Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

prosím o kontrolu logu

#1 Příspěvek od Eddydye »

Prosím o kontrolu logu, Pc je absolutně nepoužitelné i při vypnutých všech aplikacích jede buď procesor nebo HD na 100%
Tuhle situaci jsem řešil tady asi pul roku zpátky a pomohlo to, teď je to ale horší.
Děkuji

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-10-2021
Ran by Lenovo (administrator) on LAPTOP-1HBPBNHQ (LENOVO 81D6) (03-10-2021 19:57:52)
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo
Platform: Windows 10 Home Version 20H2 19042.1052 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0346112.inf_amd64_3ee723850dc00744\B345643\atiesrxx.exe
(Avast Software s.r.o. -> ) C:\Users\Lenovo\AppData\Local\Temp\AvastBrowserUninstall.exe_{70FB7773-BD66-4A9B-855B-D669E1273CE1}.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvBugReport.exe <2>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvEmUpdate.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\setup\New_150809b7\instup.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\setup\sbr.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Avast Software s.r.o. -> Avast Software) C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe
(Avast Software s.r.o. -> AVAST Software) C:\Users\Lenovo\AppData\Local\Temp\AvastBrowserUpdate.exeb144cc6
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Lenovo\AppData\Roaming\uTorrent\updates\3.5.5_46090\utorrentie.exe <2>
(BitTorrent Inc -> BitTorrent Inc.) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe
(BitTorrent Inc -> BitTorrent, Inc.) C:\Users\Lenovo\AppData\Local\Temp\~nsu.tmp\Un_A.exe <2>
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe <2>
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <10>
(Google LLC -> Google) C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\SwReporter\92.267.200\software_reporter_tool.exe <4>
(LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(LAVASOFT SOFTWARE CANADA INC -> Lavasoft) C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe <2>
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\ngentask.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Dynamic Code Publisher -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(SweetLabs Inc. -> SweetLabs, Inc) C:\Users\Lenovo\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Windows\System32\SynTPEnhService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [124184 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [btweb] => C:\Users\Lenovo\AppData\Roaming\BitTorrent Web\btweb.exe [5946912 2021-07-26] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [ut] => C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe [2279720 2021-10-03] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8520168 2021-10-03] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe"
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe"
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\RunOnce: [Uninstall 21.150.0725.0001\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.150.0725.0001\amd64"
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\RunOnce: [Uninstall 21.150.0725.0001] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Lenovo\AppData\Local\Microsoft\OneDrive\21.150.0725.0001"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\92.0.4515.159\Installer\chrmstp.exe [2021-08-30] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0F279508-E661-401F-871F-50F483306D6E} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {143DF042-6777-41C6-9467-39CE773D3140} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {16010F5C-88B0-4F61-A0C1-03EF94CFAEF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {173BE7FC-BA3A-47C8-A3C2-7852F7A75842} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\fe7b7b8f-4741-4f0a-9c55-fa2c3ecf630f => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {246781E6-8B9B-4132-8344-B84819DB6201} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4917528 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {35263B7B-7CDA-4068-8F91-35B3A71DD78D} - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan -> No File <==== ATTENTION
Task: {475C0928-8F13-4A01-AE48-3D18759722CC} - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup -> No File <==== ATTENTION
Task: {4B663A22-0280-4939-8DE1-EE05E37598BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {521196A7-2A38-45EE-BCF4-684AABA223C3} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\388b4856-2705-43ee-b5e2-05a66acbdc03 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {5605F9EE-FC5E-4060-BD5D-C7FAFA500583} - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance -> No File <==== ATTENTION
Task: {613A929E-9510-4154-8DF7-5842E50C897A} - \Lenovo\LenovoWelcomeTask -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7FE9532E-68E6-4E8E-85FA-ED78CF79516D} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9820e797-37a2-4a42-97f8-d6dbed63d183 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {89FE4C7F-E1D6-494A-B7B8-342BFAB55215} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB} - \Microsoft\Windows\Windows Defender\Windows Defender Verification -> No File <==== ATTENTION
Task: {972F90C9-6098-43C3-AF93-4F3D63A46AF0} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {98CA85C7-BB5E-4F9C-9A24-7BC334698CE6} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [62440 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {A0483060-B5DC-4020-8F90-82AA5EEE045E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-08-30] (Avast Software s.r.o. -> Avast Software)
Task: {B1C77DC6-5C81-4199-AF93-7C05DDEB259B} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\4c9986ba-0a18-4d4e-a8e4-5bae4b72bdfb => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {B7ECE28C-46E4-4254-9688-C36A52A47C0D} - System32\Tasks\Microsoft\Windows\SysResetDelayedCleanup => C:\WINDOWS\system32\ResetEngine.exe [20280 2020-12-28] (Microsoft Windows -> Microsoft Corporation)
Task: {BAE21A4C-EA0F-4602-A864-8CC15778067A} - \App Explorer -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {C5117643-2BEA-47A1-9CCB-746F69E115A6} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\0c727f2f-a234-4aef-8819-9fa3445de956 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
Task: {C98EBA3D-4AD7-450A-86D7-B5499947BF94} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 78.157.167.7 78.157.167.57
Tcpip\..\Interfaces\{01d18f22-76e7-4a67-be8a-fc34c93be4e1}: [DhcpNameServer] 150.207.1.2
Tcpip\..\Interfaces\{d1e3ac3f-e807-4d26-9c42-15e2b0b7ad08}: [DhcpNameServer] 78.157.167.7 78.157.167.57
Tcpip\..\Interfaces\{e6688af5-a767-45b1-96ff-07698f217521}: [DhcpNameServer] 78.157.167.7 78.157.167.57

Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2021-10-03]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default [2021-10-03]
CHR HomePage: Default -> hxxps://www.facebook.com/
CHR StartupUrls: Default -> "hxxps://www.facebook.com/","hxxp://www.yoursear ... seznam.cz/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentace) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-30]
CHR Extension: (Dokumenty) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-30]
CHR Extension: (Disk Google) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-30]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-30]
CHR Extension: (Tabulky) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-03]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-10-03]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2021-08-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-30]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-30]
CHR Extension: (Chrome Media Router) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-30]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-10-01]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-10-01]
CHR HomePage: Profile 1 -> hxxp://popart.nextis.cz/
CHR StartupUrls: Profile 1 -> "hxxp://www.yoursites123.com/?type=hp&ts=145881 ... xx9qe6ettr"
CHR Session Restore: Profile 1 -> is enabled.
CHR Extension: (Prezentace) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-30]
CHR Extension: (Dokumenty) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-30]
CHR Extension: (Disk Google) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-30]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-30]
CHR Extension: (Tabulky) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-30]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-30]
CHR Extension: (Chrome Media Router) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-30]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\System Profile [2021-10-01]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8303184 2021-09-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [630040 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [377624 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> )
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-16] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81896 2021-08-12] (Lenovo -> Lenovo Group Ltd.)
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-10-03] (LAVASOFT SOFTWARE CANADA INC -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35712 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [221584 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [367632 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250384 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99344 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [17344 2021-08-30] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41344 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [184120 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [538464 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107840 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82904 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851704 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [553496 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215384 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [328568 2021-09-02] (Avast Software s.r.o. -> AVAST Software)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-04-14] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-04-14] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-03 20:13 - 2021-10-03 20:13 - 000000000 ____D C:\Users\Lenovo\AppData\LocalLow\uTorrent
2021-10-03 20:09 - 2021-10-03 20:07 - 000215392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw8f4e376f6c3beabf.tmp
2021-10-03 19:57 - 2021-10-03 20:06 - 000022388 _____ C:\Users\Lenovo\Desktop\FRST.txt
2021-10-03 19:57 - 2021-10-03 19:57 - 000000000 ____D C:\Users\Lenovo\Desktop\FRST-OlderVersion
2021-10-03 19:49 - 2021-10-03 19:49 - 000000000 ____D C:\Users\Lenovo\AppData\Local\CrashDumps
2021-10-03 19:48 - 2021-10-03 19:49 - 000000000 ____D C:\Users\Lenovo\Desktop\simms
2021-10-03 19:47 - 2021-10-03 20:27 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\uTorrent
2021-10-03 19:47 - 2021-10-03 19:47 - 000000904 _____ C:\Users\Lenovo\Desktop\µTorrent.lnk
2021-10-03 19:47 - 2021-10-03 19:47 - 000000884 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2021-10-03 19:47 - 2021-10-03 19:47 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Lavasoft
2021-10-03 19:47 - 2021-10-03 19:47 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Lavasoft
2021-10-03 19:47 - 2021-10-03 19:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2021-10-03 19:47 - 2021-10-03 19:47 - 000000000 ____D C:\ProgramData\Lavasoft
2021-10-03 19:47 - 2021-10-03 19:47 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2021-10-03 19:46 - 2021-10-03 19:46 - 005140776 _____ (BitTorrent Inc.) C:\Users\Lenovo\Desktop\uTorrent.exe
2021-10-03 19:46 - 2021-10-03 19:46 - 000000000 ____D C:\Users\Lenovo\AppData\Local\UT008
2021-10-03 19:45 - 2021-10-03 19:45 - 000000000 ____D C:\Users\Lenovo\AppData\Local\UTW008
2021-10-03 19:38 - 2021-10-03 20:28 - 000000000 ____D C:\Users\Lenovo\AppData\Local\BitTorrentHelper
2021-10-03 19:35 - 2021-10-03 19:49 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\BitTorrent Web
2021-10-03 19:35 - 2021-10-03 19:35 - 000001895 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitTorrent Web.lnk
2021-10-03 19:34 - 2021-10-03 19:34 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Adaware
2021-10-03 19:32 - 2021-10-03 19:32 - 000084426 _____ C:\Users\Lenovo\Downloads\[SkT]The_Sims_4__Deluxe_Edition_[v_1.79.93.1030___1.79.93.1530_ _DLCs]_(CZ)(2021).torrent
2021-10-01 16:23 - 2021-10-01 16:23 - 000000000 ____D C:\Users\Public\Lenovo App Explorer
2021-09-06 20:19 - 2021-09-06 20:19 - 000000000 ___HD C:\$WinREAgent
2021-09-06 20:16 - 2021-09-06 20:16 - 000000000 ____D C:\WINDOWS\system32\MRT

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-03 20:22 - 2021-08-30 18:27 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-10-03 20:13 - 2021-08-30 17:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-10-03 20:09 - 2021-08-30 19:51 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-10-03 20:09 - 2021-08-30 18:27 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-10-03 20:08 - 2021-08-30 19:44 - 000000000 ____D C:\ProgramData\Avast Software
2021-10-03 20:07 - 2021-08-30 19:50 - 000557152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000538480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000328568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000250408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000184648 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000107864 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000099368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000082912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000041368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000021936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000851712 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000369176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000221600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000035720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-10-03 20:03 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-10-03 20:02 - 2021-05-27 18:01 - 000000000 ____D C:\FRST
2021-10-03 20:01 - 2021-08-30 18:27 - 000000000 ___HD C:\Program Files\WindowsApps
2021-10-03 19:57 - 2021-05-28 15:02 - 002307584 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2021-10-03 19:55 - 2021-04-18 22:17 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-10-03 19:55 - 2021-04-18 22:17 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-10-03 19:46 - 2021-08-30 19:34 - 000000000 ____D C:\Program Files (x86)\Google
2021-10-03 19:44 - 2021-08-30 19:59 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Avast Software
2021-10-03 19:40 - 2021-08-30 18:24 - 000000000 ____D C:\WINDOWS\INF
2021-10-03 19:36 - 2018-09-12 09:23 - 000000000 ____D C:\ProgramData\Package Cache
2021-10-03 19:35 - 2021-08-30 19:26 - 000000000 ____D C:\Users\Lenovo\AppData\Local\D3DSCache
2021-10-03 19:31 - 2021-08-30 19:34 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-10-03 19:31 - 2021-08-30 19:34 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-10-03 19:31 - 2021-08-30 18:16 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-10-03 19:25 - 2021-08-30 19:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3307983600-3278904661-1563487808-1005
2021-10-03 19:25 - 2021-08-30 18:34 - 000002391 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-10-03 19:23 - 2021-08-30 18:34 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Host App Service
2021-10-01 16:26 - 2021-08-30 18:52 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-10-01 16:26 - 2021-08-30 18:32 - 000717834 _____ C:\WINDOWS\system32\perfh005.dat
2021-10-01 16:26 - 2021-08-30 18:32 - 000144996 _____ C:\WINDOWS\system32\perfc005.dat
2021-10-01 16:23 - 2021-08-30 18:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-10-01 16:20 - 2021-08-30 18:34 - 000000000 ____D C:\Users\Lenovo
2021-10-01 16:18 - 2018-09-12 09:31 - 000000000 ____D C:\Program Files\mcafee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\ProgramData\McAfee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\Program Files\Common Files\mcafee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\Program Files (x86)\McAfee
2021-10-01 16:17 - 2021-08-30 18:09 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-10-01 16:17 - 2021-08-30 17:54 - 000258688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-10-01 16:16 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\ServiceState
2021-10-01 16:16 - 2021-08-30 18:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-10-01 16:16 - 2021-04-18 08:33 - 000008192 ___SH C:\DumpStack.log.tmp
2021-09-22 16:39 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-09-20 15:51 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\appcompat

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#3 Příspěvek od Eddydye »

# -------------------------------
# Malwarebytes AdwCleaner 8.3.0.0
# -------------------------------
# Build: 06-29-2021
# Database: 2021-09-09.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-03-2021
# Duration: 00:00:15
# OS: Windows 10 Home
# Cleaned: 35
# Failed: 0


***** [ Services ] *****

Deleted WCAssistantService

***** [ Folders ] *****

Deleted C:\Program Files (x86)\Lavasoft\Web Companion
Deleted C:\ProgramData\Application Data\Lavasoft\Web Companion
Deleted C:\ProgramData\Lavasoft\Web Companion
Deleted C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft\WebCompanion
Deleted C:\Users\Default\AppData\Local\Host App Service
Deleted C:\Users\Lenovo\AppData\Local\Host App Service
Deleted C:\Users\Lenovo\AppData\Local\Lavasoft\WEBCOMPANION.EXE_URL_SIQ0LWF3TZGXP2KHFKLLYBK3IDTBEHNG
Deleted C:\Users\Lenovo\AppData\Roaming\Lavasoft\Web Companion
Deleted C:\Users\defaultuser100001\AppData\Local\Host App Service
Deleted C:\Users\laboj\AppData\Local\Host App Service

***** [ Files ] *****

Deleted C:\Users\Lenovo\AppData\Local\Temp\WebCompanion.zip
Deleted C:\Windows\System32\Tasks_Migrated\App Explorer

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\App Host Service
Deleted HKCU\Software\Host App Service
Deleted HKCU\Software\Lavasoft\Web Companion
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Web Companion
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\webcompanion.com
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|Web Companion
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\Host App Service
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAE21A4C-EA0F-4602-A864-8CC15778067A}
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\App Explorer
Deleted HKLM\Software\Wow6432Node\Lavasoft\Web Companion
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5f848cdd-ec5f-40b9-a659-c883add529c0}|DisplayIcon
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5f848cdd-ec5f-40b9-a659-c883add529c0}|DisplayName
Deleted HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5f848cdd-ec5f-40b9-a659-c883add529c0}|UninstallString

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

Deleted http://www.yoursearching.com/?type=hp&t ... xx9qe6ettr
Deleted http://www.yoursearching.com/?type=hp&t ... xx9qe6ettr
Deleted http://www.yoursearching.com/?type=hp&t ... xx9qe6ettr
Deleted http://www.yoursearching.com/?type=hp&t ... xx9qe6ettr
Deleted http://www.yoursites123.com/?type=hp&ts ... XX9QE6ETTR
Deleted yoursearching
Deleted yoursearching
Deleted yoursearching
Deleted yoursearching

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [3199 octets] - [27/05/2021 21:54:44]
AdwCleaner[C00].txt - [3244 octets] - [27/05/2021 21:57:14]
AdwCleaner[S01].txt - [5480 octets] - [03/10/2021 21:29:31]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#4 Příspěvek od Rudy »

Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#5 Příspěvek od Eddydye »

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <9>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [134936 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [btweb] => C:\Users\Lenovo\AppData\Roaming\BitTorrent Web\btweb.exe [5946912 2021-07-26] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [ut] => C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe [2091560 2021-10-03] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\Run: [MicrosoftEdgeAutoLaunch_5EF70F99B4529735F3564FFE246DB961] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\92.0.4515.159\Installer\chrmstp.exe [2021-08-30] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0F279508-E661-401F-871F-50F483306D6E} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {143DF042-6777-41C6-9467-39CE773D3140} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {16010F5C-88B0-4F61-A0C1-03EF94CFAEF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {173BE7FC-BA3A-47C8-A3C2-7852F7A75842} - \Lenovo\ImController\TimeBasedEvents\fe7b7b8f-4741-4f0a-9c55-fa2c3ecf630f -> No File <==== ATTENTION
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {35263B7B-7CDA-4068-8F91-35B3A71DD78D} - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan -> No File <==== ATTENTION
Task: {475C0928-8F13-4A01-AE48-3D18759722CC} - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup -> No File <==== ATTENTION
Task: {4B663A22-0280-4939-8DE1-EE05E37598BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {521196A7-2A38-45EE-BCF4-684AABA223C3} - \Lenovo\ImController\TimeBasedEvents\388b4856-2705-43ee-b5e2-05a66acbdc03 -> No File <==== ATTENTION
Task: {5605F9EE-FC5E-4060-BD5D-C7FAFA500583} - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7FE9532E-68E6-4E8E-85FA-ED78CF79516D} - \Lenovo\ImController\TimeBasedEvents\9820e797-37a2-4a42-97f8-d6dbed63d183 -> No File <==== ATTENTION
Task: {89FE4C7F-E1D6-494A-B7B8-342BFAB55215} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB} - \Microsoft\Windows\Windows Defender\Windows Defender Verification -> No File <==== ATTENTION
Task: {972F90C9-6098-43C3-AF93-4F3D63A46AF0} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {98CA85C7-BB5E-4F9C-9A24-7BC334698CE6} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {A0483060-B5DC-4020-8F90-82AA5EEE045E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-08-30] (Avast Software s.r.o. -> Avast Software)
Task: {B1C77DC6-5C81-4199-AF93-7C05DDEB259B} - \Lenovo\ImController\TimeBasedEvents\4c9986ba-0a18-4d4e-a8e4-5bae4b72bdfb -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {B7ECE28C-46E4-4254-9688-C36A52A47C0D} - System32\Tasks\Microsoft\Windows\SysResetDelayedCleanup => C:\WINDOWS\system32\ResetEngine.exe [20280 2020-12-28] (Microsoft Windows -> Microsoft Corporation)
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {C5117643-2BEA-47A1-9CCB-746F69E115A6} - \Lenovo\ImController\TimeBasedEvents\0c727f2f-a234-4aef-8819-9fa3445de956 -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTION
Task: {E9F476D4-22D1-4809-9655-AB474EA4DF62} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4929304 2021-10-03] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 78.157.167.7 78.157.167.57
Tcpip\..\Interfaces\{01d18f22-76e7-4a67-be8a-fc34c93be4e1}: [DhcpNameServer] 150.207.1.2
Tcpip\..\Interfaces\{d1e3ac3f-e807-4d26-9c42-15e2b0b7ad08}: [DhcpNameServer] 78.157.167.7 78.157.167.57
Tcpip\..\Interfaces\{e6688af5-a767-45b1-96ff-07698f217521}: [DhcpNameServer] 78.157.167.7 78.157.167.57

Edge:
=======
Edge Profile: C:\Users\Lenovo\AppData\Local\Microsoft\Edge\User Data\Default [2021-10-03]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default [2021-10-03]
CHR HomePage: Default -> hxxps://www.facebook.com/
CHR StartupUrls: Default -> "hxxps://www.facebook.com/","hxxp://www.yoursear ... oogle.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Prezentace) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-30]
CHR Extension: (Dokumenty) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-30]
CHR Extension: (Disk Google) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-30]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-30]
CHR Extension: (Tabulky) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-03]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-10-03]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2021-10-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-30]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-30]
CHR Extension: (Chrome Media Router) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-30]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Guest Profile [2021-10-03]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-10-01]
CHR HomePage: Profile 1 -> hxxp://popart.nextis.cz/
CHR StartupUrls: Profile 1 -> "hxxps://www.google.com/","hxxp://seznam.cz/","h ... oogle.com/"
CHR Session Restore: Profile 1 -> is enabled.
CHR Extension: (Prezentace) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-30]
CHR Extension: (Dokumenty) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-30]
CHR Extension: (Disk Google) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-30]
CHR Extension: (YouTube) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-30]
CHR Extension: (Tabulky) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-30]
CHR Extension: (Gmail) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-30]
CHR Extension: (Chrome Media Router) - C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-30]
CHR Profile: C:\Users\Lenovo\AppData\Local\Google\Chrome\User Data\System Profile [2021-10-03]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8323664 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [630040 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [377624 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-08-30] (Avast Software s.r.o. -> AVAST Software)
S2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-02] (Dolby Laboratories, Inc. -> )
S2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [359808 2019-08-16] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ImControllerService; %SystemRoot%\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35720 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [221600 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369176 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250408 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99368 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41368 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [184640 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [538480 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107864 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82912 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851712 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [557152 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215392 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [328568 2021-10-03] (Avast Software s.r.o. -> AVAST Software)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-04-14] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-04-14] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-03 21:58 - 2021-10-03 22:00 - 000015678 _____ C:\Users\Lenovo\Desktop\FRST.txt
2021-10-03 21:41 - 2021-10-03 21:41 - 000000000 ____D C:\Users\Lenovo\AppData\LocalLow\uTorrent
2021-10-03 21:25 - 2021-10-03 21:25 - 008553680 _____ (Malwarebytes) C:\Users\Lenovo\Desktop\adwcleaner_8.3.0.exe
2021-10-03 20:09 - 2021-10-03 20:07 - 000340248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-10-03 20:09 - 2021-10-03 20:07 - 000215392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-10-03 19:57 - 2021-10-03 19:57 - 000000000 ____D C:\Users\Lenovo\Desktop\FRST-OlderVersion
2021-10-03 19:49 - 2021-10-03 19:49 - 000000000 ____D C:\Users\Lenovo\AppData\Local\CrashDumps
2021-10-03 19:48 - 2021-10-03 19:49 - 000000000 ____D C:\Users\Lenovo\Desktop\simms
2021-10-03 19:47 - 2021-10-03 21:46 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\uTorrent
2021-10-03 19:47 - 2021-10-03 21:29 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\Lavasoft
2021-10-03 19:47 - 2021-10-03 21:29 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Lavasoft
2021-10-03 19:47 - 2021-10-03 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2021-10-03 19:47 - 2021-10-03 21:29 - 000000000 ____D C:\ProgramData\Lavasoft
2021-10-03 19:47 - 2021-10-03 21:29 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2021-10-03 19:47 - 2021-10-03 19:47 - 000000904 _____ C:\Users\Lenovo\Desktop\µTorrent.lnk
2021-10-03 19:47 - 2021-10-03 19:47 - 000000884 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2021-10-03 19:46 - 2021-10-03 19:46 - 005140776 _____ (BitTorrent Inc.) C:\Users\Lenovo\Desktop\uTorrent.exe
2021-10-03 19:46 - 2021-10-03 19:46 - 000000000 ____D C:\Users\Lenovo\AppData\Local\UT008
2021-10-03 19:45 - 2021-10-03 19:45 - 000000000 ____D C:\Users\Lenovo\AppData\Local\UTW008
2021-10-03 19:38 - 2021-10-03 21:41 - 000000000 ____D C:\Users\Lenovo\AppData\Local\BitTorrentHelper
2021-10-03 19:35 - 2021-10-03 21:41 - 000000000 ____D C:\Users\Lenovo\AppData\Roaming\BitTorrent Web
2021-10-03 19:35 - 2021-10-03 19:35 - 000001895 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BitTorrent Web.lnk
2021-10-03 19:34 - 2021-10-03 19:34 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Adaware
2021-10-03 19:32 - 2021-10-03 19:32 - 000084426 _____ C:\Users\Lenovo\Downloads\[SkT]The_Sims_4__Deluxe_Edition_[v_1.79.93.1030___1.79.93.1530_ _DLCs]_(CZ)(2021).torrent
2021-10-01 16:23 - 2021-10-01 16:23 - 000000000 ____D C:\Users\Public\Lenovo App Explorer
2021-09-06 20:19 - 2021-09-06 20:19 - 000000000 ___HD C:\$WinREAgent
2021-09-06 20:16 - 2021-09-06 20:16 - 000000000 ____D C:\WINDOWS\system32\MRT

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-10-03 21:59 - 2021-05-27 18:01 - 000000000 ____D C:\FRST
2021-10-03 21:56 - 2021-08-30 18:27 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-10-03 21:47 - 2021-08-30 19:37 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Lenovo
2021-10-03 21:47 - 2021-08-30 18:39 - 000000000 ____D C:\WINDOWS\Lenovo
2021-10-03 21:47 - 2021-08-30 18:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-10-03 21:47 - 2021-08-30 18:08 - 000000000 ____D C:\ProgramData\Lenovo
2021-10-03 21:45 - 2021-08-30 19:34 - 000000000 ____D C:\Program Files (x86)\Google
2021-10-03 21:45 - 2021-08-30 18:52 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-10-03 21:45 - 2021-08-30 18:32 - 000717834 _____ C:\WINDOWS\system32\perfh005.dat
2021-10-03 21:45 - 2021-08-30 18:32 - 000144996 _____ C:\WINDOWS\system32\perfc005.dat
2021-10-03 21:45 - 2021-08-30 18:24 - 000000000 ____D C:\WINDOWS\INF
2021-10-03 21:38 - 2021-08-30 19:44 - 000000000 ____D C:\ProgramData\Avast Software
2021-10-03 21:37 - 2021-08-30 18:09 - 000000134 _____ C:\WINDOWS\system32\regtest.txt
2021-10-03 21:36 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\ServiceState
2021-10-03 21:36 - 2021-08-30 18:07 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-10-03 21:36 - 2021-04-18 08:33 - 000008192 ___SH C:\DumpStack.log.tmp
2021-10-03 21:34 - 2021-08-30 18:27 - 000000000 ___HD C:\Program Files\WindowsApps
2021-10-03 21:34 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-10-03 21:34 - 2021-08-30 18:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-10-03 21:34 - 2021-08-30 18:09 - 000065536 _____ C:\WINDOWS\psp_storage.bin
2021-10-03 21:29 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-10-03 21:20 - 2021-08-30 19:51 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-10-03 21:15 - 2021-08-30 18:34 - 000000000 ____D C:\Users\Lenovo
2021-10-03 21:14 - 2021-08-30 17:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-10-03 20:45 - 2021-08-30 19:50 - 000184640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-10-03 20:37 - 2021-08-30 18:42 - 000000000 ____D C:\Windows.old
2021-10-03 20:09 - 2021-08-30 18:27 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-10-03 20:07 - 2021-08-30 19:50 - 000557152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000538480 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000328568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000250408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000107864 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000099368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000082912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000041368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-10-03 20:07 - 2021-08-30 19:50 - 000021936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000851712 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000369176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000221600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-10-03 20:06 - 2021-08-30 19:50 - 000035720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-10-03 19:57 - 2021-05-28 15:02 - 002307584 _____ (Farbar) C:\Users\Lenovo\Desktop\FRST64.exe
2021-10-03 19:55 - 2021-04-18 22:17 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-10-03 19:55 - 2021-04-18 22:17 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-10-03 19:44 - 2021-08-30 19:59 - 000000000 ____D C:\Users\Lenovo\AppData\Local\Avast Software
2021-10-03 19:36 - 2018-09-12 09:23 - 000000000 ____D C:\ProgramData\Package Cache
2021-10-03 19:35 - 2021-08-30 19:26 - 000000000 ____D C:\Users\Lenovo\AppData\Local\D3DSCache
2021-10-03 19:31 - 2021-08-30 19:34 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-10-03 19:31 - 2021-08-30 19:34 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-10-03 19:31 - 2021-08-30 18:16 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-10-03 19:25 - 2021-08-30 19:50 - 000003382 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3307983600-3278904661-1563487808-1005
2021-10-03 19:25 - 2021-08-30 18:34 - 000002391 _____ C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-10-01 16:18 - 2018-09-12 09:31 - 000000000 ____D C:\Program Files\mcafee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\ProgramData\McAfee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\Program Files\Common Files\mcafee
2021-10-01 16:18 - 2018-09-12 09:30 - 000000000 ____D C:\Program Files (x86)\McAfee
2021-10-01 16:17 - 2021-08-30 17:54 - 000258688 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-09-22 16:39 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-09-20 15:51 - 2021-08-30 18:27 - 000000000 ____D C:\WINDOWS\appcompat

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#6 Příspěvek od Eddydye »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-10-2021
Ran by Lenovo (03-10-2021 22:02:43)
Running from C:\Users\Lenovo\Desktop
Windows 10 Home Version 20H2 19042.1052 (X64) (2021-08-30 17:25:59)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3307983600-3278904661-1563487808-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3307983600-3278904661-1563487808-503 - Limited - Disabled)
Guest (S-1-5-21-3307983600-3278904661-1563487808-501 - Limited - Disabled)
Lenovo (S-1-5-21-3307983600-3278904661-1563487808-1005 - Administrator - Enabled) => C:\Users\Lenovo
WDAGUtilityAccount (S-1-5-21-3307983600-3278904661-1563487808-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\uTorrent) (Version: 3.5.5.46096 - BitTorrent Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.8.2487 - Avast Software)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1189.1 - AVAST Software) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 92.0.4515.159 - Google LLC)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 94.0.992.38 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\OneDriveSetup.exe) (Version: 21.170.0822.0002 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Nextis (HKLM-x32\...\{83A1C6A2-822E-4EB6-9C19-13A3EDABF97A}) (Version: 9.2019.61.0 - Nextis s.r.o.)

Packages:
=========
Dolby Audio -> C:\Program Files\WindowsApps\dolbylaboratories.dolbyaudio_3.20500.501.0_x64__rz1tebttyb220 [2021-08-30] (Dolby Laboratories)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.0.44.0_x64__5grkq8ppsgwt4 [2021-08-30] (LENOVO INC) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2105.16.0_x64__k1h2ywk1493x8 [2021-08-30] (LENOVO INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_2.1.7098.0_neutral__w1wdnht996qgy [2021-08-30] (LinkedIn)
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.10.7290.0_x64__8wekyb3d8bbwe [2021-09-06] (Microsoft Studios) [MS Ad]
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.14228.20204.0_x86__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Power2Go for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.power2goforlenovo_8.0.12518.0_x86__m916jedk64snt [2021-08-30] (CYBERLINKCOM CORPORATION) [Startup Task]
PowerDVD for Lenovo -> C:\Program Files\WindowsApps\cyberlinkcorp.th.powerdvdforlenovo_14.2.2520.0_x86__m916jedk64snt [2021-08-30] (CYBERLINKCOM CORPORATION)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.10.216.0_x64__dt26b99r8h8gj [2021-08-30] (Realtek Semiconductor Corp)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\microsoft.mpeg2videoextension_1.0.22661.0_x64__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0 [2021-08-30] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-10-03] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-10-03] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-10-03] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-10-03] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-10-03] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Lenovo\Desktop\petr (Pracovní) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\Lenovo\Desktop\Petr - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\...\localhost -> localhost

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\Web\Wallpaper\Lenovo\LenovoWallPaper.jpg
DNS Servers: 78.157.167.7 - 78.157.167.57
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{804DDECA-6B75-4000-851F-6256C0FCBF89}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{38CD9963-3009-45E4-968C-776E594B69B9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7537A1A8-E5F0-4756-9CD8-AA53DAB0B654}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0269169E-9DD9-4F67-B94E-6DFBFC753CA6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.73.124.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DD316C87-CFE3-4B49-9DEA-CDF232FFC046}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{829E8436-C1AF-4B98-BACE-723323C220CA}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{89E0A291-2F2F-481A-8065-262A495BD44A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
FirewallRules: [{63B1A059-E035-4F1B-A043-AFCE904C57F3}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{2A410B70-673E-4A88-A465-2437170D326A}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B7DB3768-7B39-46C2-95A5-950CA746F6A4}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7E7CC34C-0A94-40F6-BA57-5556DF6B99DD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C8CF3D7F-84F7-4784-9F61-A2CD283AD948}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B039EA01-09D6-4FF6-BC36-04F890623ACA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{80425500-8ED8-4839-A1BF-2FC7F4363443}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{91F06362-BB63-4F18-8C6B-1FDB50F29AC9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E92E1EC2-BFE8-41B5-B4A5-1B846D5C85FE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{ADCCAF72-2A73-4EF8-B2DC-93DFD6C69483}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FBEAEE1C-DDA5-48A0-9DD2-6454B0119B6C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.166.580.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C6CADB79-3BD7-4187-B6F9-762D8B32D9A1}] => (Allow) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{E911AE17-267A-40D9-9CC4-F100E1F21BAB}] => (Allow) C:\Users\Lenovo\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{2BF75ACE-DBAE-4F16-A269-C3BDAAA04A14}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{313C1923-5356-465F-8E61-329F87E0BEB5}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [TCP Query User{A2538391-D882-430F-AB1A-4A02ECA50A7D}C:\users\lenovo\appdata\roaming\bittorrent web\btweb.exe] => (Allow) C:\users\lenovo\appdata\roaming\bittorrent web\btweb.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{F5878A12-F2EE-424D-B9D9-0DE1A41A0246}C:\users\lenovo\appdata\roaming\bittorrent web\btweb.exe] => (Allow) C:\users\lenovo\appdata\roaming\bittorrent web\btweb.exe (BitTorrent Inc -> BitTorrent Inc.)

==================== Restore Points =========================

03-10-2021 21:44:59 AdwCleaner_BeforeCleaning_03/10/2021_21:44:47

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (10/03/2021 07:53:39 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SystemSettings.exe verze 10.0.19041.1023 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2750

Čas spuštění: 01d7b87e0dd5293a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID hlášení: 2fa98a8f-0059-498a-851e-f1eaf5ec6666

Úplný název balíčku s chybou: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: microsoft.windows.immersivecontrolpanel

Typ zablokování: Quiesce

Error: (10/03/2021 07:49:11 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: btweb.exe, verze: 1.2.3.3775, časové razítko: 0x60feff8f
Název chybujícího modulu: ntdll.dll, verze: 10.0.19041.1023, časové razítko: 0xf739c3a5
Kód výjimky: 0xc0000005
Posun chyby: 0x0005f583
ID chybujícího procesu: 0x310c
Čas spuštění chybující aplikace: 0x01d7b87d63b682fb
Cesta k chybující aplikaci: C:\Users\Lenovo\AppData\Roaming\BitTorrent Web\btweb.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: f7236e6a-9304-49c6-96de-60e4e335fc36
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/03/2021 07:38:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CompatTelRunner.exe, verze: 10.0.19645.1029, časové razítko: 0x819f4697
Název chybujícího modulu: ntdll.dll, verze: 10.0.19041.1023, časové razítko: 0x7977b9de
Kód výjimky: 0xc0000374
Posun chyby: 0x00000000000ff199
ID chybujícího procesu: 0x1434
Čas spuštění chybující aplikace: 0x01d7b6cfe826e340
Cesta k chybující aplikaci: C:\WINDOWS\system32\CompatTelRunner.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: 34b78dd1-583f-4408-bfeb-369171d5eb4a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/03/2021 07:37:56 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: GenericSetup.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: kód výjimky c0000005, adresa výjimky 6EA3E3DC
Zásobník:
na GenericSetup.Wrappers.Sciter.Interop.PInvokeWindows.DispatchMessage(MSG ByRef)
na GenericSetup.Wrappers.Sciter.Interop.PInvokeUtils.RunMsgLoop()
na GenericSetup.Program.ShowBundleWindow(GenericSetup.Models.WizardConfig)
na GenericSetup.Program.()
na GenericSetup.Program.Run()
na BTW001.PartnerSetup.Run()
na BTW001.Program.Main(System.String[])

Error: (10/03/2021 07:23:51 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1161_none_7e3076a27c733477\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x81000101).

Error: (10/03/2021 07:23:51 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program StartMenuExperienceHost.exe verze 0.0.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 1d9c

Čas spuštění: 01d7b6d0069fadde

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe

ID hlášení: f11c0029-8457-4f46-9e84-9e9ff0b296d6

Úplný název balíčku s chybou: Microsoft.Windows.StartMenuExperienceHost_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: App

Typ zablokování: Quiesce

Error: (09/02/2021 03:45:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1023 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 15d8

Čas spuštění: 01d79dc94d74693a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: 9ef0f2a4-78a4-4cdd-ba97-cbc5cf0a346a

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.2.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: CortanaUI

Typ zablokování: Quiesce

Error: (09/01/2021 12:33:43 PM) (Source: Microsoft Office 16) (EventID: 2011) (User: )
Description: Event-ID 2011


System errors:
=============
Error: (10/03/2021 09:52:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba System Interface Foundation Service neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Služba Aktualizace Google (gupdate) byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba SynTPEnhService byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Dolby DAX API Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Fortemedia APO Control Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (10/03/2021 09:47:14 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Realtek Audio Universal Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (10/03/2021 09:47:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Realtek Bluetooth Device Manager Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
================
Date: 2021-08-30 18:33:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 0.0.0.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 0.0.0.0
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2021-08-30 18:33:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 0.0.0.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 0.0.0.0
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2021-08-30 18:33:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 0.0.0.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 0.0.0.0
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2021-08-30 18:33:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 0.0.0.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 0.0.0.0
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2021-08-30 18:33:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 0.0.0.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 0.0.0.0
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

CodeIntegrity:
===============
Date: 2021-10-03 21:43:24
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2021-10-03 21:39:54
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 8UCN18WW 11/17/2020
Motherboard: LENOVO LNVNB161216
Processor: AMD A4-9125 RADEON R3, 4 COMPUTE CORES 2C+2G
Percentage of memory in use: 42%
Total physical RAM: 7055.98 MB
Available physical RAM: 4091.42 MB
Total Virtual: 8847.98 MB
Available Virtual: 5794.37 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:930.27 GB) (Free:831.42 GB) NTFS
Drive d: (SPIDLA) (CDROM) (Total:0.61 GB) (Free:0 GB) CDFS

\\?\Volume{d6b2e9b5-b742-4c9b-bcd6-187523de7cfc}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.48 GB) NTFS
\\?\Volume{b5278956-4f52-43a7-b4de-a6d90ca3c27f}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 10E92185)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#7 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
FirewallRules: [{DD316C87-CFE3-4B49-9DEA-CDF232FFC046}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{829E8436-C1AF-4B98-BACE-723323C220CA}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{89E0A291-2F2F-481A-8065-262A495BD44A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {0F279508-E661-401F-871F-50F483306D6E} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {143DF042-6777-41C6-9467-39CE773D3140} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {173BE7FC-BA3A-47C8-A3C2-7852F7A75842} - \Lenovo\ImController\TimeBasedEvents\fe7b7b8f-4741-4f0a-9c55-fa2c3ecf630f -> No File <==== ATTENTION
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {35263B7B-7CDA-4068-8F91-35B3A71DD78D} - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan -> No File <==== ATTENTION
Task: {475C0928-8F13-4A01-AE48-3D18759722CC} - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup -> No File <==== ATTENTION
Task: {4B663A22-0280-4939-8DE1-EE05E37598BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {521196A7-2A38-45EE-BCF4-684AABA223C3} - \Lenovo\ImController\TimeBasedEvents\388b4856-2705-43ee-b5e2-05a66acbdc03 -> No File <==== ATTENTION
Task: {5605F9EE-FC5E-4060-BD5D-C7FAFA500583} - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7FE9532E-68E6-4E8E-85FA-ED78CF79516D} - \Lenovo\ImController\TimeBasedEvents\9820e797-37a2-4a42-97f8-d6dbed63d183 -> No File <==== ATTENTION
Task: {89FE4C7F-E1D6-494A-B7B8-342BFAB55215} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB} - \Microsoft\Windows\Windows Defender\Windows Defender Verification -> No File <==== ATTENTION
Task: {972F90C9-6098-43C3-AF93-4F3D63A46AF0} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {98CA85C7-BB5E-4F9C-9A24-7BC334698CE6} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {16010F5C-88B0-4F61-A0C1-03EF94CFAEF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\GoTask: {B1C77DC6-5C81-4199-AF93-7C05DDEB259B} - \Lenovo\ImController\TimeBasedEvents\4c9986ba-0a18-4d4e-a8e4-5bae4b72bdfb -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {C5117643-2BEA-47A1-9CCB-746F69E115A6} - \Lenovo\ImController\TimeBasedEvents\0c727f2f-a234-4aef-8819-9fa3445de956 -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTIONogle\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#8 Příspěvek od Eddydye »

Fix result of Farbar Recovery Scan Tool (x64) Version: 04-10-2021
Ran by Lenovo (04-10-2021 16:05:40) Run:3
Running from C:\Users\Lenovo\Desktop
Loaded Profiles: Lenovo
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
FirewallRules: [{DD316C87-CFE3-4B49-9DEA-CDF232FFC046}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{829E8436-C1AF-4B98-BACE-723323C220CA}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe => No File
FirewallRules: [{89E0A291-2F2F-481A-8065-262A495BD44A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16010.9126.2116.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe => No File
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {0F279508-E661-401F-871F-50F483306D6E} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {143DF042-6777-41C6-9467-39CE773D3140} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {173BE7FC-BA3A-47C8-A3C2-7852F7A75842} - \Lenovo\ImController\TimeBasedEvents\fe7b7b8f-4741-4f0a-9c55-fa2c3ecf630f -> No File <==== ATTENTION
Task: {2BB692C1-F60F-479E-ADC2-1CAF9422A2AC} - \Microsoft\Windows\Shell\FamilySafetyMonitorToastTask -> No File <==== ATTENTION
Task: {35263B7B-7CDA-4068-8F91-35B3A71DD78D} - \Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan -> No File <==== ATTENTION
Task: {475C0928-8F13-4A01-AE48-3D18759722CC} - \Microsoft\Windows\Windows Defender\Windows Defender Cleanup -> No File <==== ATTENTION
Task: {4B663A22-0280-4939-8DE1-EE05E37598BC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
Task: {521196A7-2A38-45EE-BCF4-684AABA223C3} - \Lenovo\ImController\TimeBasedEvents\388b4856-2705-43ee-b5e2-05a66acbdc03 -> No File <==== ATTENTION
Task: {5605F9EE-FC5E-4060-BD5D-C7FAFA500583} - \Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance -> No File <==== ATTENTION
Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - \Microsoft\Windows\UpdateOrchestrator\Reboot -> No File <==== ATTENTION
Task: {7FE9532E-68E6-4E8E-85FA-ED78CF79516D} - \Lenovo\ImController\TimeBasedEvents\9820e797-37a2-4a42-97f8-d6dbed63d183 -> No File <==== ATTENTION
Task: {89FE4C7F-E1D6-494A-B7B8-342BFAB55215} - \LenovoUtility Task -> No File <==== ATTENTION
Task: {8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB} - \Microsoft\Windows\Windows Defender\Windows Defender Verification -> No File <==== ATTENTION
Task: {972F90C9-6098-43C3-AF93-4F3D63A46AF0} - \OneDrive Standalone Update Task v2 -> No File <==== ATTENTION
Task: {98CA85C7-BB5E-4F9C-9A24-7BC334698CE6} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {16010F5C-88B0-4F61-A0C1-03EF94CFAEF3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\GoTask: {B1C77DC6-5C81-4199-AF93-7C05DDEB259B} - \Lenovo\ImController\TimeBasedEvents\4c9986ba-0a18-4d4e-a8e4-5bae4b72bdfb -> No File <==== ATTENTION
Task: {B6E67297-4E2A-4BAB-9C4A-63B62EDBF591} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> No File <==== ATTENTION
Task: {C2098BE2-A29A-4EB1-97F6-F0C57E086D4F} - \Microsoft\Windows\Speech\HeadsetButtonPress -> No File <==== ATTENTION
Task: {C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3} - \Microsoft\Windows\WindowsUpdate\sih -> No File <==== ATTENTION
Task: {C5117643-2BEA-47A1-9CCB-746F69E115A6} - \Lenovo\ImController\TimeBasedEvents\0c727f2f-a234-4aef-8819-9fa3445de956 -> No File <==== ATTENTION
Task: {D2974240-5CCB-46D7-BEF3-4BA58D135BEA} - \Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display -> No File <==== ATTENTIONogle\Update\GoogleUpdate.exe [154456 2021-08-30] (Google LLC -> Google LLC)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
"HKU\S-1-5-21-3307983600-3278904661-1563487808-1005\Software\Microsoft\Internet Explorer\Main\\Secondary Start Pages" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DD316C87-CFE3-4B49-9DEA-CDF232FFC046}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{829E8436-C1AF-4B98-BACE-723323C220CA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{89E0A291-2F2F-481A-8065-262A495BD44A}" => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0F279508-E661-401F-871F-50F483306D6E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0F279508-E661-401F-871F-50F483306D6E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{143DF042-6777-41C6-9467-39CE773D3140}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{143DF042-6777-41C6-9467-39CE773D3140}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{173BE7FC-BA3A-47C8-A3C2-7852F7A75842}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{173BE7FC-BA3A-47C8-A3C2-7852F7A75842}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\fe7b7b8f-4741-4f0a-9c55-fa2c3ecf630f" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{2BB692C1-F60F-479E-ADC2-1CAF9422A2AC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{2BB692C1-F60F-479E-ADC2-1CAF9422A2AC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Shell\FamilySafetyMonitorToastTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{35263B7B-7CDA-4068-8F91-35B3A71DD78D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35263B7B-7CDA-4068-8F91-35B3A71DD78D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{475C0928-8F13-4A01-AE48-3D18759722CC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{475C0928-8F13-4A01-AE48-3D18759722CC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cleanup" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4B663A22-0280-4939-8DE1-EE05E37598BC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B663A22-0280-4939-8DE1-EE05E37598BC}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{521196A7-2A38-45EE-BCF4-684AABA223C3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{521196A7-2A38-45EE-BCF4-684AABA223C3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\388b4856-2705-43ee-b5e2-05a66acbdc03" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5605F9EE-FC5E-4060-BD5D-C7FAFA500583}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5605F9EE-FC5E-4060-BD5D-C7FAFA500583}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7FE9532E-68E6-4E8E-85FA-ED78CF79516D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FE9532E-68E6-4E8E-85FA-ED78CF79516D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\9820e797-37a2-4a42-97f8-d6dbed63d183" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{89FE4C7F-E1D6-494A-B7B8-342BFAB55215}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89FE4C7F-E1D6-494A-B7B8-342BFAB55215}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\LenovoUtility Task" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F3E42F0-0491-4EC2-8E89-FD47C8A9B2BB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Windows Defender\Windows Defender Verification" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{972F90C9-6098-43C3-AF93-4F3D63A46AF0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{972F90C9-6098-43C3-AF93-4F3D63A46AF0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Standalone Update Task v2" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98CA85C7-BB5E-4F9C-9A24-7BC334698CE6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98CA85C7-BB5E-4F9C-9A24-7BC334698CE6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Lenovo iM Controller Monitor" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{16010F5C-88B0-4F61-A0C1-03EF94CFAEF3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{16010F5C-88B0-4F61-A0C1-03EF94CFAEF3}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{B6E67297-4E2A-4BAB-9C4A-63B62EDBF591}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B6E67297-4E2A-4BAB-9C4A-63B62EDBF591}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Management\Provisioning\PostResetBoot" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C2098BE2-A29A-4EB1-97F6-F0C57E086D4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C2098BE2-A29A-4EB1-97F6-F0C57E086D4F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Speech\HeadsetButtonPress" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C48D50E5-71A9-48D8-B7C1-3DA9AECBDEC3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\sih" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C5117643-2BEA-47A1-9CCB-746F69E115A6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C5117643-2BEA-47A1-9CCB-746F69E115A6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\0c727f2f-a234-4aef-8819-9fa3445de956" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D2974240-5CCB-46D7-BEF3-4BA58D135BEA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 26505362 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 738853304 B
Edge => 0 B
Chrome => 400465058 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 27690 B
NetworkService => 33808 B
laboj => 33808 B
defaultuser100001 => 33808 B
Lenovo => 433812322 B

RecycleBin => 2954227072 B
EmptyTemp: => 4.2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 16:08:33 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#9 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#10 Příspěvek od Eddydye »

O něco lepší to je, ale jen při otevřeném google chromu je vytíženost procesoru 100%. Ale každopádně rychlejší to je.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#11 Příspěvek od Rudy »

Které procesy vám nejvíce vytěžují procesor?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Eddydye
Návštěvník
Návštěvník
Příspěvky: 16
Registrován: 27 kvě 2021 16:55

Re: prosím o kontrolu logu

#12 Příspěvek od Eddydye »

Právě že google chrome, ale po chvíli se to ustálí tak je to ok. Ještě jsem si všiml že windows stahoval aktualizace, teď už je to ok.
Děkuji :idea: :idea:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: prosím o kontrolu logu

#13 Příspěvek od Rudy »

To jsem rád a nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno