Provedeno, přikládám log:
Fix result of Farbar Recovery Scan Tool (x64) Version: 30.01.2019
Ran by Ondra Sobola (01-02-2019 16:06:12) Run:1
Running from C:\Users\Ondra Sobola\Desktop
Loaded Profiles: Ondra Sobola (Available Profiles: Ondra Sobola & Administrator)
Boot Mode: Normal
==============================================
fixlist content:
*****************
CloseProcesses:
C:\Users\Ondra Sobola\AppData\Local\Temp\cpuz143\cpuz143_x64.sys
C:\Users\Ondra Sobola\AppData\Local\Temp\cpuz143
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated)
HKLM\...\Policies\Explorer: [ForceActiveDesktopOn] C:\WINDOWS\system32\0 [0 2013-09-06] ()
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\...\Run: [AdobeBridge] => [X]
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\...\MountPoints2: {53ace70f-c3a1-11e7-bf2e-a0481ceb607e} - "E:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.bing.com?pc=HPNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://
www.bing.com?pc=HPNTDFJS
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.bing.com?pc=HPNTDFJS
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://
www.bing.com?pc=HPNTDFJS
SearchScopes: HKLM -> {068A29DA-508A-4548-B871-0B4609046F15} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {068A29DA-508A-4548-B871-0B4609046F15} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-1539013177-1876024139-495790518-1002 -> {068A29DA-508A-4548-B871-0B4609046F15} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
CHR Extension: (goo.gl URL Shortener (Unofficial)) - C:\Users\Ondra Sobola\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2019-01-05]
S3 cpuz143; C:\Users\Ondra Sobola\AppData\Local\Temp\cpuz143\cpuz143_x64.sys [48952 2019-01-29] (CPUID) <==== ATTENTION
2019-01-07 22:15 - 2019-01-07 22:15 - 000000118 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-01-07 22:07 - 2019-01-07 22:07 - 000000401 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
Task: {302CD15B-88CA-432C-AB60-AEE387D53A2E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2019-01-05] (Google Inc.)
Task: {D6EADF3A-C9E9-4B72-95C4-73AC1EE08AA4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2019-01-05] (Google Inc.)
Task: {F817C35C-3A60-4A0C-AF4A-49DB4620AE24} - \Microsoft\Windows\Setup\EOSNotify -> No File <==== ATTENTION
Task: {FCEF1892-E034-4532-83E5-9B15F1B583EF} - System32\Tasks\{82E2F84D-1CF9-4C72-B467-6AF3EEA5B0E8} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\Total CMA Pack\Total CMA Pack.exe" -d "C:\Program Files (x86)\Total CMA Pack"
AlternateDataStreams: C:\Users\Ondra Sobola\AppData\Local\Ber30pSMl:yNEvzKuHdxq2q3eRljx1HwZUt [2348]
AlternateDataStreams: C:\Users\Ondra Sobola\AppData\Local\Temporary Internet Files:wupevwsHKGr8HFdL7Xj7L9pwi3F [2290]
*****************
Processes closed successfully.
C:\Users\Ondra Sobola\AppData\Local\Temp\cpuz143\cpuz143_x64.sys => moved successfully
C:\Users\Ondra Sobola\AppData\Local\Temp\cpuz143 => moved successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\" => removed successfully
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS6ServiceManager" => removed successfully
"HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\ForceActiveDesktopOn" => removed successfully
"HKU\S-1-5-21-1539013177-1876024139-495790518-1002\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeBridge" => removed successfully
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{53ace70f-c3a1-11e7-bf2e-a0481ceb607e} => removed successfully
HKLM\Software\Classes\CLSID\{53ace70f-c3a1-11e7-bf2e-a0481ceb607e} => not found
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{068A29DA-508A-4548-B871-0B4609046F15} => removed successfully
HKLM\Software\Classes\CLSID\{068A29DA-508A-4548-B871-0B4609046F15} => not found
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{068A29DA-508A-4548-B871-0B4609046F15} => removed successfully
HKLM\Software\Wow6432Node\Classes\CLSID\{068A29DA-508A-4548-B871-0B4609046F15} => not found
HKU\S-1-5-21-1539013177-1876024139-495790518-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{068A29DA-508A-4548-B871-0B4609046F15} => removed successfully
HKLM\Software\Classes\CLSID\{068A29DA-508A-4548-B871-0B4609046F15} => not found
CHR Extension: (goo.gl URL Shortener (Unofficial)) - C:\Users\Ondra Sobola\AppData\Local\Google\Chrome\User Data\Default\Extensions\iblijlcdoidgdpfknkckljiocdbnlagk [2019-01-05] => Error: No automatic fix found for this entry.
HKLM\System\CurrentControlSet\Services\cpuz143 => removed successfully
cpuz143 => service removed successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{302CD15B-88CA-432C-AB60-AEE387D53A2E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{302CD15B-88CA-432C-AB60-AEE387D53A2E}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D6EADF3A-C9E9-4B72-95C4-73AC1EE08AA4}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D6EADF3A-C9E9-4B72-95C4-73AC1EE08AA4}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F817C35C-3A60-4A0C-AF4A-49DB4620AE24}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F817C35C-3A60-4A0C-AF4A-49DB4620AE24}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\EOSNotify" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FCEF1892-E034-4532-83E5-9B15F1B583EF}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FCEF1892-E034-4532-83E5-9B15F1B583EF}" => removed successfully
C:\WINDOWS\System32\Tasks\{82E2F84D-1CF9-4C72-B467-6AF3EEA5B0E8} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{82E2F84D-1CF9-4C72-B467-6AF3EEA5B0E8}" => removed successfully
C:\Users\Ondra Sobola\AppData\Local\Ber30pSMl => ":yNEvzKuHdxq2q3eRljx1HwZUt" ADS removed successfully
C:\Users\Ondra Sobola\AppData\Local\Temporary Internet Files => ":wupevwsHKGr8HFdL7Xj7L9pwi3F" ADS removed successfully
The system needed a reboot.
==== End of Fixlog 16:06:18 ====