Stránka 2 z 2

Re: Kontrola logu - zpomalený notebook

Napsal: 03 črc 2019 23:54
od Conder
:arrow: Ten Avast Browser sa kedy spusta? Po zapnuti PC? Nevidis v nastaveniach tohto browseru nejake moznosti ohladom automatickeh spustania?

Re: Kontrola logu - zpomalený notebook

Napsal: 09 črc 2019 08:32
od pitrisin
Avast se mi spouští po zapnutí notebooku, hledal jsem jak to vypnut, avšak marně.

Re: Kontrola logu - zpomalený notebook

Napsal: 09 črc 2019 19:11
od Conder
:arrow: Jedna sa o "Avast Secure Browser"?

:arrow: Poprosim o obidva nove logy z FRST.

Re: Kontrola logu - zpomalený notebook

Napsal: 15 črc 2019 08:26
od pitrisin
Ano, jedná se o avast secure browser. Spouští se mi po zapnutí PC.

Re: Kontrola logu - zpomalený notebook

Napsal: 15 črc 2019 15:42
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    Folder: C:\Users\pitrisin\AppData\Local\Facebook
    
    HKU\S-1-5-21-647002321-1269518864-1427724268-1001\...\Run: [AvastBrowserAutoLaunch_6C60F5B39C0BD61E017D141E70F8792B] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1815792 2019-06-12] (AVAST Software s.r.o. -> AVAST Software)
    HKU\S-1-5-21-647002321-1269518864-1427724268-1001\...\MountPoints2: E - E:\HiSuiteDownLoader.exe
    HKU\S-1-5-21-647002321-1269518864-1427724268-1001\...\MountPoints2: {2918e2fe-9c97-11e9-b5f1-e4d53d729590} - E:\HiSuiteDownLoader.exe
    Task: {8382A035-CDFB-41E2-8409-59C0A75D503A} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-647002321-1269518864-1427724268-1001UA => C:\Users\pitrisin\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-647002321-1269518864-1427724268-1001Core.job => C:\Users\pitrisin\AppData\Local\Facebook\Update\FacebookUpdate.exe
    Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-647002321-1269518864-1427724268-1001UA.job => C:\Users\pitrisin\AppData\Local\Facebook\Update\FacebookUpdate.exe
    SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    CHR StartupUrls: Default -> "hxxps://www.google.com/","hxxp://websearch.searchsun.info/?pid=724&r=2014/03/24&hid=10967595765519032896&lg=EN&cc=CZ"
    U3 aajijore; C:\Windows\System32\Drivers\aajijore.sys [0 0000-00-00] (Advanced Micro Devices) <==== ATTENTION (zero byte File/Folder)
    C:\Users\pitrisin\Documents\*.tmp
    2014-08-26 15:33 - 2014-08-26 15:33 - 000000000 ___SH () C:\Users\pitrisin\AppData\Local\LumaEmu
    AlternateDataStreams: C:\ProgramData:NT [40]
    AlternateDataStreams: C:\ProgramData:NT2 [322]
    AlternateDataStreams: C:\Users\All Users:NT [40]
    AlternateDataStreams: C:\Users\All Users:NT2 [322]
    AlternateDataStreams: C:\ProgramData\Application Data:NT [40]
    AlternateDataStreams: C:\ProgramData\Application Data:NT2 [322]
    AlternateDataStreams: C:\Users\pitrisin\Data aplikací:045ea5f7272b8a8d064949edd8a86e1f [394]
    AlternateDataStreams: C:\Users\pitrisin\AppData\Roaming:045ea5f7272b8a8d064949edd8a86e1f [394]
    MSCONFIG\startupreg: Facebook Update => "C:\Users\pitrisin\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj