Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalý notebook

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Pomalý notebook

#1 Příspěvek od vev »

Dobrý den, prosím o kontrolu logu. Notebook je výrazně pomalý, nejen na internetu, při spouštění stránek, ale i při běžné obsluze ntb (např. otevření složek, aplikací apod.)
Přikládám logy z FRST...
Děkuji :-)



==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoServiceBridgeAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(SmartInteractAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <6>
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\TXE Components\DAL\jhi_service.exe
(services.exe ->) (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe
(services.exe ->) (McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Avast Software s.r.o. -> Avast Software) C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22062.543.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213728 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.102\Installer\chrmstp.exe [2022-09-09] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7842.105\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0DC843AA-9431-4CC1-85B1-DCDFA077C37C} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {182BD913-6913-4C32-826F-3A8F433439F0} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\4039f5f7-f4fc-421b-9110-9cfcbb0f2e2c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
Task: {215711FE-6E27-4CC0-902C-A973737F0C3F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2F5F5FA9-69E8-4F19-9E4A-C2C3FDA4C8CA} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {343221C7-B1BA-4CF4-AB5C-05BE6F83F281} - System32\Tasks\Opera scheduled assistant Autoupdate 1643536069 => C:\Users\František Ježek\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\František Ježek\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {3847673F-0BE3-4905-92B9-F0B4CCC46B27} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {3F9126D2-7F88-4921-BEF4-F6992515C5F1} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {439ED042-CF21-4586-BC8C-9700B4F0AA0E} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d83a7c7f-f2f4-423d-9002-f0491b01559e => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
Task: {46771E22-2989-46F7-A7C2-62A1F80D7E8D} - System32\Tasks\CCleanerSkipUAC - František Ježek => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {539F66AB-BBEB-405C-9773-9D524BAAB1C0} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {55063B26-659F-44A1-AF7A-DB70EB5A3D33} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {58A49815-DEF6-46D5-AD40-5B36968238DD} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [147864 2022-05-12] (Lenovo -> Lenovo Group Ltd.)
Task: {60BDF672-EAAC-4807-A74B-08B4AE64D95C} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {7CCDB3F4-B6CC-4571-A78C-B464EA174D09} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe backgroundagent (No File)
Task: {9CCAC644-324A-450F-B205-DAEC8363AE6A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\6c6350e7-1ce4-49d5-8517-22b6ab21d7d1 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
Task: {A73AFAAB-A347-445C-955E-672B8237213A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\e5614e23-bee5-4779-8792-1506390aee12 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
Task: {AC4ED7DF-DC23-4E18-A57A-B85D8CC0DE09} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {B08566B1-40CB-499D-82FC-084436AF46D4} - System32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {BAB923AC-B959-4EBD-841F-26362C2F37CC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BC94735D-25AF-42EA-A25E-6546562DC1D6} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\7312e97a-2daf-414f-9393-b09c03bc3753 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
Task: {BE27F32E-FF69-44C3-87F4-C06C56018E13} - System32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {CCFF3E11-2A87-496C-A290-DBA22EE9BF81} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D745E796-49D5-4366-9F0B-D1B29C468A00} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {DA507484-541C-4C32-A1A7-9247828447D5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113560 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {E1646802-007B-4C26-83B7-488B9F64FCBA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23706576 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {E72232FA-3F23-4C85-A13E-5ED4915AE27E} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4943072 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
Task: {F500E45B-CEAF-4F5F-AFFF-0E050DD3E89F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113560 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {F8614670-F4E4-4C1F-8F18-6875FAB9F67B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{401634fb-bc73-47d9-99e7-1916947606fb}: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{543d7b72-1c3d-4c04-b422-78799e1cc2c9}: [DhcpNameServer] 150.209.1.2

Edge:
=======
Edge Notifications: HKU\S-1-5-21-1470865586-2114047733-866801807-1001 -> hxxps://www.facebook.com
Edge DefaultProfile: Default
Edge Profile: C:\Users\František Ježek\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-10]
Edge Extension: (McAfee® WebAdvisor) - C:\Users\František Ježek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2022-09-10]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-08-22]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default [2022-09-17]
CHR Notifications: Default -> hxxps://aukro.cz; hxxps://bratislavaden.sk; hxxps://cs.howtodowell.com; hxxps://cs.qwe.wiki; hxxps://cz.pinterest.com; hxxps://fastshare.cz; hxxps://hellopushworld.com; hxxps://hukxc.kentoonlylo.work; hxxps://jimezdrave.cz; hxxps://kraj.news; hxxps://kytary.cz; hxxps://leletarreter.info; hxxps://mp3pro.xyz; hxxps://najky.sk; hxxps://najky.webnoviny.sk; hxxps://notification.best; hxxps://novaplus.nova.cz; hxxps://pixers.cz; hxxps://sk.postazdarma.cz; hxxps://skrz.cz; hxxps://svetomat.cz; hxxps://vanoce.metalshop.cz; hxxps://vevio.cz; hxxps://www.4camping.cz; hxxps://www.agatinsvet.cz; hxxps://www.astratex.cz; hxxps://www.banggood.com; hxxps://www.bezvasport.cz; hxxps://www.bibloo.cz; hxxps://www.darekvakci.cz; hxxps://www.dedoles.cz; hxxps://www.dobrytextil.cz; hxxps://www.dovolena.cz; hxxps://www.eobuv.cz; hxxps://www.esky.cz; hxxps://www.eva.cz; hxxps://www.facebook.com; hxxps://www.grizly.cz; hxxps://www.invia.cz; hxxps://www.knihcentrum.cz; hxxps://www.ku-z-el.cz; hxxps://www.letgo.cz; hxxps://www.lightinthebox.com; hxxps://www.mall.cz; hxxps://www.megaknihy.cz; hxxps://www.obrazkyanimace.cz; hxxps://www.penize.cz; hxxps://www.postazdarma.cz; hxxps://www.profi-dj.cz; hxxps://www.prvni-lekarna.cz; hxxps://www.sportkadnes.cz; hxxps://www.superzoo.cz; hxxps://www.talkchelsea.net; hxxps://www.tipli.cz; hxxps://www.tipsport.cz; hxxps://www.trenyrkarna.cz; hxxps://www.urbanstore.cz; hxxps://www.vivantis.cz; hxxps://www.youtube.com; hxxps://x2convert.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210CZ714G10&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2022-08-24]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-09-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-08-23]
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\System Profile [2022-08-23]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

Opera:
=======
OPR Profile: C:\Users\František Ježek\AppData\Roaming\Opera Software\Opera Stable [2022-08-23]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8523800 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [338312 2016-06-29] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [589536 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [589536 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2022-01-29] (Avast Software s.r.o. -> AVAST Software)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12126112 2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1210352 2016-03-23] (LENOVO -> Lenovo)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [84240 2022-01-28] (Lenovo -> Lenovo Group Ltd.)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe [31072 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-08-22] (McAfee, LLC -> McAfee, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [41760 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [237632 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [389064 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [257992 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [104904 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [24528 2022-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [47936 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [274976 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553880 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [113920 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88984 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [861936 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [671216 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221464 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [327408 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2021-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [435432 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-14] (CyberLink -> "CyberLink)
S1 netfilter2; system32\drivers\netfilter2.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-17 16:05 - 2022-09-17 16:08 - 000025504 _____ C:\Users\František Ježek\Desktop\FRST.txt
2022-09-17 15:28 - 2022-09-17 15:28 - 002371072 _____ (Farbar) C:\Users\František Ježek\Desktop\FRST64.exe
2022-09-17 10:22 - 2022-09-17 14:16 - 2583409359 _____ C:\Users\František Ježek\Downloads\Třináct životů (Dráma, V. Británie, 2022) CZ dabing.mkv
2022-09-17 07:49 - 2022-09-17 10:06 - 2497206846 _____ C:\Users\František Ježek\Downloads\Night Teeth 2021 AB 1080p.Cz dab novinka novinky.mkv
2022-09-14 09:38 - 2022-09-14 11:46 - 2346264561 _____ C:\Users\František Ježek\Downloads\Super Blb 2021 1080p CZ Dabing.mp4
2022-09-11 08:09 - 2022-09-11 10:01 - 2002800304 _____ C:\Users\František Ježek\Downloads\Jeptíška CZ DABING NOVINKA The Nun Mníška MYSTERY MYSTERIÓZNÍ MYSTERIÓZNY THRILLER TRILER HORROR HOROR.avi
2022-09-10 07:44 - 2022-09-10 08:24 - 734633984 _____ C:\Users\František Ježek\Downloads\Hooligans (2005) cz dabing.avi
2022-09-09 18:47 - 2022-09-09 20:25 - 1804599816 _____ C:\Users\František Ježek\Downloads\Sirotcinec-2007-cz-sindel101.mkv
2022-09-06 16:09 - 2022-09-06 20:24 - 2351186713 _____ C:\Users\František Ježek\Downloads\Betlémské světlo (Komédie, Česko, 2022) NOVINKA!.mp4
2022-09-05 17:19 - 2022-09-05 18:03 - 801312768 _____ C:\Users\František Ježek\Downloads\Prometheus CZ-dabing (2012) NOVINKA.avi
2022-09-02 17:16 - 2022-09-02 18:51 - 1038539499 _____ C:\Users\František Ježek\Downloads\Pánský klub (Komédie, Česko, 2022) NOVINKA!.mkv
2022-08-28 11:25 - 2022-08-28 12:51 - 1583910924 _____ C:\Users\František Ježek\Downloads\90 minut do smrti - Castle.Falls.2021.480p.BluRay.CZ.dabing.MIKI.mkv
2022-08-28 08:30 - 2022-08-28 09:36 - 1201249540 _____ C:\Users\František Ježek\Downloads\V Nemilosti(2021)cz.dabing(HD)NOVINKA!.mp4
2022-08-27 15:35 - 2022-08-27 17:58 - 1572858956 _____ C:\Users\František Ježek\Downloads\Plán útěku 3 - Escape Plan The Extractors (2019) 1080p CZ Dabing - abyssX.avi
2022-08-27 07:49 - 2022-08-27 07:49 - 000270560 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-08-27 07:49 - 2022-08-27 07:49 - 000221464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-08-23 20:32 - 2022-08-23 20:33 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2022-08-23 20:32 - 2022-08-23 20:32 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2022-08-20 08:30 - 2022-08-20 10:18 - 1980572304 _____ C:\Users\František Ježek\Downloads\Pašerák cz dabing 2018.avi
2022-08-19 20:29 - 2022-08-19 21:28 - 1084434211 _____ C:\Users\František Ježek\Downloads\Svetova valka Z-World War Z-2013-AAC.2.0-1008p.H.264- 1920x800-cz dabing.m4v

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-17 16:07 - 2022-04-09 20:50 - 000000000 ____D C:\FRST
2022-09-17 16:07 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-17 16:04 - 2018-06-11 16:22 - 000000000 ____D C:\Users\František Ježek\AppData\Local\D3DSCache
2022-09-17 15:50 - 2018-06-10 13:37 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-17 14:59 - 2020-09-28 19:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-17 07:32 - 2022-04-18 13:05 - 000000000 ____D C:\Program Files\CCleaner
2022-09-17 07:30 - 2018-06-10 14:03 - 000000000 ____D C:\Users\František Ježek\AppData\Local\AVAST Software
2022-09-17 07:26 - 2020-09-28 20:33 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-09-17 07:26 - 2018-06-09 12:12 - 000000000 __SHD C:\Users\František Ježek\IntelGraphicsProfiles
2022-09-17 07:25 - 2018-06-09 20:30 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-09-15 19:04 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-15 19:04 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-13 17:34 - 2021-12-11 16:57 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1470865586-2114047733-866801807-1001
2022-09-13 17:34 - 2021-09-05 08:25 - 000002414 _____ C:\Users\František Ježek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-13 17:34 - 2020-09-28 20:33 - 000003398 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1470865586-2114047733-866801807-1001
2022-09-12 20:22 - 2020-09-28 19:58 - 000000000 ____D C:\Users\František Ježek
2022-09-11 20:07 - 2022-05-24 18:27 - 000000000 ____D C:\Users\František Ježek\Downloads\Filmy
2022-09-09 17:51 - 2018-06-10 13:38 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-09 17:51 - 2018-06-10 13:38 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-09-09 17:37 - 2020-06-04 15:53 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-09 17:37 - 2020-06-04 15:53 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-09-08 16:47 - 2017-06-16 06:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-09-08 16:11 - 2018-06-10 13:56 - 000000000 ____D C:\ProgramData\AVAST Software
2022-09-08 16:10 - 2020-09-28 20:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-08 16:10 - 2020-09-28 19:50 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-08 16:10 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-09-08 16:10 - 2018-06-10 13:58 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2022-09-08 16:08 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-09-06 15:32 - 2018-06-09 12:12 - 000000000 ____D C:\Users\František Ježek\AppData\Local\Packages
2022-09-05 17:15 - 2018-06-11 10:54 - 000000334 _____ C:\Users\František Ježek\Desktop\Stáhnout filmy !!!.txt
2022-08-30 17:21 - 2022-04-20 16:32 - 000003550 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}
2022-08-30 17:21 - 2022-04-20 16:32 - 000003426 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}
2022-08-28 18:25 - 2022-04-18 13:05 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-08-28 18:25 - 2022-04-18 13:05 - 000002272 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - František Ježek
2022-08-28 18:25 - 2022-01-30 11:47 - 000003936 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1643536069
2022-08-28 18:25 - 2020-09-28 20:33 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-28 18:25 - 2020-09-28 20:33 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-28 18:25 - 2020-09-28 20:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-08-27 07:49 - 2020-10-15 16:22 - 000274976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-08-27 07:49 - 2020-04-11 20:30 - 000553880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-08-27 07:49 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-27 07:49 - 2019-01-04 19:16 - 000257992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-08-27 07:49 - 2019-01-04 19:16 - 000104904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-08-27 07:49 - 2018-10-10 16:31 - 000047936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000671216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000327408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000113920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000088984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-08-27 07:48 - 2019-01-14 16:47 - 000389064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-08-27 07:48 - 2019-01-04 19:16 - 000041760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2022-08-27 07:48 - 2018-06-10 13:58 - 000861936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-08-27 07:48 - 2018-06-10 13:58 - 000237632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-08-24 18:02 - 2018-06-10 13:57 - 000000000 ____D C:\Program Files\AVAST Software
2022-08-23 20:32 - 2017-06-16 06:59 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-23 20:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-08-23 20:28 - 2018-07-22 09:13 - 000000000 ____D C:\Users\František Ježek\AppData\Local\CrashDumps
2022-08-23 20:25 - 2022-05-12 19:11 - 000000000 ____D C:\ProgramData\Piriform

==================== Files in the root of some directories ========

2020-06-07 14:09 - 2020-06-07 14:09 - 024166400 _____ () C:\Program Files (x86)\GUT2CE1.tmp
2020-06-04 15:56 - 2020-06-04 15:56 - 024166400 _____ () C:\Program Files (x86)\GUT314E.tmp
2020-06-05 13:02 - 2020-06-05 13:02 - 024166400 _____ () C:\Program Files (x86)\GUT4379.tmp
2020-06-06 12:57 - 2020-06-06 12:57 - 024166400 _____ () C:\Program Files (x86)\GUT64E9.tmp
2020-06-08 07:22 - 2020-06-08 07:22 - 024166400 _____ () C:\Program Files (x86)\GUT7743.tmp
2020-06-06 07:45 - 2020-06-06 07:45 - 024166400 _____ () C:\Program Files (x86)\GUT7F90.tmp
2020-06-07 19:09 - 2020-06-07 19:09 - 024166400 _____ () C:\Program Files (x86)\GUTB621.tmp
2020-06-07 08:45 - 2020-06-07 08:45 - 024166400 _____ () C:\Program Files (x86)\GUTDB17.tmp
2020-06-02 14:16 - 2020-06-02 14:16 - 024166400 _____ () C:\Program Files (x86)\GUTE5C2.tmp
2020-06-04 21:08 - 2020-06-04 21:08 - 024166400 _____ () C:\Program Files (x86)\GUTEB5D.tmp
2020-06-08 17:02 - 2020-06-08 17:02 - 024166400 _____ () C:\Program Files (x86)\GUTEE9F.tmp

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#2 Příspěvek od vev »

A druhý log z frst:


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by František Ježek (17-09-2022 16:09:49)
Running from C:\Users\František Ježek\Desktop
Microsoft Windows 10 Home Version 21H2 19044.1889 (X64) (2020-09-28 18:34:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1470865586-2114047733-866801807-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1470865586-2114047733-866801807-503 - Limited - Disabled)
František Ježek (S-1-5-21-1470865586-2114047733-866801807-1001 - Administrator - Enabled) => C:\Users\František Ježek
Guest (S-1-5-21-1470865586-2114047733-866801807-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1470865586-2114047733-866801807-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

aTube Catcher verze 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 22.8.6030 - Avast Software)
CCleaner (HKLM\...\CCleaner) (Version: 6.03 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 105.0.5195.102 - Google LLC)
HappyFoto (HKLM-x32\...\{621A70CA-32A5-4F50-A66C-C9C792580415}_is1) (Version: - Happy Foto CZ)
Intel(R) Chipset Device Software (HKLM\...\{12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD}) (Version: 10.1.1.13 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4474 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{57FDCE53-64B7-48F3-AD5B-302A46C3080B}) (Version: 1.1.1.1 - Intel Corporation) Hidden
Intel(R) Trusted Execution Engine Driver (HKLM\...\{BAAE2AA9-513A-4658-A44F-9D6D607A9BC7}) (Version: 2.0.0.1094 - Intel Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Hidden
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.13.14.0 - Lenovo Group Ltd.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.92 - McAfee, LLC.)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15601.20088 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 105.0.1343.33 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1470865586-2114047733-866801807-1001\...\OneDriveSetup.exe) (Version: 22.176.0821.0003 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10374 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.260 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7738 - Realtek Semiconductor Corp.)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.3.6 - CEWE Stiftung u Co. KGaA)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden

Packages:
=========
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.14.67.0_x64__rz1tebttyb220 [2022-07-09] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-22] (Microsoft Corporation)
Lenovo Settings -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoSettings_3.177.0.0_x86__4642shxvsv8s2 [2021-11-04] (LENOVO INCORPORATED.)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2208.7.0_x64__k1h2ywk1493x8 [2022-08-23] (LENOVO INC.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9020.0_x64__8wekyb3d8bbwe [2022-09-10] (Microsoft Studios) [MS Ad]
Uživatelský portál Lenovo -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoID_2.0.37.0_x86__4642shxvsv8s2 [2021-11-04] (LENOVO INCORPORATED.)
Xbox 360 SmartGlass -> C:\Program Files\WindowsApps\Microsoft.XboxCompanion_1.4.3.0_x64__8wekyb3d8bbwe [2018-09-20] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-08-10] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 13:47 - 2020-10-28 14:14 - 000000838 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\TCS\;C:\Program Files\Intel\TXE Components\TCS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\František Ježek\Desktop\052004718.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{070B5A4B-98E9-44BB-933E-A99EB9B7D005}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4C7A3B1B-5EFF-4583-9036-038F695CDFED}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{81D44097-81CB-4EFE-A5A3-6C71D1871CE0}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{81AF5A91-4F82-4711-8561-9011C6F9058A}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{8EEC3AFB-7CC2-45DB-BC2B-8638553CA275}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{AE603066-C6A2-4164-BC41-B9D1F8DF5427}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{250F360A-0721-401C-94D2-DD9D1356C556}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E09F617A-B8E0-4F90-BF3A-FE2D772EE876}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A4EB2CA4-B28A-46E4-96F8-BF2D123AD12B}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A36AB898-1BE5-45BA-9CE9-10D46AA33B88}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{3D01953B-4D5B-4329-ADB5-AB0591C954BF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{ED215438-A4FD-434E-8DFD-EFBEE21ABDA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{96B88820-9A24-4310-B356-85B948429A55}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{17112DBE-C12A-45EC-914D-E9CCDDFC53C8}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{88932533-7ED2-4D2C-8EE0-E5E5CBD5D1B0}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B2C52BB7-4091-4561-9AE8-769DFE5E3623}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{68C55024-94D1-4FB4-B2D2-E9AEC146F1D1}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{C0AB3E95-9481-416A-8A1E-581A008DCFBC}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{29BC482A-4F4C-4CF4-B84E-AC9D6009E38D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9C26D49F-EC85-4E2D-BE12-16EA41871D0E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C072C063-31BC-4AB3-B26C-ECD854B2E041}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0A13C602-952E-4E77-A644-0B97E41F244D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A0553A03-B4E0-4EEE-A959-DC4E8831253E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{710B3758-E712-4E25-A2C0-C006020351DF}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{A20C83C3-171E-45A9-A9EE-2974E66DB9EC}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.33\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

02-09-2022 18:35:20 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (09/17/2022 12:27:42 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 10b0

Čas spuštění: 01d8ca5904c14c3d

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: 1ebf5314-0ffa-4ad9-b796-8c714d481d94

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/15/2022 08:28:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 225c

Čas spuštění: 01d8c90b6478dd2a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: ae6b9cc8-32e4-4f7c-8821-c3293a7e8c54

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/14/2022 05:17:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2710

Čas spuštění: 01d8c824f0b20956

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: 80ee87cf-0d09-4e7d-b83a-b6f90ea0faf4

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/14/2022 10:35:21 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 30a4

Čas spuštění: 01d8c80ca1e02f0e

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: aa26b189-ced8-4ab1-b8f9-3ce877e133da

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/13/2022 04:10:26 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 644, identifikátor PID ProfSvc: 1904.

Error: (09/13/2022 04:10:26 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\csrss.exe, identifikátor PID: 10880, identifikátor PID ProfSvc: 1904.

Error: (09/13/2022 04:10:26 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastSvc.exe, identifikátor PID: 3324, identifikátor PID ProfSvc: 1904.

Error: (09/13/2022 04:10:26 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Program Files\AVAST Software\Avast\AvastUI.exe, identifikátor PID: 4572, identifikátor PID ProfSvc: 1904.


System errors:
=============
Error: (09/17/2022 03:20:07 PM) (Source: disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR8.

Error: (09/16/2022 06:56:33 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server {283EDD52-69B2-473D-BEB6-2C0B4C01FD73} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/16/2022 06:54:32 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server {283EDD52-69B2-473D-BEB6-2C0B4C01FD73} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/16/2022 06:54:28 PM) (Source: Schannel) (EventID: 4103) (User: NT AUTHORITY)
Description: Při vytváření přihlašovacích údajů TLS Klient se stala závažná chyba. Stav interní chyby je 10013.

Error: (09/16/2022 06:50:49 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby gupdate s argumenty /comsvc za účelem spuštění serveru:
{4EB61BAC-A3B6-4760-9581-655041EF4D69}

Error: (09/16/2022 06:50:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (09/16/2022 06:50:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (09/16/2022 05:47:20 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppXwdz8g2fxr36xz0tdtagygnvemf85s7gg.mca se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================
Date: 2022-01-27 17:07:19
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {99537F0C-3A87-4AAF-907C-92FDA7418516}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-25 18:32:57
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5D443944-0BA1-4D19-9709-B21B67ADA52B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-25 16:13:22
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8755CE8A-980C-4277-8C0A-A3C74E287DD1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-22 17:48:37
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {22FF6FBB-8062-4A7B-B896-C6BABA9225D3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-20 17:44:00
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5702893A-3AA9-4E36-8585-F1AB241BAF14}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2022-05-08 19:08:28
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.363.1629.0
Předchozí verze bezpečnostních informací: 1.355.2706.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2022-05-08 19:08:28
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.363.1629.0
Předchozí verze bezpečnostních informací: 1.355.2706.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2022-05-08 19:08:28
Description:
Program Antivirová ochrana v programu Microsoft Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

CodeIntegrity:
===============
Date: 2022-09-17 16:03:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-09-17 15:47:31
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-09-17 15:42:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\setup\uat_3324.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 1GCN25WW 05/09/2018
Motherboard: LENOVO 00RD15IPG076
Processor: Intel(R) Celeron(R) CPU N3060 @ 1.60GHz
Percentage of memory in use: 78%
Total physical RAM: 4009.14 MB
Available physical RAM: 853.45 MB
Total Virtual: 5785.73 MB
Available Virtual: 1345.79 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:421.42 GB) (Free:181.56 GB) (Model: WDC WD5000LPCX-24VHAT0) NTFS
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.62 GB) (Model: WDC WD5000LPCX-24VHAT0) NTFS

\\?\Volume{d6853ba9-78a0-4144-a420-81de3b2050d3}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.47 GB) NTFS
\\?\Volume{8e3707ad-2f5b-48f4-9350-4c25bca9abfc}\ (LENOVO_PART) (Fixed) (Total:17.12 GB) (Free:6.61 GB) NTFS
\\?\Volume{d781538b-5e00-4f63-952a-ce2651acbdfb}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 4FF8317F)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#3 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#4 Příspěvek od vev »

Dobrý den, stáhla jsem, našlo to nějakou "potvoru", ale nikde mi to nenabídlo čištění a opravy, pouze karanténu. Mám dojem, že je návod trošku nepřesný, nebo jestli jsem to udělala špatně? Nevím... Každopádně jsem se snažila tu "potvoru" uložit do karantény, ale zahlásilo mi to, že se vytváří "bod obnovení systému", což jsem raději po chvíli zrušila, protože jsem se bála, aby mi to v notebooku něco nesmazalo. Nebo to mám nechat proběhnout? Prosím poraďte... Jelikož jsem to zrušila, žádný log mi to nevyhodilo. Prosím o návod, jak přesně program adwcleaner použít. Děkuji :-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#5 Příspěvek od Rudy »

Tu "potvoru" dejte do karantény (smazána bude, až odinstalujete ADW - v Karanténě je neškodná). Bod obnovy dělá pro jistotu, kdyby systém spadl. Akci zopakujte a dejte log.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#6 Příspěvek od vev »

Zdravím, vkládám log... a děkuji za kontrolu :-)

# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2022-08-22.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 09-18-2022
# Duration: 00:00:19
# OS: Windows 10 (Build 19044.2006)
# Cleaned: 6
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Users\František Ježek\AppData\Local\Host App Service

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.LenovoIMController Folder C:\ProgramData\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Users\František Ježek\AppData\Local\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Folder C:\Windows\System32\Tasks\LENOVO\IMCONTROLLER
Deleted Preinstalled.LenovoIMController Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Lenovo Dependency Package_is1


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [5814 octets] - [28/10/2020 19:41:29]
AdwCleaner[C00].txt - [6142 octets] - [28/10/2020 19:46:44]
AdwCleaner[S01].txt - [2053 octets] - [10/04/2022 10:12:52]
AdwCleaner[S02].txt - [2114 octets] - [10/04/2022 10:33:09]
AdwCleaner[S03].txt - [2189 octets] - [17/09/2022 19:01:24]
AdwCleaner[S04].txt - [2250 octets] - [18/09/2022 18:40:52]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C04].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#7 Příspěvek od Rudy »

OK. Teď dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#8 Příspěvek od vev »

Zdravím,
posílám logy z frst.
Děkuji za kontrolu. :-)


1. log:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-08-2022
Ran by František Ježek (administrator) on LAPTOP-UQGAN7S4 (LENOVO 80T7) (19-09-2022 18:13:27)
Running from C:\Users\František Ježek\Desktop
Loaded Profiles: František Ježek
Platform: Microsoft Windows 10 Home Version 21H2 19044.2006 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoBoostSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(LenovoServiceBridgeAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe
(services.exe ->) (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe
(services.exe ->) (McAfee, LLC -> McAfee, Inc.) C:\Program Files\mcafee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22072.207.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.22031.10091.0_x64__8wekyb3d8bbwe\Music.UI.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16418560 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1419008 2016-02-05] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213728 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38274576 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.127\Installer\chrmstp.exe [2022-09-18] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7842.105\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0DC843AA-9431-4CC1-85B1-DCDFA077C37C} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {182BD913-6913-4C32-826F-3A8F433439F0} - \Lenovo\ImController\TimeBasedEvents\4039f5f7-f4fc-421b-9110-9cfcbb0f2e2c -> No File <==== ATTENTION
Task: {215711FE-6E27-4CC0-902C-A973737F0C3F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2F5F5FA9-69E8-4F19-9E4A-C2C3FDA4C8CA} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {343221C7-B1BA-4CF4-AB5C-05BE6F83F281} - System32\Tasks\Opera scheduled assistant Autoupdate 1643536069 => C:\Users\František Ježek\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\František Ježek\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {3847673F-0BE3-4905-92B9-F0B4CCC46B27} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {3F9126D2-7F88-4921-BEF4-F6992515C5F1} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {439ED042-CF21-4586-BC8C-9700B4F0AA0E} - \Lenovo\ImController\TimeBasedEvents\d83a7c7f-f2f4-423d-9002-f0491b01559e -> No File <==== ATTENTION
Task: {46771E22-2989-46F7-A7C2-62A1F80D7E8D} - System32\Tasks\CCleanerSkipUAC - František Ježek => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {539F66AB-BBEB-405C-9773-9D524BAAB1C0} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {55063B26-659F-44A1-AF7A-DB70EB5A3D33} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {58A49815-DEF6-46D5-AD40-5B36968238DD} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe (No File)
Task: {60BDF672-EAAC-4807-A74B-08B4AE64D95C} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {7124AFE4-E115-40A6-9915-5C2909E906DF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709120 2022-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {7CCDB3F4-B6CC-4571-A78C-B464EA174D09} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe backgroundagent (No File)
Task: {7D40F6DD-0AC2-46BA-A2CC-7537B521A508} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23709120 2022-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {8E7CC86A-67D4-4884-8F96-800F0A5AA1A6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113560 2022-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9326ACC9-2C17-44F0-B048-F02AD8D23B0A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [113560 2022-09-17] (Microsoft Corporation -> Microsoft Corporation)
Task: {9CCAC644-324A-450F-B205-DAEC8363AE6A} - \Lenovo\ImController\TimeBasedEvents\6c6350e7-1ce4-49d5-8517-22b6ab21d7d1 -> No File <==== ATTENTION
Task: {A73AFAAB-A347-445C-955E-672B8237213A} - \Lenovo\ImController\TimeBasedEvents\e5614e23-bee5-4779-8792-1506390aee12 -> No File <==== ATTENTION
Task: {AC4ED7DF-DC23-4E18-A57A-B85D8CC0DE09} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {B08566B1-40CB-499D-82FC-084436AF46D4} - System32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {BC94735D-25AF-42EA-A25E-6546562DC1D6} - \Lenovo\ImController\TimeBasedEvents\7312e97a-2daf-414f-9393-b09c03bc3753 -> No File <==== ATTENTION
Task: {BE27F32E-FF69-44C3-87F4-C06C56018E13} - System32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {CCFF3E11-2A87-496C-A290-DBA22EE9BF81} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D745E796-49D5-4366-9F0B-D1B29C468A00} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {E177A7A4-DC7A-46EC-B68B-E4368A2F870D} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\ScheduleEventAction.exe [27480 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
Task: {E72232FA-3F23-4C85-A13E-5ED4915AE27E} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4943072 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
Task: {F8614670-F4E4-4C1F-8F18-6875FAB9F67B} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{401634fb-bc73-47d9-99e7-1916947606fb}: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{543d7b72-1c3d-4c04-b422-78799e1cc2c9}: [DhcpNameServer] 150.209.1.2

Edge:
=======
Edge Notifications: HKU\S-1-5-21-1470865586-2114047733-866801807-1001 -> hxxps://www.facebook.com
Edge DefaultProfile: Default
Edge Profile: C:\Users\František Ježek\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-17]
Edge Extension: (McAfee® WebAdvisor) - C:\Users\František Ježek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2022-09-10]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2019-08-22]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2014-07-02] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2014-07-02] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-09] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default [2022-09-19]
CHR Notifications: Default -> hxxps://aukro.cz; hxxps://bratislavaden.sk; hxxps://cs.howtodowell.com; hxxps://cs.qwe.wiki; hxxps://cz.pinterest.com; hxxps://fastshare.cz; hxxps://hellopushworld.com; hxxps://hukxc.kentoonlylo.work; hxxps://jimezdrave.cz; hxxps://kraj.news; hxxps://kytary.cz; hxxps://leletarreter.info; hxxps://mp3pro.xyz; hxxps://najky.sk; hxxps://najky.webnoviny.sk; hxxps://notification.best; hxxps://novaplus.nova.cz; hxxps://pixers.cz; hxxps://sk.postazdarma.cz; hxxps://skrz.cz; hxxps://svetomat.cz; hxxps://vanoce.metalshop.cz; hxxps://vevio.cz; hxxps://www.4camping.cz; hxxps://www.agatinsvet.cz; hxxps://www.astratex.cz; hxxps://www.banggood.com; hxxps://www.bezvasport.cz; hxxps://www.bibloo.cz; hxxps://www.darekvakci.cz; hxxps://www.dedoles.cz; hxxps://www.dobrytextil.cz; hxxps://www.dovolena.cz; hxxps://www.eobuv.cz; hxxps://www.esky.cz; hxxps://www.eva.cz; hxxps://www.facebook.com; hxxps://www.grizly.cz; hxxps://www.invia.cz; hxxps://www.knihcentrum.cz; hxxps://www.ku-z-el.cz; hxxps://www.letgo.cz; hxxps://www.lightinthebox.com; hxxps://www.mall.cz; hxxps://www.megaknihy.cz; hxxps://www.obrazkyanimace.cz; hxxps://www.penize.cz; hxxps://www.postazdarma.cz; hxxps://www.profi-dj.cz; hxxps://www.prvni-lekarna.cz; hxxps://www.sportkadnes.cz; hxxps://www.superzoo.cz; hxxps://www.talkchelsea.net; hxxps://www.tipli.cz; hxxps://www.tipsport.cz; hxxps://www.trenyrkarna.cz; hxxps://www.urbanstore.cz; hxxps://www.vivantis.cz; hxxps://www.youtube.com; hxxps://x2convert.com
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210CZ714G10&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2022-08-24]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2022-09-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-17]
CHR Profile: C:\Users\František Ježek\AppData\Local\Google\Chrome\User Data\System Profile [2022-09-17]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

Opera:
=======
OPR Profile: C:\Users\František Ježek\AppData\Roaming\Opera Software\Opera Stable [2022-09-17]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8523800 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [338312 2016-06-29] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [589536 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [589536 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2022-01-29] (Avast Software s.r.o. -> AVAST Software)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12131256 2022-09-17] (Microsoft Corporation -> Microsoft Corporation)
R2 GDCAgent; C:\Program Files (x86)\Lenovo\GDCAgentSetupRed\GDCAgent.exe [1210352 2016-03-23] (LENOVO -> Lenovo)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.13.14.0\LenovoVantageService.exe [31072 2022-05-24] (Lenovo -> Lenovo Group Ltd.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [905472 2019-08-22] (McAfee, LLC -> McAfee, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ImControllerService; %SystemRoot%\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [41760 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [237632 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [389064 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [257992 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [104904 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [24528 2022-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [47936 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [274976 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553880 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [113920 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [88984 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [861936 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [671216 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221464 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [327408 2022-08-27] (Avast Software s.r.o. -> AVAST Software)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2021-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [435432 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-14] (CyberLink -> "CyberLink)
S1 netfilter2; system32\drivers\netfilter2.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-19 18:13 - 2022-09-19 18:17 - 000023141 _____ C:\Users\František Ježek\Desktop\FRST.txt
2022-09-18 18:47 - 2022-09-18 18:47 - 000002483 _____ C:\Users\František Ježek\Desktop\AdwCleaner[C04].txt
2022-09-18 11:47 - 2022-09-18 11:47 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-09-18 11:46 - 2022-09-18 11:46 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2022-09-18 11:45 - 2022-09-18 11:45 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll
2022-09-18 11:45 - 2022-09-18 11:45 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-09-18 11:45 - 2022-09-18 11:45 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2022-09-18 10:49 - 2022-09-18 10:49 - 000000000 ___HD C:\$WinREAgent
2022-09-18 08:57 - 2022-09-18 11:18 - 2590140222 _____ C:\Users\František Ježek\Downloads\Denní směna 2022 cz dab. novinka, novinky. Dj.mp4
2022-09-17 18:57 - 2022-09-17 18:57 - 008551608 _____ (Malwarebytes) C:\Users\František Ježek\Downloads\AdwCleaner.exe
2022-09-17 18:57 - 2022-09-17 18:57 - 008551608 _____ (Malwarebytes) C:\Users\František Ježek\Downloads\AdwCleaner (1).exe
2022-09-17 18:33 - 2022-09-17 18:33 - 008791352 _____ (Malwarebytes) C:\Users\František Ježek\Desktop\adwcleaner.exe
2022-09-17 15:28 - 2022-09-17 15:28 - 002371072 _____ (Farbar) C:\Users\František Ježek\Desktop\FRST64.exe
2022-09-17 10:22 - 2022-09-17 14:16 - 2583409359 _____ C:\Users\František Ježek\Downloads\Třináct životů (Dráma, V. Británie, 2022) CZ dabing.mkv
2022-09-14 09:38 - 2022-09-14 11:46 - 2346264561 _____ C:\Users\František Ježek\Downloads\Super Blb 2021 1080p CZ Dabing.mp4
2022-09-11 08:09 - 2022-09-11 10:01 - 2002800304 _____ C:\Users\František Ježek\Downloads\Jeptíška CZ DABING NOVINKA The Nun Mníška MYSTERY MYSTERIÓZNÍ MYSTERIÓZNY THRILLER TRILER HORROR HOROR.avi
2022-09-10 07:44 - 2022-09-10 08:24 - 734633984 _____ C:\Users\František Ježek\Downloads\Hooligans (2005) cz dabing.avi
2022-09-09 18:47 - 2022-09-09 20:25 - 1804599816 _____ C:\Users\František Ježek\Downloads\Sirotcinec-2007-cz-sindel101.mkv
2022-09-06 16:09 - 2022-09-06 20:24 - 2351186713 _____ C:\Users\František Ježek\Downloads\Betlémské světlo (Komédie, Česko, 2022) NOVINKA!.mp4
2022-09-05 17:19 - 2022-09-05 18:03 - 801312768 _____ C:\Users\František Ježek\Downloads\Prometheus CZ-dabing (2012) NOVINKA.avi
2022-09-02 17:16 - 2022-09-02 18:51 - 1038539499 _____ C:\Users\František Ježek\Downloads\Pánský klub (Komédie, Česko, 2022) NOVINKA!.mkv
2022-08-28 11:25 - 2022-08-28 12:51 - 1583910924 _____ C:\Users\František Ježek\Downloads\90 minut do smrti - Castle.Falls.2021.480p.BluRay.CZ.dabing.MIKI.mkv
2022-08-28 08:30 - 2022-08-28 09:36 - 1201249540 _____ C:\Users\František Ježek\Downloads\V Nemilosti(2021)cz.dabing(HD)NOVINKA!.mp4
2022-08-27 15:35 - 2022-08-27 17:58 - 1572858956 _____ C:\Users\František Ježek\Downloads\Plán útěku 3 - Escape Plan The Extractors (2019) 1080p CZ Dabing - abyssX.avi
2022-08-27 07:49 - 2022-08-27 07:49 - 000270560 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-08-27 07:49 - 2022-08-27 07:49 - 000221464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-08-23 20:32 - 2022-08-23 20:33 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2022-08-23 20:32 - 2022-08-23 20:32 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2022-08-20 08:30 - 2022-08-20 10:18 - 1980572304 _____ C:\Users\František Ježek\Downloads\Pašerák cz dabing 2018.avi

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-09-19 18:15 - 2022-04-09 20:50 - 000000000 ____D C:\FRST
2022-09-19 18:11 - 2020-09-28 19:50 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-09-19 18:11 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-09-19 17:27 - 2018-06-10 13:37 - 000000000 ____D C:\Program Files (x86)\Google
2022-09-19 12:25 - 2022-04-18 13:05 - 000000000 ____D C:\Program Files\CCleaner
2022-09-19 12:19 - 2018-06-10 14:03 - 000000000 ____D C:\Users\František Ježek\AppData\Local\AVAST Software
2022-09-18 18:50 - 2018-06-11 18:06 - 000000000 ____D C:\Users\František Ježek\AppData\Local\Lenovo
2022-09-18 18:43 - 2020-03-13 16:06 - 000000000 ____D C:\WINDOWS\Lenovo
2022-09-18 18:43 - 2017-06-16 07:32 - 000000000 ____D C:\ProgramData\Lenovo
2022-09-18 18:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-09-18 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-09-18 18:30 - 2020-09-28 20:13 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-09-18 18:30 - 2019-12-07 16:41 - 000718024 _____ C:\WINDOWS\system32\perfh005.dat
2022-09-18 18:30 - 2019-12-07 16:41 - 000145166 _____ C:\WINDOWS\system32\perfc005.dat
2022-09-18 18:30 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-09-18 18:29 - 2018-06-09 20:30 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-09-18 18:29 - 2018-06-09 12:12 - 000000000 __SHD C:\Users\František Ježek\IntelGraphicsProfiles
2022-09-18 18:28 - 2020-09-28 20:33 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-09-18 18:25 - 2018-06-10 13:56 - 000000000 ____D C:\ProgramData\AVAST Software
2022-09-18 18:24 - 2020-09-28 20:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-09-18 18:24 - 2020-09-28 19:50 - 000258096 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-09-18 18:24 - 2020-09-28 19:50 - 000008192 ___SH C:\DumpStack.log.tmp
2022-09-18 18:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2022-09-18 18:23 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-09-18 18:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2022-09-18 18:20 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-09-18 18:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-09-18 14:30 - 2018-06-10 13:38 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-09-18 14:30 - 2018-06-10 13:38 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-09-18 12:02 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-09-18 11:45 - 2020-09-28 19:55 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2022-09-18 09:42 - 2018-06-09 15:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-09-18 09:29 - 2018-06-09 15:35 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-09-17 19:20 - 2017-06-16 06:43 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2022-09-17 19:16 - 2018-06-11 16:22 - 000000000 ____D C:\Users\František Ježek\AppData\Local\D3DSCache
2022-09-17 18:10 - 2020-06-04 15:53 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-09-17 18:10 - 2020-06-04 15:53 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-09-13 17:34 - 2021-12-11 16:57 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1470865586-2114047733-866801807-1001
2022-09-13 17:34 - 2021-09-05 08:25 - 000002414 _____ C:\Users\František Ježek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-09-13 17:34 - 2020-09-28 20:33 - 000003398 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1470865586-2114047733-866801807-1001
2022-09-12 20:22 - 2020-09-28 19:58 - 000000000 ____D C:\Users\František Ježek
2022-09-11 20:07 - 2022-05-24 18:27 - 000000000 ____D C:\Users\František Ježek\Downloads\Filmy
2022-09-08 16:10 - 2018-06-10 13:58 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2022-09-06 15:32 - 2018-06-09 12:12 - 000000000 ____D C:\Users\František Ježek\AppData\Local\Packages
2022-09-05 17:15 - 2018-06-11 10:54 - 000000334 _____ C:\Users\František Ježek\Desktop\Stáhnout filmy !!!.txt
2022-08-30 17:21 - 2022-04-20 16:32 - 000003550 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}
2022-08-30 17:21 - 2022-04-20 16:32 - 000003426 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}
2022-08-28 18:25 - 2022-04-18 13:05 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-08-28 18:25 - 2022-04-18 13:05 - 000002272 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - František Ježek
2022-08-28 18:25 - 2022-01-30 11:47 - 000003936 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1643536069
2022-08-28 18:25 - 2020-09-28 20:33 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-28 18:25 - 2020-09-28 20:33 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-28 18:25 - 2020-09-28 20:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-08-27 07:49 - 2020-10-15 16:22 - 000274976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-08-27 07:49 - 2020-04-11 20:30 - 000553880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-08-27 07:49 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-27 07:49 - 2019-01-04 19:16 - 000257992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-08-27 07:49 - 2019-01-04 19:16 - 000104904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-08-27 07:49 - 2018-10-10 16:31 - 000047936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000671216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000327408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000113920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-08-27 07:49 - 2018-06-10 13:58 - 000088984 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-08-27 07:48 - 2019-01-14 16:47 - 000389064 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-08-27 07:48 - 2019-01-04 19:16 - 000041760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2022-08-27 07:48 - 2018-06-10 13:58 - 000861936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-08-27 07:48 - 2018-06-10 13:58 - 000237632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-08-24 18:02 - 2018-06-10 13:57 - 000000000 ____D C:\Program Files\AVAST Software
2022-08-23 20:32 - 2017-06-16 06:59 - 000000000 ____D C:\ProgramData\Package Cache
2022-08-23 20:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-08-23 20:28 - 2018-07-22 09:13 - 000000000 ____D C:\Users\František Ježek\AppData\Local\CrashDumps
2022-08-23 20:25 - 2022-05-12 19:11 - 000000000 ____D C:\ProgramData\Piriform

==================== Files in the root of some directories ========

2020-06-07 14:09 - 2020-06-07 14:09 - 024166400 _____ () C:\Program Files (x86)\GUT2CE1.tmp
2020-06-04 15:56 - 2020-06-04 15:56 - 024166400 _____ () C:\Program Files (x86)\GUT314E.tmp
2020-06-05 13:02 - 2020-06-05 13:02 - 024166400 _____ () C:\Program Files (x86)\GUT4379.tmp
2020-06-06 12:57 - 2020-06-06 12:57 - 024166400 _____ () C:\Program Files (x86)\GUT64E9.tmp
2020-06-08 07:22 - 2020-06-08 07:22 - 024166400 _____ () C:\Program Files (x86)\GUT7743.tmp
2020-06-06 07:45 - 2020-06-06 07:45 - 024166400 _____ () C:\Program Files (x86)\GUT7F90.tmp
2020-06-07 19:09 - 2020-06-07 19:09 - 024166400 _____ () C:\Program Files (x86)\GUTB621.tmp
2020-06-07 08:45 - 2020-06-07 08:45 - 024166400 _____ () C:\Program Files (x86)\GUTDB17.tmp
2020-06-02 14:16 - 2020-06-02 14:16 - 024166400 _____ () C:\Program Files (x86)\GUTE5C2.tmp
2020-06-04 21:08 - 2020-06-04 21:08 - 024166400 _____ () C:\Program Files (x86)\GUTEB5D.tmp
2020-06-08 17:02 - 2020-06-08 17:02 - 024166400 _____ () C:\Program Files (x86)\GUTEE9F.tmp

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#9 Příspěvek od vev »

A 2. log:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by František Ježek (19-09-2022 18:28:04)
Running from C:\Users\František Ježek\Desktop
Microsoft Windows 10 Home Version 21H2 19044.2006 (X64) (2020-09-28 18:34:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1470865586-2114047733-866801807-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1470865586-2114047733-866801807-503 - Limited - Disabled)
František Ježek (S-1-5-21-1470865586-2114047733-866801807-1001 - Administrator - Enabled) => C:\Users\František Ježek
Guest (S-1-5-21-1470865586-2114047733-866801807-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1470865586-2114047733-866801807-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

aTube Catcher verze 3.8 (HKLM-x32\...\{D43B360E-722D-421B-BC77-20B9E0F8B6CD}_is1) (Version: 3.8 - DsNET Corp)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 22.8.6030 - Avast Software)
CCleaner (HKLM\...\CCleaner) (Version: 6.03 - Piriform)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 105.0.5195.127 - Google LLC)
HappyFoto (HKLM-x32\...\{621A70CA-32A5-4F50-A66C-C9C792580415}_is1) (Version: - Happy Foto CZ)
Intel(R) Chipset Device Software (HKLM\...\{12CB6BC1-4E71-4890-AA0E-26CED6AD7EDD}) (Version: 10.1.1.13 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4474 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 2.0.0.1094 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{57FDCE53-64B7-48F3-AD5B-302A46C3080B}) (Version: 1.1.1.1 - Intel Corporation) Hidden
Intel(R) Trusted Execution Engine Driver (HKLM\...\{BAAE2AA9-513A-4658-A44F-9D6D607A9BC7}) (Version: 2.0.0.1094 - Intel Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo OneKey Recovery (HKLM\...\{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.) Hidden
Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.1.0.4706 - CyberLink Corp.)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.13.14.0 - Lenovo Group Ltd.)
McAfee WebAdvisor (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.0.92 - McAfee, LLC.)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15601.20148 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 105.0.1343.42 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 105.0.1343.42 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-1470865586-2114047733-866801807-1001\...\OneDriveSetup.exe) (Version: 22.176.0821.0003 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24215 (HKLM\...\{EF1EC6A9-17DE-3DA9-B040-686A1E8A8B04}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24215 (HKLM\...\{50A2BC33-C9CD-3BF1-A8FF-53C10A0B183C}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20064 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.15601.20148 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10374 - Qualcomm Atheros)
Qualcomm Atheros Bluetooth Installer (64) (HKLM\...\{628988B4-3FA5-4EA6-BAA3-DA640F6718BD}) (Version: 10.0.0.260 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10586.31225 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.6.1001.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7738 - Realtek Semiconductor Corp.)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.3.6 - CEWE Stiftung u Co. KGaA)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden

Packages:
=========
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.14.67.0_x64__rz1tebttyb220 [2022-07-09] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-11-22] (Microsoft Corporation)
Lenovo Settings -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoSettings_3.177.0.0_x86__4642shxvsv8s2 [2021-11-04] (LENOVO INCORPORATED.)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2208.12.0_x64__k1h2ywk1493x8 [2022-09-18] (LENOVO INC.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9130.0_x64__8wekyb3d8bbwe [2022-09-18] (Microsoft Studios) [MS Ad]
Uživatelský portál Lenovo -> C:\Program Files\WindowsApps\LenovoCorporation.LenovoID_2.0.37.0_x86__4642shxvsv8s2 [2021-11-04] (LENOVO INCORPORATED.)
Xbox 360 SmartGlass -> C:\Program Files\WindowsApps\Microsoft.XboxCompanion_1.4.3.0_x64__8wekyb3d8bbwe [2018-09-20] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2016-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2022-08-27] (Avast Software s.r.o. -> AVAST Software)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.FMVC] => C:\Windows\SysWOW64\fmcodec.dll [77824 2008-08-18] (Fox Magic Software) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-08-10] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2019-08-22] (McAfee, LLC -> McAfee, Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-09-08] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 13:47 - 2020-10-28 14:14 - 000000838 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\TCS\;C:\Program Files\Intel\TXE Components\TCS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\TXE Components\DAL\;C:\Program Files (x86)\Intel\TXE Components\DAL\;C:\Program Files\Intel\TXE Components\IPT\;C:\Program Files (x86)\Intel\TXE Components\IPT\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1470865586-2114047733-866801807-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\František Ježek\Desktop\052004718.jpg
DNS Servers: 62.129.50.20 - 85.135.32.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{070B5A4B-98E9-44BB-933E-A99EB9B7D005}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4C7A3B1B-5EFF-4583-9036-038F695CDFED}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{81D44097-81CB-4EFE-A5A3-6C71D1871CE0}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{81AF5A91-4F82-4711-8561-9011C6F9058A}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{8EEC3AFB-7CC2-45DB-BC2B-8638553CA275}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{AE603066-C6A2-4164-BC41-B9D1F8DF5427}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{250F360A-0721-401C-94D2-DD9D1356C556}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E09F617A-B8E0-4F90-BF3A-FE2D772EE876}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A4EB2CA4-B28A-46E4-96F8-BF2D123AD12B}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{A36AB898-1BE5-45BA-9CE9-10D46AA33B88}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{3D01953B-4D5B-4329-ADB5-AB0591C954BF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{ED215438-A4FD-434E-8DFD-EFBEE21ABDA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{96B88820-9A24-4310-B356-85B948429A55}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{17112DBE-C12A-45EC-914D-E9CCDDFC53C8}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{88932533-7ED2-4D2C-8EE0-E5E5CBD5D1B0}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{B2C52BB7-4091-4561-9AE8-769DFE5E3623}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{68C55024-94D1-4FB4-B2D2-E9AEC146F1D1}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{C0AB3E95-9481-416A-8A1E-581A008DCFBC}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{29BC482A-4F4C-4CF4-B84E-AC9D6009E38D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9C26D49F-EC85-4E2D-BE12-16EA41871D0E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C072C063-31BC-4AB3-B26C-ECD854B2E041}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0A13C602-952E-4E77-A644-0B97E41F244D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A0553A03-B4E0-4EEE-A959-DC4E8831253E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.88.3401.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{9D7FBD96-3FE2-483C-AA81-502FF183D849}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{79101BDF-76AC-49DE-AA1B-8FD8DC0E5946}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\105.0.1343.42\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

18-09-2022 10:13:32 Instalační služba modulů systému Windows
18-09-2022 10:37:55 Instalační služba modulů systému Windows
18-09-2022 11:07:45 Instalační služba modulů systému Windows
18-09-2022 18:41:17 AdwCleaner_BeforeCleaning_18/09/2022_18:41:09

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (09/17/2022 08:37:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Windows (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/17/2022 08:33:45 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na LENOVO (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/17/2022 07:18:17 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na LENOVO (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/17/2022 12:27:42 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 10b0

Čas spuštění: 01d8ca5904c14c3d

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: 1ebf5314-0ffa-4ad9-b796-8c714d481d94

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/15/2022 08:28:30 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 225c

Čas spuštění: 01d8c90b6478dd2a

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: ae6b9cc8-32e4-4f7c-8821-c3293a7e8c54

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/14/2022 05:17:14 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2710

Čas spuštění: 01d8c824f0b20956

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: 80ee87cf-0d09-4e7d-b83a-b6f90ea0faf4

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/14/2022 10:35:21 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SearchApp.exe verze 10.0.19041.1889 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 30a4

Čas spuštění: 01d8c80ca1e02f0e

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe

ID hlášení: aa26b189-ced8-4ab1-b8f9-3ce877e133da

Úplný název balíčku s chybou: Microsoft.Windows.Search_1.14.6.19041_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: ShellFeedsUI

Typ zablokování: Quiesce

Error: (09/13/2022 04:10:26 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1552) (User: NT AUTHORITY)
Description: Uživatelský podregistr načetl jiný proces (zámek registru). Název procesu: C:\Windows\System32\svchost.exe, identifikátor PID: 644, identifikátor PID ProfSvc: 1904.


System errors:
=============
Error: (09/18/2022 07:22:27 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/18/2022 07:22:27 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/18/2022 07:22:26 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/18/2022 07:22:24 PM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-UQGAN7S4)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/18/2022 06:43:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Interface Foundation Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (09/18/2022 06:43:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LenovoVantageService byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (09/18/2022 06:43:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Security Assist Helper byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (09/18/2022 06:43:22 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
================
Date: 2022-01-27 17:07:19
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {99537F0C-3A87-4AAF-907C-92FDA7418516}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-25 18:32:57
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5D443944-0BA1-4D19-9709-B21B67ADA52B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-25 16:13:22
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8755CE8A-980C-4277-8C0A-A3C74E287DD1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-22 17:48:37
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {22FF6FBB-8062-4A7B-B896-C6BABA9225D3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2022-01-20 17:44:00
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {5702893A-3AA9-4E36-8585-F1AB241BAF14}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2022-05-08 19:08:28
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.363.1629.0
Předchozí verze bezpečnostních informací: 1.355.2706.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2022-05-08 19:08:28
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.363.1629.0
Předchozí verze bezpečnostních informací: 1.355.2706.0
Zdroj aktualizace: Složka pro aktualizace bezpečnostních informací
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2022-05-08 19:08:28
Description:
Program Antivirová ochrana v programu Microsoft Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.19200.5
Předchozí verze modulu: 1.1.18800.4
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

CodeIntegrity:
===============
Date: 2022-09-19 16:47:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-09-19 16:31:44
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\setup\uat_3248.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-09-19 12:25:01
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 1GCN25WW 05/09/2018
Motherboard: LENOVO 00RD15IPG076
Processor: Intel(R) Celeron(R) CPU N3060 @ 1.60GHz
Percentage of memory in use: 87%
Total physical RAM: 4009.14 MB
Available physical RAM: 483.11 MB
Total Virtual: 5481.14 MB
Available Virtual: 676.69 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:421.42 GB) (Free:196.93 GB) (Model: WDC WD5000LPCX-24VHAT0) NTFS
Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.62 GB) (Model: WDC WD5000LPCX-24VHAT0) NTFS

\\?\Volume{d6853ba9-78a0-4144-a420-81de3b2050d3}\ (WINRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.47 GB) NTFS
\\?\Volume{8e3707ad-2f5b-48f4-9350-4c25bca9abfc}\ (LENOVO_PART) (Fixed) (Total:17.12 GB) (Free:6.61 GB) NTFS
\\?\Volume{d781538b-5e00-4f63-952a-ce2651acbdfb}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 4FF8317F)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#10 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {182BD913-6913-4C32-826F-3A8F433439F0} - \Lenovo\ImController\TimeBasedEvents\4039f5f7-f4fc-421b-9110-9cfcbb0f2e2c -> No File <==== ATTENTION
Task: {439ED042-CF21-4586-BC8C-9700B4F0AA0E} - \Lenovo\ImController\TimeBasedEvents\d83a7c7f-f2f4-423d-9002-f0491b01559e -> No File <==== ATTENTION
Task: {539F66AB-BBEB-405C-9773-9D524BAAB1C0} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {58A49815-DEF6-46D5-AD40-5B36968238DD} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe (No File)
Task: {7CCDB3F4-B6CC-4571-A78C-B464EA174D09} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe backgroundagent (No File)
Task: {9CCAC644-324A-450F-B205-DAEC8363AE6A} - \Lenovo\ImController\TimeBasedEvents\6c6350e7-1ce4-49d5-8517-22b6ab21d7d1 -> No File <==== ATTENTION
Task: {A73AFAAB-A347-445C-955E-672B8237213A} - \Lenovo\ImController\TimeBasedEvents\e5614e23-bee5-4779-8792-1506390aee12 -> No File <==== ATTENTION
Task: {BC94735D-25AF-42EA-A25E-6546562DC1D6} - \Lenovo\ImController\TimeBasedEvents\7312e97a-2daf-414f-9393-b09c03bc3753 -> No File <==== ATTENTION
Task: {BE27F32E-FF69-44C3-87F4-C06C56018E13} - System32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {B08566B1-40CB-499D-82FC-084436AF46D4} - System32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}
C:\Program Files (x86)\GUT2CE1.tmp
C:\Program Files (x86)\GUT314E.tmp
C:\Program Files (x86)\GUT4379.tmp
C:\Program Files (x86)\GUT64E9.tmp
C:\Program Files (x86)\GUT7743.tmp
C:\Program Files (x86)\GUT7F90.tmp
C:\Program Files (x86)\GUTB621.tmp
C:\Program Files (x86)\GUTDB17.tmp
C:\Program Files (x86)\GUTE5C2.tmp
C:\Program Files (x86)\GUTEB5D.tmp
C:\Program Files (x86)\GUTEE9F.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#11 Příspěvek od vev »

Zdravím a posílám nový log z frst... Děkuji ;)

Fix result of Farbar Recovery Scan Tool (x64) Version: 30-08-2022
Ran by František Ježek (19-09-2022 19:40:34) Run:2
Running from C:\Users\František Ježek\Desktop
Loaded Profiles: František Ježek
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {182BD913-6913-4C32-826F-3A8F433439F0} - \Lenovo\ImController\TimeBasedEvents\4039f5f7-f4fc-421b-9110-9cfcbb0f2e2c -> No File <==== ATTENTION
Task: {439ED042-CF21-4586-BC8C-9700B4F0AA0E} - \Lenovo\ImController\TimeBasedEvents\d83a7c7f-f2f4-423d-9002-f0491b01559e -> No File <==== ATTENTION
Task: {539F66AB-BBEB-405C-9773-9D524BAAB1C0} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {58A49815-DEF6-46D5-AD40-5B36968238DD} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe (No File)
Task: {7CCDB3F4-B6CC-4571-A78C-B464EA174D09} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe backgroundagent (No File)
Task: {9CCAC644-324A-450F-B205-DAEC8363AE6A} - \Lenovo\ImController\TimeBasedEvents\6c6350e7-1ce4-49d5-8517-22b6ab21d7d1 -> No File <==== ATTENTION
Task: {A73AFAAB-A347-445C-955E-672B8237213A} - \Lenovo\ImController\TimeBasedEvents\e5614e23-bee5-4779-8792-1506390aee12 -> No File <==== ATTENTION
Task: {BC94735D-25AF-42EA-A25E-6546562DC1D6} - \Lenovo\ImController\TimeBasedEvents\7312e97a-2daf-414f-9393-b09c03bc3753 -> No File <==== ATTENTION
Task: {BE27F32E-FF69-44C3-87F4-C06C56018E13} - System32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
Task: {B08566B1-40CB-499D-82FC-084436AF46D4} - System32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}
C:\Program Files (x86)\GUT2CE1.tmp
C:\Program Files (x86)\GUT314E.tmp
C:\Program Files (x86)\GUT4379.tmp
C:\Program Files (x86)\GUT64E9.tmp
C:\Program Files (x86)\GUT7743.tmp
C:\Program Files (x86)\GUT7F90.tmp
C:\Program Files (x86)\GUTB621.tmp
C:\Program Files (x86)\GUTDB17.tmp
C:\Program Files (x86)\GUTE5C2.tmp
C:\Program Files (x86)\GUTEB5D.tmp
C:\Program Files (x86)\GUTEE9F.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{182BD913-6913-4C32-826F-3A8F433439F0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{182BD913-6913-4C32-826F-3A8F433439F0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\4039f5f7-f4fc-421b-9110-9cfcbb0f2e2c" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{439ED042-CF21-4586-BC8C-9700B4F0AA0E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{439ED042-CF21-4586-BC8C-9700B4F0AA0E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\d83a7c7f-f2f4-423d-9002-f0491b01559e" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{539F66AB-BBEB-405C-9773-9D524BAAB1C0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{539F66AB-BBEB-405C-9773-9D524BAAB1C0}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{58A49815-DEF6-46D5-AD40-5B36968238DD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{58A49815-DEF6-46D5-AD40-5B36968238DD}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\BatteryGauge\BatteryGaugeMaintenance" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{7CCDB3F4-B6CC-4571-A78C-B464EA174D09}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7CCDB3F4-B6CC-4571-A78C-B464EA174D09}" => removed successfully
C:\WINDOWS\System32\Tasks\CyberLink\Photo Master Gadget startup => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\CyberLink\Photo Master Gadget startup" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{9CCAC644-324A-450F-B205-DAEC8363AE6A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9CCAC644-324A-450F-B205-DAEC8363AE6A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\6c6350e7-1ce4-49d5-8517-22b6ab21d7d1" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A73AFAAB-A347-445C-955E-672B8237213A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A73AFAAB-A347-445C-955E-672B8237213A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\e5614e23-bee5-4779-8792-1506390aee12" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BC94735D-25AF-42EA-A25E-6546562DC1D6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BC94735D-25AF-42EA-A25E-6546562DC1D6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\ImController\TimeBasedEvents\7312e97a-2daf-414f-9393-b09c03bc3753" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BE27F32E-FF69-44C3-87F4-C06C56018E13}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BE27F32E-FF69-44C3-87F4-C06C56018E13}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B08566B1-40CB-499D-82FC-084436AF46D4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B08566B1-40CB-499D-82FC-084436AF46D4}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}" => removed successfully
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat => moved successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{4EC51CC5-DA92-4708-B2FD-4AA402E5210A}" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{ECCB4D76-13F6-46B1-8E61-E49A5E5D8E16}" => not found
C:\Program Files (x86)\GUT2CE1.tmp => moved successfully
C:\Program Files (x86)\GUT314E.tmp => moved successfully
C:\Program Files (x86)\GUT4379.tmp => moved successfully
C:\Program Files (x86)\GUT64E9.tmp => moved successfully
C:\Program Files (x86)\GUT7743.tmp => moved successfully
C:\Program Files (x86)\GUT7F90.tmp => moved successfully
C:\Program Files (x86)\GUTB621.tmp => moved successfully
C:\Program Files (x86)\GUTDB17.tmp => moved successfully
C:\Program Files (x86)\GUTE5C2.tmp => moved successfully
C:\Program Files (x86)\GUTEB5D.tmp => moved successfully
C:\Program Files (x86)\GUTEE9F.tmp => moved successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 10532295 B
Java, Discord, Steam htmlcache => 0 B
Windows/system/drivers => 8219163 B
Edge => 27149 B
Chrome => 409006690 B
Firefox => 0 B
Opera => 5022587 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3888 B
NetworkService => 23458944 B
František Ježek => 27258941 B

RecycleBin => 2497345841 B
EmptyTemp: => 2.8 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:41:39 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#12 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#13 Příspěvek od vev »

Zdravím, vypadá to, že je notebook trošku rychlejší. :-) Je ještě možné jej nějak "dočistit", aby se ještě trošku zrychlil? Projeli jsme ho CCleanerem, nic jiného nás nenapadlo, kdybyste ještě něco poradil, budeme rádi, ale každopádně je změna znát. :-)
Děkuji!! :idea: :wink:

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118241
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalý notebook

#14 Příspěvek od Rudy »

Zkuste ještě defragmentovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vev
Návštěvník
Návštěvník
Příspěvky: 202
Registrován: 30 črc 2009 17:50

Re: Pomalý notebook

#15 Příspěvek od vev »

Hotovo, provedeno :-)

Zamčeno