Re: Černá obrazovka

#31 Příspěvek od Conder

:arrow: V AdwCleaneri je este potrebne kliknut aj na Cistenie, vid. navod:
:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
:arrow: Instaloval si aj nejaky Facebook program/klient?
Příspěvky: 206
Registrován: 03 kvě 2010 16:00

Re: Černá obrazovka

#32 Příspěvek od marteza

To jsem udělal. Ten log jsem přece poslal v předchozím příspěvku. Samozřejmě jsem pak dal vymazat. Měl jsem na mysli nějaký důkladnější "úklid ". Jako třeba: https://toolslib.net/downloads/finish/2-delfix/. To bych asi udělat měl?
Samozřejmě děkuji za pomoc s vyřešením problému a čas, který jsi si pro mě udělal.

Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Černá obrazovka

#33 Příspěvek od Conder

Ten log z AdwCleaneru je iba zo skenu:
# Mode: Scan
Nasledne z cistenia sa vytvori druhy log.

V poslednych FRST logoch bol aj nejaky Facebook program/klient, ten si instaloval umyselne?
Příspěvky: 206
Registrován: 03 kvě 2010 16:00

Re: Černá obrazovka

#34 Příspěvek od marteza

Co se týče Facebooku, program se mi nainstaloval s nějakým programem, tuším, že s prohlížečem Chrome. Ale od Facebooku radši dál, takže jsem ho odinstaloval, ale něco v počítači možná zůstalo.
No a co se týče AdwCleaneru: Když dám opravit a hned restartovat, obrazovka zešedne, zmrzne (možná je proto i nějaký odborný termín), spolu s hlášením Program přestal reagovat. Počkejte na odpověď programu... Takže jsem ukončil přes správce úloh. Zkusil jsem to několikrát. Pak jsem restartoval bez spuštěného AdwCleaneru. Při nabíhání počítače naběhla kontrola chdsk, a pak následně kontrola disku. Nabídlo mi to Obnovení systému, což jsem tedy neudělal. Mám vrátit stav počítače o jeden den zpátky? Ještě mě napadlo zkusit odinstalovat posledních několik aktualizací.
Omlouvám se, mám teď po večerech minimum času. Proto reaguji tímto způsobem.

Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Černá obrazovka

#35 Příspěvek od Conder

:arrow: Urob kontrolu systemoveho disku:
  • Stiahni a nainstaluj HD Tune: https://www.hdtune.com/download.html
  • Spusti ako spravca
  • Klikni na kartu Error Scan
  • V hornom zozname vyber systemovy disk
  • Klikni na Scan a pockaj na dokoncenie (moze trvat dlhsie)
  • Po dokonceni skenu klikni na File -> Save screenshot -> uloz na plochu a posli ako prilohu k dalsiemu prispevku
Příspěvky: 206
Registrován: 03 kvě 2010 16:00

Re: Černá obrazovka

#36 Příspěvek od marteza

Po nainstälování novější verze AdwCleaneru operace proběhla bez problémů, posílám log. Zároveň výsledek z HD Tune.

# -------------------------------
# Malwarebytes AdwCleaner
# -------------------------------
# Build: 09-03-2018
# Database: (Cloud)
# Support: https://www.malwarebytes.com/support
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-24-2018
# Duration: 00:00:20
# OS: Windows 7 Home Premium
# Cleaned: 4
# Failed: 0

***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Conduit
Deleted HKLM\Software\Conduit
Deleted HKCU\Software\csastats
Deleted HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\slunecnice.cz

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


[+] Delete Tracing Keys
[+] Reset Winsock


AdwCleaner[S00].txt - [1485 octets] - [24/09/2018 17:48:15]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
HDTune_Error_Scan_TOSHIBA_HDWJ110.png (35.76 KiB) Zobrazeno 2737 x

Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Černá obrazovka

#37 Příspěvek od Conder

:arrow: OK, zrejme nejaky bug v AdwCleaneri. Disk vyzera OK. Poprosim o nove logy z FRST.
Příspěvky: 206
Registrován: 03 kvě 2010 16:00

Re: Černá obrazovka

#38 Příspěvek od marteza

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-09-30 16:20 - 2009-07-14 06:34 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-09-30 16:20 - 2009-07-14 06:34 - 000021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-09-30 11:43 - 2011-04-12 03:37 - 000668376 _____ C:\Windows\system32\perfh005.dat
2018-09-30 11:43 - 2011-04-12 03:37 - 000141004 _____ C:\Windows\system32\perfc005.dat
2018-09-30 11:43 - 2010-11-20 23:01 - 001582262 _____ C:\Windows\system32\PerfStringBackup.INI
2018-09-30 11:43 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf
2018-09-30 11:38 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-09-29 22:41 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-09-29 09:58 - 2009-07-14 06:53 - 000008332 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-09-29 09:47 - 2009-07-14 06:33 - 000332224 _____ C:\Windows\system32\FNTCACHE.DAT
2018-09-28 23:56 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\DVD Maker
2018-09-28 23:56 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\Setup
2018-09-28 23:56 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\migwiz
2018-09-28 23:56 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\Dism
2018-09-28 23:56 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-09-28 19:31 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\rescache
2018-09-28 14:28 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\AppCompat
2018-09-26 20:09 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\servicing
2018-09-26 20:08 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\registration
2018-09-25 17:02 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Common Files\System
2018-09-23 16:22 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2018-09-23 15:19 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\tracing
2018-09-23 09:58 - 2011-04-12 03:46 - 000000000 ____D C:\Windows\ShellNew
2018-09-23 09:57 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\Windows Defender
2018-09-22 17:41 - 2009-07-14 06:52 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2018-09-22 17:31 - 2009-07-14 04:37 - 000000000 __RHD C:\Users\Public\Libraries
2018-09-22 17:15 - 2009-07-14 06:52 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-09-22 17:15 - 2009-07-14 06:52 - 000000000 ____D C:\Program Files\Microsoft Games
2018-09-22 17:08 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\IME
2018-09-22 17:01 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system
2018-09-22 16:54 - 2009-07-14 04:37 - 000000000 ____D C:\Program Files\Windows NT
2018-09-22 16:46 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\sysprep

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 28.09.2018
Ran by DELL (30-09-2018 16:34:39)
Running from C:\Users\DELL\Desktop
Microsoft Windows 7 Home Premium Service Pack 1 (X86) (2018-09-22 14:54:37)
Boot Mode: Normal

==================== Accounts: =============================

Administrator (S-1-5-21-2525869662-2712487587-1678368536-500 - Administrator - Disabled)
DELL (S-1-5-21-2525869662-2712487587-1678368536-1000 - Administrator - Enabled) => C:\Users\DELL
Guest (S-1-5-21-2525869662-2712487587-1678368536-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2525869662-2712487587-1678368536-1003 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 15.007.20033 - Adobe Systems Incorporated)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 18.6.2349 - AVAST Software)
BS.Player FREE (HKLM\...\BSPlayerf) (Version: 2.73.1084 - AB Team, d.o.o.)
CCleaner (HKLM\...\CCleaner) (Version: 5.47 - Piriform)
D3DX10 (HKLM\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
FormatFactory (HKLM\...\FormatFactory) (Version: - Free Time)
Fotogalerie (HKLM\...\{F37D360D-9308-4BB1-8515-DC6B637B9486}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Google Chrome (HKLM\...\Google Chrome) (Version: 69.0.3497.100 - Google Inc.)
Google Update Helper (HKLM\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: - Google Inc.) Hidden
HD Tune 2.55 (HKLM\...\HD Tune_is1) (Version: - EFD Software)
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: - Intel Corporation)
Microsoft .NET Framework 4.7.2 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft .NET Framework 4.7.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.7.03062 - Microsoft Corporation)
Microsoft Office XP Small Business (HKLM\...\{91130405-6000-11D3-8CFE-0050048383C9}) (Version: 10.0.6626.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Movie Maker (HKLM\...\{3D2CF65C-B544-4308-B996-700D3E5F6C4C}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
Movie Maker (HKLM\...\{DD67BE4B-7E62-4215-AFA3-F123A800A389}) (Version: 16.4.3528.0331 - Microsoft Corporation) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.3 - VideoLAN)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3528.0331 - Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-09-22] (AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-09-22] (AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-09-22] (AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2009-09-23] (Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-09-22] (AVAST Software)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2BAC9966-E155-41D2-83E6-58F556C134B0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2018-09-23] (Google Inc.)
Task: {488DC42A-C802-44E4-BA58-9EA8162865B6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2018-09-19] (Piriform Ltd)
Task: {5B8195AF-DE3B-49FC-89E5-41DA974FDBD4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-02-02] (Adobe Systems Incorporated)
Task: {74F94273-2E4E-4094-BBA6-1C9502ACAC67} - System32\Tasks\Opera scheduled Autoupdate 1537634543 => C:\Users\DELL\AppData\Local\Programs\Opera\launcher.exe
Task: {88D26CB1-0C62-498E-A67C-034BD29CAFB3} - System32\Tasks\Facebook1 => C:\Program Files\Internet Explorer\IEXPLORE.EXE hxxps://www.facebook.com/campaign/landing.php?c ... ive=webApp
Task: {8900107B-6952-4888-9E93-2A0CF6CFC9E1} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-09-22] (AVAST Software)
Task: {893F9B19-950B-49BC-8E04-86D8B7AFC9A3} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [2018-09-19] (Piriform Ltd)
Task: {C7DBA4A0-3B4D-4FC1-A8F0-C27629146F04} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2018-09-23] (Google Inc.)
Task: {E1179923-26C0-4F3C-9B56-4D284BB9BA75} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-09-23] (AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2018-09-22 19:03 - 2018-09-22 19:03 - 000575704 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-09-22 19:09 - 2018-09-22 19:09 - 000896216 _____ () C:\Program Files\AVAST Software\Avast\anen.dll
2018-09-22 19:03 - 2018-09-22 19:03 - 000541400 _____ () C:\Program Files\AVAST Software\Avast\gui_cache.dll
2018-09-22 19:02 - 2018-09-22 19:02 - 000151768 _____ () C:\Program Files\AVAST Software\Avast\hns_tools.dll
2018-09-22 19:03 - 2018-09-22 19:03 - 000986840 _____ () C:\Program Files\AVAST Software\Avast\shepherdsync.dll
2018-09-30 16:17 - 2018-09-30 16:17 - 005702288 _____ () C:\Program Files\AVAST Software\Avast\defs\18093002\algo.dll
2018-09-22 19:09 - 2018-09-22 19:09 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-09-19 10:12 - 2018-09-19 10:12 - 000085320 _____ () C:\Program Files\CCleaner\lang\lang-1029.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" value will be restored.)

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:04 - 2009-06-10 23:39 - 000000824 _____ C:\Windows\system32\Drivers\etc\hosts

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2525869662-2712487587-1678368536-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DELL\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{643B6825-DBE6-4C55-8A3B-7C2E480C56E1}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{064431F5-16EE-42AC-8D4A-821A690C75FA}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{88995860-0067-4BB5-A591-BFCE1507019D}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{01E44F79-C7FF-427C-9E60-33C92396255A}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{FD1E0276-9732-4446-B129-9D50E2FDC137}] => (Allow) C:\Program Files\FormatFactory\FormatFactory.exe
FirewallRules: [{81C60799-C421-44DB-9FF8-392C844B3B0D}] => (Allow) C:\Program Files\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe
FirewallRules: [{13608847-0FAC-490E-9592-F690350C0C41}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{714A3024-A5C0-4F2E-AEC9-B9E1951DB07A}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{62CCD91E-5037-48ED-8264-7BC95DA71CCD}] => (Allow) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
FirewallRules: [{DF946BAA-1C2F-4C69-A465-45FB2DCAF28E}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{9CA7B4C2-65A2-4DD1-9F06-3AA5E319DAD0}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{F3491D86-A8F3-465D-887E-2F112C8391F1}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe
FirewallRules: [{082E05F1-A1E3-4C61-8FDA-25189A278692}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{9A227486-98C9-4204-80FD-B2733732067A}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe
FirewallRules: [{AE57146E-92CD-458E-A318-BACC008E7CD8}] => (Allow) C:\Program Files\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{83BCFFF6-B377-40BC-A663-E0762E369C0B}] => (Allow) LPort=2869
FirewallRules: [{8BDF27D0-0BC7-40ED-8571-042B97AD0C0E}] => (Allow) LPort=1900

==================== Restore Points =========================

27-09-2018 20:11:39 Nainstalováno rozhraní DirectX
27-09-2018 20:13:47 WLSetup
28-09-2018 20:20:00 Windows Update
29-09-2018 22:36:53 Windows Update

==================== Faulty Device Manager Devices =============

==================== Event log errors: =========================

Application errors:
Error: (09/30/2018 02:14:16 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 02:01:47 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 01:49:28 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 01:36:49 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 01:17:36 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 01:02:36 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 12:30:06 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

Error: (09/30/2018 12:02:36 PM) (Source: Desktop Window Manager) (EventID: 9020) (User: )
Description: Správce oken plochy zjistil závažnou chybu (0x8898009b).

System errors:
Error: (09/30/2018 04:19:22 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 20.

Error: (09/30/2018 04:13:22 PM) (Source: Microsoft-Windows-HAL) (EventID: 12) (User: )
Description: Firmware platformy při předchozím přechodu systémového napájení poškodil paměť. Zkontrolujte dostupnost aktualizovaného firmwaru pro váš systém.

Error: (09/30/2018 11:46:47 AM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Instalační služba modulů systému Windows, ale tato akce selhala kvůli následující chybě:
Instance této služby je již spuštěna.

Error: (09/30/2018 11:44:47 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba modulů systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (09/29/2018 10:43:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba aswbIDSAgent neuspěla při spuštění v důsledku následující chyby:
Přesměrování bylo ukončeno.

Error: (09/29/2018 10:43:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba aswbIDSAgent byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (09/29/2018 10:43:00 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070308): Kumulativní aktualizace zabezpečení pro aplikaci Internet Explorer 11 pro systém Windows 7 (KB3185319).

Error: (09/29/2018 10:42:45 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070308): Aktualizace zabezpečení systému Windows 7 (KB3126446).

Windows Defender:
Date: 2018-09-22 18:54:34.815
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání:{DC58147F-FA44-47B3-8ABF-FEB0FC9FA6ED}
Typ prohledávání:Antispywarový program
Parametry prohledávání:Rychlé prohledávání

==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU T7250 @ 2.00GHz
Percentage of memory in use: 72%
Total physical RAM: 2037.97 MB
Available physical RAM: 562.02 MB
Total Virtual: 4075.95 MB
Available Virtual: 2459.2 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:931.41 GB) (Free:817.56 GB) NTFS

\\?\Volume{aa8d350d-be75-11e8-80de-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ==================

Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: CA2DE48C)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=931.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Re: Černá obrazovka

#39 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    Folder: C:\Windows\system32\appraiser
    Folder: C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4
    Folder: C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}
    2018-09-29 22:43 - 2018-09-29 22:43 - 000000000 _____ C:\Windows\system32\last.dump
    2018-09-22 18:48 - 2018-09-22 18:49 - 000000000 ____D C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4
    2018-09-22 18:47 - 2018-09-22 18:47 - 000000000 ____D C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}
    Task: {88D26CB1-0C62-498E-A67C-034BD29CAFB3} - System32\Tasks\Facebook1 => C:\Program Files\Internet Explorer\IEXPLORE.EXE hxxps://www.facebook.com/campaign/landing.php?campaign_id=572665646222743&keyword=IqLLFWf7nRlg%2B%2BsQY4rpGGT9lxBxuMtcavmfGW%2F7lhpl%2BpccYvmbEWHyiUcxrcpaao3OSzKpwEc8lPhNNarfWHGo3Utk%2BZIab%2FOXGWH4l%2F5PAAAAV8uvKA%3D%3D&extra_2=CZ&placement=100&creative=webApp
    DeleteKey: HKCU\Software\Conduit
    DeleteKey: HKLM\Software\Conduit
    DeleteKey: HKCU\Software\csastats
    DeleteKey: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\slunecnice.cz
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Re: Černá obrazovka

#40 Příspěvek od marteza »

Fix result of Farbar Recovery Scan Tool (x86) Version: 28.09.2018
Ran by DELL (01-10-2018 16:46:27) Run:1
Running from C:\Users\DELL\Desktop
Loaded Profiles: DELL (Available Profiles: DELL)
Boot Mode: Normal


fixlist content:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
Folder: C:\Windows\system32\appraiser
Folder: C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4
Folder: C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}

2018-09-29 22:43 - 2018-09-29 22:43 - 000000000 _____ C:\Windows\system32\last.dump
2018-09-22 18:48 - 2018-09-22 18:49 - 000000000 ____D C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4
2018-09-22 18:47 - 2018-09-22 18:47 - 000000000 ____D C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}
Task: {88D26CB1-0C62-498E-A67C-034BD29CAFB3} - System32\Tasks\Facebook1 => C:\Program Files\Internet Explorer\IEXPLORE.EXE hxxps://www.facebook.com/campaign/landing.php?c ... ive=webApp
DeleteKey: HKCU\Software\Conduit
DeleteKey: HKLM\Software\Conduit
DeleteKey: HKCU\Software\csastats
DeleteKey: HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\slunecnice.cz


Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========

Count : 4
Average :
Sum : 1777567
Maximum :
Minimum :
Property : Length

========= End of Powershell: =========

========================= File: C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe ========================

C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
File is digitally signed
MD5: 11F714F85530A2BD134074DC30E99FCA
Creation and modification date: 2003-06-19 23:25 - 2003-06-19 23:25
Size: 000322120
Attributes: ----A
Company Name: Microsoft Corporation
Internal Name: mdm.exe
Original Name: mdm.exe
Product: Microsoft® Visual Studio .NET
Description: Machine Debug Manager
File Version: 7.00.9466
Product Version: 7.00.9466
Copyright: © Microsoft Corporation. All rights reserved.
VirusTotal: https://www.virustotal.com/file/bdb5fd3 ... 538120942/

====== End of File: ======

========================= Folder: C:\Windows\system32\appraiser ========================

2018-09-24 17:53 - 2018-06-09 15:05 - 002374318 ____A [C33C0F2123C25981D9013CFC01F675D4] () C:\Windows\system32\appraiser\appraiser.sdb
2018-09-24 17:53 - 2018-06-08 15:05 - 000087835 ____A [58D9EF23E362A1545829A445C117F77D] () C:\Windows\system32\appraiser\Appraiser_Data.ini
2018-09-24 17:53 - 2018-06-01 15:04 - 000049433 ____A [56FF94C1BEA0456C67BBF4F65FDF9D0B] () C:\Windows\system32\appraiser\Appraiser_TelemetryRunList.xml
2018-09-24 17:53 - 2018-01-22 21:13 - 000001475 ____A [ABBA30E5BF0FBBB502C61C7E4FB0245C] () C:\Windows\system32\appraiser\nxquery.inf
2018-09-24 17:53 - 2018-01-22 21:13 - 000020104 ____A [242B118BDC00DFB670A8FC242952E4D9] () C:\Windows\system32\appraiser\nxquery.sys

====== End of Folder: ======

========================= Folder: C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4 ========================

2018-09-22 18:48 - 2018-09-22 18:48 - 000007168 ____A [CCF817A1215B7342F42AB80FC78B5857] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cookies
2018-09-22 18:48 - 2018-09-22 18:48 - 000000000 ____A [D41D8CD98F00B204E9800998ECF8427E] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cookies-journal
2018-09-22 18:48 - 2018-09-22 18:48 - 000000069 ____A [EB6AC0723EDC71B3320CB6BBF26B0D98] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Preferences
2018-09-22 18:48 - 2018-09-22 18:49 - 000000000 ____D [00000000000000000000000000000000] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache
2018-09-22 18:48 - 2018-09-22 18:49 - 000008192 ____A [CF89D16BB9107C631DAABF0C0EE58EFB] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache\data_0
2018-09-22 18:48 - 2018-09-22 18:49 - 000270336 ____A [75728522DFA3CD4C18FD48DF35C59595] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache\data_1
2018-09-22 18:48 - 2018-09-22 18:49 - 000008192 ____A [0962291D6D367570BEE5454721C17E11] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache\data_2
2018-09-22 18:48 - 2018-09-22 18:49 - 000008192 ____A [41876349CB12D6DB992F1309F22DF3F0] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache\data_3
2018-09-22 18:48 - 2018-09-22 18:49 - 000524656 ____A [3CD6A69B54C4FB31C77C73C069E9B3F0] () C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4\Cache\index

====== End of Folder: ======

========================= Folder: C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938} ========================

2018-09-22 18:47 - 2018-09-22 18:47 - 004248112 ____A [6FAF6216233FA46E00CCACD16ABA7A8C] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\sicitenot
2018-09-22 18:47 - 2018-09-22 18:47 - 000015808 ____A [0008BC6B94D0C423F7E6ECB6A6971B35] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\tesaso
2018-09-22 18:47 - 2018-09-22 18:47 - 000037526 ____A [4ED777A5428F68EFA0A9D84FEB06D056] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\uninst.exe
2018-09-22 18:47 - 2018-09-22 18:47 - 000001393 ____A [FD5DC7A8D351CFFFFD1187193C265F82] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\uninstp.dat
2018-09-22 18:47 - 2018-09-22 18:47 - 000000000 ____D [00000000000000000000000000000000] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove
2018-09-22 18:47 - 2018-09-22 18:47 - 000069314 ____A [D3317C08A7FD5C68AF7607B56365D7EF] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\control panel-min-min.JPG
2018-09-22 18:47 - 2018-09-22 18:47 - 000000199 ____A [BD28C167E200A3B28D65FAD11067F767] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\down.png
2018-09-22 18:47 - 2018-09-22 18:47 - 000007740 ____A [0ACF64A62398FD3E28C0F776E080E02E] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\ff menu.JPG
2018-09-22 18:47 - 2018-09-22 18:47 - 000022004 ____A [98167327578F423AD62775F9C0DA1C08] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\ff search engine-min.png
2018-09-22 18:47 - 2018-09-22 18:47 - 000004885 ____A [92A56BD431B8EC678C73844C916017CA] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\HowToRemove.html
2018-09-22 18:47 - 2018-09-22 18:47 - 000017093 ____A [AFE6FD269F10B4FB4055028CE2E0F70C] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\hp-min ff.png
2018-09-22 18:47 - 2018-09-22 18:47 - 000014823 ____A [C76F780F7CDEDA6D63A72E00719EAE53] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\hp-min ie.png
2018-09-22 18:47 - 2018-09-22 18:47 - 000036104 ____A [63BC75E5CF5CBA301C0A333A493C1E6C] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\chromium-min.jpg
2018-09-22 18:47 - 2018-09-22 18:47 - 000018839 ____A [D2665D24334093AFB3D3E64E22346AC4] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\search engine.gif
2018-09-22 18:47 - 2018-09-22 18:47 - 000016770 ____A [D8957AB88B51AC3D91DB06AC96369BE4] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\setup pages.gif
2018-09-22 18:47 - 2018-09-22 18:47 - 000026453 ____A [C4A8846B0AAC9BEF78F6A001514ECFF5] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\sp-min.png
2018-09-22 18:47 - 2018-09-22 18:47 - 000030021 ____A [7A52610FBA6935C9ACF2A2F38CA86F6A] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\start-min.jpg
2018-09-22 18:47 - 2018-09-22 18:47 - 000000214 ____A [45B1D3F523A38E29419DC26AE6BDD253] () C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938}\HowToRemove\up.png

====== End of Folder: ======

C:\Windows\system32\last.dump => moved successfully
C:\Users\DELL\AppData\Roaming\facebook-nativefier-1252c4 => moved successfully
C:\Users\DELL\AppData\Local\{1AAC2CF0-3E04-4048-539C-65A077F49938} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{88D26CB1-0C62-498E-A67C-034BD29CAFB3}" => removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{88D26CB1-0C62-498E-A67C-034BD29CAFB3}" => removed successfully.
C:\Windows\System32\Tasks\Facebook1 => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Facebook1" => removed successfully.
HKCU\Software\Conduit => not found
HKLM\Software\Conduit => not found
HKCU\Software\csastats => not found
HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\slunecnice.cz => not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 8388608 B
DOMStoree, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 41353438 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 139750729 B
Edge => 0 B
Chrome => 107519076 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 66228 B
Public => 0 B
ProgramData => 0 B
systemprofile => 72496 B
LocalService => 66228 B
NetworkService => 68638 B
DELL => 2871451960 B

RecycleBin => 0 B
EmptyTemp: => 3 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 16:53:08 ====

Re: Černá obrazovka

#41 Příspěvek od Conder »

:arrow: Vyzera to OK.
Re: Černá obrazovka

#42 Příspěvek od marteza »

To jest spravený a následně od balastu vyčištěný počítač?

Re: Černá obrazovka

#43 Příspěvek od Conder »

:arrow: Ano, logy vyzeraju OK. Su nejake problemy s PC?
Re: Černá obrazovka

#44 Příspěvek od marteza »

Vypadá to dobře, zatím. Můžete mi objasnit, co stalo? Alespoň obecně, zformátováním disku se dá vyřešit téměř cokoliv.

Re: Černá obrazovka

#45 Příspěvek od Conder »

:arrow: Tazko povedat, ja by som to odhadol prave na nejaky problem s ovladacmi grafickej karty, kedze problem sa vyskytoval pri prehravani videi.
