Stránka 1 z 1

svchost.exe zatěžuje pc

Napsal: 03 srp 2016 10:03
od Petrasek
Dobrý den, kamarád za mnou přišel s prosbou, že se mu pc zasekává a tak jsem koukal, že svchost.exe zatěžuje procesor kolem 50%.
Je možné to nějak opravit?

Přikládám log z rsit:

Logfile of random's system information tool 1.10 (written by random/random)
Run by jena at 2016-08-03 10:35:54
Microsoft® Windows Vista™ Ultimate Service Pack 2
System drive C: has 134 GB (59%) free of 226 GB
Total RAM: 3001 MB (44% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:36:53, on 3.8.2016
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16789)
Boot mode: Normal

Running processes:
C:\Windows\Explorer.EXE
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\igfxsrvc.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Windows\system32\wbem\unsecapp.exe
C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Users\jena\Downloads\RSIT.exe
C:\Program Files\trend micro\jena.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 3625 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442

prefs.js - "browser.startup.homepage" - "about:home"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jid1-r1tDuNiNb4SEww@jetpack"=C:\Program Files\AVAST Software\Avast\pam\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll


C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442\extensions\
iobitascsurfingprotection@iobit.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-02 716632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-04-05 1008184]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2011-01-21 255344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-11-07 2422512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-08-01 9071752]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2016-04-15 6675672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 228864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-08-03 10:35:55 ----D---- C:\Program Files\trend micro
2016-08-03 10:35:54 ----D---- C:\rsit
2016-08-01 17:14:10 ----A---- C:\Windows\system32\gdi32.dll
2016-08-01 17:13:48 ----A---- C:\Windows\system32\win32k.sys
2016-08-01 17:13:23 ----A---- C:\Windows\system32\ws2_32.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\winhttp.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\netbtugc.exe
2016-08-01 17:13:23 ----A---- C:\Windows\system32\mswsock.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-08-01 17:05:10 ----A---- C:\Windows\system32\winipsec.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\polstore.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpsvc.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.exe
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpapi.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-08-01 17:04:01 ----A---- C:\Windows\system32\tzres.dll
2016-08-01 17:01:47 ----A---- C:\Windows\system32\netevent.dll
2016-08-01 17:01:43 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-08-01 17:01:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-08-01 17:01:41 ----A---- C:\Windows\system32\drivers\srv.sys
2016-08-01 17:01:40 ----A---- C:\Windows\system32\wdigest.dll
2016-08-01 17:01:26 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-08-01 17:01:01 ----A---- C:\Windows\system32\atmlib.dll
2016-08-01 17:01:00 ----A---- C:\Windows\system32\atmfd.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\vbscript.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeeds.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\jsproxy.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\ieUnatt.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\wininet.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\urlmon.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\mshta.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\msfeedssync.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-08-01 16:37:07 ----A---- C:\Windows\system32\iertutil.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\url.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\dxtrans.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\mshtmled.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\jscript.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\ieui.dll
2016-08-01 16:37:04 ----A---- C:\Windows\system32\ieframe.dll
2016-08-01 16:37:03 ----A---- C:\Windows\system32\mshtml.dll
2016-08-01 16:37:02 ----A---- C:\Windows\system32\jscript9.dll
2016-08-01 16:17:41 ----A---- C:\Windows\system32\aswBoot.exe
2016-08-01 16:17:25 ----A---- C:\Windows\avastSS.scr

======List of files/folders modified in the last 1 month======

2016-08-03 10:36:07 ----D---- C:\Windows\Prefetch
2016-08-03 10:35:55 ----D---- C:\Program Files
2016-08-03 10:34:16 ----D---- C:\Windows\Temp
2016-08-03 10:19:03 ----D---- C:\Windows
2016-08-03 10:09:49 ----D---- C:\Windows\system32\drivers
2016-08-03 09:54:26 ----D---- C:\Windows\system32\NDF
2016-08-01 18:18:36 ----HD---- C:\ProgramData
2016-08-01 18:05:12 ----D---- C:\Windows\System32
2016-08-01 18:05:08 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-08-01 17:59:11 ----D---- C:\Windows\Minidump
2016-08-01 17:56:17 ----D---- C:\Windows\system32\Tasks
2016-08-01 17:37:49 ----D---- C:\Windows\rescache
2016-08-01 17:24:14 ----SHD---- C:\Windows\Installer
2016-08-01 17:17:02 ----D---- C:\Windows\system32\cs-CZ
2016-08-01 17:17:01 ----D---- C:\Windows\system32\migration
2016-08-01 17:17:01 ----D---- C:\Program Files\Internet Explorer
2016-08-01 17:14:20 ----D---- C:\Windows\winsxs
2016-08-01 17:14:19 ----D---- C:\Windows\system32\catroot
2016-08-01 17:06:08 ----D---- C:\Windows\system32\MRT
2016-08-01 17:06:06 ----D---- C:\Windows\Debug
2016-08-01 17:05:59 ----A---- C:\Windows\system32\mrt.exe
2016-08-01 17:05:09 ----D---- C:\Windows\system32\Macromed
2016-08-01 17:04:37 ----D---- C:\Windows\system32\catroot2
2016-08-01 17:00:47 ----SHD---- C:\System Volume Information
2016-08-01 16:18:58 ----D---- C:\Windows\Tasks
2016-08-01 16:10:45 ----SD---- C:\ProgramData\Microsoft
2016-07-28 11:21:03 ----D---- C:\ProgramData\ProductData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-08-01 60424]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-02 224616]
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2009-04-11 143848]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-03-05 527344]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-03-05 26096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-05-20 722416]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-08-01 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2016-08-01 64272]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-08-01 734840]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-08-01 434144]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2016-02-07 23840]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-08-01 34008]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-08-01 92256]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2016-08-01 184592]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-02-07 3629312]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C60x86.sys [2013-07-16 104648]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-07-30 27888]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-11-07 615664]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 a5xsjlna;a5xsjlna; C:\Windows\system32\drivers\a5xsjlna.sys []
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-21 288376]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-17 35144]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2016-08-01 66688]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 cpuz134;cpuz134; \??\C:\Users\jena\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 cpuz138;cpuz138; \??\C:\Users\jena\AppData\Local\Temp\cpuz138\cpuz138_x32.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-04-05 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-04-05 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-04-05 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-04-05 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-04-05 6016]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-04-05 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-04-05 386616]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-08-01 197640]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-04-05 21504]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2016-01-14 2945312]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-01 270016]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-27 146888]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-12 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 18:11
od Rudy
Zdravím!
Spusťte tuto utiltu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 18:45
od Petrasek
OK, provedeno, log je zde:

# AdwCleaner v5.201 - Log vytvořen 03/08/2016 v 19:31:57
# Aktualizováno 30/06/2016 by ToolsLib
# Databáze : 2016-08-02.3 [Server]
# Operační system : Windows Vista (TM) Ultimate Service Pack 2 (X86)
# Uživatelské jméno : jena - JENA-PC
# Spuštěno z : C:\Users\jena\Downloads\adwcleaner_5.201.exe
# Nastavení : Čištění
# Podpora : https://toolslib.net/forum

***** [ Služby ] *****


***** [ Složky ] *****

[-] Složka Smazáno : C:\ProgramData\apn
[#] Složka Smazáno : C:\ProgramData\Application Data\apn

***** [ Soubory ] *****

[-] Soubor Smazáno : C:\Windows\Reimage.ini

***** [ DLLs ] *****


***** [ WMI ] *****


***** [ Zástupci ] *****


***** [ Naplánované úlohy ] *****


***** [ Registry ] *****

[-] Klíč Smazáno : HKLM\SOFTWARE\Classes\AppID\{28FF42B8-A0DA-4BE5-9B81-E26DD59B350A}
[-] Klíč Smazáno : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
[-] Klíč Smazáno : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{BA0C978D-D909-49B6-AFE2-8BDE245DC7E6}
[-] Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{10ECCE17-29B5-4880-A8F5-EAD298611484}
[-] Klíč Smazáno : HKCU\Software\Reimage
[-] Klíč Smazáno : HKCU\Software\reimagerepair
[-] Klíč Smazáno : HKCU\Software\Local AppWizard-Generated Applications\Reimage - Windows Problem Relief.
[-] Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4F524A2D-5350-4500-76A7-A758B70C1500}
[-] Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{4F524A2D-5350-4500-76A7-A758B70C1902}
[-] Klíč Smazáno : HKU\.DEFAULT\Software\AskPartnerNetwork

***** [ Prohlížeče ] *****

[-] [C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442\prefs.js] Smazáno : user_pref("network.hxxp.request.max-start-delay", 0);
[-] [C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442\user.js] Smazáno : user_pref("network.hxxp.request.max-start-delay", 0);

*************************

:: "Tracing" klíče smazány
:: Nastavení Winsock vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [2272 bytů] - [03/08/2016 19:31:57]
C:\AdwCleaner\AdwCleaner[S1].txt - [2994 bytů] - [03/08/2016 19:28:15]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2418 bytů] ##########


Co dál?
Po restartu již svchost procesor nezatěžuje.

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 19:54
od Rudy
Dejte nový log RSIT.

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 20:01
od Petrasek
OK, tady je log:


Logfile of random's system information tool 1.10 (written by random/random)
Run by jena at 2016-08-03 20:52:47
Microsoft® Windows Vista™ Ultimate Service Pack 2
System drive C: has 134 GB (59%) free of 226 GB
Total RAM: 3001 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:52:53, on 3.8.2016
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16789)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Windows\system32\igfxsrvc.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\Users\jena\Downloads\RSIT.exe
C:\Program Files\trend micro\jena.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 3579 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442

prefs.js - "browser.startup.homepage" - "about:home"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jid1-r1tDuNiNb4SEww@jetpack"=C:\Program Files\AVAST Software\Avast\pam\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll


C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442\extensions\
iobitascsurfingprotection@iobit.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-02 716632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-04-05 1008184]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2011-01-21 255344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-11-07 2422512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-08-01 9071752]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2016-04-15 6675672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 228864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-08-03 19:27:56 ----D---- C:\AdwCleaner
2016-08-03 10:35:55 ----D---- C:\Program Files\trend micro
2016-08-03 10:35:54 ----D---- C:\rsit
2016-08-01 17:14:10 ----A---- C:\Windows\system32\gdi32.dll
2016-08-01 17:13:48 ----A---- C:\Windows\system32\win32k.sys
2016-08-01 17:13:23 ----A---- C:\Windows\system32\ws2_32.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\winhttp.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\netbtugc.exe
2016-08-01 17:13:23 ----A---- C:\Windows\system32\mswsock.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-08-01 17:05:10 ----A---- C:\Windows\system32\winipsec.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\polstore.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpsvc.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.exe
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpapi.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-08-01 17:04:01 ----A---- C:\Windows\system32\tzres.dll
2016-08-01 17:01:47 ----A---- C:\Windows\system32\netevent.dll
2016-08-01 17:01:43 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-08-01 17:01:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-08-01 17:01:41 ----A---- C:\Windows\system32\drivers\srv.sys
2016-08-01 17:01:40 ----A---- C:\Windows\system32\wdigest.dll
2016-08-01 17:01:26 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-08-01 17:01:01 ----A---- C:\Windows\system32\atmlib.dll
2016-08-01 17:01:00 ----A---- C:\Windows\system32\atmfd.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\vbscript.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeeds.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\jsproxy.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\ieUnatt.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\wininet.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\urlmon.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\mshta.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\msfeedssync.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-08-01 16:37:07 ----A---- C:\Windows\system32\iertutil.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\url.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\dxtrans.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\mshtmled.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\jscript.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\ieui.dll
2016-08-01 16:37:04 ----A---- C:\Windows\system32\ieframe.dll
2016-08-01 16:37:03 ----A---- C:\Windows\system32\mshtml.dll
2016-08-01 16:37:02 ----A---- C:\Windows\system32\jscript9.dll
2016-08-01 16:17:41 ----A---- C:\Windows\system32\aswBoot.exe
2016-08-01 16:17:25 ----A---- C:\Windows\avastSS.scr

======List of files/folders modified in the last 1 month======

2016-08-03 20:52:41 ----D---- C:\Windows\Temp
2016-08-03 19:39:25 ----D---- C:\Windows\Prefetch
2016-08-03 19:32:04 ----D---- C:\Windows
2016-08-03 19:31:57 ----HD---- C:\ProgramData
2016-08-03 16:49:25 ----D---- C:\Windows\system32\drivers
2016-08-03 10:35:55 ----D---- C:\Program Files
2016-08-03 09:54:26 ----D---- C:\Windows\system32\NDF
2016-08-01 18:05:12 ----D---- C:\Windows\System32
2016-08-01 18:05:08 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-08-01 17:59:11 ----D---- C:\Windows\Minidump
2016-08-01 17:56:17 ----D---- C:\Windows\system32\Tasks
2016-08-01 17:37:49 ----D---- C:\Windows\rescache
2016-08-01 17:24:14 ----SHD---- C:\Windows\Installer
2016-08-01 17:17:02 ----D---- C:\Windows\system32\cs-CZ
2016-08-01 17:17:01 ----D---- C:\Windows\system32\migration
2016-08-01 17:17:01 ----D---- C:\Program Files\Internet Explorer
2016-08-01 17:14:20 ----D---- C:\Windows\winsxs
2016-08-01 17:14:19 ----D---- C:\Windows\system32\catroot
2016-08-01 17:06:08 ----D---- C:\Windows\system32\MRT
2016-08-01 17:06:06 ----D---- C:\Windows\Debug
2016-08-01 17:05:59 ----A---- C:\Windows\system32\mrt.exe
2016-08-01 17:05:09 ----D---- C:\Windows\system32\Macromed
2016-08-01 17:04:37 ----D---- C:\Windows\system32\catroot2
2016-08-01 17:00:47 ----SHD---- C:\System Volume Information
2016-08-01 16:18:58 ----D---- C:\Windows\Tasks
2016-08-01 16:10:45 ----SD---- C:\ProgramData\Microsoft
2016-07-28 11:21:03 ----D---- C:\ProgramData\ProductData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-08-01 60424]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-02 224616]
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2009-04-11 143848]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-03-05 527344]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-03-05 26096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-05-20 722416]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-08-01 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2016-08-01 64272]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-08-01 734840]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-08-01 434144]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2016-02-07 23840]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-08-01 34008]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-08-01 92256]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2016-08-01 184592]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-02-07 3629312]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C60x86.sys [2013-07-16 104648]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-07-30 27888]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-11-07 615664]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 a6zv7u8z;a6zv7u8z; C:\Windows\system32\drivers\a6zv7u8z.sys []
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-21 288376]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-17 35144]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2016-08-01 66688]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 cpuz134;cpuz134; \??\C:\Users\jena\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 cpuz138;cpuz138; \??\C:\Users\jena\AppData\Local\Temp\cpuz138\cpuz138_x32.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-04-05 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-04-05 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-04-05 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-04-05 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-04-05 6016]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-04-05 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-04-05 386616]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-08-01 197640]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-04-05 21504]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2016-01-14 2945312]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-01 270016]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-27 146888]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-12 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 21:25
od Rudy
Stáhněte OTM: http://oldtimer.geekstogo.com/OTM.exe a uložte na plochu. Spusťte a do levého okna zkopírujte:
:files
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:services
a6zv7u8z

:commands
[Purity]
[Emptytemp]
[Emptyflash]
a klikněte na >MoveIt!<. Před skenem vypněte antivir a po něm restartujte PC. Dejte nový log RSIT.

Re: svchost.exe zatěžuje pc

Napsal: 03 srp 2016 21:51
od Petrasek
Provedeno, zde je log:


Logfile of random's system information tool 1.10 (written by random/random)
Run by jena at 2016-08-03 22:46:08
Microsoft® Windows Vista™ Ultimate Service Pack 2
System drive C: has 134 GB (59%) free of 226 GB
Total RAM: 3001 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 22:46:17, on 3.8.2016
Platform: Windows Vista SP2 (WinNT 6.00.1906)
MSIE: Internet Explorer v9.00 (9.00.8112.16789)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Windows\system32\taskeng.exe
C:\Windows\notepad.exe
C:\Windows\system32\igfxsrvc.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\CCleaner\CCleaner.exe
C:\Program Files\IObit\IObit Uninstaller\UninstallMonitor.exe
C:\Windows\system32\wbem\unsecapp.exe
C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\jena\Downloads\RSIT.exe
C:\Program Files\trend micro\jena.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [SynTPEnh] %ProgramFiles%\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner.exe" /MONITOR
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Advanced SystemCare 8] "C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe" /Auto (User 'Default user')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\Windows\system32\browseui.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Avast Antivirus (avast! Antivirus) - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: StarWind AE Service (StarWindServiceAE) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe

--
End of file - 3691 bytes

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442

prefs.js - "browser.startup.homepage" - "about:home"

"{20a82645-c095-46ed-80e3-08825760534b}"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
"wrc@avast.com"=C:\Program Files\AVAST Software\Avast\WebRep\FF
"jid1-r1tDuNiNb4SEww@jetpack"=C:\Program Files\AVAST Software\Avast\pam\FF
"sp@avast.com"=C:\Program Files\AVAST Software\Avast\SafePrice\FF


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 22.0.0.209 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF32_22_0_0_209.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf]
"Description"=
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/WPF,version=3.5]
"Description"=Windows Presentation Foundation plug-in for Mozilla browsers
"Path"=c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files\Google\Update\1.3.31.5\npGoogleUpdate3.dll


C:\Users\jena\AppData\Roaming\Mozilla\Firefox\Profiles\cj5s5wv1.default-1446047217442\extensions\
iobitascsurfingprotection@iobit.com

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2016-07-02 716632]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-04-05 1008184]
"Apoint"=C:\Program Files\Apoint2K\Apoint.exe [2011-01-21 255344]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-11-07 2422512]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2016-08-01 9071752]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner.exe [2016-04-15 6675672]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2011-02-11 228864]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfPf]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfRd]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\WudfUsbccidDriver]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"BindDirectlyToPropertySetStorage"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"vidc.cvid"=iccvid.dll
"MSVideo8"=VfWWDM32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-08-03 22:36:08 ----D---- C:\_OTM
2016-08-03 19:27:56 ----D---- C:\AdwCleaner
2016-08-03 10:35:55 ----D---- C:\Program Files\trend micro
2016-08-03 10:35:54 ----D---- C:\rsit
2016-08-01 17:14:10 ----A---- C:\Windows\system32\gdi32.dll
2016-08-01 17:13:48 ----A---- C:\Windows\system32\win32k.sys
2016-08-01 17:13:23 ----A---- C:\Windows\system32\ws2_32.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\winhttp.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\netbtugc.exe
2016-08-01 17:13:23 ----A---- C:\Windows\system32\mswsock.dll
2016-08-01 17:13:23 ----A---- C:\Windows\system32\drivers\netbt.sys
2016-08-01 17:05:10 ----A---- C:\Windows\system32\winipsec.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\polstore.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\IPSECSVC.DLL
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpsvc.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.exe
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpscript.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\gpapi.dll
2016-08-01 17:05:10 ----A---- C:\Windows\system32\FwRemoteSvr.dll
2016-08-01 17:04:01 ----A---- C:\Windows\system32\tzres.dll
2016-08-01 17:01:47 ----A---- C:\Windows\system32\netevent.dll
2016-08-01 17:01:43 ----A---- C:\Windows\system32\drivers\srvnet.sys
2016-08-01 17:01:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2016-08-01 17:01:41 ----A---- C:\Windows\system32\drivers\srv.sys
2016-08-01 17:01:40 ----A---- C:\Windows\system32\wdigest.dll
2016-08-01 17:01:26 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2016-08-01 17:01:01 ----A---- C:\Windows\system32\atmlib.dll
2016-08-01 17:01:00 ----A---- C:\Windows\system32\atmfd.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\vbscript.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeedsbs.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\msfeeds.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\jsproxy.dll
2016-08-01 16:37:09 ----A---- C:\Windows\system32\ieUnatt.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\wininet.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\urlmon.dll
2016-08-01 16:37:08 ----A---- C:\Windows\system32\mshta.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\msfeedssync.exe
2016-08-01 16:37:08 ----A---- C:\Windows\system32\dxtmsft.dll
2016-08-01 16:37:07 ----A---- C:\Windows\system32\iertutil.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\url.dll
2016-08-01 16:37:06 ----A---- C:\Windows\system32\dxtrans.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\mshtmled.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\jscript.dll
2016-08-01 16:37:05 ----A---- C:\Windows\system32\ieui.dll
2016-08-01 16:37:04 ----A---- C:\Windows\system32\ieframe.dll
2016-08-01 16:37:03 ----A---- C:\Windows\system32\mshtml.dll
2016-08-01 16:37:02 ----A---- C:\Windows\system32\jscript9.dll
2016-08-01 16:17:41 ----A---- C:\Windows\system32\aswBoot.exe
2016-08-01 16:17:25 ----A---- C:\Windows\avastSS.scr

======List of files/folders modified in the last 1 month======

2016-08-03 22:46:05 ----D---- C:\Windows\Temp
2016-08-03 22:40:53 ----D---- C:\Windows\Prefetch
2016-08-03 22:36:34 ----D---- C:\Windows
2016-08-03 22:36:09 ----D---- C:\Windows\Tasks
2016-08-03 19:31:57 ----HD---- C:\ProgramData
2016-08-03 16:49:25 ----D---- C:\Windows\system32\drivers
2016-08-03 10:35:55 ----D---- C:\Program Files
2016-08-03 09:54:26 ----D---- C:\Windows\system32\NDF
2016-08-01 18:05:12 ----D---- C:\Windows\System32
2016-08-01 18:05:08 ----A---- C:\Windows\system32\FlashPlayerApp.exe
2016-08-01 17:59:11 ----D---- C:\Windows\Minidump
2016-08-01 17:56:17 ----D---- C:\Windows\system32\Tasks
2016-08-01 17:37:49 ----D---- C:\Windows\rescache
2016-08-01 17:24:14 ----SHD---- C:\Windows\Installer
2016-08-01 17:17:02 ----D---- C:\Windows\system32\cs-CZ
2016-08-01 17:17:01 ----D---- C:\Windows\system32\migration
2016-08-01 17:17:01 ----D---- C:\Program Files\Internet Explorer
2016-08-01 17:14:20 ----D---- C:\Windows\winsxs
2016-08-01 17:14:19 ----D---- C:\Windows\system32\catroot
2016-08-01 17:06:08 ----D---- C:\Windows\system32\MRT
2016-08-01 17:06:06 ----D---- C:\Windows\Debug
2016-08-01 17:05:59 ----A---- C:\Windows\system32\mrt.exe
2016-08-01 17:05:09 ----D---- C:\Windows\system32\Macromed
2016-08-01 17:04:37 ----D---- C:\Windows\system32\catroot2
2016-08-01 17:00:47 ----SHD---- C:\System Volume Information
2016-08-01 16:10:45 ----SD---- C:\ProgramData\Microsoft
2016-07-28 11:21:03 ----D---- C:\ProgramData\ProductData

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\Windows\system32\drivers\aswRvrt.sys [2016-08-01 60424]
R0 aswVmm;avast! VM Monitor; C:\Windows\system32\drivers\aswVmm.sys [2016-08-02 224616]
R0 fvevol;BitLocker Drive Encryption Filter Driver; C:\Windows\System32\DRIVERS\fvevol.sys [2009-04-11 143848]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2013-03-05 527344]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2013-03-05 26096]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2014-05-20 722416]
R1 aswKbd;aswKbd; C:\Windows\system32\drivers\aswKbd.sys [2016-08-01 35096]
R1 aswRdr;aswRdr; C:\Windows\system32\drivers\aswRdr.sys [2016-08-01 64272]
R1 aswSnx;aswSnx; C:\Windows\system32\drivers\aswSnx.sys [2016-08-01 734840]
R1 aswSP;aswSP; C:\Windows\system32\drivers\aswSP.sys [2016-08-01 434144]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\system32\drivers\HWiNFO32.SYS [2016-02-07 23840]
R2 aswHwid;avast! HardwareID; C:\Windows\system32\drivers\aswHwid.sys [2016-08-01 34008]
R2 aswMonFlt;aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [2016-08-01 92256]
R3 aswStmXP;Avast StreamFilter Driver; C:\Windows\system32\drivers\aswStmXP.sys [2016-08-01 184592]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2011-02-11 9036800]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHDA.sys [2016-02-07 3629312]
R3 L1C;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\Windows\system32\DRIVERS\L1C60x86.sys [2013-07-16 104648]
R3 SmbDrvI;SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [2013-07-30 27888]
R3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2007-10-01 1769984]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2013-11-07 615664]
R3 WudfPf;@%SystemRoot%\system32\drivers\Wudfpf.sys,-1000; C:\Windows\system32\drivers\WudfPf.sys [2012-07-26 66560]
S3 adusbser;AnyDATA USB Device for Legacy Serial Communication; C:\Windows\system32\DRIVERS\adusbser.sys [2006-12-20 97920]
S3 an67kk21;an67kk21; C:\Windows\system32\drivers\an67kk21.sys []
S3 ApfiltrService;Alps Pointing-device Filter Driver; C:\Windows\system32\DRIVERS\Apfiltr.sys [2011-01-21 288376]
S3 aswTap;avast! SecureLine TAP Adapter v3; C:\Windows\system32\DRIVERS\aswTap.sys [2014-07-17 35144]
S3 aswTdi;aswTdi; C:\Windows\system32\drivers\aswTdi.sys [2016-08-01 66688]
S3 BCM43XV;Broadcom Extensible 802.11 Network Adapter Driver; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 BCM43XX;Ovladač síťového adaptéru Broadcom 802.11; C:\Windows\system32\DRIVERS\bcmwl6.sys [2006-11-02 464384]
S3 cpuz134;cpuz134; \??\C:\Users\jena\AppData\Local\Temp\cpuz134\cpuz134_x32.sys []
S3 cpuz138;cpuz138; \??\C:\Users\jena\AppData\Local\Temp\cpuz138\cpuz138_x32.sys []
S3 drmkaud;Dekodér zvuků DRM jádra společnosti Microsoft; C:\Windows\system32\drivers\drmkaud.sys [2008-04-05 5632]
S3 HdAudAddService;Ovladač funkce Microsoft 1.1 UAA pro službu zvuku High Definition Audio; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Server proxy služby datových proudů Microsoft; C:\Windows\system32\drivers\MSKSSRV.sys [2008-04-05 8192]
S3 MSPCLOCK;Server proxy hodin datových proudů Microsoft; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-04-05 5888]
S3 MSPQM;Server proxy správce kvality datových proudů Microsoft; C:\Windows\system32\drivers\MSPQM.sys [2008-04-05 5504]
S3 MSTEE;Konvertor jímka-jímka typu T datových proudů Microsoft; C:\Windows\system32\drivers\MSTEE.sys [2008-04-05 6016]
S3 usbvideo;Zobrazovací zařízení USB (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-07-12 134272]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2012-07-26 155136]
S4 ErrDev;Microsoft Hardware Error Device Driver; C:\Windows\system32\drivers\errdev.sys [2008-04-05 6656]
S4 MegaSR;MegaSR; C:\Windows\system32\drivers\megasr.sys [2008-04-05 386616]
S4 VBoxAswDrv;VBoxAsw Support Driver; \??\C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys []

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 avast! Antivirus;Avast Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2016-08-01 197640]
R2 FontCache;@%systemroot%\system32\FntCache.dll,-100; C:\Windows\system32\svchost.exe [2008-04-05 21504]
R2 StarWindServiceAE;StarWind AE Service; C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2007-05-28 275968]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2014-04-12 103608]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2016-01-14 2945312]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-08-01 270016]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2016-07-02 152216]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2015-12-27 146888]
S3 WPFFontCache_v0400;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe,-100; C:\Windows\Microsoft.NET\Framework\v4.0.30319\WPF\WPFFontCache_v0400.exe [2014-04-12 772296]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2014-04-12 45744]
S4 AvastVBoxSvc;AvastVBox COM Service; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe []
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2014-04-12 139944]

-----------------EOF-----------------

Re: svchost.exe zatěžuje pc

Napsal: 04 srp 2016 17:34
od Rudy
Dvouklikem na soubor C:\Program Files\trend micro\jena.exe spusťte HijackThis. Klikněte na "Do a system scan only" a v otevřeném okně vlevo ve čtverečcích zaškrtněte:
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.bing.com/search?q={searchTer ... DF&PC=AV01
Klikněte na >FixChecked<. Pak znovu spusťte OTM a klikněte na >CleanUp!<. OTM po sobě uklidí. Nakonec restartujte PC.

Doporučuji odinstalovat Advanced systemCare. Tento čistitč vidí problémy i tam, kde nejsou a laik si jím snadno může poškodit systém.

Re: svchost.exe zatěžuje pc

Napsal: 05 srp 2016 09:47
od Petrasek
Úkony jsem provedl.
Ten Advanced systemCare jsem nenašel, našel jsem po něm pouze složku v Program Files, tak jsem jí projistotu smazal.

Každopádně dnes po zapnutí svchost opět zatěžuje procesor kolem 50%.

Re: svchost.exe zatěžuje pc

Napsal: 05 srp 2016 16:00
od Rudy
Na zkoušku vypněte aut. aktualizace systému, příp. přeinstalujte antivir.

Re: svchost.exe zatěžuje pc

Napsal: 09 srp 2016 08:45
od Petrasek
Stačilo vypnout automatické aktualizace a celí víkend byl klid.
Myslíte, že je budu muset nechat vypnuté, nebo to půjde nějak opravit?

Re: svchost.exe zatěžuje pc

Napsal: 09 srp 2016 16:58
od Rudy
Zítra by měly být další pravidelné aktualizace win. Zítra je zapněte, občas se stane, že problém další aktualizace opraví.