Stránka 1 z 1

Preventivka 27.1.2022

Napsal: 27 led 2022 11:44
od bzuk001
Dobrý den, omlouvám se, že otravuju můj stroj už nepatří k nejnovějším a chtěl bych vědět jestli lze udělat něco pro zrychlení. Požadované logy jsou v příloze. Předem děkuji za kontrolu.
Desktop.rar
(44.05 KiB) Staženo 42 x

Re: Preventivka 27.1.2022

Napsal: 29 led 2022 11:53
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe, <==== ATTENTION
HKU\S-1-5-21-3931852437-981671683-1270950335-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [0 2021-12-12] () <==== ATTENTION [zero byte File/Folder]
HKU\S-1-5-21-3931852437-981671683-1270950335-1001\...\MountPoints2: {95ddc637-2eb2-11ec-8f5e-88ae1db03492} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-3931852437-981671683-1270950335-1001\...\MountPoints2: {c3618343-ca97-11ea-8e08-88ae1db03492} - "F:\HiSuiteDownLoader.exe"
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {3A0A925A-7FC2-440E-B219-97BE918BC189} - \Browser Updater Task(Core) -> No File <==== ATTENTION
Task: {387D69C0-2C05-4BD0-9F9E-C9EE7E150488} - System32\Tasks\{A41EB3A6-2FF1-4A94-9038-DCAF144D1164} => C:\Windows\system32\pcalua.exe -a Z:\setup\rsrc\Autorun.exe -d Z:\
Task: {4D3FFC2E-AAF3-408B-B1E6-3E2F2C5D802A} - System32\Tasks\{1BE79522-389C-4B0C-8570-9DAA07D54AA8} => C:\Windows\system32\pcalua.exe -a W:\setup\rsrc\Autorun.exe -d W:\
Task: {85553CD0-F4C3-494C-AA1C-C5F847FDAF7E} - \WinTaske -> No File <==== ATTENTION
Task: {940253E0-CA3F-4821-8E40-6C3B520312C1} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {9825A903-C364-4AA7-AC41-0CCE9F5D548A} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {A03A515C-221D-4837-A982-56811D964695} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {A20BE858-66D8-42EB-8ED0-2619C2DF2BC7} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {A268A573-2CE6-47EA-B4D7-9A42872A0CE1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {A5475D63-0383-4A91-AF57-868BC1A0AA52} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {A61198C1-D146-41E7-88FD-19E39FA5CAFA} - System32\Tasks\SidebarExecute => C:\Program Files\Windows Sidebar\sidebar.exe (No File)
Task: {ADD5C96D-E17D-4BD4-A939-250DA2EA2BBA} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {AF50E7A2-E924-45AE-8056-2CF7719F2F6F} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {C54E30C1-9E81-4A59-9F37-7CCCF5418C01} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {C67AAF74-9F32-4754-9CE7-A69CC9A67E6D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {CCF7BDA9-7EDF-470A-BC39-43BA96AEC99E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-28] (Google Inc -> Google Inc.)
Task: {D985B191-2648-42BF-84AB-EABF7EE0481D} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {E7B52A88-227E-4A6E-AED9-D66A1BC4B5A7} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {EDF65630-F6E1-438C-ADD4-3229DA430AFD} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {F09808AF-9227-4B35-9B15-AD97B3B5688D} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {F0C94417-5781-4A04-A45F-2B8298DAD9A2} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe /backup /iavs (No File)
Task: {F416D7CC-A4C1-478B-BC98-E1284CDC05D6} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {F56DD5CA-A6C8-4029-A927-F2C1F34ED1F2} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (No File)
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
U3 idsvc; no ImagePath
C:\Users\uživatel\Downloads\42c3c8f9-aac5-4571-8355-47869729d990.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.