Stránka 1 z 1

Zpomalený NTB

Napsal: 06 bře 2013 16:43
od hlavoun
Nevešel se mi celý log. je v příloze. Děkuji ;)

Re: Zpomalený NTB

Napsal: 06 bře 2013 18:02
od Rudy
Zdravím!
Spusťte nejprve tuto utilitu:
Stáhněte AdwCleaner http://stahnu.cz/tag/adw-cleaner-free-download
Uložte na plochu
Ukončete všechny programy
Klikněte na Search
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: Zpomalený NTB

Napsal: 06 bře 2013 18:27
od hlavoun
Zde ten log


# AdwCleaner v2.114 - Logfile created 03/06/2013 at 18:26:39
# Updated 05/03/2013 by Xplode
# Operating system : Windows 8 Pro (64 bits)
# User : h.l.a.v.o.u.n - MARTYNS
# Boot Mode : Normal
# Running from : C:\Users\h.l.a.v.o.u.n\Desktop\AdwCleaner.exe
# Option [Search]


***** [Services] *****

Found : Application Updater

***** [Files / Folders] *****

File Found : C:\Program Files (x86)\Mozilla Firefox\searchplugins\crawlersrch.xml
File Found : C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Mozilla\Firefox\Profiles\8dpi2bko.default\searchplugins\icqplugin.xml
Folder Found : C:\Program Files (x86)\Application Updater
Folder Found : C:\Program Files (x86)\Common Files\spigot
Folder Found : C:\Program Files (x86)\Crawler
Folder Found : C:\Program Files (x86)\ICQ6Toolbar
Folder Found : C:\Program Files (x86)\Optimizer Pro
Folder Found : C:\ProgramData\boost_interprocess
Folder Found : C:\ProgramData\ICQ\ICQToolbar
Folder Found : C:\ProgramData\InstallMate
Folder Found : C:\ProgramData\Premium
Folder Found : C:\Users\h.l.a.v.o.u.n\AppData\LocalLow\Search Settings

***** [Registry] *****

Key Found : HKCU\Software\AppDataLow\Software\Search Settings
Key Found : HKCU\Software\AppDataLow\Software\SmartBar
Key Found : HKCU\Software\Conduit
Key Found : HKCU\Software\CToolbar
Key Found : HKCU\Software\Microsoft\Internet Explorer\MenuExt\Crawler Search
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Found : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Found : HKCU\Software\Search Settings
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Key Found : HKLM\Software\Application Updater
Key Found : HKLM\SOFTWARE\Classes\ctbcommon.Buttons
Key Found : HKLM\SOFTWARE\Classes\ctbr.R404Pro
Key Found : HKLM\SOFTWARE\Classes\CToolbar.TB4Client
Key Found : HKLM\SOFTWARE\Classes\CToolbar.TB4Script
Key Found : HKLM\SOFTWARE\Classes\CToolbar.TB4Server
Key Found : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\tbr
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{04006843-5199-4CE4-B3CD-8092CC91706E}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{506F578A-91E1-46CE-830F-E2F4268E9966}
Key Found : HKLM\SOFTWARE\Classes\TypeLib\{E79BB61D-7F1A-41DF-8AD0-402795E3B566}
Key Found : HKLM\Software\Conduit
Key Found : HKLM\Software\CToolbar
Key Found : HKLM\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\Crawler
Key Found : HKLM\Software\Search Settings
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{183643C8-EE67-4574-9A38-927852E34163}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{1DDA201E-5B42-4352-933E-21A92B297E3B}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{4D25FB7A-8902-4291-960E-9ADA051CFBBF}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{54ECA872-DB2A-4C6B-BBB2-F3777C6786CC}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{DBDB6FAA-1F5F-4A18-B60B-7A905C7FF83F}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7459F1D0-9FB6-4D71-AA7B-9DECB34EB704}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FBF1B8D2-9A06-4174-A8B5-E38606DDB92B}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\CToolbar_UNINSTALL
Key Found : HKLM\SOFTWARE\Classes\Interface\{01C78433-6FDF-4E5A-A82D-B535C32E03DF}
Key Found : HKLM\SOFTWARE\Classes\Interface\{41349826-5C7F-4BF0-8279-5DAF1DE6E9AE}
Key Found : HKLM\SOFTWARE\Classes\Interface\{604EA016-1EDE-41E6-A23E-76CF8F2A4808}
Key Found : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Key Found : HKLM\SOFTWARE\Classes\Interface\{B3BA5582-79A9-464D-A7FA-711C5888C6E9}
Key Found : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Key Found : HKLM\SOFTWARE\Classes\Interface\{E9BBD270-4B87-4EE2-912F-6635674986C0}
Key Found : HKU\S-1-5-21-611801265-1130399588-2627099295-1000\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Found : HKU\S-1-5-21-611801265-1130399588-2627099295-1000\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Value Found : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Value Found : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}]
Value Found : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [SearchSettings]
Value Found : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Value Found : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{855F3B16-6D32-4FE6-8A56-BBB695989046}]

***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16482

[HKCU\Software\Microsoft\Internet Explorer\Main - ICQ Search] = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd
[HKCU\Software\Microsoft\Internet Explorer\Main - Search Bar] = hxxp://www.crawler.com/search/dispatcher.aspx? ... tbid=60747

-\\ Mozilla Firefox v19.0 (cs)

File : C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Mozilla\Firefox\Profiles\8dpi2bko.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v25.0.1364.152

File : C:\Users\h.l.a.v.o.u.n\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.14.1738.0

File : C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [7956 octets] - [06/03/2013 18:26:39]

########## EOF - C:\AdwCleaner[R1].txt - [8016 octets] ##########

Re: Zpomalený NTB

Napsal: 06 bře 2013 18:32
od Rudy
Spusťte znovu ADWCleaner a klikněte na >Delete<. Vložte nový log.

Re: Zpomalený NTB

Napsal: 06 bře 2013 18:52
od hlavoun
po kliknutí na delete to po mě chtělo restart ten jsme provedl a poté dal nový scan a log zde:

# AdwCleaner v2.114 - Logfile created 03/06/2013 at 18:50:40
# Updated 05/03/2013 by Xplode
# Operating system : Windows 8 Pro (64 bits)
# User : h.l.a.v.o.u.n - MARTYNS
# Boot Mode : Normal
# Running from : C:\Users\h.l.a.v.o.u.n\Desktop\AdwCleaner.exe
# Option [Search]


***** [Services] *****


***** [Files / Folders] *****

Folder Found : C:\ProgramData\Premium

***** [Registry] *****


***** [Internet Browsers] *****

-\\ Internet Explorer v10.0.9200.16482

[OK] Registry is clean.

-\\ Mozilla Firefox v19.0 (cs)

File : C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Mozilla\Firefox\Profiles\8dpi2bko.default\prefs.js

[OK] File is clean.

-\\ Google Chrome v25.0.1364.152

File : C:\Users\h.l.a.v.o.u.n\AppData\Local\Google\Chrome\User Data\Default\Preferences

[OK] File is clean.

-\\ Opera v12.14.1738.0

File : C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Opera\Opera\operaprefs.ini

[OK] File is clean.

*************************

AdwCleaner[R1].txt - [8065 octets] - [06/03/2013 18:26:39]
AdwCleaner[R2].txt - [1040 octets] - [06/03/2013 18:50:40]
AdwCleaner[S1].txt - [8170 octets] - [06/03/2013 18:35:52]
AdwCleaner[S2].txt - [1234 octets] - [06/03/2013 18:42:29]

########## EOF - C:\AdwCleaner[R2].txt - [1220 octets] ##########

Re: Zpomalený NTB

Napsal: 06 bře 2013 19:33
od Rudy
Dejte nový log RSIT.

Re: Zpomalený NTB

Napsal: 06 bře 2013 19:42
od hlavoun
opět se to bohužel nevešlo tak viz. příloha:-) Děkuji ;)

Re: Zpomalený NTB

Napsal: 06 bře 2013 19:53
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Program Files (x86)\IObit Apps Toolbar
C:\Program Files (x86)\Skype\Toolbars
C:\Users\h.l.a.v.o.u.n\AppData\Roaming\Seznam.cz\bin\toolbar
C:\Users\h.l.a.v.o.u.n\AppData\Local\Facebook\Update
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-611801265-1130399588-2627099295-1000Core.job
C:\WINDOWS\tasks\FacebookUpdateTaskUserS-1-5-21-611801265-1130399588-2627099295-1000UA.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{03EB0E9C-7A91-4381-A220-9B52B641CDB1}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Facebook Update"=-

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: Zpomalený NTB

Napsal: 06 bře 2013 20:09
od hlavoun
opět velmi mnoho znaku opět rar :-)

Re: Zpomalený NTB

Napsal: 06 bře 2013 20:53
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\h.l.a.v.o.u.n.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R3 - URLSearchHook: (no name) - {03EB0E9C-7A91-4381-A220-9B52B641CDB1} - (no file)
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_4] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_4"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_2"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_1"
O4 - HKCU\..\RunOnce: [Uninstall C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_3] C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\h.l.a.v.o.u.n\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112_3"
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.

Re: Zpomalený NTB

Napsal: 06 bře 2013 21:12
od hlavoun
A nyní vše hotovo ? Zdá s emi to rychlejší jen mám vyplý antivir a defender. ty normálně mám zapnout?

Re: Zpomalený NTB

Napsal: 06 bře 2013 21:47
od Rudy
Pokud není jiný problém, je to vše. AV a Defender zapněte.

Re: Zpomalený NTB

Napsal: 06 bře 2013 21:52
od hlavoun
Paráda:-) Děkuju mnohokrát ;)

Re: Zpomalený NTB

Napsal: 06 bře 2013 21:53
od Rudy
Nemáte zač! :)