Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu - problém s USB a pomalý systém

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Pla(hta
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 05 úno 2006 11:57
Kontaktovat uživatele:

Prosím o kontrolu logu - problém s USB a pomalý systém

#1 Příspěvek od Pla(hta »

Dobrý den,

chtěl bych poprosit o kontrolu logu. Mé poměrně nové a myslím, že celkem slušně výkonné PC se poslední dobou chová velmi divě. Občas bylo tak zpomalené, že třeba jen spuštění Google Chromu trvalo třeba 60s místo 2-3s. To možná bylo tím, že jsem měl na disku "jen" cca 10-30 GB volného místa. Po uvolnění místa problém zmizel.

Nyní se ale třeba pár minut po startu Windows ozve jakoby systémový zvuk "připojení USB zařízení" ... to netuším proč, nic totiž nepřipojuji a všechno příslušenství PC funguje normálně. A zároveň mi nejde kopírovat soubory z mobilu (USB 2.0) připojeného přes USB. Vždy cca po 100mb se kopírování zasekne a po cca 40s vyskočí hláška "čas vypršel" nebo "časový limit vypršel" a to se mi stává i u externího HDD USB 3.0. Zkoušel jsem všechny možné USB porty (2.0 / 3.0 / přední / zadní).

Antivir mám AVG Free a asi defaultní Defender od Windows. Aktualizace mám všechny aktualizované.

Additional.txt přikládám v příloze (nesplnil jsem počet znaků).

Velice děkuji za kontrolu logu a případně jakékoliv rady





Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-08-2023
Ran by pleti (administrator) on DESKTOP-94159BN (ASUS System Product Name) (08-08-2023 08:24:18)
Running from C:\Users\pleti\Desktop\FRST64.exe
Loaded Profiles: pleti
Platform: Microsoft Windows 10 Home Version 22H2 19045.3208 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <4>
(C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\EFRService.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\AVG\Antivirus\AVGSvc.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.DisplayAdapter.exe
(C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_appbroker.exe
(C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_agent.exe
(C:\Windows\SysWOW64\regsvr32.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\regsvr32.exe
(cmd.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE.exe
(DriverStore\FileRepository\u0391252.inf_amd64_b298c070ddf486e2\B391109\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0391252.inf_amd64_b298c070ddf486e2\B391109\atieclxx.exe
(explorer.exe ->) () [File not signed] C:\Program Files\iBasso\iBassoUSBAudio_Driver\iBassoUSBAudioCplApp.exe
(explorer.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\AMD\ANR\AMDNoiseSuppression.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(explorer.exe ->) (Digiarty Software, Inc. -> DearMob) C:\Program Files (x86)\DearMob\5KPlayer\5KPlayer.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Thesycon Software Solutions GmbH & Co. KG) [File not signed] C:\Program Files\Questyle\Questyle_USB_Audio_Driver\W10_x64\QuestyleAudioCplApp.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe
(Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0391252.inf_amd64_b298c070ddf486e2\B391109\atiesrxx.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(services.exe ->) (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair) C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe <8>
(services.exe ->) (Check Point Software Technologies Ltd. -> ) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\EFRService.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\RemediationService.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ICM\ICM-Service-NET.exe
(services.exe ->) (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(svchost.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [CORSAIR iCUE 4 Software] => C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUE Launcher.exe [185392 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [293304 2023-08-07] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [325768 2022-08-23] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
HKLM-x32\...\Run: [ZaAntiRansomware] => C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAAR.exe [4231392 2021-04-19] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [5KPlayer] => C:\Program Files (x86)\DearMob\5KPlayer\5KPlayer.exe [29004992 2022-01-04] (Digiarty Software, Inc. -> DearMob)
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482128 2022-12-20] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2023-07-25] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [155544 2022-08-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [41572768 2023-07-12] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3942979887-2193197577-2625859063-1001\...\Run: [MicrosoftEdgeAutoLaunch_827058FDCA75553B644CF14C1C39A1F4] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4088256 2023-07-27] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\115.0.5790.111\Installer\chrmstp.exe [2023-08-02] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iBassoUSBAudio Control Panel Autostart.lnk [2023-08-04]
ShortcutTarget: iBassoUSBAudio Control Panel Autostart.lnk -> C:\Program Files\iBasso\iBassoUSBAudio_Driver\iBassoUSBAudioCplApp.exe () [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Questyle Audio Control Panel Autostart.lnk [2022-11-01]
ShortcutTarget: Questyle Audio Control Panel Autostart.lnk -> C:\Program Files\Questyle\Questyle_USB_Audio_Driver\W10_x64\QuestyleAudioCplApp.exe (Thesycon Software Solutions GmbH & Co. KG) [File not signed]
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2549103B-1A99-40E9-848F-E2BB237EEFC3} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-pleticha@email.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [557768 2014-09-19] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2F49889D-B5D8-4AA5-99E2-0BB2AB7706E5} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1024440 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {9692347F-41B7-4D8D-A57F-D1C285982C28} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1024440 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {7BCA9C9F-401A-4E67-AB5A-EE64D8B0A1CE} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [183736 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {4F955965-62AF-41D0-B4F5-B8CDFE0A828A} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4981688 2023-08-07] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {60B7FA11-0AC6-4BF6-B018-786E0DD8EFCD} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2181560 2023-08-01] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {7822655E-DE02-43FC-BAD1-37C59609AE5D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-07-12] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {9FE21D3E-D49D-4458-95B6-29BD42FFD68B} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-07-12] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "2c06901a-bfca-4b29-9d39-05b26fce383e" --version "6.14.10584" --silent
Task: {7530CFFF-5DF4-4A57-AECC-1D147C4C8D9B} - System32\Tasks\CCleanerSkipUAC - pleti => C:\Program Files\CCleaner\CCleaner.exe [34677664 2023-07-12] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {1D275300-023F-4E19-B3E8-30D57DCD565F} - System32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
Task: {FDF3D4E8-4110-496B-AC76-01972B0A5805} - System32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
Task: {C8770324-6A40-497C-B680-0CD1C757D17B} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656184 2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D090F93D-10EC-4F3B-AB8D-5D20696CB523} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656184 2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {90897595-B53D-41FB-8715-87DC1D7EFB61} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124312 2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {B3BE7217-8A84-482E-9A82-7CC367DE4272} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124312 2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {9DF69E9C-013B-4D42-B249-E8FEA2D54E47} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1024440 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {38492F99-BF97-415D-ACD9-B19338BBF00B} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4125600 2023-08-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C858C49-C8BF-405A-8070-65E8A06CE7DE} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3942979887-2193197577-2625859063-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4125600 2023-08-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {682E3EB1-6004-4343-9018-563126713FE4} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [133905984 2023-03-10] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
Task: {015C1C15-D14B-4B57-81D7-C3DC1B4E8DF5} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [59832 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {E9E93E17-31B1-4E90-AA23-55ADBAE68FC1} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [291768 2023-04-20] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{952bb452-8465-4182-a239-5f0c870e8d4e}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{a3929c3e-c4f7-4215-b859-7fa104b6de8b}: [DhcpNameServer] 31.30.90.11 31.30.90.12
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge Profile: C:\Users\pleti\AppData\Local\Microsoft\Edge\User Data\Default [2023-08-08]
Edge Extension: (Edge relevant text changes) - C:\Users\pleti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-04]

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2014-09-19] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2014-09-19] (Adobe Systems Incorporated -> Adobe Systems)

Chrome:
=======
CHR Profile: C:\Users\pleti\AppData\Local\Google\Chrome\User Data\Default [2023-08-08]
CHR NewTab: Default -> Not-active:"chrome-extension://nofdpbenickbjghcdhapegiimmdinblo/nt/index.html"
CHR DefaultSearchURL: Default -> hxxps://search.zonealarm.com/Search/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> ZoneAlarm
CHR DefaultSuggestURL: Default -> hxxps://suggest.zonealarm.com/suggestionfeed/suggestion?format=JSON&q={searchTerms}&gd=SY1001431
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\pleti\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-07-25]
CHR Extension: (Dokumenty Google offline) - C:\Users\pleti\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pleti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-09-02]
CHR Extension: (ZoneAlarm Web Secure) - C:\Users\pleti\AppData\Local\Google\Chrome\User Data\Default\Extensions\nofdpbenickbjghcdhapegiimmdinblo [2022-11-02]
CHR HKLM-x32\...\Chrome\Extension: [nofdpbenickbjghcdhapegiimmdinblo]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-09-24] (Apple Inc. -> Apple Inc.)
S2 AsusUpdateCheck; C:\Windows\System32\AsusUpdateCheck.exe [1132000 2022-09-02] (ASUSTeK COMPUTER INC. -> )
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [623032 2023-08-07] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [624056 2023-08-07] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [8925624 2023-08-07] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2022-09-05] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11867104 2023-07-31] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [761408 2023-03-10] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [610352 2022-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueLLAccessService.exe [237104 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\Corsair.Service.exe [84016 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S2 CorsairUniwillService; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CueUniwillService.exe [107568 2022-08-05] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 CPEFR; C:\Program Files (x86)\CheckPoint\Endpoint Security\EFR\EFRService.exe [3274432 2021-04-10] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 CpSbaCipolla; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33984 2021-04-19] (Check Point Software Technologies Ltd. -> )
R2 CpSbaUpdater; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\SBACipollaSrvHost.exe [33984 2021-04-19] (Check Point Software Technologies Ltd. -> )
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4976976 2022-12-20] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.147.0716.0001\FileSyncHelper.exe [3447712 2023-08-07] (Microsoft Corporation -> Microsoft Corporation)
R3 iCUEDevicePluginHost; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\iCUEDevicePluginHost.exe [456752 2022-08-05] (Corsair Memory, Inc. -> Corsair)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.147.0716.0001\OneDriveUpdaterService.exe [3783600 2023-08-07] (Microsoft Corporation -> Microsoft Corporation)
R2 OptionsPlusUpdaterService; C:\Program Files\LogiOptionsPlus\logioptionsplus_updater.exe [18308352 2023-05-31] (Logitech Inc -> Logitech, Inc.)
R2 RemediationService; C:\Program Files (x86)\CheckPoint\Endpoint Security\Remediation\RemediationService.exe [18624 2021-03-29] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [381504 2023-03-10] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 TESvc; C:\Program Files (x86)\CheckPoint\Endpoint Security\Threat Emulation\TESvc.exe [137920 2021-04-09] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [4576208 2022-08-23] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-09-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-09-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 ZA NET ICM Service; C:\Program Files (x86)\CheckPoint\ICM\ICM-Service-NET.exe [42208 2020-03-13] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
R2 ZAARUpdateService; C:\Program Files (x86)\CheckPoint\Endpoint Security\TPCommon\Cipolla\ZAARUpdateService.exe [51936 2021-04-19] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [129216 2022-08-23] (Check Point Software Technologies Ltd. -> Check Point Software Technologies, Ltd.)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [25560 2023-04-12] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R2 AMDRyzenMasterDriverV20; C:\Windows\system32\AMDRyzenMasterDriver.sys [48328 2023-04-18] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_1a1a381a2c0e293c\amdsafd.sys [113056 2022-08-25] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0391252.inf_amd64_b298c070ddf486e2\B391109\amdkmdag.sys [100259712 2023-04-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [59920 2022-05-31] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [31408 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [237968 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [392872 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [297872 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [96456 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\Windows\System32\drivers\avgElam.sys [25064 2022-10-31] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [39640 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [272560 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [559216 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [105280 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [80456 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [946096 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [705416 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [212712 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [319600 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [63032 2022-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessC2D033F14715AA7325305EA42FBFC65BF867CC1D; C:\Program Files\Corsair\CORSAIR iCUE 4 Software\CorsairLLAccess64.sys [21752 2022-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\Windows\System32\drivers\CorsairVBusDriver.sys [47032 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\Windows\System32\drivers\CorsairVHidDriver.sys [22968 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R2 cpbak; C:\Windows\System32\DRIVERS\cpbak.sys [83248 2020-09-03] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R1 CPEPMon; C:\Windows\System32\DRIVERS\CPEPMon.sys [153040 2021-04-06] (Microsoft Windows Hardware Compatibility Publisher -> Check Point Software Technologies)
R3 cpuz153; C:\Windows\temp\cpuz153\cpuz153_x64.sys [36864 2023-08-07] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2022-12-20] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2022-12-20] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 epnetflt; C:\Windows\system32\drivers\epnetflt.sys [135984 2020-12-06] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R1 epregflt; C:\Windows\system32\drivers\epregflt.sys [133416 2020-12-02] (Check Point Software Technologies Ltd. -> Check Point Software Technologies)
R2 ISWKL; C:\Program Files (x86)\CheckPoint\Endpoint Security\Endpoint Common\bin\ISWKL.sys [56184 2021-01-28] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 logi_generic_hid_filter; C:\Windows\system32\drivers\logi_generic_hid_filter.sys [62288 2023-02-23] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [44880 2023-02-23] (Logitech Inc -> Logitech)
S3 logi_joy_hid_filter; C:\Windows\system32\drivers\logi_joy_hid_filter.sys [63824 2023-02-23] (Logitech Inc -> Logitech)
S3 logi_joy_hid_lo; C:\Windows\system32\drivers\logi_joy_hid_lo.sys [51536 2023-02-23] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [32080 2023-02-23] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [73040 2023-02-23] (Logitech Inc -> Logitech)
S3 questyleaudio; C:\Windows\System32\drivers\questyleaudio.sys [275104 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Thesycon Software Solutions GmbH & Co. KG)
S3 questyleaudioks; C:\Windows\System32\drivers\questyleaudioks.sys [52384 2017-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Thesycon Software Solutions GmbH & Co. KG)
S3 Rockusb; C:\Windows\System32\drivers\rockusb.sys [69920 2018-08-21] (Fuzhou Rockchip Electronics Co., Ltd. -> Fuzhou Rockchip Electronics Co,Ltd.)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R1 Vsdatant; C:\Windows\System32\drivers\vsdatant.sys [461432 2022-08-23] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49576 2022-09-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [452856 2022-09-01] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [91384 2022-09-01] (Microsoft Windows -> Microsoft Corporation)
U3 iswSvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-08-08 08:24 - 2023-08-08 08:24 - 000034623 _____ C:\Users\pleti\Desktop\FRST.txt
2023-08-08 08:21 - 2023-08-08 08:21 - 002384896 _____ (Farbar) C:\Users\pleti\Desktop\FRST64.exe
2023-08-08 08:12 - 2023-08-08 08:12 - 055276783 _____ C:\Users\pleti\Downloads\DRV_Chipset_AMD_AM5_SZ-TSD_W11_64_V407132243_20220901R.zip
2023-08-08 08:12 - 2023-08-08 08:12 - 055276783 _____ C:\Users\pleti\Downloads\DRV_Chipset_AMD_AM5_SZ-TSD_W11_64_V407132243_20220901R (1).zip
2023-08-08 08:12 - 2023-08-08 08:12 - 002648517 _____ C:\Users\pleti\Downloads\DRV_LAN_Intel_I225_I226_SZ-TSD_W10_64_V11438_20230322R.zip
2023-08-08 08:11 - 2023-08-08 08:11 - 000000000 ____D C:\Users\pleti\Downloads\ROG-STRIX-B550-F-GAMING-ASUS-3202
2023-08-08 08:10 - 2023-08-08 08:10 - 017060970 _____ C:\Users\pleti\Downloads\ROG-STRIX-B550-F-GAMING-ASUS-3202.zip
2023-08-08 08:06 - 2023-08-08 08:07 - 000003110 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2023-08-07 23:02 - 2023-08-07 23:04 - 1407255510 _____ C:\Users\pleti\Downloads\The Witcher (S03E08) CZ titulky v obraze.mp4
2023-08-07 23:02 - 2023-08-07 23:04 - 1242144760 _____ C:\Users\pleti\Downloads\The Witcher (S03E07) CZ titulky v obraze.mp4
2023-08-07 18:26 - 2023-08-07 18:26 - 000009527 _____ C:\Users\pleti\Downloads\PletichaJaroslav_Podklad pro uhradu dane.pdf
2023-08-07 08:14 - 2023-08-07 08:14 - 006481824 _____ (Ghisler Software GmbH) C:\Users\pleti\Downloads\tcmd1100x64.exe
2023-08-07 08:14 - 2023-08-07 08:14 - 000001038 _____ C:\Users\pleti\Desktop\Total Commander 64 bit.lnk
2023-08-07 08:14 - 2023-08-07 08:14 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2023-08-07 08:14 - 2023-08-07 08:14 - 000000000 ____D C:\Program Files\totalcmd
2023-08-07 01:47 - 2023-08-07 01:47 - 000008474 _____ C:\Users\pleti\Desktop\cc_20230807_014703.reg
2023-08-07 01:45 - 2023-08-07 01:44 - 000313272 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2023-08-07 01:03 - 2023-08-07 01:39 - 000000000 ____D C:\Users\pleti\Desktop\Mobil MP 3 az 5 2023
2023-08-06 20:31 - 2023-08-06 20:45 - 248888883 _____ C:\Users\pleti\Downloads\◘Lizzo - Special (2022) (FLAC)◘.zip
2023-08-06 17:14 - 2023-08-06 17:19 - 084574998 _____ C:\Users\pleti\Downloads\Lizzo-Cuz_I_Love_You-Deluxe_Edition-CDR-2019-FATHEAD.rar
2023-08-05 11:58 - 2023-08-05 12:05 - 000000000 ____D C:\Users\pleti\Desktop\Nová složka (15)
2023-08-04 19:40 - 2023-08-04 19:47 - 121436433 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E21 Tlapky zachraňují mrznoucí ovce, Tlapky zachraňují uprchlé želvy.mp4
2023-08-04 19:33 - 2023-08-04 19:39 - 112430349 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E20 Tlapky zachraňují žabí starostku, Tlapky zachraňují poštu.mp4
2023-08-04 19:26 - 2023-08-04 19:32 - 120737214 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E19 Pirátské tlapky zachraňují.mp4
2023-08-04 01:59 - 2016-02-15 17:40 - 000126976 _____ (Thesycon) C:\ProgramData\CNEDA4A.tmp
2023-08-04 01:58 - 2023-08-04 01:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iBasso
2023-08-04 01:58 - 2023-08-04 01:58 - 000000000 ____D C:\Program Files\iBasso
2023-08-04 01:14 - 2023-08-04 01:14 - 000511750 _____ C:\Users\pleti\Desktop\DX150&DX200-upgrade8.1-user_guide.pdf
2023-08-04 01:09 - 2023-08-04 01:09 - 005500756 _____ C:\Users\pleti\Desktop\DX150Userguide.pdf
2023-08-04 01:00 - 2023-08-04 02:04 - 000000000 ____D C:\Users\pleti\.android
2023-08-04 00:42 - 2018-08-21 10:55 - 000069920 _____ (Fuzhou Rockchip Electronics Co,Ltd.) C:\Windows\system32\Drivers\rockusb.sys
2023-07-30 22:38 - 2023-07-30 22:38 - 017879603 _____ C:\Users\pleti\Downloads\VID_20230729_184713.mp4
2023-07-25 16:06 - 2023-07-25 16:06 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2023-07-25 16:06 - 2023-07-25 16:06 - 000000000 ____D C:\Program Files\LGHUB
2023-07-24 14:51 - 2023-07-25 13:27 - 002915926 _____ C:\Users\pleti\Desktop\chata_vylety.pdf
2023-07-19 23:28 - 2023-07-19 23:46 - 323335705 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E06-cz.mkv
2023-07-19 23:12 - 2023-07-19 23:24 - 228892463 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E07-cz.mkv
2023-07-19 22:05 - 2023-07-19 22:21 - 293038482 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E04 - Tlapková mise - Výprava za korunou.mkv
2023-07-19 21:18 - 2023-07-19 21:34 - 290130157 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E02 - Tlapky zachraňují maličkého tučnáka,Tlapky zachraňují kočičí soutež.mkv
2023-07-19 20:07 - 2023-07-19 20:24 - 312615241 _____ C:\Users\pleti\Downloads\Tlapková patrola S04E01-cz.mkv
2023-07-14 21:46 - 2023-07-20 15:29 - 000000000 ____D C:\Users\pleti\Desktop\PP_MOBIL_LETO
2023-07-14 08:28 - 2023-07-14 08:43 - 000000000 ____D C:\Users\pleti\Desktop\MP_MOBIL_LETO2023
2023-07-11 21:06 - 2023-07-11 21:06 - 000000000 ___HD C:\$WinREAgent
2023-07-10 23:44 - 2023-07-10 23:44 - 000040310 _____ C:\Users\pleti\Downloads\Platba právník červen 2023.pdf
2023-07-10 20:24 - 2023-07-10 20:24 - 000000000 ____D C:\Users\pleti\Downloads\the.witcher.s03.e01.shaerrawedd.(2023).cze.1cd.(9619125)

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-08-08 08:24 - 2022-10-05 12:34 - 000000000 ____D C:\FRST
2023-08-08 08:21 - 2023-04-18 21:11 - 000000000 ____D C:\Users\pleti\AppData\Local\LogiOptionsPlus
2023-08-08 08:13 - 2022-09-02 17:38 - 000000000 ____D C:\Program Files (x86)\Google
2023-08-08 08:13 - 2022-09-01 20:16 - 000000000 ____D C:\Windows\SystemTemp
2023-08-08 08:09 - 2022-12-03 19:48 - 000000000 ____D C:\Users\pleti\AppData\Local\Adobe
2023-08-08 08:07 - 2023-06-23 20:19 - 000000000 ____D C:\Program Files\CCleaner
2023-08-08 08:07 - 2023-05-17 12:38 - 000003118 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2023-08-08 08:07 - 2023-02-23 22:35 - 000000000 ____D C:\Users\pleti\AppData\Roaming\lghub
2023-08-08 08:07 - 2022-09-05 22:16 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Samsung Magician
2023-08-08 08:07 - 2022-09-03 12:42 - 000000000 ____D C:\Users\pleti\AppData\Roaming\5KPlayer
2023-08-08 08:07 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-08-07 22:45 - 2022-09-03 12:10 - 000000000 ____D C:\Users\pleti\AppData\Roaming\vlc
2023-08-07 22:37 - 2022-09-01 19:47 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-08-07 22:30 - 2023-06-23 20:19 - 000003048 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-08-07 22:30 - 2023-06-23 20:19 - 000002988 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-08-07 22:30 - 2023-06-23 20:19 - 000002254 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - pleti
2023-08-07 22:30 - 2023-06-23 20:19 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-08-07 22:30 - 2023-05-30 08:55 - 000002534 _____ C:\Windows\system32\Tasks\SamsungMagician
2023-08-07 22:30 - 2023-05-16 21:38 - 000002672 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2023-08-07 22:30 - 2023-05-16 21:38 - 000002404 _____ C:\Windows\system32\Tasks\AMDRyzenMasterSDKTask
2023-08-07 22:30 - 2023-05-16 21:38 - 000002114 _____ C:\Windows\system32\Tasks\StartDVR
2023-08-07 22:30 - 2023-02-26 22:37 - 000002194 _____ C:\Windows\system32\Tasks\StartCN
2023-08-07 22:30 - 2022-12-20 18:30 - 000002716 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2023-08-07 22:30 - 2022-12-03 19:55 - 000002800 _____ C:\Windows\system32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-pleticha@email.cz
2023-08-07 22:30 - 2022-10-05 22:32 - 000003486 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B}
2023-08-07 22:30 - 2022-10-05 22:32 - 000003262 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26}
2023-08-07 22:30 - 2022-09-05 23:34 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2023-08-07 22:30 - 2022-09-05 23:25 - 000003044 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2023-08-07 22:30 - 2022-09-01 20:03 - 000003070 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3942979887-2193197577-2625859063-1001
2023-08-07 22:30 - 2022-09-01 19:47 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-08-07 22:30 - 2022-09-01 19:47 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-08-07 18:16 - 2022-11-01 00:55 - 000000000 ____D C:\Users\pleti\Desktop\Inzeráty
2023-08-07 18:11 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-08-07 18:09 - 2022-09-05 23:24 - 000000000 ____D C:\ProgramData\AVG
2023-08-07 18:09 - 2022-09-01 19:47 - 000008192 ___SH C:\DumpStack.log.tmp
2023-08-07 18:09 - 2022-09-01 19:47 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-08-07 18:09 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-08-07 10:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2023-08-07 08:50 - 2023-03-19 23:56 - 000000000 ____D C:\Users\pleti\AppData\Local\GHISLER
2023-08-07 08:14 - 2023-03-19 23:56 - 000000000 ____D C:\Users\pleti\AppData\Roaming\GHISLER
2023-08-07 01:46 - 2022-12-20 18:22 - 000000000 ____D C:\Users\pleti\AppData\Local\CrashDumps
2023-08-07 01:46 - 2022-12-20 18:20 - 000000000 ____D C:\Users\pleti\AppData\Roaming\uTorrent
2023-08-07 01:45 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2023-08-07 01:44 - 2022-12-21 18:49 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2023-08-07 01:44 - 2022-09-05 23:25 - 000946096 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000705416 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000559216 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000392872 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000319600 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000297872 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000272560 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000237968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000105280 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000096456 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000080456 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000039640 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2023-08-07 01:44 - 2022-09-05 23:25 - 000031408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArDisk.sys
2023-08-07 01:19 - 2022-12-20 18:30 - 000002090 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-08-06 17:06 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-08-06 17:06 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-08-04 02:51 - 2023-03-16 01:24 - 000000000 ____D C:\Users\pleti\Desktop\dx150
2023-08-04 02:40 - 2022-09-01 20:18 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Microsoft\Spelling
2023-08-04 01:23 - 2022-09-01 19:53 - 001693136 _____ C:\Windows\system32\PerfStringBackup.INI
2023-08-04 01:23 - 2019-12-07 16:41 - 000716764 _____ C:\Windows\system32\perfh005.dat
2023-08-04 01:23 - 2019-12-07 16:41 - 000144942 _____ C:\Windows\system32\perfc005.dat
2023-08-04 01:16 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2023-08-04 01:16 - 2019-12-07 16:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\SysWOW64\winrm
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\SysWOW64\WCN
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\SysWOW64\slmgr
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\system32\winrm
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\system32\WCN
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\system32\slmgr
2023-08-04 01:16 - 2019-12-07 16:41 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-08-04 01:16 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2023-08-04 01:16 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2023-08-04 01:16 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-08-04 01:14 - 2022-09-01 20:03 - 000000000 ____D C:\Users\pleti\AppData\Local\PlaceholderTileLogoFolder
2023-08-04 01:14 - 2022-09-01 20:02 - 000000000 ____D C:\Users\pleti\AppData\Local\Packages
2023-08-04 01:14 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\OCR
2023-08-04 01:00 - 2022-09-01 19:57 - 000000000 ____D C:\Users\pleti
2023-08-03 00:21 - 2022-12-20 18:53 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Microsoft\Excel
2023-08-02 23:37 - 2022-12-20 18:32 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Microsoft\Word
2023-08-02 22:40 - 2022-09-02 17:38 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-08-02 22:40 - 2022-09-02 17:38 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-08-02 08:28 - 2022-09-01 20:03 - 000000000 ____D C:\Users\pleti\AppData\Roaming\Microsoft\InputMethod
2023-07-31 23:13 - 2022-12-20 18:27 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2023-07-30 22:43 - 2022-09-03 11:03 - 000000000 ____D C:\Users\pleti\AppData\Local\AMD_Common
2023-07-30 22:37 - 2023-01-16 22:27 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-07-30 22:37 - 2022-09-01 19:47 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-07-25 20:29 - 2022-11-01 00:23 - 000000000 ____D C:\Users\pleti\AppData\Roaming\foobar2000
2023-07-25 16:06 - 2023-04-14 10:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2023-07-25 16:06 - 2023-02-23 22:35 - 000000000 ____D C:\Users\pleti\AppData\Local\LGHUB
2023-07-11 21:26 - 2022-09-01 19:47 - 000306784 _____ C:\Windows\system32\FNTCACHE.DAT
2023-07-11 21:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2023-07-11 21:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-07-11 21:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2023-07-11 21:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2023-07-11 21:26 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-07-11 21:10 - 2022-09-01 19:51 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2023-07-11 20:08 - 2022-09-01 20:05 - 000000000 ____D C:\Windows\system32\MRT
2023-07-11 20:06 - 2022-09-01 20:05 - 173351160 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Files in the root of some directories ========

2023-03-20 00:40 - 2023-03-20 00:40 - 000000036 _____ () C:\Users\pleti\AppData\Local\.__explain_this_is_writeable_not_delete__
2022-09-03 09:47 - 2022-09-03 09:47 - 000007597 _____ () C:\Users\pleti\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Přílohy
Addition.rar
(14.85 KiB) Staženo 33 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#2 Příspěvek od Rudy »

Zravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pla(hta
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 05 úno 2006 11:57
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#3 Příspěvek od Pla(hta »

Dobrý den,

děkuji moc za odpověď. Spustil jsem a program nenalezl žádné hrozby, pak jsem dal "spustit základní ochranu".

Ještě mě napadlo zmínit, že občas se mi hrozně divně roztahují složky a ikony na ploše. Jako že velikost ikon zůstane normální ale mají kolem sebe obrovské okraje, takže ikona s okrajem je třeba 4x až 6x větší než normálně a k tomu se seřadí a ztratí původní umístění. To by ale mohlo být tím, že občas pouštíme obsah z PC i na TV skrz HDMI 2.1.

A zároveň je PC strašně pomalé (téměř úplně nepoužitelné) po startu Windows třeba po dobu cca 5min. Procesor jede jen na pár % a RAM také ale třeba spuštění složky trvá 30 sekund nebo VLC 20 sekund.

Ještě při spuštění tohoto testu mi systém opět "zahrál" nějaký systémový zvuk (něco jako připojení USB).

Přikládám log a předem děkuji za kontrolu



# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2023-07-19.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 08-09-2023
# Duration: 00:00:00
# OS: Windows 10 (Build 19045.3208)
# Cleaned: 0
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1420 octets] - [09/08/2023 18:24:05]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#4 Příspěvek od Rudy »

Jj. Toto je v pořádku. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {1D275300-023F-4E19-B3E8-30D57DCD565F} - System32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
Task: {FDF3D4E8-4110-496B-AC76-01972B0A5805} - System32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
C:\ProgramData\CNEDA4A.tmp
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26}
C:\DumpStack.log.tmp
ContextMenuHandlers1: [BB FlashBack 2] -> {A8065B9E-193F-4797-B62D-8F6321E7FCCB} => -> No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pla(hta
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 05 úno 2006 11:57
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#5 Příspěvek od Pla(hta »

Fix jsem spustil. AVG se ho snažil zablokovat ale povolil jsem ho, takže snad OK.

Ještě se zrovna asi prováděla při restartu i nějaká aktualizace Windows, ale to snad nijak neovlivnilo FIX.

Fix log viz níže. Děkuji za kontrolu



Fix result of Farbar Recovery Scan Tool (x64) Version: 06-08-2023
Ran by pleti (09-08-2023 19:07:50) Run:2
Running from C:\Users\pleti\Desktop
Loaded Profiles: pleti
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {1D275300-023F-4E19-B3E8-30D57DCD565F} - System32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
Task: {FDF3D4E8-4110-496B-AC76-01972B0A5805} - System32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-09-02] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
C:\ProgramData\CNEDA4A.tmp
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B}
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26}
C:\DumpStack.log.tmp
ContextMenuHandlers1: [BB FlashBack 2] -> {A8065B9E-193F-4797-B62D-8F6321E7FCCB} => -> No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Edge => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1D275300-023F-4E19-B3E8-30D57DCD565F}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1D275300-023F-4E19-B3E8-30D57DCD565F}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FDF3D4E8-4110-496B-AC76-01972B0A5805}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FDF3D4E8-4110-496B-AC76-01972B0A5805}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B}" => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer => removed successfully
C:\ProgramData\CNEDA4A.tmp => moved successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{5A15657F-BC1B-4479-84A7-730A83578C5B}" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{C4E67A0A-80FE-453E-8AB1-F36E586DAF26}" => not found
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BB FlashBack 2 => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 94659656 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 7771813 B
Edge => 0 B
Chrome => 423336459 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 147895 B
systemprofile32 => 147895 B
LocalService => 200211 B
NetworkService => 200211 B
pleti => 8183355 B

RecycleBin => 0 B
EmptyTemp: => 511.1 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 09-08-2023 19:11:16)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 19:11:16 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Pla(hta
Návštěvník
Návštěvník
Příspěvky: 52
Registrován: 05 úno 2006 11:57
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#7 Příspěvek od Pla(hta »

Dobrý den,

moc Vám děkuji za kontrolu logu a pomoc s čištěním PC. Po startu Windows už žádné extrémní zpomalení jako předtím není. Sice mi systém stále občas náhodně nějakou dobu po startu Windows přehraje onen zvuk (asi to není zvuk USB zapojení ale nějaký hodně podobný - kouknu se do systémových zvuků a zkusím to zjistit. Jinak ten externí disk mi stále zlobí při kopírování to píše chybu "kopírování souboru brání neočekávaná chyba (chyba 0x80070079 časový limit semaforu vypršel)". Předtím tento externí disk nikdy nezlobil, tak je to zvláštní. Každopádně druhý jiný externí disk mi funguje normálně, tak nevím.

Byl v PC tedy nějaký vir nebo malware? Mám si dát na něco pozor nebo případně změnit hesla?

Ještě jsem se chtěl zeptat, zda nevadí, že se nepodařilo přesunout soubor:
C:\DumpStack.log.tmp => Could not move

Moc děkuji za informaci a přeji Vám hezký den

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - problém s USB a pomalý systém

#8 Příspěvek od Rudy »

Co se týká te chyby kopírování (0x80070079), koukněte sem: https://www-makeuseof-com.translate.goo ... _tr_pto=sc .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět