURAJ-PC (09-01-2016 21:14:22)
Running from C:\Users\Juraj\Downloads
Loaded Profiles: Juraj Havel (Available Profiles: Juraj Havel & DefaultAppPool)
Platform: Windows 10 Home (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
() C:\Program Files (x86)\HDD Health\HDDHealthService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
Failed to access process -> obexsrv.exe
Failed to access process -> devmonsrv.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler.exe
(ASUS) C:\Windows\AsScrPro.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.1\GoogleCrashHandler64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
(Google, Inc) C:\Users\Juraj\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Google Inc.) C:\Users\Juraj\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(Unified Intents AB) C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
(Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe
(PANTERASoft) C:\Program Files (x86)\HDD Health\hddhealth.exe
(Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe
(PANTERASoft) C:\Program Files (x86)\HDD Health\hddhealth.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
() C:\Users\Juraj\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe
(Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
(Pushbullet Inc) C:\Users\Juraj\AppData\Local\Pushbullet\bin\pushbullet_client.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\Browny02\BrYNSvc.exe
(Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFTips.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2785064 2011-05-05] (Synaptics Incorporated)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1407744 2015-11-28] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [97064 2011-05-05] (Synaptics Incorporated)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2771576 2015-12-09] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-01] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe [984400 2010-07-10] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUS)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [7021880 2016-01-05] (AVAST Software)
HKLM-x32\...\Run: [GIGABYTEMOUSE] => C:\Users\Juraj\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe [1308672 2012-12-03] ()
HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [46952 2011-08-02] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [30568 2011-08-02] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-06-16] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [24952456 2015-12-08] (Dropbox, Inc.)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [5893920 2015-11-12] (IObit)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [Google Update] => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-09-01] (Google Inc.)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [Google Photos Backup] => C:\Users\Juraj\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe [3791176 2015-12-11] (Google, Inc)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Corporation)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [MusicManager] => C:\Users\Juraj\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7643136 2015-11-17] (Google Inc.)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [22790776 2015-11-04] (Google)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [Pushbullet] => C:\Program Files (x86)\Pushbullet\pushbullet.exe [345600 2015-07-01] (Pushbullet inc)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [Unified Remote V3] => C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4327120 2016-01-04] (Unified Intents AB)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [hddhealth] => C:\Program Files (x86)\HDD Health\hddhealth.exe [3246944 2013-03-08] (PANTERASoft)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\Run: [GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704 2015-12-11] (Google Inc.)
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\RunOnce: [Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [741704 2015-12-11] (Google Inc.)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [177416 2015-11-25] (NVIDIA Corporation)
AppInit_DLLs: , C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [177416 2015-11-25] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [155976 2015-11-25] (NVIDIA Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2015-11-04] (Google)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2016-01-05] (AVAST Software)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt.28.dll [2015-12-08] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FancyStart daemon.lnk [2016-01-06]
ShortcutTarget: FancyStart daemon.lnk -> C:\Windows\Installer\{2B81872B-A054-48DA-BE3B-FA5C164C303A}\_C4A2FC3E3722966204FDD8.exe ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HDDHealth.lnk [2016-01-06]
ShortcutTarget: HDDHealth.lnk -> C:\Program Files (x86)\HDD Health\hddhealth.exe (PANTERASoft)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c2c42de0-2d5d-423a-8918-7049f3917cce}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ASUT
SearchScopes: HKU\S-1-5-21-1004667532-806584802-2637913605-1002 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-1004667532-806584802-2637913605-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-11-28] (AVAST Software)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> No File
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-11-28] (AVAST Software)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - No File

Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-1004667532-806584802-2637913605-1002 -> hxxp://seznam.cz/

FireFox:
========
FF ProfilePath: C:\Users\Juraj\AppData\Roaming\Mozilla\Firefox\Profiles\14cdsg0w.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_267.dll [2016-01-03] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_267.dll [2016-01-03] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41105.0\npctrl.dll [2015-11-04] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-11-24] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-11-24] (NVIDIA Corporation)
FF Plugin-x32: @photodex.com/PhotodexPresenter -> C:\Program Files (x86)\Photodex Presenter\npPxPlay.dll [2015-06-13] ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-04] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-11-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1004667532-806584802-2637913605-1002: @tools.google.com/Google Update;version=3 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF Plugin HKU\S-1-5-21-1004667532-806584802-2637913605-1002: @tools.google.com/Google Update;version=9 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-02] (Google Inc.)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2016-01-05]
FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF
FF Extension: Avast SafePrice - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2016-01-05]

Chrome:
=======
CHR Profile: C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast Online Security) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2016-01-09]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2016-01-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-01-09]
CHR Extension: (No Name) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkclgpgponpjmpfokoepglboejdobkpl [2016-01-09]
CHR Profile: C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1
CHR Extension: (Google Slides) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-22]
CHR Extension: (Google Docs) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-22]
CHR Extension: (Google Drive) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
CHR Extension: (YouTube) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-22]
CHR Extension: (Google Search) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-01]
CHR Extension: (Google Play Music) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fahmaaghhglfmonjliepjlchgpgfmobi [2015-11-01]
CHR Extension: (Google Sheets) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-22]
CHR Extension: (Google Docs Offline) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-10-23]
CHR Extension: (Avast Online Security) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-10-22]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2015-10-22]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-10-22]
CHR Extension: (Gmail) - C:\Users\Juraj\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-22]
CHR HKU\S-1-5-21-1004667532-806584802-2637913605-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-11-28]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [226440 2016-01-05] (AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [File not signed]
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2015-12-05] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2015-12-05] (Dropbox, Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1156216 2015-12-09] (NVIDIA Corporation)
R2 HDDHealth; C:\Program Files (x86)\HDD Health\HDDHealthService.exe [17760 2013-03-08] () [File not signed]
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [882464 2015-11-04] (IObit)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2934048 2015-11-10] (IObit)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1872504 2015-12-09] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [8185464 2015-12-09] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [6477432 2015-12-09] (NVIDIA Corporation)
R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [145256 2011-08-02] (Nuance Communications, Inc.)
S2 RemoteServerWin; C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe [4327120 2016-01-04] (Unified Intents AB)
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe [745224 2015-07-09] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [362928 2015-07-10] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-07-10] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [28656 2016-01-05] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [97648 2016-01-05] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2016-01-05] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65224 2016-01-05] (AVAST Software)
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1055560 2016-01-05] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [451040 2016-01-05] (AVAST Software)
R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [155304 2016-01-05] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [273784 2016-01-05] (AVAST Software)
R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-05-26] (ASUS)
S3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2015-08-06] (Motorola Solutions, Inc.)
R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2015-03-25] (IObit)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-07-02] (REALiX(tm))
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19576 2015-12-09] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [50472 2015-08-11] (NVIDIA Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2015-03-25] (IObit.com)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [889584 2015-11-21] (Realtek )
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [410880 2015-08-06] (Realsil Semiconductor Corporation)
S3 SensorsSimulatorDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [214016 2015-07-10] (Microsoft Corporation)
S3 UdeCx; C:\Windows\System32\drivers\udecx.sys [44032 2015-07-10] ()
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2015-03-25] (IObit.com)
R3 uvhid; C:\Windows\System32\drivers\uvhid.sys [25592 2015-11-05] (Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-07-10] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [291680 2015-07-10] (Microsoft Corporation)
R2 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [119648 2015-07-10] (Microsoft Corporation)
U3 idsvc; no ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-09 21:14 - 2016-01-09 21:14 - 00029330 _____ C:\Users\Juraj\Downloads\FRST.txt
2016-01-09 21:13 - 2016-01-09 21:14 - 00000000 ____D C:\FRST
2016-01-09 21:13 - 2016-01-09 21:13 - 02370560 _____ (Farbar) C:\Users\Juraj\Downloads\FRST64.exe
2016-01-09 21:12 - 2016-01-09 21:12 - 00015790 _____ C:\Users\Juraj\Desktop\zoek-results.txt
2016-01-09 21:08 - 2016-01-09 21:08 - 00016148 _____ C:\WINDOWS\system32\JURAJ-PC_Juraj Havel_HistoryPrediction.bin
2016-01-09 21:05 - 2016-01-09 12:46 - 00024064 _____ C:\WINDOWS\zoek-delete.exe
2016-01-09 12:46 - 2016-01-09 17:33 - 00000000 ____D C:\zoek_backup
2016-01-09 12:46 - 2016-01-09 12:46 - 01309184 _____ C:\Users\Juraj\Desktop\zoek.exe
2016-01-09 12:11 - 2016-01-09 12:19 - 00000000 ____D C:\Users\Juraj\AppData\Local\CrashDumps
2016-01-09 09:42 - 2016-01-09 09:42 - 00036608 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-01-07 15:31 - 2016-01-07 15:31 - 00012480 _____ C:\Users\Juraj\Desktop\rk log.txt
2016-01-07 11:12 - 2016-01-09 21:09 - 00000000 ____D C:\ProgramData\ProductData
2016-01-07 11:11 - 2016-01-07 11:11 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\ProductData
2016-01-06 20:37 - 2016-01-06 21:29 - 00000000 ____D C:\ProgramData\RogueKiller
2016-01-06 20:37 - 2016-01-06 20:37 - 25034824 _____ C:\Users\Juraj\Desktop\RogueKillerX64.exe
2016-01-06 20:33 - 2016-01-06 20:34 - 00001984 _____ C:\Users\Juraj\Desktop\JRT.txt
2016-01-06 20:19 - 2016-01-06 20:20 - 01599336 _____ (Malwarebytes) C:\Users\Juraj\Desktop\JRT.exe
2016-01-06 20:15 - 2016-01-07 11:11 - 00000080 _____ C:\Users\Juraj\Desktop\Tatínek - zástupce.lnk
2016-01-06 20:15 - 2016-01-06 20:15 - 00001146 _____ C:\Users\Juraj\Desktop\mbam log.txt
2016-01-06 19:14 - 2016-01-06 19:14 - 00016549 _____ C:\Users\Juraj\Desktop\AdwCleaner[C1].odt
2016-01-06 16:31 - 2016-01-06 16:31 - 00001228 _____ C:\Users\Juraj\Desktop\antimalware log.txt
2016-01-06 16:03 - 2016-01-03 02:40 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-01-06 16:03 - 2016-01-03 02:40 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-01-06 15:11 - 2016-01-07 11:11 - 00001189 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-01-06 15:11 - 2016-01-06 19:16 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-01-06 15:11 - 2016-01-06 15:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-01-06 15:11 - 2016-01-06 15:11 - 00000000 ____D C:\ProgramData\Malwarebytes
2016-01-06 15:11 - 2016-01-06 15:11 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-01-06 15:11 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-01-06 15:11 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-01-06 15:11 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-01-06 15:08 - 2016-01-06 15:08 - 22908888 _____ (Malwarebytes ) C:\Users\Juraj\Downloads\mbam-setup-2.2.0.1024.exe
2016-01-06 15:04 - 2016-01-06 15:04 - 00050688 _____ (Atribune.org) C:\Users\Juraj\Downloads\ATF-Cleaner.exe
2016-01-06 14:49 - 2016-01-06 19:14 - 00000000 ____D C:\AdwCleaner
2016-01-06 14:48 - 2016-01-06 14:48 - 01749504 _____ C:\Users\Juraj\Downloads\adwcleaner_5.028.exe
2016-01-06 14:27 - 2016-01-07 11:11 - 00002688 _____ C:\Users\Public\Desktop\Skype.lnk
2016-01-06 14:27 - 2016-01-06 14:27 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-01-06 14:27 - 2016-01-06 14:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-01-06 14:22 - 2016-01-06 14:22 - 00448512 _____ (OldTimer Tools) C:\Users\Juraj\Downloads\TFC.exe
2016-01-05 15:05 - 2016-01-09 12:28 - 00004280 _____ C:\WINDOWS\System32\Tasks\avast! Emergency Update
2016-01-05 15:05 - 2016-01-05 15:05 - 00451040 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2016-01-05 15:05 - 2016-01-05 15:05 - 00097648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswmonflt.sys
2016-01-05 15:05 - 2016-01-05 15:04 - 00386096 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2016-01-05 15:05 - 2016-01-05 15:04 - 00273784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2016-01-05 15:05 - 2016-01-05 15:04 - 00155304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2016-01-05 15:05 - 2016-01-05 15:04 - 00093528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2016-01-05 15:05 - 2016-01-05 15:04 - 00065224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2016-01-05 15:05 - 2016-01-05 15:04 - 00028656 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2016-01-05 15:05 - 2016-01-05 15:03 - 01055560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2016-01-05 15:04 - 2016-01-05 15:04 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2016-01-04 18:57 - 2016-01-04 18:57 - 00388608 _____ (Trend Micro Inc.) C:\Users\Juraj\Downloads\hijackthis.exe
2016-01-03 21:05 - 2015-12-09 02:51 - 01846016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2016-01-03 18:01 - 2016-01-07 11:11 - 00001260 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk
2016-01-03 18:01 - 2016-01-03 18:01 - 00000000 ____D C:\Users\Juraj Havel\AppData\Roaming\IObit
2016-01-03 18:01 - 2016-01-03 18:01 - 00000000 ____D C:\Users\Juraj Havel
2016-01-03 18:01 - 2016-01-03 18:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter
2015-12-28 19:35 - 2015-12-28 19:35 - 00025343 _____ C:\Users\Juraj\Desktop\Pro KD.pdf
2015-12-28 19:05 - 2015-12-28 19:05 - 00050832 _____ C:\Users\Juraj\Desktop\kontakty.pdf
2015-12-28 19:02 - 2015-12-28 19:02 - 00056815 _____ C:\Users\Juraj\Desktop\KD harmonogram.pdf
2015-12-28 18:39 - 2015-12-28 19:01 - 00015493 _____ C:\Users\Juraj\Desktop\KD harmonogram.odt
2015-12-28 11:35 - 2015-12-28 11:50 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\HDDHealth
2015-12-28 11:35 - 2015-12-28 11:35 - 04211152 _____ ( ) C:\Users\Juraj\Downloads\hhealth.exe
2015-12-28 11:35 - 2015-12-28 11:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Health
2015-12-28 11:35 - 2015-12-28 11:35 - 00000000 ____D C:\Program Files (x86)\HDD Health
2015-12-27 15:14 - 2015-12-28 19:27 - 00019126 _____ C:\Users\Juraj\Desktop\Pro KD.odt
2015-12-27 14:35 - 2015-12-27 14:35 - 00000000 ____D C:\Users\Public\Documents\sun
2015-12-27 13:32 - 2015-12-27 13:32 - 00016148 _____ C:\WINDOWS\system32\JURAJ-PC_Juraj_HistoryPrediction.bin
2015-12-24 17:28 - 2015-12-24 17:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Flash File Recovery
2015-12-24 17:28 - 2015-12-24 17:28 - 00000000 ____D C:\Program Files (x86)\Flash File Recovery
2015-12-24 16:27 - 2016-01-07 11:35 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-12-22 20:29 - 2016-01-07 11:11 - 00001116 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2015-12-22 20:29 - 2015-12-22 20:29 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.2
2015-12-22 20:23 - 2015-12-22 20:23 - 00000000 ____D C:\Users\Juraj\Desktop\OpenOffice 4.1.2 (cs) Installation Files
2015-12-22 20:22 - 2015-12-22 20:23 - 128583479 _____ C:\Users\Juraj\Downloads\Apache_OpenOffice_4.1.2_Win_x86_install_cs.exe
2015-12-20 15:00 - 2015-12-20 15:00 - 00020826 _____ C:\Users\Juraj\Desktop\SPS KD 01.2016.pdf
2015-12-20 14:54 - 2015-12-28 17:46 - 00013578 _____ C:\Users\Juraj\Desktop\SPS KD 01.2016.odt
2015-12-20 11:07 - 2015-12-20 11:07 - 00000000 ____H C:\asc_rdflag
2015-12-16 21:50 - 2016-01-07 11:11 - 00001044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2015-12-14 19:15 - 2016-01-07 11:11 - 00002429 _____ C:\Users\Juraj\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-12-10 09:50 - 2015-12-10 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-01-09 21:16 - 2015-12-04 23:11 - 00000978 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-01-09 21:13 - 2015-07-10 10:05 - 00000000 ____D C:\Windows
2016-01-09 21:11 - 2015-12-05 09:59 - 00000000 ___RD C:\Users\Juraj\Dropbox
2016-01-09 21:11 - 2015-12-05 09:56 - 00000000 ____D C:\Users\Juraj\AppData\Local\Dropbox
2016-01-09 21:10 - 2015-11-07 11:42 - 00000000 ____D C:\Users\Juraj\AppData\Local\Pushbullet
2016-01-09 21:10 - 2015-09-30 12:14 - 00000000 ___RD C:\Users\Juraj\Disk Google
2016-01-09 21:10 - 2015-06-12 13:48 - 00000000 ___HD C:\ASUS.DAT
2016-01-09 21:08 - 2015-12-05 09:56 - 00000920 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2016-01-09 21:08 - 2015-12-04 23:11 - 00000974 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-01-09 21:07 - 2015-07-10 13:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-01-09 21:07 - 2015-06-13 22:16 - 00000000 ____D C:\ProgramData\NVIDIA
2016-01-09 21:06 - 2015-12-02 16:01 - 00000980 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA.job
2016-01-09 21:06 - 2015-07-10 10:05 - 01048576 ___SH C:\WINDOWS\system32\config\BBI
2016-01-09 21:01 - 2015-12-05 09:56 - 00000924 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2016-01-09 20:54 - 2015-07-02 12:36 - 00000914 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-01-09 17:05 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-01-09 17:03 - 2015-07-10 12:04 - 00000000 ___HD C:\Program Files\WindowsApps
2016-01-09 16:16 - 2015-08-05 21:57 - 00000000 ____D C:\Users\Juraj
2016-01-09 16:06 - 2015-12-02 16:01 - 00000928 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core.job
2016-01-09 12:24 - 2015-06-12 15:55 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-01-09 09:40 - 2015-12-01 14:31 - 00000000 ____D C:\ProgramData\Unified Remote
2016-01-07 19:26 - 2015-07-10 12:04 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2016-01-07 11:11 - 2015-12-05 10:48 - 00002487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-01-07 11:11 - 2015-12-04 19:07 - 00002134 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2016-01-07 11:11 - 2015-12-01 11:58 - 00001211 _____ C:\Users\Public\Desktop\SideSync.lnk
2016-01-07 11:11 - 2015-11-28 13:30 - 00002025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2016-01-07 11:11 - 2015-11-21 11:56 - 00001451 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Uninstaller.lnk
2016-01-07 11:11 - 2015-11-16 20:30 - 00001049 _____ C:\Users\Juraj\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Volitelné funkce.lnk
2016-01-07 11:11 - 2015-11-07 11:42 - 00001106 _____ C:\Users\Public\Desktop\Pushbullet.lnk
2016-01-07 11:11 - 2015-10-16 20:15 - 00002043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\PowerArchiver.lnk
2016-01-07 11:11 - 2015-10-07 17:49 - 00002121 _____ C:\Users\Public\Desktop\Nokia PC Suite.lnk
2016-01-07 11:11 - 2015-09-15 18:37 - 00002134 _____ C:\Users\Public\Desktop\Brother Utilities.lnk
2016-01-07 11:11 - 2015-09-15 18:27 - 00001917 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk
2016-01-07 11:11 - 2015-08-12 12:18 - 00001218 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-01-07 11:11 - 2015-08-05 22:04 - 00001552 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-01-07 11:11 - 2015-07-17 17:24 - 00001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk
2016-01-07 11:11 - 2015-06-13 10:29 - 00001021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2016-01-07 11:11 - 2015-06-12 17:13 - 00001230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-01-07 11:11 - 2011-04-01 10:12 - 00001307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
2016-01-07 11:11 - 2011-04-01 10:11 - 00001376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
2016-01-07 11:11 - 2011-04-01 10:09 - 00001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2016-01-07 11:11 - 2011-04-01 10:05 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2016-01-06 20:25 - 2015-06-14 11:33 - 00000000 ____D C:\ProgramData\IObit
2016-01-06 20:25 - 2015-06-14 11:26 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\IObit
2016-01-06 20:25 - 2015-06-14 11:26 - 00000000 ____D C:\Program Files (x86)\IObit
2016-01-06 20:15 - 2015-06-12 13:55 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome
2016-01-06 19:09 - 2015-06-13 22:29 - 00001901 _____ C:\WINDOWS\system32\ServiceFilter.ini
2016-01-06 16:05 - 2015-07-10 11:55 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-01-06 14:27 - 2015-06-12 14:43 - 00000000 ____D C:\Users\Juraj\AppData\Roaming\Skype
2016-01-06 14:27 - 2015-06-12 14:41 - 00000000 ____D C:\ProgramData\Skype
2016-01-05 15:01 - 2015-12-01 14:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Unified Remote 3
2016-01-05 15:01 - 2015-12-01 14:31 - 00000000 ____D C:\Program Files (x86)\Unified Remote 3
2016-01-04 18:45 - 2015-10-12 16:55 - 00000000 ____D C:\Users\Juraj\AppData\Local\ElevatedDiagnostics
2016-01-03 21:07 - 2015-07-10 12:02 - 00000000 ____D C:\WINDOWS\INF
2016-01-03 21:05 - 2015-08-05 21:50 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-01-03 17:59 - 2015-06-12 13:48 - 00000000 ____D C:\Users\Juraj\AppData\Local\VirtualStore
2016-01-03 17:41 - 2015-06-13 22:29 - 00002716 _____ C:\WINDOWS\system32\AutoRunFilter.ini
2015-12-28 15:54 - 2015-11-29 21:23 - 00000000 ____D C:\Users\DefaultAppPool
2015-12-27 13:20 - 2015-07-10 13:20 - 00215680 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-12-27 13:19 - 2015-06-12 17:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-12-24 17:31 - 2015-06-30 11:11 - 00000000 ____D C:\Users\Juraj\AppData\Local\Adobe
2015-12-24 17:22 - 2015-07-02 12:36 - 00003888 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-12-22 20:58 - 2015-06-14 08:17 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2015-12-20 11:07 - 2015-11-03 08:20 - 114356224 _____ C:\WINDOWS\system32\config\SOFTWARE.iodefrag.bak
2015-12-20 11:07 - 2015-11-03 08:20 - 114356224 _____ C:\WINDOWS\system32\config\SOFTWARE.iodefrag
2015-12-20 11:07 - 2015-11-03 08:20 - 02682880 _____ C:\WINDOWS\system32\config\DEFAULT.iodefrag.bak
2015-12-20 11:07 - 2015-11-03 08:20 - 02682880 _____ C:\WINDOWS\system32\config\DEFAULT.iodefrag
2015-12-20 11:07 - 2015-11-03 08:20 - 00065536 _____ C:\WINDOWS\system32\config\SAM.iodefrag.bak
2015-12-20 11:07 - 2015-11-03 08:20 - 00065536 _____ C:\WINDOWS\system32\config\SAM.iodefrag
2015-12-20 11:07 - 2015-11-03 08:20 - 00028672 _____ C:\WINDOWS\system32\config\SECURITY.iodefrag.bak
2015-12-20 11:07 - 2015-11-03 08:20 - 00028672 _____ C:\WINDOWS\system32\config\SECURITY.iodefrag
2015-12-20 11:07 - 2015-11-03 08:19 - 07163904 _____ C:\WINDOWS\system32\config\DRIVERS.iodefrag.bak
2015-12-18 11:57 - 2015-08-05 21:53 - 02030468 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-12-18 11:57 - 2015-07-10 17:02 - 00840262 _____ C:\WINDOWS\system32\perfh005.dat
2015-12-18 11:57 - 2015-07-10 17:02 - 00191554 _____ C:\WINDOWS\system32\perfc005.dat
2015-12-16 20:35 - 2015-07-10 12:04 - 00000000 ____D C:\WINDOWS\system32\oobe
2015-12-16 20:29 - 2015-06-15 10:38 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-12-16 20:29 - 2015-06-15 10:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2015-12-14 19:15 - 2015-08-06 08:02 - 00000000 ___RD C:\Users\Juraj\OneDrive
2015-12-10 09:50 - 2015-12-05 09:56 - 00000000 ____D C:\Program Files (x86)\Dropbox

==================== Files in the root of some directories =======

2015-11-28 12:26 - 2015-11-28 12:26 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2011-04-01 10:21 - 2010-07-07 00:10 - 0131472 _____ () C:\ProgramData\FullRemove.exe
2015-06-13 22:34 - 2015-06-13 22:34 - 0000105 _____ () C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
2015-06-13 22:33 - 2015-06-13 22:34 - 0000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log

==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-01-09 12:11

==================== End of FRST.txt ============================

Reklama
Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 09 led 2016 21:52

Log z RK se mi bohužel nepodařilo najít.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod jaro3 » 10 led 2016 09:41

Odinstaluj IObit Malware Fighter a vše ostatní od IObit

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
Task: {00BEDE9D-02D9-421A-A094-CFACC99664F8} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {139A63CE-0FB7-4712-92EA-83366110DEBA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {18CDA1CA-8434-4A9F-B401-D8B90DEC4C9E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {210EA3D9-BF81-4A49-8AE8-FB5F34510144} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {23B893DA-F0F5-46D5-8252-B66B69F00CBF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-12] (Google Inc.)
Task: {2446C477-BCA7-442E-B57A-D5F120A21178} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {24A75597-ECF2-4E2B-ADCF-CB610D1D45CB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {4CAC6914-8F77-48D4-B959-924A81668994} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {54B6FC5C-7EBD-4E14-9695-A6ABA87654F3} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {86DE04E0-7E78-492E-B8D0-D2F6A423432D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {97AA2BC6-6856-443E-BA41-4F7D2D830811} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {9DD958FB-814D-413E-848F-4897C6868CB3} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D211F570-D28F-417C-9C4E-3ACD87248EB3} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {DDC4AA6D-FAE8-4B9E-9C6D-84F972ECE290} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-12] (Google Inc.)
Task: {F947A727-4E2D-475D-BF78-1AFF9DC6DD7C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core.job => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA.job => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Juraj\AppData\Local\Temp\_MEI69802
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\100sexlinks.com -> 100sexlinks.com
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\ProgramData\DP45977C.lfl
C:\ProgramData\FullRemove.exe
C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
C:\Program Files (x86)\IObit

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 10 led 2016 14:40

Log z FRST:

Fix result of Farbar Recovery Scan Tool (x64) Version:09-01-2015
Ran by Juraj Havel (2016-01-10 14:30:31) Run:1
Running from C:\Users\Juraj\Desktop
Loaded Profiles: Juraj Havel (Available Profiles: Juraj Havel & DefaultAppPool)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}\InprocServer32 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
CustomCLSID: HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Juraj\AppData\Local\Google\Update\1.3.29.1\psuser_64.dll (Google Inc.)
Task: {00BEDE9D-02D9-421A-A094-CFACC99664F8} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {139A63CE-0FB7-4712-92EA-83366110DEBA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {18CDA1CA-8434-4A9F-B401-D8B90DEC4C9E} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {210EA3D9-BF81-4A49-8AE8-FB5F34510144} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {23B893DA-F0F5-46D5-8252-B66B69F00CBF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-12] (Google Inc.)
Task: {2446C477-BCA7-442E-B57A-D5F120A21178} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {24A75597-ECF2-4E2B-ADCF-CB610D1D45CB} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {4CAC6914-8F77-48D4-B959-924A81668994} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe [2015-09-01] (Google Inc.)
Task: {54B6FC5C-7EBD-4E14-9695-A6ABA87654F3} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {86DE04E0-7E78-492E-B8D0-D2F6A423432D} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {97AA2BC6-6856-443E-BA41-4F7D2D830811} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {9DD958FB-814D-413E-848F-4897C6868CB3} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D211F570-D28F-417C-9C4E-3ACD87248EB3} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {DDC4AA6D-FAE8-4B9E-9C6D-84F972ECE290} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-06-12] (Google Inc.)
Task: {F947A727-4E2D-475D-BF78-1AFF9DC6DD7C} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core.job => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA.job => C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Juraj\AppData\Local\Temp\_MEI69802
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-1004667532-806584802-2637913605-1002\...\100sexlinks.com -> 100sexlinks.com
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\ProgramData\DP45977C.lfl
C:\ProgramData\FullRemove.exe
C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log
C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
C:\Program Files (x86)\IObit

EmptyTemp:
End
*****************

Processes closed successfully.
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{CC182BE1-84CE-4A57-B85C-FD4BBDF78CB2}" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{00BEDE9D-02D9-421A-A094-CFACC99664F8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{00BEDE9D-02D9-421A-A094-CFACC99664F8}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{139A63CE-0FB7-4712-92EA-83366110DEBA}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{139A63CE-0FB7-4712-92EA-83366110DEBA}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{18CDA1CA-8434-4A9F-B401-D8B90DEC4C9E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18CDA1CA-8434-4A9F-B401-D8B90DEC4C9E}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{210EA3D9-BF81-4A49-8AE8-FB5F34510144}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{210EA3D9-BF81-4A49-8AE8-FB5F34510144}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{23B893DA-F0F5-46D5-8252-B66B69F00CBF}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{23B893DA-F0F5-46D5-8252-B66B69F00CBF}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2446C477-BCA7-442E-B57A-D5F120A21178}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2446C477-BCA7-442E-B57A-D5F120A21178}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{24A75597-ECF2-4E2B-ADCF-CB610D1D45CB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{24A75597-ECF2-4E2B-ADCF-CB610D1D45CB}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4CAC6914-8F77-48D4-B959-924A81668994}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4CAC6914-8F77-48D4-B959-924A81668994}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{54B6FC5C-7EBD-4E14-9695-A6ABA87654F3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{54B6FC5C-7EBD-4E14-9695-A6ABA87654F3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{86DE04E0-7E78-492E-B8D0-D2F6A423432D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{86DE04E0-7E78-492E-B8D0-D2F6A423432D}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{97AA2BC6-6856-443E-BA41-4F7D2D830811}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{97AA2BC6-6856-443E-BA41-4F7D2D830811}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9DD958FB-814D-413E-848F-4897C6868CB3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9DD958FB-814D-413E-848F-4897C6868CB3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D211F570-D28F-417C-9C4E-3ACD87248EB3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D211F570-D28F-417C-9C4E-3ACD87248EB3}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DDC4AA6D-FAE8-4B9E-9C6D-84F972ECE290}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DDC4AA6D-FAE8-4B9E-9C6D-84F972ECE290}" => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F947A727-4E2D-475D-BF78-1AFF9DC6DD7C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F947A727-4E2D-475D-BF78-1AFF9DC6DD7C}" => key removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002Core.job => moved successfully
C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1004667532-806584802-2637913605-1002UA.job => moved successfully
"C:\Users\Juraj\AppData\Local\Temp\_MEI69802" => not found.
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008i.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\008k.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\00hq.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0190-dialers.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\01i.info" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\02pmnzy5eo29bfk4.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\05p.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\07ic5do2myz3vzpk.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\08nigbmwk43i01y6.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\093qpeuqpmz6ebfa.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0calories.net" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0cj.net" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\0scan.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-britney-spears-nude.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-domains-registrations.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1-se.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001movie.com" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1001night.biz" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100gal.net" => key removed successfully
"HKU\S-1-5-21-1004667532-806584802-2637913605-1002\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\100sexlinks.com" => key removed successfully
idsvc => service removed successfully
wpcsvc => service removed successfully
C:\ProgramData\DP45977C.lfl => moved successfully
C:\ProgramData\FullRemove.exe => moved successfully
C:\ProgramData\{40BF1E83-20EB-11D8-97C5-0009C5020658}.log => moved successfully
C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log => moved successfully
C:\Program Files (x86)\IObit => moved successfully
EmptyTemp: => 129.9 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 14:32:14 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod jaro3 » 11 led 2016 09:48

Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 11 led 2016 15:52

Děkuju za pomoc, myslím, že je to už mnohem lepší. Kdyby někdy náhodou nastala podobná situace, mohu postupovat podle tohoto návodu, nebo mám raději udělat nový sken přes HJT? Ještě jsem tady v jiném tématu řešil nefungující touchpad, nemohlo by jít o nějaký podobný softwarový problém? Jde mi o to, že kdyby nefungoval vůbec, bral bych to jako závadu touchpadu, ale on po restartu vždycky funguje. Tak mě napadlo, jestli by to nemohlo být nějakým virem nebo tak. Co myslíte?

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod jerabina » 11 led 2016 17:18

Přeinstalovat ovladače Touchpadu jsi zkoušel?

+ vlož sem nový log z HJT.
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 11 led 2016 18:34

Tady je ten log z HJT:

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 18:31:01, on 11.01.2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10240.16603)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Windows\AsScrPro.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe
C:\Users\Juraj\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe
C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Users\Juraj\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Drive\googledrivesync.exe
C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Users\Juraj\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe
C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Users\Juraj\Downloads\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [SonicMasterTray] C:\Program Files (x86)\ASUS\Sonic Focus\SonicFocusTray.exe
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKLM\..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [GIGABYTEMOUSE] C:\Users\Juraj\Documents\GIGABYTE\GIGABYTE Sim\Mouse.exe
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [ControlCenter4] C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun
O4 - HKLM\..\Run: [BrStsMon00] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN
O4 - HKLM\..\Run: [Dropbox] "C:\Program Files (x86)\Dropbox\Client\Dropbox.exe" /systemstartup
O4 - HKCU\..\Run: [Google Update] "C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [Google Photos Backup] "C:\Users\Juraj\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe" /autostart
O4 - HKCU\..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe -scheduler
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [MusicManager] "C:\Users\Juraj\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files (x86)\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Unified Remote V3] "C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe"
O4 - HKCU\..\Run: [hddhealth] C:\Program Files (x86)\HDD Health\hddhealth.exe -wl
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
O4 - HKCU\..\RunOnce: [Application Restart #2] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window --flag-switches-begin --enable-centered-app-list --enable-devtools-experiments --enable-extension-action-redesign --enable-md-settings --enable-pdf-material-ui --enable-tab-audio-muting --flag-switches-end --restore-last-session
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-82-3006700770-424185619-1745488364-794895919-4004696415\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'DefaultAppPool')
O4 - Global Startup: FancyStart daemon.lnk = ?
O4 - Global Startup: HDDHealth.lnk = C:\Program Files (x86)\HDD Health\hddhealth.exe
O8 - Extra context menu item: Volat toto číslo pomocí aplikace SideSync - res://C:\Program Files (x86)\Samsung\SideSync4\SideSyncContextMenu.dll/105
O9 - Extra button: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1004 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriterShortcuts.dll,-1003 - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O20 - AppInit_DLLs: C:\WINDOWS\SysWOW64\nvinit.dll
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: AFBAgent - Unknown owner - C:\Windows\system32\FBAgent.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Bluetooth Device Monitor - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth Media Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
O23 - Service: Bluetooth OBEX Service - Intel Corporation - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: BrYNSvc - Brother Industries, Ltd. - C:\Program Files (x86)\Browny02\BrYNSvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Dropbox Update Service (dbupdate) (dbupdate) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: Dropbox Update Service (dbupdatem) (dbupdatem) - Dropbox, Inc. - C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HDDHealth - Unknown owner - C:\Program Files (x86)\HDD Health\HDDHealthService.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LiveUpdate (LiveUpdateSvc) - Unknown owner - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe (file missing)
O23 - Service: MBAMService - Malwarebytes - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\ngcsvc.dll,-100 (NgcSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Network Service (NvStreamNetworkSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: PDFProFiltSrvPP - Nuance Communications, Inc. - C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe
O23 - Service: RemoteServerWin - Unified Intents AB - C:\Program Files (x86)\Unified Remote 3\RemoteServerWin.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SAMSUNG Mobile Connectivity Service (ss_conn_service) - DEVGURU Co., LTD. - C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: TeamViewer 11 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14947 bytes


Přeinstalovat ovladače od touchpadu jsem samozřejmě několikrát zkoušel, ale nepomohlo to.

Uživatelský avatar
jerabina
člen Security týmu
Level 6
Level 6
Příspěvky: 3647
Registrován: březen 13
Bydliště: Litoměřice
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod jerabina » 11 led 2016 20:47

Zavři ostatní programy/prohlížeče, odpoj se od internetu a v HJT fixni:
NÁVOD

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O4 - HKCU\..\Run: [Google Update] "C:\Users\Juraj\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [GoogleChromeAutoLaunch_DA1AC66AAEC15AF034F8035EC85E4FEE] "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Juraj\AppData\Local\Microsoft\OneDrive\17.3.5892.0626_1\amd64"
O4 - HKCU\..\RunOnce: [Application Restart #2] C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window --flag-switches-begin --enable-centered-app-list --enable-devtools-experiments --enable-extension-action-redesign --enable-md-settings --enable-pdf-material-ui --enable-tab-audio-muting --flag-switches-end --restore-last-session


Psal jsi, že po restartu funguje. Kdy přestane fungovat?
Když nevíš jak dál, přichází na řadu prostudovat manuál!
HJT návod

Pokud neodpovídám do vašich témat v sekci HJT když jsem online, tak je to jen proto, že jsem na mobilu kde je studování logů a psaní skriptů nemožné. Neberte to tedy prosím jako ignoraci.

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 11 led 2016 21:41

Touchpad nefunguje vždy po normálním zapnutí notebooku, začne fungovat až po restartu.

Nějak jsem v předchozím příspěvku přehlédl to ,,odpoj se od internetu", mám ten fix udělat znova?

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod jaro3 » 12 led 2016 10:13

Jo , a přidej si k tomu ještě:

Kód: Vybrat vše

O4 - Global Startup: FancyStart daemon.lnk = ?


Zadal bych si ještě téma do sekce problém s HW.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Nitram3
Level 2
Level 2
Příspěvky: 215
Registrován: srpen 14
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu - velmi zpomalený notebook

Příspěvekod Nitram3 » 12 led 2016 15:01

Děkuju, téma v sekci problém s HW už mám, ale nakonec to skončilo u toho, že to asi bude vadný touchpad a že ho mám vyměnit, což se mi moc nezdá, když po restartu funguje. Právě proto jsem se na to ptal ještě tady, jestli by náhodou někdo nevěděl, co s tím.


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 59 hostů