Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomalený notebook

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Zpomalený notebook

#1 Příspěvek od jakub.oslejsek »

Dobrý den,
rád bych Vás požádal pomoc při uvedení mého počítače do plně funkčního stavu. Před několika dny se bez zjevné příčiny začalo prodlužovat načítání při spouštění systému a zároveň se znatelně zpomalila i jakákoliv práce s programy. Nejviditelnější je to při psaní textu na internet, kdy se dobu nic neděje a pak až později se jakoby samovolně dopisují slova, která už ale měla být napsána. Předem Vám velice děkuji za pomoc.
Níže přikládám log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2019 01
Ran by uzivatel (administrator) on ACER (16-03-2019 17:08:03)
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel (Available Profiles: uzivatel)
Platform: Microsoft Windows 10 Pro Version 1803 17134.285 (X86) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\client32.exe
() [File not signed] C:\Program Files\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intellisense Co. Ltd. -> ) C:\ProgramData\LabCameraLED\LabCameraLED.Service.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc. -> Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe
(Acer Incorporated -> Acer Cloud Technology) C:\Program Files\Acer\AOP Framework\acer\ccd.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\NisSrv.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Acer Incorporated -> acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\client32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Hover Access\HoverAccess.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\tv_w32.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\runplugin.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\runplugin.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x86__kzf8qxf38zg5c\SkypeApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) [File not signed] C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\Spotify\Data\SpotifyWebHelper.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Acer Incorporated -> ) C:\Program Files\Acer\abDocs\abDocsDllLoaderMonitor.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe
(Acer Incorporated -> ) C:\Program Files\Acer\Care Center\ACCStd.exe
(Acer Incorporated -> ) C:\Program Files\Acer\abDocs\abDocsDllLoader.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Screen Grasp\GestureDetection.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Screen Grasp\Launch Screen Grasp.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\19.012.0121.0011\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [486816 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [4616704 2014-05-22] (Realtek Semiconductor) [File not signed]
HKLM\...\Run: [IESLCClient] => C:\Program Files\Intel Education Software\Software Activation Client\IESLCClient.exe [1796968 2014-09-10] (Intel Education Solutions Software -> Intel Corporation)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [81336 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [Spotify Web Helper] => C:\Program Files\Spotify\Data\SpotifyWebHelper.exe [1168896 2014-11-22] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [Free Download Manager] => "C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\fdm.exe" --minimized
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7456984 2017-04-11] (Piriform Ltd -> Piriform Ltd)
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\system32\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-06] (Google LLC -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{71C5A887-11E0-4c5a-9B9B-D4A074555692}] -> C:\Windows\system32\Client32Provider.dll [2014-06-04] (NetSupport Ltd -> NetSupport Ltd)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 77.48.254.254 77.48.100.254 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{0622a0d4-f211-47d8-b6d1-0f0086ab906e}: [DhcpNameServer] 77.48.254.254 77.48.100.254 8.8.8.8 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> DefaultScope {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {1CA8D0E9-8D57-4FD0-BE67-CF54BB3C23A9} URL = hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C011CZ899D20150922&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-07-18] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

FireFox:
========
FF DefaultProfile: mr9vmo8m.default
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\mr9vmo8m.default [2019-03-16]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1862773119-2407731945-3522171262-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)

Chrome:
=======
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default [2019-02-18]
CHR Extension: (Docs) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-09]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [70144 2014-03-12] () [File not signed]
R2 CCDMonitorService; C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe [2278688 2017-09-26] (Acer Incorporated -> Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [2054360 2017-12-12] (Microsoft Corporation -> Microsoft Corporation)
R2 Client32; C:\Program Files\Acer\Acer Classroom Manager\client32.exe [21072 2014-06-04] (NetSupport Ltd -> NetSupport Ltd)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [299488 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [83384 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [97208 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [90552 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [1974504 2014-07-22] (Acer Incorporated -> Acer Incorporated)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [292832 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 LabCameraLEDService; C:\ProgramData\LabCameraLED\LabCameraLED.Service.exe [14520 2014-06-12] (Intellisense Co. Ltd. -> )
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [452840 2014-12-30] (Acer Incorporated -> Acer Incorporate)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [858864 2016-05-25] (McAfee, Inc. -> Intel Security, Inc.)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [451816 2014-06-26] (Acer Incorporated -> Acer Incorporate)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3151776 2018-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TouchToolsLaunchService; C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe [247040 2014-01-09] (Acer Incorporated -> Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (Acer Incorporated -> acer)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3183440 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [91776 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [460288 2014-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 CM3218x; C:\WINDOWS\System32\drivers\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
R3 CPLMACPI; C:\WINDOWS\System32\drivers\CPLMACPI.sys [16488 2013-09-07] (Capella Microsystems Inc. -> Capella Microsystems, Inc.)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [44472 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [25528 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [28088 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [36280 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [80824 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [182200 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [23552 2014-05-05] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [16896 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [160064 2016-02-24] (McAfee, Inc. -> McAfee, Inc.)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [58368 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [87552 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [3048928 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44016 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [257024 2014-03-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
R3 INVN_MotionApps; C:\WINDOWS\System32\drivers\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35320 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [28440 2018-05-23] (Acer Incorporated -> Acer Incorporated)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [21968 2014-03-16] (Intel MCG PIV Tablet Validation -> Intel Corporation)
S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [321312 2016-04-27] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [83752 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
R3 nskbfltr; C:\windows\system32\drivers\nskbfltr.sys [31136 2014-01-09] (NetSupport Ltd -> NetSupport Ltd)
R1 NSWebFilterDriver; C:\WINDOWS\system32\DRIVERS\NSWebFilterDriver.sys [71904 2014-01-21] (NetSupport Ltd -> NetSupport)
R3 ov2722; C:\WINDOWS\System32\drivers\ov2722.sys [49152 2014-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [48128 2014-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [22808 2018-05-23] (Acer Incorporated -> Acer Incorporated)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [174808 2014-05-13] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\System32\drivers\rtwlans.sys [6555136 2018-04-11] (Microsoft Windows -> Realtek Semiconductor Corporation )
R3 SynRMIHID; C:\WINDOWS\System32\drivers\SynRMIHID.sys [36080 2014-02-20] (Synaptics Incorporated -> Synaptics Incorporated)
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [75792 2014-01-10] (Intel Corporation - Client Components Group -> Intel Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [38488 2018-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [266424 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [47800 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-03-16 17:08 - 2019-03-16 17:09 - 000021584 _____ C:\Users\uzivatel\Desktop\FRST.txt
2019-03-16 17:07 - 2019-03-16 17:08 - 000000000 ____D C:\FRST
2019-03-16 17:06 - 2019-03-16 17:06 - 001792000 _____ (Farbar) C:\Users\uzivatel\Desktop\FRST.exe
2019-03-16 15:29 - 2019-03-16 15:29 - 000000000 ___HD C:\OneDriveTemp
2019-03-15 16:50 - 2019-03-15 17:16 - 000000000 ____D C:\Program Files\CUAssistant
2019-03-09 10:22 - 2019-03-09 10:22 - 000000000 ____D C:\Users\uzivatel\AppData\Local\OneDrive
2019-02-27 14:21 - 2019-02-27 14:21 - 000000000 ____D C:\Users\uzivatel\AppData\Local\PackageStaging
2019-02-18 15:47 - 2019-02-18 15:47 - 000000000 ____D C:\Users\uzivatel\AppData\Local\mbam
2019-02-18 15:46 - 2019-02-18 15:46 - 000000000 ____D C:\Users\uzivatel\AppData\Local\mbamtray

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-03-16 16:58 - 2018-04-11 21:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-03-16 15:47 - 2018-04-11 21:25 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-03-16 15:29 - 2015-09-22 09:30 - 000000000 ___RD C:\Users\uzivatel\OneDrive
2019-03-16 15:27 - 2015-09-10 09:36 - 000000000 __SHD C:\Users\uzivatel\IntelGraphicsProfiles
2019-03-15 21:08 - 2018-05-19 16:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-03-15 19:17 - 2018-04-11 21:36 - 000000000 ___HD C:\Program Files\WindowsApps
2019-03-15 19:17 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-03-15 19:16 - 2018-05-19 16:34 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-03-15 19:16 - 2018-04-11 13:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-03-15 19:14 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-03-15 17:23 - 2018-05-19 16:27 - 001689050 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-03-15 17:23 - 2018-04-12 05:53 - 000717824 _____ C:\WINDOWS\system32\perfh005.dat
2019-03-15 17:23 - 2018-04-12 05:53 - 000145384 _____ C:\WINDOWS\system32\perfc005.dat
2019-03-15 17:23 - 2018-04-11 21:31 - 000000000 ____D C:\WINDOWS\INF
2019-03-15 17:23 - 2017-01-04 15:03 - 000000000 ____D C:\Users\uzivatel\AppData\Local\Free Download Manager
2019-03-13 14:47 - 2015-09-11 04:21 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-03-12 21:10 - 2015-09-11 04:21 - 124382624 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-03-07 17:07 - 2015-09-10 09:36 - 000000000 ____D C:\Users\uzivatel\AppData\Local\clear.fi
2019-03-06 20:58 - 2016-12-17 13:58 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-06 20:58 - 2016-12-17 13:58 - 000002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-03-06 16:13 - 2018-05-19 16:15 - 000002438 _____ C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-03 17:54 - 2018-09-13 12:53 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2019-03-03 17:54 - 2018-09-13 12:53 - 000179608 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2019-03-01 10:22 - 2018-01-12 12:17 - 000000000 ____D C:\Program Files\rempl
2019-02-21 15:40 - 2015-10-31 09:25 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-02-18 16:06 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-02-18 15:57 - 2018-04-11 21:36 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-02-18 15:20 - 2018-05-19 09:06 - 000000000 ___DC C:\WINDOWS\Panther
2019-02-18 15:20 - 2015-09-10 09:51 - 000000000 ____D C:\Users\uzivatel\AppData\Local\CrashDumps

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-05-19 16:11

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#3 Příspěvek od jakub.oslejsek »

Tady je:
# -------------------------------
# Malwarebytes AdwCleaner 7.2.7.0
# -------------------------------
# Build: 01-30-2019
# Database: 2019-03-11.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 03-16-2019
# Duration: 00:00:05
# OS: Windows 10 Pro
# Cleaned: 5
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

Deleted C:\Windows\ServiceProfiles\NetworkService\Favorites\Booking.com.url
Deleted C:\Windows\ServiceProfiles\LocalService\Favorites\Booking.com.url

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKLM\SOFTWARE\Classes\AppID\OverlayIcon.DLL
Deleted HKLM\Software\Classes\TypeLib\{ADF1FA2A-6EAA-4A97-A55F-3C8B92843EF5}
Deleted HKLM\Software\Classes\Interface\{7BCA6879-A9F8-47DE-AE05-F5CE7EA3A474}

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1667 octets] - [16/03/2019 18:26:05]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#4 Příspěvek od Rudy »

Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#5 Příspěvek od jakub.oslejsek »

Log z FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 13-03-2019 01
Ran by uzivatel (administrator) on ACER (16-03-2019 20:34:31)
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel (Available Profiles: uzivatel)
Platform: Microsoft Windows 10 Pro Version 1803 17134.285 (X86) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
() [File not signed] C:\Program Files\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\client32.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX86\officeclicktorun.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe
(Intellisense Co. Ltd. -> ) C:\ProgramData\LabCameraLED\LabCameraLED.Service.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(McAfee, Inc. -> Intel Security, Inc.) C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe
(Acer Incorporated -> Acer Cloud Technology) C:\Program Files\Acer\AOP Framework\acer\ccd.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\NisSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(Acer Incorporated -> acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\client32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\TeamViewer.exe
(Google Inc -> Google Inc.) C:\Program Files\Google\Update\GoogleUpdate.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files\TeamViewer\Version9\tv_w32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x86__kzf8qxf38zg5c\SkypeApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.41.54.0_x86__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMLockHandler.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Hover Access\HoverAccess.exe
(Acer Incorporated -> Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\runplugin.exe
(NetSupport Ltd -> NetSupport Ltd) C:\Program Files\Acer\Acer Classroom Manager\runplugin.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) [File not signed] C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel MCG PIV Tablet Validation -> Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Spotify AB -> Spotify Ltd) C:\Program Files\Spotify\Data\SpotifyWebHelper.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Screen Grasp\GestureDetection.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\Screen Grasp\Launch Screen Grasp.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\x86_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.580_none_8ebadb0e6524afa6\TiWorker.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftPdfReader.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe
(Acer Incorporated -> ) C:\Program Files\Acer\abDocs\abDocsDllLoaderMonitor.exe
(Acer Incorporated -> ) C:\Program Files\Acer\abDocs\abDocsDllLoader.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [486816 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [4616704 2014-05-22] (Realtek Semiconductor) [File not signed]
HKLM\...\Run: [IESLCClient] => C:\Program Files\Intel Education Software\Software Activation Client\IESLCClient.exe [1796968 2014-09-10] (Intel Education Solutions Software -> Intel Corporation)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [81336 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [Spotify Web Helper] => C:\Program Files\Spotify\Data\SpotifyWebHelper.exe [1168896 2014-11-22] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [Free Download Manager] => "C:\Program Files\FreeDownloadManager.ORG\Free Download Manager\fdm.exe" --minimized
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [7456984 2017-04-11] (Piriform Ltd -> Piriform Ltd)
HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\system32\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\72.0.3626.121\Installer\chrmstp.exe [2019-03-06] (Google LLC -> Google Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{71C5A887-11E0-4c5a-9B9B-D4A074555692}] -> C:\Windows\system32\Client32Provider.dll [2014-06-04] (NetSupport Ltd -> NetSupport Ltd)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 77.48.254.254 77.48.100.254 8.8.8.8 192.168.1.1
Tcpip\..\Interfaces\{0622a0d4-f211-47d8-b6d1-0f0086ab906e}: [DhcpNameServer] 77.48.254.254 77.48.100.254 8.8.8.8 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> DefaultScope {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {1CA8D0E9-8D57-4FD0-BE67-CF54BB3C23A9} URL = hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=C011CZ899D20150922&p={searchTerms}
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2017-07-18] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

FireFox:
========
FF DefaultProfile: mr9vmo8m.default
FF ProfilePath: C:\Users\uzivatel\AppData\Roaming\Mozilla\Firefox\Profiles\mr9vmo8m.default [2019-03-16]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-09-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc -> Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-02-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1862773119-2407731945-3522171262-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS -> Unity Technologies ApS)

Chrome:
=======
CHR Profile: C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default [2019-02-18]
CHR Extension: (Docs) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-12-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\uzivatel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-02-09]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [70144 2014-03-12] () [File not signed]
R2 CCDMonitorService; C:\Program Files\Acer\AOP Framework\CCDMonitorService.exe [2278688 2017-09-26] (Acer Incorporated -> Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX86\OfficeClickToRun.exe [2054360 2017-12-12] (Microsoft Corporation -> Microsoft Corporation)
R2 Client32; C:\Program Files\Acer\Acer Classroom Manager\client32.exe [21072 2014-06-04] (NetSupport Ltd -> NetSupport Ltd)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [299488 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [83384 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [97208 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [90552 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [1974504 2014-07-22] (Acer Incorporated -> Acer Incorporated)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [292832 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
R2 LabCameraLEDService; C:\ProgramData\LabCameraLED\LabCameraLED.Service.exe [14520 2014-06-12] (Intellisense Co. Ltd. -> )
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [452840 2014-12-30] (Acer Incorporated -> Acer Incorporate)
R2 PEFService; C:\Program Files\Common Files\Intel Security\PEF\CORE\PEFService.exe [858864 2016-05-25] (McAfee, Inc. -> Intel Security, Inc.)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [451816 2014-06-26] (Acer Incorporated -> Acer Incorporate)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3151776 2018-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TouchToolsLaunchService; C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe [247040 2014-01-09] (Acer Incorporated -> Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [234240 2014-07-15] (Acer Incorporated -> acer)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3183440 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [91776 2018-12-11] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [460288 2014-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 CM3218x; C:\WINDOWS\System32\drivers\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
R3 CPLMACPI; C:\WINDOWS\System32\drivers\CPLMACPI.sys [16488 2013-09-07] (Capella Microsystems Inc. -> Capella Microsystems, Inc.)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [44472 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [25528 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [28088 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [36280 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [80824 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [182200 2014-05-08] (Intel MCG PIV Tablet Validation -> Intel Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [23552 2014-05-05] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [16896 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [160064 2016-02-24] (McAfee, Inc. -> McAfee, Inc.)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [58368 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [87552 2014-03-22] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 igfx; C:\WINDOWS\system32\DRIVERS\igdkmd32.sys [3048928 2016-05-03] (Intel(R) pGFX -> Intel Corporation)
S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44016 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [257024 2014-03-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel(R) Corporation)
R3 INVN_MotionApps; C:\WINDOWS\System32\drivers\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35320 2015-12-01] (Intel(R) Wireless Display -> Intel Corporation)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [28440 2018-05-23] (Acer Incorporated -> Acer Incorporated)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [21968 2014-03-16] (Intel MCG PIV Tablet Validation -> Intel Corporation)
S3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [321312 2016-04-27] (McAfee, Inc. -> McAfee, Inc.)
S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [83752 2016-08-01] (McAfee, Inc. -> McAfee, Inc.)
R3 nskbfltr; C:\windows\system32\drivers\nskbfltr.sys [31136 2014-01-09] (NetSupport Ltd -> NetSupport Ltd)
R1 NSWebFilterDriver; C:\WINDOWS\system32\DRIVERS\NSWebFilterDriver.sys [71904 2014-01-21] (NetSupport Ltd -> NetSupport)
R3 ov2722; C:\WINDOWS\System32\drivers\ov2722.sys [49152 2014-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [48128 2014-03-16] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [22808 2018-05-23] (Acer Incorporated -> Acer Incorporated)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [174808 2014-05-13] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-21] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\System32\drivers\rtwlans.sys [6555136 2018-04-11] (Microsoft Windows -> Realtek Semiconductor Corporation )
R3 SynRMIHID; C:\WINDOWS\System32\drivers\SynRMIHID.sys [36080 2014-02-20] (Synaptics Incorporated -> Synaptics Incorporated)
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [75792 2014-01-10] (Intel Corporation - Client Components Group -> Intel Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [38488 2018-12-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [266424 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [47800 2018-12-11] (Microsoft Windows -> Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [189952 2018-04-11] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-03-16 20:34 - 2019-03-16 20:36 - 000021908 _____ C:\Users\uzivatel\Desktop\FRST.txt
2019-03-16 20:32 - 2019-03-16 20:32 - 000000000 ___HD C:\OneDriveTemp
2019-03-16 18:14 - 2019-03-16 18:15 - 007316688 _____ (Malwarebytes) C:\Users\uzivatel\Desktop\AdwCleaner.exe
2019-03-16 17:07 - 2019-03-16 20:34 - 000000000 ____D C:\FRST
2019-03-16 17:06 - 2019-03-16 17:06 - 001792000 _____ (Farbar) C:\Users\uzivatel\Desktop\FRST.exe
2019-03-15 16:50 - 2019-03-15 17:16 - 000000000 ____D C:\Program Files\CUAssistant
2019-03-09 10:22 - 2019-03-09 10:22 - 000000000 ____D C:\Users\uzivatel\AppData\Local\OneDrive
2019-02-27 14:21 - 2019-02-27 14:21 - 000000000 ____D C:\Users\uzivatel\AppData\Local\PackageStaging
2019-02-18 15:47 - 2019-02-18 15:47 - 000000000 ____D C:\Users\uzivatel\AppData\Local\mbam
2019-02-18 15:46 - 2019-02-18 15:46 - 000000000 ____D C:\Users\uzivatel\AppData\Local\mbamtray

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-03-16 20:35 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-03-16 20:33 - 2018-04-11 21:25 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-03-16 20:32 - 2015-09-22 09:30 - 000000000 ___RD C:\Users\uzivatel\OneDrive
2019-03-16 20:32 - 2015-09-10 09:36 - 000000000 __SHD C:\Users\uzivatel\IntelGraphicsProfiles
2019-03-16 18:35 - 2018-04-11 21:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-03-16 18:29 - 2018-05-19 16:34 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-03-16 18:28 - 2018-04-11 13:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2019-03-16 18:26 - 2017-04-29 08:56 - 000000000 ____D C:\AdwCleaner
2019-03-15 21:08 - 2018-05-19 16:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-03-15 19:17 - 2018-04-11 21:36 - 000000000 ___HD C:\Program Files\WindowsApps
2019-03-15 19:14 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\system32\NDF
2019-03-15 17:23 - 2018-05-19 16:27 - 001689050 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-03-15 17:23 - 2018-04-12 05:53 - 000717824 _____ C:\WINDOWS\system32\perfh005.dat
2019-03-15 17:23 - 2018-04-12 05:53 - 000145384 _____ C:\WINDOWS\system32\perfc005.dat
2019-03-15 17:23 - 2018-04-11 21:31 - 000000000 ____D C:\WINDOWS\INF
2019-03-15 17:23 - 2017-01-04 15:03 - 000000000 ____D C:\Users\uzivatel\AppData\Local\Free Download Manager
2019-03-13 14:47 - 2015-09-11 04:21 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-03-12 21:10 - 2015-09-11 04:21 - 124382624 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-03-07 17:07 - 2015-09-10 09:36 - 000000000 ____D C:\Users\uzivatel\AppData\Local\clear.fi
2019-03-06 20:58 - 2016-12-17 13:58 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-03-06 20:58 - 2016-12-17 13:58 - 000002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-03-06 16:13 - 2018-05-19 16:15 - 000002438 _____ C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-03 17:54 - 2018-09-13 12:53 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2019-03-03 17:54 - 2018-09-13 12:53 - 000179608 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2019-03-01 10:22 - 2018-01-12 12:17 - 000000000 ____D C:\Program Files\rempl
2019-02-21 15:40 - 2015-10-31 09:25 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-02-18 16:06 - 2018-04-11 21:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-02-18 15:57 - 2018-04-11 21:36 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-02-18 15:20 - 2018-05-19 09:06 - 000000000 ___DC C:\WINDOWS\Panther
2019-02-18 15:20 - 2015-09-10 09:51 - 000000000 ____D C:\Users\uzivatel\AppData\Local\CrashDumps

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\dllhost.exe => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-05-19 16:11

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#6 Příspěvek od Rudy »

A Addition? Měl by být na ploše v souboru addition.txt.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#7 Příspěvek od jakub.oslejsek »

Addition:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 13-03-2019 01
Ran by uzivatel (16-03-2019 20:38:03)
Running from C:\Users\uzivatel\Desktop
Microsoft Windows 10 Pro Version 1803 17134.285 (X86) (2018-05-19 15:35:34)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1862773119-2407731945-3522171262-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1862773119-2407731945-3522171262-503 - Limited - Disabled)
Guest (S-1-5-21-1862773119-2407731945-3522171262-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1862773119-2407731945-3522171262-1003 - Limited - Enabled)
uzivatel (S-1-5-21-1862773119-2407731945-3522171262-1001 - Administrator - Enabled) => C:\Users\uzivatel
WDAGUtilityAccount (S-1-5-21-1862773119-2407731945-3522171262-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

abDocs (HKLM\...\{CA4FE8B0-298C-4E5D-A486-F33B126D6A0A}) (Version: 1.10.2002 - Acer Incorporated)
abDocs Office AddIn (HKLM\...\{DCBF3379-246B-47E1-8173-639B63940838}) (Version: 3.02.2001 - Acer Incorporated)
abFiles (HKLM\...\{13885028-098C-4799-9B71-27DAC96502D5}) (Version: 2.08.2003 - Acer Incorporated)
abMusic (HKLM\...\{E9AF1707-3F3A-49E2-8345-4F2D629D0876}) (Version: 3.01.2003.6 - Acer Incorporated)
abPhoto (HKLM\...\{B5AD89F2-03D3-4206-8487-018298007DD0}) (Version: 4.00.2001.1 - Acer Incorporated)
Acer Care Center (HKLM\...\{1AF41E84-3408-499A-8C93-8891F0612719}) (Version: 2.00.3006 - Acer Incorporated)
Acer Classroom Manager (HKLM\...\{843D6925-3DCE-4071-B765-28780D31733F}) (Version: 11.41.0006 - Acer Inc)
Acer Explorer Agent (HKLM\...\{20018169-434E-4242-BC65-EB21CF091D54}) (Version: 2.00.3000 - Acer Incorporated)
Acer Hover Access (HKLM\...\{02488282-6E9D-42B0-877E-2AA34580E578}) (Version: 1.00.3001 - Acer Incorporated)
Acer Launch Manager (HKLM\...\{C18D55BD-1EC6-466D-B763-8EEDDDA9100E}) (Version: 8.00.8115 - Acer Incorporated)
Acer Portal (HKLM\...\{A5AD0B17-F34D-49BE-A157-C8B3D52ACD13}) (Version: 3.12.2006 - Acer Incorporated)
Acer Power Management (HKLM\...\{89943901-4CD5-42AB-A55B-E5395FE27748}) (Version: 7.00.8106.0 - Acer Incorporated)
Acer Quick Access (HKLM\...\{C1FA525F-D701-4B31-9D32-504FC0CF0B98}) (Version: 1.01.3016.0 - Acer Incorporated)
Acer Screen Grasp (HKLM\...\{84443E5D-0767-438B-B1C8-6A52FAB2101B}) (Version: 1.02.3006 - Acer Incorporated)
Acer Touch Tools (HKLM\...\{BB1F8130-3CB3-4896-9D28-770DFFFDE59C}) (Version: 1.01.3001 - Acer Incorporated)
Acer User Experience Improvement Program App Monitor Plugin (HKLM\...\{D6CCDCA8-31C1-4A63-AED0-27A4CD43F332}) (Version: 1.02.3005 - Acer Incorporated)
Acer User Experience Improvement Program Framework (HKLM\...\{F89EF116-C406-4436-AC12-2FEF6A6F117C}) (Version: 1.02.3005 - Acer Incorporated)
Acer Video Player (HKLM\...\{B6846F20-4821-11E3-8F96-0800200C9A66}) (Version: 1.00.2005.0 - Acer Incorporated)
Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.010.20098 - Adobe Systems Incorporated)
AOP Framework (HKLM\...\{4A37A114-702F-4055-A4B6-16571D4A5353}) (Version: 3.25.2001.0 - Acer Incorporated)
ArtRage Studio (HKLM\...\{51F3962B-28A2-4769-B926-5ACBF21AAB05}) (Version: 3.5.12 - Ambient Design)
aTube Catcher (HKLM\...\aTube Catcher) (Version: 2.9.4272 - DsNET Corp)
aTube Catcher verze 3.8 (HKLM\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\29DE0EDA6D3934C320738A786038F6A659246EE2) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\5C2CA2E78E0549DAD5A8D092CC9B1280E6918AF0) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\87289D5FED0A52C9CF1632E5C312356FF0CE502B) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\9EB1D222C06E311A5B97457292EC1BACC8BD3E1C) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\A5E55D4D1E9B0296BDF8BE93E5FA539478E93E3A) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\E99E4F0F1A2992FB6BA9E272A967C402C47329C9) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - PASCO Scientific (WinUSB) Pasco Interface (08/14/2008 1.0.0.0) (HKLM\...\AD4AD0F184940E4712E96652A58ADDC47894E622) (Version: 08/14/2008 1.0.0.0 - PASCO Scientific)
Bonjour (HKLM\...\{0CB9668D-F979-4F31-B8B8-67FE90F929F8}) (Version: 2.0.2.0 - Apple Inc.)
Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 5.29 - Piriform)
Cisco EAP-FAST Module (HKLM\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
Foxit Reader (HKLM\...\Foxit Reader) (Version: 3.0.20140211 - Foxit Corporation)
Google Chrome (HKLM\...\Google Chrome) (Version: 72.0.3626.121 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.23 - Google Inc.) Hidden
Google Update Helper (HKLM\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
Intel Education Lab Camera by Intellisense (HKLM\...\{BF34D04D-E3AA-4196-8CC5-6185AD88C309}) (Version: 7.6.598 - Intellisense Co. Ltd.)
Intel Education Media Camera by Intellisense (HKLM\...\{09325A09-E0D3-4284-B2EE-0450D5A6D05D}) (Version: 2.3.581 - Intellisense Co. Ltd.)
Intel(R) Education Software Activation Client - 32-bit (HKLM\...\{f8e032ae-8ebd-41df-b78d-0bbd844344ab}) (Version: 1.1.0.6994 - Intel Corporation)
Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3577 - Intel Corporation)
Kno Textbooks (HKLM\...\{D3933A99-0376-4D1C-93D4-8810F0DD5539}) (Version: 3.3.1.157 - Kno Inc.)
Microsoft Office 2013 pro profesionály - cs-cz (HKLM\...\ProfessionalRetail - cs-cz) (Version: 15.0.5101.1002 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\OneDriveSetup.exe) (Version: 19.012.0121.0011 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{3994d355-238a-4612-af93-26d13deddef1}) (Version: 11.0.61030.0 - Microsoft Corporation)
Office 15 Click-to-Run Extensibility Component (HKLM\...\{90150000-008C-0000-0000-0000000FF1CE}) (Version: 15.0.5101.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (HKLM\...\{90150000-007E-0000-0000-0000000FF1CE}) (Version: 15.0.5101.1002 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (HKLM\...\{90150000-008C-0405-0000-0000000FF1CE}) (Version: 15.0.5101.1002 - Microsoft Corporation) Hidden
Pasco USB Driver (HKLM\...\PascoUSBDriver) (Version: 1.1.0.0 - )
REALTEK Bluetooth (HKLM\...\{192979A0-37F4-4703-B1BB-62052142CE44}) (Version: 1.0.53.40723 - REALTEK Semiconductor Corp.) Hidden
REALTEK Bluetooth (HKLM\...\InstallShield_{192979A0-37F4-4703-B1BB-62052142CE44}) (Version: 1.0.53.40723 - Realtek Semiconductor Corp.)
Realtek I2S Audio (HKLM\...\{89A448AA-3301-46AA-AFC3-34F2D7C670E8}) (Version: 0.22 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM\...\{33AABC60-A52F-41FF-B2B9-17321240CD5}) (Version: 1.01.0243 - REALTEK Semiconductor Corp.)
SPARKvue (HKLM\...\{F28E3BE8-880F-4E97-A6DD-0D75E0CC7452}) (Version: 2.1.134 - Název společnosti:)
Spotify (HKLM\...\Spotify) (Version: 0.9.6.81.gd359a796 - Spotify AB)
TeamViewer 9 Host (HKLM\...\TeamViewer 9 Host) (Version: 9.0.93332 - TeamViewer)
Unity Web Player (HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\...\UnityWebPlayer) (Version: 2.6.1f3_31223 - Unity Technologies ApS)
Windows 10 Update and Privacy Settings (HKLM\...\{542CC2C2-ABAF-4604-8723-DA296AF74540}) (Version: 1.0.14.0 - Microsoft Corporation)
WinRAR 5.40 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuthLib.dll => No File
CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{444785F1-DE89-4295-863A-D46C3A781394}\InprocServer32 -> C:\Users\uzivatel\AppData\LocalLow\Unity\WebPlayer\loader\UnityWebPluginAX.ocx (Unity Technologies ApS -> Unity Technologies ApS)
CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [ ACloudSynced] -> {5CCE71FA-9F61-4F24-9CD1-98D819B40D68} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudSyncing] -> {C1E1456F-C2D8-4C96-870D-35F1E13941EE} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ShellIconOverlayIdentifiers: [ ACloudToBeSynced] -> {307523FA-DDC0-4068-983F-2A6B34627744} => C:\Program Files\Acer\shellext\Win32\shellext_win.dll [2017-10-02] (Acer Incorporated -> Acer Incorporated)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [igfxOSP] -> {FA507C3F-30C6-4DCA-9EE5-2656072EEC14} => C:\WINDOWS\system32\igfxOSP.dll [2016-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {07F086BA-889F-4DE5-A35B-ADC50676F65D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe (Piriform Ltd -> Piriform Ltd)
Task: {0A3F8AC5-32EE-4AF5-8D6B-25FB5A0D3FCD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {0BEA854F-7624-4D96-8247-7084717A0137} - System32\Tasks\Quick Access Quick Launcher => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe (Acer Incorporated -> Acer Incorporate)
Task: {0E1280DD-045E-4E0C-806E-08875F6A2CF3} - System32\Tasks\McAfeeLogon => C:\PROGRA~1\COMMON~1\McAfee\Platform\McUICnt.exe
Task: {1EB9518A-85B3-40F4-AEF2-48A8E009D4E2} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe (Acer Incorporated -> Acer Incorporate)
Task: {22A29913-DBD1-402E-87F7-177C2912758B} - System32\Tasks\AcerCloud => C:\Program Files\Acer\Acer Portal\AcerPortal.exe (Acer Incorporated -> Acer)
Task: {247BD142-0549-4E91-84B0-172C25563718} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe
Task: {27D8E824-9502-4AB0-9E2E-BD26EC847BA5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {2FAB0D8B-AED2-4688-B270-B4D4DFB76D9F} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {37B78713-C7F1-41BA-AD4F-68C4CCB6BA33} - System32\Tasks\Acer Hover Access Trigger => C:\Program Files\Acer\Acer Hover Access\\HoverAccessLauncher.exe (Acer Incorporated -> Acer Incorporated)
Task: {3B3A33D6-CAE7-45EA-AAE6-EBC45EAC1E4B} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {3E656057-FE59-42E8-BBFD-8ECA11810ABE} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => C:\Program Files\CUAssistant\culauncher.exe (Microsoft Windows -> Microsoft Corporation)
Task: {45928C9C-A408-4382-A3B3-4736539EF03C} - \McAfee\McAfee Idle Detection Task -> No File <==== ATTENTION
Task: {4B16AA48-11EC-44DD-8424-931ED9BA419F} - System32\Tasks\ACCBackgroundApplication => C:\Program Files\Acer\Care Center\ACCStd.exe (Acer Incorporated -> )
Task: {50F59449-0C45-4986-B773-0C6E343ACE00} - System32\Tasks\Screen Grasp GestureDetection => C:\Program Files\Acer\Screen Grasp\GestureDetection.exe (Acer Incorporated -> Acer Incorporated)
Task: {594B70F4-2F28-438D-A1A8-7C183173769A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {598443DC-6064-4377-BF06-0565925C1A51} - System32\Tasks\ACCAgent => C:\Program Files\Acer\Care Center\LiveUpdateAgent.exe (Acer Incorporated -> )
Task: {5CAB7758-84AF-4CC0-B363-49BB8F6FF0F5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {5DA09FB4-4C92-4D37-BD38-6A7004FFE2B6} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
Task: {5DF8FE11-A94D-4FB3-8BD2-DAE76D52BE6E} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {6B6FE1F0-B76B-46FE-B6FC-1882FFF5E407} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {7727F194-7BD2-45CA-AC62-232C04F1E851} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {77B101A1-DA59-4C9F-96A9-9A1B49960794} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {77E320C3-552B-46B4-9113-65A38A62CB5B} - \Microsoft\Windows\Setup\EOONotify -> No File <==== ATTENTION
Task: {7D1D050B-87CE-49DE-92EC-DE1CAD59E53C} - \WPD\SqmUpload_S-1-5-21-1862773119-2407731945-3522171262-1001 -> No File <==== ATTENTION
Task: {81ED35DD-557C-46E9-AD64-FB102A073FF9} - System32\Tasks\abDocsDllLoader => C:\Program Files\Acer\abDocs\abDocsDllLoaderMonitor.exe (Acer Incorporated -> )
Task: {879E90BE-DC12-4285-BC86-571EBF980D38} - System32\Tasks\Prelauncher => C:\Program Files\Acer\Screen Grasp\InputTask.exe (Acer Incorporated -> Acer Incorporated)
Task: {886D34E9-F823-498A-AF7C-2E98AB583C6A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8B4BEC83-1EB4-40D8-88EF-A32D41CEA84E} - System32\Tasks\Launch Screen Grasp_First => C:\Program Files\Acer\Screen Grasp\Launch Screen Grasp.exe (Acer Incorporated -> Acer Incorporated)
Task: {8BB8442A-1F75-4508-B838-F2AB496EAEEE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {93FF4431-62BB-4DD7-890C-1C414047C03F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {97B6E03D-E690-4D31-A298-A562788E3D69} - System32\Tasks\Launch Manager => C:\Program Files\Acer\Acer Launch Manager\LMLauncher.exe (Acer Incorporated -> Acer Incorporate)
Task: {99B77AD4-AC83-46D1-9B99-7B14231AD937} - System32\Tasks\BacKGroundAgent => C:\Program Files\Acer\AOP Framework\BackgroundAgent.exe (Acer Incorporated -> Acer Incorporated)
Task: {A18FBDB3-74FF-4C89-82E1-A5F591614A36} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {A5BC3A0B-0169-4FC4-B435-A603D090B696} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {A7626C82-438F-48DC-A57E-4C02C99D399E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {A83CAA32-4616-4A50-BA7E-47A8358B797F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {AD15F4E3-3017-48E5-B2E3-95157E8DCE3D} - System32\Tasks\UbtFrameworkService => C:\Program Files\Acer\User Experience Improvement Program\Framework\TriggerFramework.exe (Acer Incorporated -> TODO: <Company name>)
Task: {B489B38B-5D09-4273-9BA3-B92AFD19F212} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback
Task: {BE9A608A-7152-4DF7-BA9C-C622F04637CA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {C0003AC4-071A-4432-BB3E-73DE640C2B82} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTrayLauncher.exe (Acer Incorporated -> Acer Incorporated)
Task: {C1B941FB-D4FF-48A2-99FC-831EA83E2A93} - System32\Tasks\S-1-5-21-1862773119-2407731945-3522171262-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe (Microsoft Windows -> Microsoft Corporation)
Task: {C1FF3A08-A881-438C-8A59-E6E088B254E9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {DC1B068E-C21B-4000-9884-A3565F9163FB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {E1F10D36-A66E-4678-B99C-104DC194D873} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Task: {E638D203-9F98-4814-B5E2-8DD8C66A8DAB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {F3699FA0-168B-492E-936F-B087414A704E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {F4FE6EDB-6AE3-434C-8E9E-A0639683D7F8} - System32\Tasks\prelauncher_First => C:\Program Files\Acer\Screen Grasp\InputTask.exe (Acer Incorporated -> Acer Incorporated)
Task: {F6BB6263-030F-4FCF-8227-02FA9CCE5C99} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {F792DDCE-DBC8-41C6-AA13-2AB933DF41E6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {FAD11A89-BCA3-49F1-84C5-51B09967CF89} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX86\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {FFDD1A08-FEB8-4BD8-A900-EF1F4A3E8A15} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee Anti-Virus And Anti-Spyware\upgrade.exe (McAfee, Inc. -> McAfee, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


ShortcutWithArgument: C:\Users\Public\Desktop\Dropbox.lnk -> C:\Program Files\Dropbox\StartURL.exe () -> hxxps://www.dropbox.com/partners/acer2014/download
ShortcutWithArgument: C:\Users\Public\Desktop\Microsoft Office Online - Word, Excel, and PowerPoint on the web.lnk -> C:\Program Files\Microsoft Office Online\StartURL.exe () -> hxxps://www.office.com/start/default.aspx

==================== Loaded Modules (Whitelisted) ==============

2014-11-22 03:47 - 2012-02-15 04:37 - 000535040 _____ () C:\WINDOWS\system32\Rtlihvs.dll
2014-11-22 03:49 - 2014-03-12 22:31 - 000070144 _____ () C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe
2014-11-22 03:48 - 2014-05-22 09:31 - 004616704 _____ () C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe
2017-04-10 23:57 - 2017-04-10 23:57 - 000065536 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\uzivatel\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2ce.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 07:13 - 2013-08-22 07:13 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\uzivatel\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 77.48.254.254 - 77.48.100.254
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{0F613B4B-E79E-4F88-8972-8B8DDDFAB323}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{5E92ECC3-884D-468E-ABA9-466EAC553423}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{9CF1D154-C6D9-4304-A47C-BCE2022916B1}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{9BFCF283-945E-4C82-B049-89501564D947}] => (Allow) C:\Program Files\TeamViewer\Version9\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{EA21E557-61C4-4F25-B6F9-45C1B5EF49E7}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{25915320-4354-491D-8C49-733081FF4780}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{C393435F-AA92-4814-AAE0-14302E5664A4}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{08874FF8-7CB2-4E20-A281-A4EDF299D52F}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{26DAABE0-DE40-468F-87AB-FF1856C38379}] => (Allow) LPort=8090
FirewallRules: [{335F67DD-619C-4907-BD33-04C73151EE49}] => (Allow) LPort=20443
FirewallRules: [{27E3081A-4381-4E8B-8BB8-013DDB8FAB36}] => (Allow) LPort=33333
FirewallRules: [{A47AA2F8-3A02-446D-9E48-933EF85708E8}] => (Allow) LPort=6881
FirewallRules: [{17872A17-3030-45C9-8C85-D3A8F2B3F862}] => (Allow) LPort=27022
FirewallRules: [{0C11830D-FC5C-43E6-8766-67B1D87EFDD8}] => (Allow) LPort=7853
FirewallRules: [{C07DC9F6-3FA6-4C26-9D3A-5C3CFE99DF97}] => (Allow) LPort=7852
FirewallRules: [{F8799428-6CDC-4889-8E89-81B1083299BF}] => (Allow) LPort=7850
FirewallRules: [{A947A82E-9E1A-49A5-9109-9E449069AE79}] => (Allow) LPort=3478
FirewallRules: [{57C0BB66-9958-4D52-AAFA-EFC9A290DFA6}] => (Allow) LPort=20010
FirewallRules: [{2FC2E4F1-D0D1-4E31-8B03-7EAE78A31666}] => (Allow) LPort=443
FirewallRules: [{BD59D0F4-5796-446B-AE3C-27060110D112}] => (Allow) LPort=80
FirewallRules: [{A4694E44-AB50-4209-8C5E-D17285C617CF}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{197DA5E1-FAA7-4D83-BA8B-6027A867AAE9}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{3E42FD25-1C8A-41AD-8500-A0486FAA9C32}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{2CE0569F-BE77-4C5F-A5D0-BE5E3304CF9F}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{148C3904-4743-4F98-876C-B7B8F344283B}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{68F6DACC-B777-4B78-B088-A31C0E965793}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{A02A91C8-96EF-4215-A585-435E9886BE9B}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{44EBC11B-539A-47BA-993C-5BB7C7DBE1FC}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{73586EFF-76B6-46C0-A26F-AF28402E3D34}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{E6448975-FEF2-497E-BEC8-378A6CD1741D}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{9B571FA0-59A4-495A-85B0-E292D6692B47}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{65A09093-C909-41EE-9933-85F12054B670}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{C4B0B13D-206F-4F57-BFB6-68CBD9DE6D2B}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{16771DEF-E38E-436C-ACE4-0B2432403385}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{002FE6EF-CC36-4CBA-BFDB-2BB7B52C026C}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{D9532DE3-83B9-4AA1-B0FC-C0516C048C3B}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{63E5A37B-40AA-4441-8C5B-322E1E32DA36}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{573F7B0C-48E1-44B4-8886-8B262228C028}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{984B0CD8-6BC3-4F41-9A2A-67673F448CE3}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{0815CA20-958F-4935-A503-E675A3B5E7A7}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{09C58BB5-8D70-4532-9289-DDCE03FE2E77}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{2CFD4D2F-9028-4E62-82AF-5CDEF0D3353C}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{4658202F-C388-4B20-A774-06ECC353402C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{8DB223BA-AFC2-4B12-BE40-737A958A8DEC}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B088F434-9024-497E-9EB5-9570B2B61BD8}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{EBF5C858-F3F0-4200-89EF-EC422343FB1F}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{E73875F2-6784-4F13-84DF-3CF5F27314C2}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{C6484548-8BF1-4943-B8B0-A8732ADB8178}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{4569B82B-E7CD-4980-BA92-D8B051A5CE4B}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{9DAED3E9-77D5-4BAD-893E-CB7659896477}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{C245D87E-5209-4F95-B00A-DBAA2D90B939}] => (Allow) C:\Users\uzivatel\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe No File
FirewallRules: [{308A6D61-FC9F-4866-9E60-1C29D788B2BF}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{A6295593-9A33-415D-ACAB-7B1A44454F93}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{FF0A7276-40A5-409C-9AAA-885356289AFE}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{27DDD93F-613B-4C2E-A0DE-FE0DE6E5A267}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{273FC32F-A14A-420F-9849-155128735EB5}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{E34DBDD2-5F6A-45EA-8413-15E392A11733}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{878419A4-8F68-442A-886C-62CE46276500}] => (Allow) C:\Program Files\Microsoft Office 15\root\Office15\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B02BD2AD-DE68-499A-9FD8-845191935218}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{9B244CF4-70EA-4F72-9E4F-E8AF2F77BF22}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{7E75DFE2-6045-4DB1-AB82-E98F7665ABF9}] => (Allow) C:\Program Files\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{D477D001-B32F-4EB9-83D8-62F851FC3E95}] => (Allow) C:\Program Files\Acer\AOP Framework\acer\ccd.exe (Acer Incorporated -> Acer Cloud Technology)
FirewallRules: [{0EE5FF76-64C7-405C-85E9-752F5580F442}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{76F18178-5952-4392-9EC7-DC82DAD0FB1C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{444ECE67-181B-4F97-BAB2-84D381C47FA0}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{D722D998-3FA7-4C30-9CD3-C82F871657FB}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{1600D7D1-2384-4413-954E-723130F8FFC1}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B6DB95B4-7EC6-4976-AE0C-907BD86CA7FB}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{2139ED55-1D63-4A7B-99EF-A64F4A866150}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{91C4B544-5499-4AFB-AE88-57C20C14F646}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{8684CE82-BBD9-4E8E-9CED-7F7E9D908E22}] => (Allow) C:\Program Files\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{084059CA-B636-4E61-A402-BE9E392FEA50}] => (Allow) C:\Program Files\Spotify\Data\SpotifyWebHelper.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3C1A1DD4-10CA-4E36-810E-B995F1A2DCED}] => (Allow) C:\Program Files\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C6729951-5C61-42FE-B441-38CA5F33CA1C}] => (Allow) C:\Program Files\Spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{215F62B1-6FBF-4531-815E-9C8448574194}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
FirewallRules: [{530CA1DC-E8A5-473C-BF98-17764658D33E}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\pcijoin.exe (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{CCC0CA81-0047-4C6D-ABFE-1CA069AD4B81}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\pcijoin.exe (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{516A92EC-471D-43DB-BFD0-DA283A08BE80}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\PCINSSCD.EXE (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{B06FBC90-BB7E-4279-9C95-0E5240F6480E}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\PCINSSCD.EXE (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{E074E9E8-6F40-45A0-83C6-FADF7962B0EE}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\client32.exe (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{C746B482-5F1D-4A59-8C26-D40EFF982402}] => (Allow) C:\Program Files\Acer\Acer Classroom Manager\client32.exe (NetSupport Ltd -> NetSupport Ltd)
FirewallRules: [{B41E9649-6087-4DED-AA5A-F22E6C8C835A}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{6578EEF7-9644-46C8-BEA8-D5EF811EE830}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{C2272940-DA34-4FE5-B8BE-AF3E8E00F056}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{E61F43C5-59D9-48F1-9433-5585E4A7E955}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{B9865DBE-45DD-41AA-98B3-E97F64A4237E}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{8945C3D8-A559-4315-AE00-DE1193B25EE3}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{54A1B858-9E13-436D-93C1-DA9B680D197A}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{1CF58D11-41B3-445E-8575-0EC870164C9E}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{630C7CD1-EF4F-4446-8EDF-4427C9D73E6E}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{97137072-070D-481D-B2D3-360E607CB3C5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0F067C91-191A-43B6-A184-579C1BD70355}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{0A62C59F-33EE-4BB6-9582-7F598D3FFA44}] => (Allow) C:\Program Files\Acer\abPhoto\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{1BF9D5D1-47FE-499F-AAF7-0B93B4FD1638}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{F83AC554-B494-4516-9173-F72DDF9BBDBA}] => (Allow) C:\Program Files\Acer\abPhoto\WindowsUpnp.exe (Acer Incorporated -> acer)
FirewallRules: [{9655CE4F-9CC3-42D5-9F3C-1978B8AFB73A}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{1691381C-F122-4DCF-9F96-1FB93E8276FA}] => (Allow) C:\Program Files\Acer\abMusic\DMCDaemon.exe (Acer Incorporated -> acer)
FirewallRules: [{5F03F63F-4B9B-40FE-83E1-D2C13206EF47}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{E9C34CD9-A486-4E16-8105-E219DEA668F1}] => (Allow) C:\Program Files\Acer\abMusic\WindowsUpnpMV.exe (Acer Incorporated -> acer)
FirewallRules: [{5F31381F-2415-4783-ABDD-AF731ADAAD8A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

ATTENTION: System Restore is disabled

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (03/16/2019 08:32:10 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 660: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně ukončeno vzdáleným hostitelem.)

Error: (03/16/2019 06:47:33 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceive: mDNS_Unlock locking failure! mDNS_busy (1) != mDNS_reentrancy (0)

Error: (03/16/2019 06:47:33 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceive: mDNS_Lock locking failure! mDNS_busy (1) != mDNS_reentrancy (0)

Error: (03/16/2019 06:34:00 PM) (Source: Microsoft-Windows-SpellChecker) (EventID: 33) (User: ACER)
Description: httphttp-2147467263

Error: (03/16/2019 06:22:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ShellExperienceHost.exe, verze: 10.0.17134.1, časové razítko: 0x5acdfac3
Název chybujícího modulu: combase.dll, verze: 10.0.17134.112, časové razítko: 0xcdc43ef4
Kód výjimky: 0xc000027b
Posun chyby: 0x0005e0a1
ID chybujícího procesu: 0xcf4
Čas spuštění chybující aplikace: 0x01d4dc1c70db000a
Cesta k chybující aplikaci: C:\WINDOWS\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\combase.dll
ID zprávy: 8d98f9a7-db01-455e-bcb4-c3de508ec287
Úplný název chybujícího balíčku: Microsoft.Windows.ShellExperienceHost_10.0.17134.112_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: App

Error: (03/16/2019 06:08:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 540: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně ukončeno vzdáleným hostitelem.)

Error: (03/16/2019 06:08:41 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: 520: ERROR: read_msg errno 10054 (Stávající připojení bylo vynuceně ukončeno vzdáleným hostitelem.)

Error: (03/16/2019 05:17:54 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceive: mDNS_Unlock locking failure! mDNS_busy (1) != mDNS_reentrancy (0)


System errors:
=============
Error: (03/16/2019 08:35:10 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {784E29F4-5EBE-4279-9948-1E8FE941646D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/16/2019 08:32:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (03/16/2019 08:32:11 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (03/16/2019 08:32:10 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (03/16/2019 08:32:06 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Microsoft Wi-Fi Direct Virtual Adapter #4, {3551C0B0-078A-47D4-BCC5-B3C02C0CC2A4}, došlo k události 74.

Error: (03/16/2019 06:32:31 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {784E29F4-5EBE-4279-9948-1E8FE941646D} se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/16/2019 06:32:14 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (03/16/2019 06:31:40 PM) (Source: DCOM) (EventID: 10016) (User: ACER)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscCloudBackupProvider
a APPID
Není k dispozici
uživateli ACER\uzivatel (SID: S-1-5-21-1862773119-2407731945-3522171262-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-03-15 18:47:44.401
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {03901EE2-FCCE-4521-A0C3-A5809FF7FB24}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-15 17:44:45.229
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DBB78D91-4B65-409C-986F-D59DCB337ACD}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-06 21:25:36.899
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {CCDCB30E-E424-4488-BC9F-71956362C649}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-06 21:20:41.545
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {763C54D1-1A10-4E96-B47D-11FF25CA800A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-06 21:15:52.978
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {FC2C968D-4213-4B7B-B0E2-9CD15F06D662}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-03-07 17:06:09.964
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.289.561.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15700.9
Kód chyby: 0x8024402c
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-01-18 19:02:39.134
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.283.3221.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15500.2
Kód chyby: 0x80240016
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-01-18 14:22:48.581
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.283.3148.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15500.2
Kód chyby: 0x80240016
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-01-13 17:02:26.529
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.283.2877.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15500.2
Kód chyby: 0x80240438
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2018-12-24 09:36:07.021
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.283.1238.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.15500.2
Kód chyby: 0x80240016
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

==================== Memory info ===========================

Processor: Intel(R) Atom(TM) CPU Z3735F @ 1.33GHz
Percentage of memory in use: 79%
Total physical RAM: 1953.49 MB
Available physical RAM: 405.41 MB
Total Virtual: 4769.49 MB
Available Virtual: 1464.88 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:57.59 GB) (Free:20.18 GB) NTFS
Drive d: () (Removable) (Total:29.47 GB) (Free:29.47 GB) FAT32
Drive e: (Data) (Fixed) (Total:465.76 GB) (Free:428.66 GB) NTFS

\\?\Volume{51ec1085-ecad-495e-af9e-d94f901615a6}\ () (Fixed) (Total:0.44 GB) (Free:0.14 GB) NTFS
\\?\Volume{b1350a7e-e57f-4d67-a901-0cbe4ae68236}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.05 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 58.3 GB) (Disk ID: D1FAF9F6)

Partition: GPT.

========================================================
Disk: 1 (Protective MBR) (Size: 29.5 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 82A3B61B)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuthLib.dll => No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
Task: {0A3F8AC5-32EE-4AF5-8D6B-25FB5A0D3FCD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {27D8E824-9502-4AB0-9E2E-BD26EC847BA5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {3B3A33D6-CAE7-45EA-AAE6-EBC45EAC1E4B} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {45928C9C-A408-4382-A3B3-4736539EF03C} - \McAfee\McAfee Idle Detection TaTask: {5CAB7758-84AF-4CC0-B363-49BB8F6FF0F5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {5DA09FB4-4C92-4D37-BD38-6A7004FFE2B6} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
sk -> No File <==== ATTENTION
Task: {7727F194-7BD2-45CA-AC62-232C04F1E851} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {77B101A1-DA59-4C9F-96A9-9A1B49960794} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {77E320C3-552B-46B4-9113-65A38A62CB5B} - \Microsoft\Windows\Setup\EOONotify -> No File <==== ATTENTION
Task: {7D1D050B-87CE-49DE-92EC-DE1CAD59E53C} - \WPD\SqmUpload_S-1-5-21-1862773119-2407731945-3522171262-1001 -> No File <==== ATTENTION
Task: {886D34E9-F823-498A-AF7C-2E98AB583C6A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8BB8442A-1F75-4508-B838-F2AB496EAEEE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {93FF4431-62BB-4DD7-890C-1C414047C03F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {A18FBDB3-74FF-4C89-82E1-A5F591614A36} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {A5BC3A0B-0169-4FC4-B435-A603D090B696} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {A83CAA32-4616-4A50-BA7E-47A8358B797F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {BE9A608A-7152-4DF7-BA9C-C622F04637CA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {E638D203-9F98-4814-B5E2-8DD8C66A8DAB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {F3699FA0-168B-492E-936F-B087414A704E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {F6BB6263-030F-4FCF-8227-02FA9CCE5C99} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {F792DDCE-DBC8-41C6-AA13-2AB933DF41E6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
AlternateDataStreams: C:\Users\uzivatel\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]
FirewallRules: [{A4694E44-AB50-4209-8C5E-D17285C617CF}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{197DA5E1-FAA7-4D83-BA8B-6027A867AAE9}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{4658202F-C388-4B20-A774-06ECC353402C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{8DB223BA-AFC2-4B12-BE40-737A958A8DEC}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B088F434-9024-497E-9EB5-9570B2B61BD8}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{EBF5C858-F3F0-4200-89EF-EC422343FB1F}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{E73875F2-6784-4F13-84DF-3CF5F27314C2}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{C6484548-8BF1-4943-B8B0-A8732ADB8178}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{4569B82B-E7CD-4980-BA92-D8B051A5CE4B}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{9DAED3E9-77D5-4BAD-893E-CB7659896477}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{C245D87E-5209-4F95-B00A-DBAA2D90B939}] => (Allow) C:\Users\uzivatel\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe No File
FirewallRules: [{308A6D61-FC9F-4866-9E60-1C29D788B2BF}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{A6295593-9A33-415D-ACAB-7B1A44454F93}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{FF0A7276-40A5-409C-9AAA-885356289AFE}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{27DDD93F-613B-4C2E-A0DE-FE0DE6E5A267}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{273FC32F-A14A-420F-9849-155128735EB5}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{E34DBDD2-5F6A-45EA-8413-15E392A11733}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{0EE5FF76-64C7-405C-85E9-752F5580F442}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{76F18178-5952-4392-9EC7-DC82DAD0FB1C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{444ECE67-181B-4F97-BAB2-84D381C47FA0}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{D722D998-3FA7-4C30-9CD3-C82F871657FB}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{1600D7D1-2384-4413-954E-723130F8FFC1}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B6DB95B4-7EC6-4976-AE0C-907BD86CA7FB}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{2139ED55-1D63-4A7B-99EF-A64F4A866150}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{91C4B544-5499-4AFB-AE88-57C20C14F646}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{215F62B1-6FBF-4531-815E-9C8448574194}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> DefaultScope {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#9 Příspěvek od jakub.oslejsek »

Výsledný log:
Fix result of Farbar Recovery Scan Tool (x86) Version: 13-03-2019 01
Ran by uzivatel (17-03-2019 08:42:18) Run:1
Running from C:\Users\uzivatel\Desktop
Loaded Profiles: uzivatel (Available Profiles: uzivatel)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start

CloseProcesses:
CustomCLSID: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5}\InprocServer32 -> C:\Users\uzivatel\AppData\Local\Microsoft\OneDrive\17.3.6390.0509\FileCoAuthLib.dll => No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
Task: {0A3F8AC5-32EE-4AF5-8D6B-25FB5A0D3FCD} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {27D8E824-9502-4AB0-9E2E-BD26EC847BA5} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {3B3A33D6-CAE7-45EA-AAE6-EBC45EAC1E4B} - \Microsoft\Windows\Setup\gwx\rundetector -> No File <==== ATTENTION
Task: {45928C9C-A408-4382-A3B3-4736539EF03C} - \McAfee\McAfee Idle Detection TaTask: {5CAB7758-84AF-4CC0-B363-49BB8F6FF0F5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {5DA09FB4-4C92-4D37-BD38-6A7004FFE2B6} - \Microsoft\Windows\Setup\GWXTriggers\Time-Weekend -> No File <==== ATTENTION
sk -> No File <==== ATTENTION
Task: {7727F194-7BD2-45CA-AC62-232C04F1E851} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {77B101A1-DA59-4C9F-96A9-9A1B49960794} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {77E320C3-552B-46B4-9113-65A38A62CB5B} - \Microsoft\Windows\Setup\EOONotify -> No File <==== ATTENTION
Task: {7D1D050B-87CE-49DE-92EC-DE1CAD59E53C} - \WPD\SqmUpload_S-1-5-21-1862773119-2407731945-3522171262-1001 -> No File <==== ATTENTION
Task: {886D34E9-F823-498A-AF7C-2E98AB583C6A} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {8BB8442A-1F75-4508-B838-F2AB496EAEEE} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {93FF4431-62BB-4DD7-890C-1C414047C03F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {A18FBDB3-74FF-4C89-82E1-A5F591614A36} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION
Task: {A5BC3A0B-0169-4FC4-B435-A603D090B696} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {A83CAA32-4616-4A50-BA7E-47A8358B797F} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {BE9A608A-7152-4DF7-BA9C-C622F04637CA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe (Google Inc -> Google Inc.)
Task: {E638D203-9F98-4814-B5E2-8DD8C66A8DAB} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {F3699FA0-168B-492E-936F-B087414A704E} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {F6BB6263-030F-4FCF-8227-02FA9CCE5C99} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {F792DDCE-DBC8-41C6-AA13-2AB933DF41E6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
AlternateDataStreams: C:\Users\uzivatel\OneDrive:${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity [118]
FirewallRules: [{A4694E44-AB50-4209-8C5E-D17285C617CF}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{197DA5E1-FAA7-4D83-BA8B-6027A867AAE9}] => (Allow) E:\WarThunder\launcher.exe No File
FirewallRules: [{4658202F-C388-4B20-A774-06ECC353402C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{8DB223BA-AFC2-4B12-BE40-737A958A8DEC}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B088F434-9024-497E-9EB5-9570B2B61BD8}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{EBF5C858-F3F0-4200-89EF-EC422343FB1F}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{E73875F2-6784-4F13-84DF-3CF5F27314C2}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{C6484548-8BF1-4943-B8B0-A8732ADB8178}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{4569B82B-E7CD-4980-BA92-D8B051A5CE4B}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{9DAED3E9-77D5-4BAD-893E-CB7659896477}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{C245D87E-5209-4F95-B00A-DBAA2D90B939}] => (Allow) C:\Users\uzivatel\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe No File
FirewallRules: [{308A6D61-FC9F-4866-9E60-1C29D788B2BF}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{A6295593-9A33-415D-ACAB-7B1A44454F93}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{FF0A7276-40A5-409C-9AAA-885356289AFE}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{27DDD93F-613B-4C2E-A0DE-FE0DE6E5A267}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{273FC32F-A14A-420F-9849-155128735EB5}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{E34DBDD2-5F6A-45EA-8413-15E392A11733}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{0EE5FF76-64C7-405C-85E9-752F5580F442}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{76F18178-5952-4392-9EC7-DC82DAD0FB1C}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{444ECE67-181B-4F97-BAB2-84D381C47FA0}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{D722D998-3FA7-4C30-9CD3-C82F871657FB}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{1600D7D1-2384-4413-954E-723130F8FFC1}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{B6DB95B4-7EC6-4976-AE0C-907BD86CA7FB}] => (Allow) C:\Program Files\Acer\abMedia\WindowsUpnpMV.exe No File
FirewallRules: [{2139ED55-1D63-4A7B-99EF-A64F4A866150}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{91C4B544-5499-4AFB-AE88-57C20C14F646}] => (Allow) C:\Program Files\Acer\abMedia\DMCDaemon.exe No File
FirewallRules: [{215F62B1-6FBF-4531-815E-9C8448574194}] => (Allow) C:\Program Files\Common Files\mcafee\platform\McSvcHost\McSvHost.exe No File
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> DefaultScope {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
SearchScopes: HKU\S-1-5-21-1862773119-2407731945-3522171262-1001 -> {F0F110BD-16B1-4C46-90AA-AACD449C69FE} URL =
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001_Classes\CLSID\{162C6FB5-44D3-435B-903D-E613FA093FB5} => removed successfully.
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully.
HKLM\Software\Classes\CLSID\{3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0A3F8AC5-32EE-4AF5-8D6B-25FB5A0D3FCD}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A3F8AC5-32EE-4AF5-8D6B-25FB5A0D3FCD}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{27D8E824-9502-4AB0-9E2E-BD26EC847BA5}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{27D8E824-9502-4AB0-9E2E-BD26EC847BA5}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3B3A33D6-CAE7-45EA-AAE6-EBC45EAC1E4B}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3B3A33D6-CAE7-45EA-AAE6-EBC45EAC1E4B}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\rundetector" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{45928C9C-A408-4382-A3B3-4736539EF03C}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{45928C9C-A408-4382-A3B3-4736539EF03C}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McAfee\McAfee Idle Detection TaTask: {5CAB7758-84AF-4CC0-B363-49BB8F6FF0F5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5DA09FB4-4C92-4D37-BD38-6A7004FFE2B6}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5DA09FB4-4C92-4D37-BD38-6A7004FFE2B6}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-Weekend" => removed successfully.
sk -> No File <==== ATTENTION => Error: No automatic fix found for this entry.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7727F194-7BD2-45CA-AC62-232C04F1E851}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7727F194-7BD2-45CA-AC62-232C04F1E851}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{77B101A1-DA59-4C9F-96A9-9A1B49960794}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77B101A1-DA59-4C9F-96A9-9A1B49960794}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{77E320C3-552B-46B4-9113-65A38A62CB5B}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{77E320C3-552B-46B4-9113-65A38A62CB5B}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\EOONotify" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7D1D050B-87CE-49DE-92EC-DE1CAD59E53C}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D1D050B-87CE-49DE-92EC-DE1CAD59E53C}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\WPD\SqmUpload_S-1-5-21-1862773119-2407731945-3522171262-1001" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{886D34E9-F823-498A-AF7C-2E98AB583C6A}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{886D34E9-F823-498A-AF7C-2E98AB583C6A}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8BB8442A-1F75-4508-B838-F2AB496EAEEE}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8BB8442A-1F75-4508-B838-F2AB496EAEEE}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{93FF4431-62BB-4DD7-890C-1C414047C03F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{93FF4431-62BB-4DD7-890C-1C414047C03F}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A18FBDB3-74FF-4C89-82E1-A5F591614A36}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A18FBDB3-74FF-4C89-82E1-A5F591614A36}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A5BC3A0B-0169-4FC4-B435-A603D090B696}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A5BC3A0B-0169-4FC4-B435-A603D090B696}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A83CAA32-4616-4A50-BA7E-47A8358B797F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A83CAA32-4616-4A50-BA7E-47A8358B797F}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BE9A608A-7152-4DF7-BA9C-C622F04637CA}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE9A608A-7152-4DF7-BA9C-C622F04637CA}" => removed successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E638D203-9F98-4814-B5E2-8DD8C66A8DAB}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E638D203-9F98-4814-B5E2-8DD8C66A8DAB}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F3699FA0-168B-492E-936F-B087414A704E}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3699FA0-168B-492E-936F-B087414A704E}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F6BB6263-030F-4FCF-8227-02FA9CCE5C99}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F6BB6263-030F-4FCF-8227-02FA9CCE5C99}" => removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F792DDCE-DBC8-41C6-AA13-2AB933DF41E6}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F792DDCE-DBC8-41C6-AA13-2AB933DF41E6}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => removed successfully.
C:\Users\uzivatel\OneDrive => ":${3D0CE612-FDEE-43f7-8ACA-957BEC0CCBA0}.SyncRootIdentity" ADS could not remove.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A4694E44-AB50-4209-8C5E-D17285C617CF}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{197DA5E1-FAA7-4D83-BA8B-6027A867AAE9}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4658202F-C388-4B20-A774-06ECC353402C}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8DB223BA-AFC2-4B12-BE40-737A958A8DEC}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B088F434-9024-497E-9EB5-9570B2B61BD8}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EBF5C858-F3F0-4200-89EF-EC422343FB1F}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E73875F2-6784-4F13-84DF-3CF5F27314C2}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C6484548-8BF1-4943-B8B0-A8732ADB8178}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4569B82B-E7CD-4980-BA92-D8B051A5CE4B}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DAED3E9-77D5-4BAD-893E-CB7659896477}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C245D87E-5209-4F95-B00A-DBAA2D90B939}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{308A6D61-FC9F-4866-9E60-1C29D788B2BF}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A6295593-9A33-415D-ACAB-7B1A44454F93}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FF0A7276-40A5-409C-9AAA-885356289AFE}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{27DDD93F-613B-4C2E-A0DE-FE0DE6E5A267}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{273FC32F-A14A-420F-9849-155128735EB5}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E34DBDD2-5F6A-45EA-8413-15E392A11733}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0EE5FF76-64C7-405C-85E9-752F5580F442}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{76F18178-5952-4392-9EC7-DC82DAD0FB1C}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{444ECE67-181B-4F97-BAB2-84D381C47FA0}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D722D998-3FA7-4C30-9CD3-C82F871657FB}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1600D7D1-2384-4413-954E-723130F8FFC1}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B6DB95B4-7EC6-4976-AE0C-907BD86CA7FB}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2139ED55-1D63-4A7B-99EF-A64F4A866150}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{91C4B544-5499-4AFB-AE88-57C20C14F646}" => removed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{215F62B1-6FBF-4531-815E-9C8448574194}" => removed successfully.
"HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope" => removed successfully.
HKU\S-1-5-21-1862773119-2407731945-3522171262-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{F0F110BD-16B1-4C46-90AA-AACD449C69FE} => removed successfully.
HKLM\Software\Classes\CLSID\{F0F110BD-16B1-4C46-90AA-AACD449C69FE} => not found
HKLM\Software\Classes\PROTOCOLS\Filter\application/x-mfe-ipt => removed successfully.
HKLM\Software\Classes\CLSID\{3EF5086B-5478-4598-A054-786C45D75692} => not found

=========== EmptyTemp: ==========

BITS transfer queue => 7888896 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 191009446 B
Java, Flash, Steam htmlcache => 5341 B
Windows/system/drivers => 7056419 B
Edge => 217407353 B
Chrome => 101376 B
Firefox => 2943963 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
LocalService => 0 B
NetworkService => 42188 B
uzivatel => 100682769 B

RecycleBin => 160016191 B
EmptyTemp: => 655.3 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 08:45:22 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#11 Příspěvek od jakub.oslejsek »

Počítač je rychlejší, ale nelze na něm provést aktualizace OS. Respektive před dokončením se přeruší.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#12 Příspěvek od Rudy »

Přes příkazový řádek příkazem sfc /scannow spusťte test a příp. opravu systémových souborů. Po skončení akce restartujte a vyzkoušejte aktualizaci.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jakub.oslejsek
Návštěvník
Návštěvník
Příspěvky: 68
Registrován: 20 čer 2014 14:23

Re: Zpomalený notebook

#13 Příspěvek od jakub.oslejsek »

Děkuji, pomohlo.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118274
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Zpomalený notebook

#14 Příspěvek od Rudy »

To jsem rád. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno