Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomalení pc

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Spomalení pc

#1 Příspěvek od Danilo »

Dobrý den,
Mám jeden velký probel, stahoval jsem si pár fontu do pc (Kvůli grafice (corel draw x5)).
Nainstalov, když ale chci si vybrat nějaký font tak corel my zbledne a piše že neodpovídá. A musím čekat cca. 5min.
Skoušel jsem word 2013 ten taky byl velmi pomalí při výběru fontu. Skenoval jsem si počítač eset a ten nic nenašel. Hardwarem to není, klidně i hraju BF3.
Prosím o pomoc :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#2 Příspěvek od Rudy »

Zdravím! Zkuste dát log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#3 Příspěvek od Danilo »

V příloze jsou dva ty soubory
Přílohy
Logy.zip
(37.06 KiB) Staženo 39 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#4 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-1134541785-158910474-345344122-1000\...\Run: [AdobeBridge] => [X]
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
C:\ProgramData\AskPartnerNetwork
C:\Program Files (x86)\AskPartnerNetwork
C:\ProgramData\APN
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\user\64467D47FFE44FBCABBAA0DB829A17EB.TMP
C:\Users\user\AppData\Local\Temp
Task: {D5BA9AC7-C08B-4850-9EDE-48DDCA3AEC4D} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-05-28] ()
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#5 Příspěvek od Danilo »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 09-06-2014 02
Ran by user at 2014-06-09 20:29:12 Run:1
Running from C:\Users\user\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKU\S-1-5-21-1134541785-158910474-345344122-1000\...\Run: [AdobeBridge] => [X]
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
C:\ProgramData\AskPartnerNetwork
C:\Program Files (x86)\AskPartnerNetwork
C:\ProgramData\APN
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\user\64467D47FFE44FBCABBAA0DB829A17EB.TMP
C:\Users\user\AppData\Local\Temp
Task: {D5BA9AC7-C08B-4850-9EDE-48DDCA3AEC4D} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2014-05-28] ()
End
*****************

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value deleted successfully.
HKU\S-1-5-21-1134541785-158910474-345344122-1000\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge => value deleted successfully.
'HKLM\Software\MozillaPlugins\FF Plugin: @microsoft.com/GENUINE - disabled No File'=> Key not found.
"FF Plugin: @microsoft.com/GENUINE - disabled No File" => not found.
'HKLM\Software\Wow6432Node\MozillaPlugins\FF Plugin-x32: @microsoft.com/GENUINE - disabled No File'=> Key not found.
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File not found.
C:\ProgramData\AskPartnerNetwork => Moved successfully.
C:\Program Files (x86)\AskPartnerNetwork => Moved successfully.
C:\ProgramData\APN => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => Moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => Moved successfully.
C:\Users\user\64467D47FFE44FBCABBAA0DB829A17EB.TMP => Moved successfully.

"C:\Users\user\AppData\Local\Temp" directory move:

C:\Users\user\AppData\Local\Temp\8ILMfMMg.doc.part => Moved successfully.
C:\Users\user\AppData\Local\Temp\amt3.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\cab4D40.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\CAMSIC21.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\CProgram Files (x86)Opera21.0.1432.67opera_autoupdate.download.lock => Moved successfully.
C:\Users\user\AppData\Local\Temp\CProgram Files (x86)Opera21.0.1432.67opera_autoupdate.metrics.lock => Moved successfully.
C:\Users\user\AppData\Local\Temp\craC843.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl1291.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl1292.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl12B2.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl138E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl139E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl143B.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl1536.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl1C3E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl2B42.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl34E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl42.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl43.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl439.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl45A5.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl45A6.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl4604.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl53.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl5F7.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl5F8.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl608.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl6A5.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl6B6.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl765.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl7876.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl7887.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl79EF.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl94E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crl9FCC.png => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlA81E.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlA81F.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlA83F.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlC1.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlC2.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlD3.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlE63A.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlE63B.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlE66B.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF1AE.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF1CE.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF365.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF980.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\CVR80AD.tmp.cvr => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistMSI1DBD.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistMSI6CCC.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistMSI6D10.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistMSI7058.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistUI1DBD.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistUI6CCC.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistUI6D10.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\dd_vcredistUI7058.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\DMI3360.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\DMICEC3.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\DMIDE9B.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\etilqs_IxQ7N2mWT1KJDrc => Moved successfully.
C:\Users\user\AppData\Local\Temp\etilqs_lPkx3oDO8HkSn7Y => Moved successfully.
C:\Users\user\AppData\Local\Temp\etilqs_m2tbnUUEk8rOmph => Moved successfully.
C:\Users\user\AppData\Local\Temp\etilqs_mgeaQsZFtR11dDd => Moved successfully.
C:\Users\user\AppData\Local\Temp\fla24C3.tmp => Moved successfully.
Could not move "C:\Users\user\AppData\Local\Temp\FXSAPIDebugLogFile.txt" => Scheduled to move on reboot.
C:\Users\user\AppData\Local\Temp\ICA58D75.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\ICA58D75.log.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\JavaDeployReg.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\jusched.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140602_214924268-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x64 Redistributable Setup_20140602_214924268.html => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140531_222920932-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140531_222920932.html => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140602_171619817-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140602_171619817.html => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140602_214651749-MSI_vc_red.msi.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Microsoft Visual C++ 2010 x86 Redistributable Setup_20140602_214651749.html => Moved successfully.
C:\Users\user\AppData\Local\Temp\MSId27bd.LOG => Moved successfully.
C:\Users\user\AppData\Local\Temp\MSId90bc.LOG => Moved successfully.
C:\Users\user\AppData\Local\Temp\nsb927F.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\nse7732.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\nsj7925.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\nsl4F09.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\OneNote_MigrationLog.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\oobelib.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\opera_crashreporter.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCULog0.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCULog2.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCULog3.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCW8CE5.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\PCW8CE5.xml => Moved successfully.
Could not move "C:\Users\user\AppData\Local\Temp\PDApp.log" => Scheduled to move on reboot.
C:\Users\user\AppData\Local\Temp\Setup Log 2014-06-08 #001.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Setup Log 2014-06-08 #002.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\Setup Log 2014-06-08 #003.txt => Moved successfully.
C:\Users\user\AppData\Local\Temp\SetupExe(20140528215530850).log => Moved successfully.
C:\Users\user\AppData\Local\Temp\SRLDetectionLibrary8498517142350719774.dll => Moved successfully.
C:\Users\user\AppData\Local\Temp\stk-cs-report.html => Moved successfully.
C:\Users\user\AppData\Local\Temp\swtag.log => Moved successfully.
C:\Users\user\AppData\Local\Temp\ubiE478.tmp.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\WER145C.tmp.WERInternalMetadata.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\WER4A1C.tmp.WERInternalMetadata.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\WERA533.tmp.WERInternalMetadata.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\_185A.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_21BD.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_3819.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_3CC8.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_4EB2.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_5AD2.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_8396.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_9B5F.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\_D4A7.tmp => Moved successfully.
C:\Users\user\AppData\Local\Temp\{457D7505-D665-4F95-91C3-ECB8C56E9ACA}\ycc.dll => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\desktop.ini => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\index.dat => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\XY7VPIJI\desktop.ini => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\URWWCL83\desktop.ini => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\BYQ9BENZ\desktop.ini => Moved successfully.
C:\Users\user\AppData\Local\Temp\Temporary Internet Files\Content.IE5\6PS5YFAI\desktop.ini => Moved successfully.
Could not move "C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-9oQCdlapNBBiAvmPXHb4wnA8" => Scheduled to move on reboot.
Could not move "C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-cF5v5xgkuOdZBoeYmcTT1LUB" => Scheduled to move on reboot.
Could not move "C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-QH4Fe6S3mjyZZ68iox5oVXzP" => Scheduled to move on reboot.
Could not move "C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-UnieBHyeEnIncbbHkAhfDUtC" => Scheduled to move on reboot.
C:\Users\user\AppData\Local\Temp\nsr27DD.tmp\counter-strike_standalone.exe => Moved successfully.
C:\Users\user\AppData\Local\Temp\History\History.IE5\desktop.ini => Moved successfully.
C:\Users\user\AppData\Local\Temp\History\History.IE5\index.dat => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF0B1.tmp\crlA49E.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\crlF0B1.tmp\crlB1D4.xml => Moved successfully.
C:\Users\user\AppData\Local\Temp\Cookies\index.dat => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_0.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_1.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_10.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_11.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_12.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_13.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_14.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_15.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_16.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_17.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_18.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_19.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_2.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_20.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_21.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_22.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_23.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_24.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_25.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_26.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_27.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_28.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_29.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_3.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_30.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_31.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_32.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_33.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_34.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_35.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_36.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_37.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_38.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_39.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_4.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_40.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_41.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_42.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_43.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_44.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_45.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_46.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_47.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_48.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_49.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_5.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_50.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_51.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_6.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_7.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_8.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\CDM\PList\PList_9.inf => Moved successfully.
C:\Users\user\AppData\Local\Temp\acro_rd_dir\fla90DC.tmp => Moved successfully.
Could not move "C:\Users\user\AppData\Local\Temp" directory. => Scheduled to move on reboot.

'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{D5BA9AC7-C08B-4850-9EDE-48DDCA3AEC4D}' => Key deleted successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D5BA9AC7-C08B-4850-9EDE-48DDCA3AEC4D}' => Key deleted successfully.
C:\Windows\System32\Tasks\AutoKMS => Moved successfully.
'HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AutoKMS' => Key deleted successfully.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-06-09 20:40:33)<=

C:\Users\user\AppData\Local\Temp\FXSAPIDebugLogFile.txt => Is moved successfully.
C:\Users\user\AppData\Local\Temp\PDApp.log => Is moved successfully.
C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-9oQCdlapNBBiAvmPXHb4wnA8 => Is moved successfully.
C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-cF5v5xgkuOdZBoeYmcTT1LUB => Is moved successfully.
C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-QH4Fe6S3mjyZZ68iox5oVXzP => Is moved successfully.
C:\Users\user\AppData\Local\Temp\Skype\DbTemp\temp-UnieBHyeEnIncbbHkAhfDUtC => Is moved successfully.
C:\Users\user\AppData\Local\Temp => Moved successfully.

==== End of Fixlog ====

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#6 Příspěvek od Danilo »

Při provedení to co ste mi řekl. Tak problémi stále přetrvávají. :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#7 Příspěvek od Rudy »

Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#8 Příspěvek od Danilo »

Log: All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 56475 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Public

User: user
->Temp folder emptied: 308865 bytes
->Temporary Internet Files folder emptied: 5755334 bytes
->Java cache emptied: 742602 bytes
->FireFox cache emptied: 16203375 bytes
->Flash cache emptied: 57378 bytes

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 73482124 bytes
%systemroot%\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes
%systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 36190020 bytes
RecycleBin emptied: 281503937 bytes

Total Files Cleaned = 395,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Public

User: user
->Flash cache emptied: 0 bytes

Total Flash Files Cleaned = 0,00 mb


OTM by OldTimer - Version 3.1.21.0 log created on 06092014_212048

Files moved on Reboot...

Registry entries deleted on Reboot...

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#9 Příspěvek od Danilo »

Boužel problémi stále přetvávají. :( :( :( :( :( :( :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#10 Příspěvek od Rudy »

Znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Restartujte PC. Dále dejte log ComboFix:
Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe

pote spustte aplikaci pod uctem s administratorskym opravnenim

hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.

v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se

jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine

aplikace ani nic jineho

behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)

upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,

pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k

nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#11 Příspěvek od Danilo »

Budu si zálohovat system windows. Tak zitra sem dám logy. Děkuji za pomoc. :)
:iefox:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#12 Příspěvek od Rudy »

OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#13 Příspěvek od Danilo »

Toto my napsal combofix:
ComboFix 14-06-10.01 - user 10.06.2014 16:58:34.1.2 - x64
Microsoft Windows 7 Ultimate 6.1.7600.0.1250.420.1029.18.4094.2506 [GMT 2:00]
Spuštěný z: c:\users\user\Desktop\ComboFix.exe
AV: ESET Smart Security 7.0 *Disabled/Updated* {19259FAE-8396-A113-46DB-15B0E7DFA289}
FW: ESET Personální firewall *Enabled* {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}
SP: ESET Smart Security 7.0 *Disabled/Updated* {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
SP: Windows Defender *Enabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((( Soubory vytvořené od 2014-05-10 do 2014-06-10 )))))))))))))))))))))))))))))))
.
.
2014-06-10 15:12 . 2014-06-10 15:12 -------- d-----w- c:\users\Default\AppData\Local\temp
2014-06-10 14:55 . 2014-06-10 14:55 75888 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3587384D-C068-431D-8CC9-B00E130B0F04}\offreg.dll
2014-06-09 17:54 . 2014-06-09 18:40 -------- d-----w- C:\FRST
2014-06-08 14:45 . 2014-06-08 14:46 312480 ----a-w- c:\windows\system32\drivers\atksgt.sys
2014-06-08 14:45 . 2014-06-08 14:45 43168 ----a-w- c:\windows\system32\drivers\lirsgt.sys
2014-06-07 20:14 . 2014-06-07 20:15 -------- d-----w- c:\program files (x86)\OCCTPT
2014-06-06 12:37 . 2014-06-06 12:45 -------- d-----w- c:\program files (x86)\Common Files\Steam
2014-06-06 12:37 . 2014-06-08 17:21 -------- d-----w- c:\program files (x86)\Steam
2014-06-05 19:55 . 2014-06-05 19:55 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard
2014-06-05 19:14 . 2011-06-22 08:43 36864 ----a-w- c:\windows\system32\Spool\prtprocs\x64\sst2cpc.dll
2014-06-04 16:36 . 2014-06-04 16:36 -------- d-----w- c:\programdata\Protexis
2014-06-04 16:29 . 2014-06-04 16:29 -------- d-----w- c:\program files (x86)\Common Files\Corel
2014-06-04 16:29 . 2014-06-04 16:29 -------- d-----w- c:\program files (x86)\Common Files\Protexis
2014-06-04 16:29 . 2014-06-04 16:29 -------- d-----w- c:\programdata\Corel
2014-06-03 19:23 . 2014-06-07 14:06 25640 ----a-w- c:\windows\etdrv.sys
2014-06-03 19:23 . 2014-06-09 20:28 30528 ----a-w- c:\windows\GVTDrv64.sys
2014-06-03 19:22 . 2014-06-03 19:22 -------- d-----w- c:\program files (x86)\GIGABYTE
2014-06-03 19:22 . 2014-06-03 19:22 -------- d-----w- c:\program files (x86)\AMD
2014-06-02 19:47 . 2014-06-02 19:54 -------- d-----w- c:\program files\Common Files\Adobe
2014-06-02 14:45 . 2014-06-02 19:54 -------- d-----w- c:\programdata\regid.1986-12.com.adobe
2014-06-02 14:44 . 2014-06-02 15:18 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR
2014-06-02 14:43 . 2014-06-02 19:51 -------- d-----w- c:\program files (x86)\Common Files\Adobe
2014-05-31 22:37 . 2014-06-03 13:34 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.xtr
2014-05-31 22:36 . 2014-05-31 22:36 -------- d-----w- c:\programdata\Orbit
2014-05-31 20:30 . 2014-06-03 13:34 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.exe
2014-05-31 20:30 . 2014-06-02 16:05 281688 ----a-w- c:\windows\SysWow64\PnkBstrB.ex0
2014-05-31 20:30 . 2014-05-31 20:30 76888 ----a-w- c:\windows\SysWow64\PnkBstrA.exe
2014-05-31 20:30 . 2014-05-31 20:30 -------- d-----w- c:\program files (x86)\Ubisoft
2014-05-31 20:28 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll
2014-05-31 20:28 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll
2014-05-31 20:28 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll
2014-05-31 20:28 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll
2014-05-31 20:28 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll
2014-05-31 20:28 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll
2014-05-30 14:23 . 2013-04-23 14:23 -------- d-----w- c:\programdata\RELOADED
2014-05-29 15:39 . 2014-05-29 15:47 -------- d-----w- c:\programdata\Origin
2014-05-28 20:16 . 2014-05-29 12:50 -------- d-----w- c:\windows\AutoKMS
2014-05-28 20:14 . 2014-05-28 20:14 -------- d-----w- c:\programdata\Microsoft Toolkit
2014-05-28 20:05 . 2014-05-28 20:05 -------- d-----w- c:\program files\Common Files\DESIGNER
2014-05-28 20:04 . 2014-05-28 20:04 -------- d-----w- c:\programdata\regid.1991-06.com.microsoft
2014-05-28 19:58 . 2014-05-28 19:58 -------- d-----w- c:\program files\Microsoft Analysis Services
2014-05-28 19:58 . 2014-05-28 19:58 -------- d-----w- c:\program files (x86)\Microsoft Analysis Services
2014-05-28 19:58 . 2014-05-28 20:03 -------- d-----w- c:\program files\Microsoft Office
2014-05-28 19:58 . 2014-05-28 20:07 -------- d-----w- c:\programdata\Microsoft Help
2014-05-28 19:55 . 2014-05-28 19:55 -------- d-----r- C:\MSOCache
2014-05-28 19:15 . 2014-05-28 19:16 -------- d-----w- C:\Program FilesMicrosoft Office
2014-05-26 16:16 . 2014-05-26 16:16 -------- d-----w- c:\program files (x86)\AGEIA Technologies
2014-05-26 13:57 . 2014-05-26 13:57 -------- d-----w- c:\programdata\Mirillis
2014-05-26 13:57 . 2013-05-28 20:23 652288 ----a-w- c:\windows\system32\ficvdec_x64.dll
2014-05-26 13:57 . 2013-05-28 20:22 641024 ----a-w- c:\windows\SysWow64\ficvdec_x86.dll
2014-05-25 15:35 . 2014-05-25 15:35 57096 ----a-w- c:\windows\system32\certsentry.dll
2014-05-25 15:35 . 2014-05-25 15:35 48392 ----a-w- c:\windows\SysWow64\certsentry.dll
2014-05-25 15:35 . 2014-05-25 15:35 -------- d-----w- c:\program files (x86)\Comodo
2014-05-25 15:34 . 2014-06-09 19:18 -------- d-----w- C:\The KMPlayer
2014-05-24 09:08 . 2014-05-24 09:08 -------- d-----w- c:\programdata\SystemRequirementsLab
2014-05-24 09:08 . 2014-05-24 09:08 -------- d-----w- c:\program files (x86)\SystemRequirementsLab
2014-05-24 09:04 . 2014-05-24 09:04 -------- d-----w- c:\programdata\Oracle
2014-05-24 09:03 . 2014-05-24 09:03 -------- d-----w- c:\program files (x86)\Common Files\Java
2014-05-24 09:03 . 2014-05-24 09:03 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2014-05-24 09:03 . 2014-05-24 09:03 -------- d-----w- c:\program files (x86)\Java
2014-05-23 16:17 . 2009-07-22 08:17 78872 ----a-w- c:\windows\system32\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2014-05-23 16:17 . 2009-07-22 08:17 50200 ----a-w- c:\windows\SysWow64\perf-SQLAgent$SQLEXPRESS-sqlagtctr10.1.2531.0.dll
2014-05-23 16:17 . 2009-07-22 08:17 79896 ----a-w- c:\windows\SysWow64\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2014-05-23 16:17 . 2009-07-22 08:17 111640 ----a-w- c:\windows\system32\perf-MSSQL$SQLEXPRESS-sqlctr10.1.2531.0.dll
2014-05-23 16:15 . 2014-05-23 16:15 -------- d-----w- c:\windows\system32\RsFx
2014-05-23 16:13 . 2014-05-23 16:13 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio 9.0
2014-05-23 16:13 . 2014-05-23 16:13 -------- d-----w- c:\program files\Microsoft Visual Studio 9.0
2014-05-23 16:13 . 2014-05-23 16:13 -------- d-----w- c:\windows\SysWow64\1033
2014-05-23 16:13 . 2014-05-23 16:13 -------- d-----w- c:\windows\system32\1033
2014-05-23 16:12 . 2014-05-23 16:12 -------- d-----w- c:\program files\Microsoft.NET
2014-05-23 16:08 . 2014-05-28 20:04 -------- d-----w- c:\program files\Microsoft SQL Server
2014-05-23 16:04 . 2014-05-28 20:04 -------- d-----w- c:\program files (x86)\Microsoft SQL Server
2014-05-23 16:04 . 2014-05-23 16:04 -------- d-----w- c:\program files (x86)\Microsoft Silverlight
2014-05-23 16:04 . 2014-05-23 16:04 -------- d-----w- c:\program files\Microsoft Synchronization Services
2014-05-23 16:04 . 2014-05-23 16:04 -------- d-----w- c:\program files\Microsoft SQL Server Compact Edition
2014-05-23 16:03 . 2014-05-23 16:03 -------- d-----w- c:\program files (x86)\Microsoft Synchronization Services
2014-05-23 16:03 . 2014-05-23 16:03 -------- d-----w- c:\program files (x86)\Microsoft SQL Server Compact Edition
2014-05-23 16:03 . 2014-05-23 16:21 205984 ----a-w- c:\programdata\Microsoft\VBExpress\10.0\1033\ResourceCache.dll
2014-05-23 15:59 . 2014-05-23 15:59 -------- d-----w- c:\windows\symbols
2014-05-23 15:59 . 2014-05-23 15:59 -------- d-----w- c:\program files\Microsoft Visual Studio 10.0
2014-05-23 15:59 . 2014-05-23 15:59 -------- d-----w- c:\program files\Microsoft Help Viewer
2014-05-23 15:59 . 2014-05-23 15:59 -------- d-----w- c:\program files (x86)\Microsoft SDKs
2014-05-23 15:58 . 2014-05-23 15:58 -------- d-----w- c:\windows\PCHEALTH
2014-05-22 18:43 . 2014-05-22 18:43 -------- d-----w- C:\UDK
2014-05-22 14:23 . 2014-05-22 14:23 -------- d-----w- c:\program files (x86)\Common Files\Skype
2014-05-22 14:23 . 2014-05-22 14:23 -------- d-----r- c:\program files (x86)\Skype
2014-05-22 14:23 . 2014-05-22 14:23 -------- d-----w- c:\programdata\Skype
2014-05-22 12:47 . 2014-05-22 12:47 -------- d-----w- C:\found.000
2014-05-21 11:46 . 2014-04-17 03:31 10651704 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3587384D-C068-431D-8CC9-B00E130B0F04}\mpengine.dll
2014-05-20 16:05 . 2014-05-20 16:05 70832 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-05-20 16:05 . 2014-05-20 16:05 692400 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2014-05-20 16:05 . 2014-05-20 16:05 -------- d-----w- c:\windows\SysWow64\Macromed
2014-05-20 16:05 . 2014-05-20 16:05 -------- d-----w- c:\windows\system32\Macromed
2014-05-20 16:01 . 2014-05-20 16:02 -------- d-----w- c:\program files (x86)\Opera
2014-05-20 15:48 . 2014-05-20 15:48 -------- d-----w- c:\program files\CCleaner
2014-05-20 15:47 . 2014-05-20 15:47 -------- d-----w- c:\program files\Google
2014-05-20 15:47 . 2014-05-20 15:47 -------- d-----w- c:\program files (x86)\Google
2014-05-20 15:09 . 2010-02-04 08:01 24920 ----a-w- c:\windows\system32\X3DAudio1_7.dll
2014-05-20 15:08 . 2007-01-24 13:27 393576 ----a-w- c:\windows\system32\xactengine2_6.dll
2014-05-20 14:50 . 2014-05-20 14:50 -------- d-----w- c:\program files\WinRAR
2014-05-20 14:32 . 2014-05-20 14:32 -------- d-----w- c:\program files\ESET
2014-05-20 14:15 . 2014-05-27 18:51 -------- d-----w- c:\program files (x86)\Mozilla Maintenance Service
2014-05-20 14:01 . 2014-05-20 14:01 -------- d-----w- c:\programdata\ATI
2014-05-20 13:48 . 2014-05-20 13:48 -------- d-----w- c:\programdata\AMD
2014-05-20 13:48 . 2014-05-20 13:48 -------- d-----w- c:\program files (x86)\AMD AVT
2014-05-20 13:48 . 2014-05-20 13:48 -------- d-----w- c:\program files (x86)\AMD APP
2014-05-20 13:48 . 2014-05-20 13:48 -------- d-----w- c:\program files\Common Files\ATI Technologies
2014-05-20 13:48 . 2014-05-20 13:48 -------- d-----w- c:\program files (x86)\Common Files\ATI Technologies
2014-05-20 13:44 . 2014-05-20 13:44 -------- d-----w- c:\program files (x86)\ATI Technologies
2014-05-20 13:44 . 2014-05-20 13:44 -------- d-----w- c:\program files\ATI
2014-05-20 13:44 . 2014-05-20 13:48 -------- d-----w- c:\program files\ATI Technologies
2014-05-20 13:40 . 2014-05-20 13:41 -------- d-----w- c:\program files (x86)\DriverToolkit
2014-05-20 13:26 . 2014-05-20 13:26 -------- d-----w- C:\AMD
2014-05-20 13:24 . 2011-03-11 06:23 187264 ----a-w- c:\windows\system32\drivers\storport.sys
2014-05-20 13:24 . 2011-03-11 06:23 410496 ----a-w- c:\windows\system32\drivers\iaStorV.sys
2014-05-20 13:24 . 2011-03-11 06:22 27008 ----a-w- c:\windows\system32\drivers\amdxata.sys
2014-05-20 13:24 . 2011-03-11 06:15 96768 ----a-w- c:\windows\system32\fsutil.exe
2014-05-20 13:24 . 2011-03-11 05:37 74240 ----a-w- c:\windows\SysWow64\fsutil.exe
2014-05-20 13:24 . 2011-03-11 04:31 91136 ----a-w- c:\windows\system32\drivers\USBSTOR.SYS
2014-05-20 13:15 . 2014-05-20 13:15 0 ----a-w- c:\windows\ativpsrm.bin
2014-05-19 04:31 . 2011-02-19 06:37 1135104 ----a-w- c:\windows\system32\FntCache.dll
2014-05-19 01:19 . 2014-05-19 01:19 -------- d-----w- c:\windows\SysWow64\Wat
2014-05-19 01:19 . 2014-05-19 01:19 -------- d-----w- c:\windows\system32\Wat
2014-05-18 17:46 . 2010-09-14 06:45 367104 ----a-w- c:\windows\system32\wcncsvc.dll
2014-05-18 17:46 . 2010-09-14 06:07 276992 ----a-w- c:\windows\SysWow64\wcncsvc.dll
.
.
(((((((((((((((((((((((((((((((((((((((( Find3M výpis ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-05-19 04:34 . 2014-05-19 04:34 203776 ----a-w- c:\windows\SysWow64\webcheck.dll
2014-05-19 04:34 . 2014-05-19 04:34 249344 ----a-w- c:\windows\system32\webcheck.dll
.
.
(((((((((((((((((((((((((((((((((( Spouštěcí body v registru )))))))))))))))))))))))))))))))))))))))))))))
.
.
*Poznámka* prázdné záznamy a legitimní výchozí údaje nejsou zobrazeny.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2012-10-01 18:38 1720976 ----a-w- c:\progra~2\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2012-10-01 18:38 1720976 ----a-w- c:\progra~2\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2012-10-01 18:38 1720976 ----a-w- c:\progra~2\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2014-05-08 21444224]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"AMD AVT"="start AMD Accelerated Video Transcoding device initialization" [X]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2013-04-29 642304]
"AdobeCS6ServiceManager"="c:\program files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"SwitchBoard"="c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"EasyTuneVI"="c:\program files (x86)\GIGABYTE\ET6\ETcall.exe" [2007-07-26 20480]
.
c:\users\user\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Send to OneNote.lnk - c:\program files\Microsoft Office\Office15\ONENOTEM.EXE /tsr [2012-10-1 185992]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
"aux2"=wdmaud.drv
.
R2 APNMCP;Ask Update Service;c:\program files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe;c:\program files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 AODDriver;AODDriver;c:\program files (x86)\GIGABYTE\ET6\amd64\AODDriver.sys;c:\program files (x86)\GIGABYTE\ET6\amd64\AODDriver.sys [x]
R3 etdrv;etdrv;c:\windows\etdrv.sys;c:\windows\etdrv.sys [x]
R3 GVTDrv64;GVTDrv64;c:\windows\GVTDrv64.sys;c:\windows\GVTDrv64.sys [x]
R3 netr7364;RT73 USB Extensible Wireless LAN Card Driver;c:\windows\system32\DRIVERS\netr7364.sys;c:\windows\SYSNATIVE\DRIVERS\netr7364.sys [x]
R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x]
R3 SwitchBoard;SwitchBoard;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe;c:\program files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [x]
R3 WatAdminSvc;Služba Technologie aktivace Windows;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 MSSQLServerADHelper100;SQL Active Directory Helper Service;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE;c:\program files\Microsoft SQL Server\100\Shared\SQLADHLP.EXE [x]
R4 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
R4 RsFx0103;RsFx0103 Driver;c:\windows\system32\DRIVERS\RsFx0103.sys;c:\windows\SYSNATIVE\DRIVERS\RsFx0103.sys [x]
R4 SQLAgent$SQLEXPRESS;SQL Server Agent (SQLEXPRESS);c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE;c:\program files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [x]
S0 epfwwfp;epfwwfp;c:\windows\system32\DRIVERS\epfwwfp.sys;c:\windows\SYSNATIVE\DRIVERS\epfwwfp.sys [x]
S1 eamonm;eamonm;c:\windows\system32\DRIVERS\eamonm.sys;c:\windows\SYSNATIVE\DRIVERS\eamonm.sys [x]
S1 ehdrv;ehdrv;c:\windows\system32\DRIVERS\ehdrv.sys;c:\windows\SYSNATIVE\DRIVERS\ehdrv.sys [x]
S1 EpfwLWF;Epfw NDIS LightWeight Filter;c:\windows\system32\DRIVERS\EpfwLWF.sys;c:\windows\SYSNATIVE\DRIVERS\EpfwLWF.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 DragonUpdater;COMODO Dragon Update Service;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe;c:\program files (x86)\Comodo\Dragon\dragon_updater.exe [x]
S2 ekrn;ESET Service;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe;c:\program files\ESET\ESET Smart Security\x86\ekrn.exe [x]
S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 RTL8167;Ovladač Realtek 8167 NT;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro1 (ErrorConflict)]
@="{8BA85C75-763B-4103-94EB-9470F12FE0F7}"
[HKEY_CLASSES_ROOT\CLSID\{8BA85C75-763B-4103-94EB-9470F12FE0F7}]
2012-10-01 18:37 2322576 ----a-w- c:\progra~1\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro2 (SyncInProgress)]
@="{CD55129A-B1A1-438E-A425-CEBC7DC684EE}"
[HKEY_CLASSES_ROOT\CLSID\{CD55129A-B1A1-438E-A425-CEBC7DC684EE}]
2012-10-01 18:37 2322576 ----a-w- c:\progra~1\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrivePro3 (InSync)]
@="{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}"
[HKEY_CLASSES_ROOT\CLSID\{E768CD3B-BDDC-436D-9C13-E1B39CA257B1}]
2012-10-01 18:37 2322576 ----a-w- c:\progra~1\MIF5BA~1\Office15\GROOVEEX.DLL
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2012-06-11 12503184]
"egui"="c:\program files\ESET\ESET Smart Security\egui.exe" [2014-02-24 5581888]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
.
------- Doplňkový sken -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
IE: E&xport to Microsoft Excel - c:\progra~1\MIF5BA~1\Office15\EXCEL.EXE/3000
IE: Se&nd to OneNote - c:\progra~1\MIF5BA~1\Office15\ONBttnIE.dll/105
TCP: DhcpNameServer = 192.168.3.254
Filter: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - c:\program files (x86)\Common Files\microsoft shared\OFFICE15\MSOXMLMF.DLL
FF - ProfilePath - c:\users\user\AppData\Roaming\Mozilla\Firefox\Profiles\0xtyxazj.default\
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://www.seznam.cz/
.
- - - - NEPLATNÉ POLOŽKY ODSTRANĚNÉ Z REGISTRU - - - -
.
Wow6432Node-HKLM-Run-ApnTBMon - c:\program files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
AddRemove-Sniper Ghost Warrior - Gold Edition_is1 - d:\hry\Sniper ghost warriror\Hra\Sniper Ghost Warrior - Gold Edition\unins000.exe
.
.
.
--------------------- ZAMKNUTÉ KLÍČE V REGISTRU ---------------------
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Celkový čas: 2014-06-10 17:36:40
ComboFix-quarantined-files.txt 2014-06-10 15:36
.
Před spuštěním: Volných bajtů: 65 981 435 904
Po spuštění: Volných bajtů: 65 913 290 752
.
- - End Of File - - 6BCD1E582275169FD93DB39751291EF9
A36C5E4F47E84449FF07ED3517B43A31

Danilo
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 09 čer 2014 18:39

Re: Spomalení pc

#14 Příspěvek od Danilo »

Problém stále přetrvává :( :( :( :( :( :(

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119541
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomalení pc

#15 Příspěvek od Rudy »

Obávám se, že váš operační systém není originální. Co vy na to?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět