Računar radi usporeno, disk zapucava na 100%

Računar radi usporeno, disk zapucava na 100%

offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Naime u poslednje vreme primetio sam da mi PC radi poprilično sporo, teško otvara Chrome, programe itd.. Skinuo sam Malwarebytes i obrisao neke viruse koje je našao ali i dalje nisam siguran da mi je kompjuter čist sto posto. Svaki put kad uključim računar disk ode na 100% zauzetosti??
Windows 10 x64 Pro
Intel i5 3470 3.2GHz
8 GB RAM
Integrisana grafa
LC Power 600H-12V
Internet - Telekom 10/1Mbps

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23.08.2018
Ran by Milan (administrator) on DESKTOP-IN1GTFS (31-08-2018 18:10:35)
Running from C:\Users\Milan\Desktop
Loaded Profiles: Milan (Available Profiles: Milan)
Platform: Windows 10 Pro Version 1803 17134.165 (X64) Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-t.....scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.0_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18071.11811.0_x64__8wekyb3d8bbwe\Video.UI.exe
(MyCity) C:\Program Files (x86)\MCShield\MCShieldRTM.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1807.2121.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1004615203-4130574628-2229610655-1001\...\Run: [MCShield Monitor] => C:\Program Files (x86)\MCShield\MCShieldRTM.exe [650816 2014-04-11] (MyCity)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{28da4a31-ad97-47d9-8c90-42ec28abb5a4}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Internet Explorer:
==================
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-17] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default [2018-08-31]
CHR Extension: (Slides) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-17]
CHR Extension: (Flash Video Downloader) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2018-08-29]
CHR Extension: (Docs) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-17]
CHR Extension: (Google Drive) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-17]
CHR Extension: (YouTube) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-17]
CHR Extension: (Sheets) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-17]
CHR Extension: (Google Docs Offline) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-22]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-17]
CHR Extension: (Gmail) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-17]
CHR Extension: (Chrome Media Router) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-05]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328608 2015-07-30] (Intel Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)
S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe [3925648 2018-07-17] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe [100080 2018-07-17] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [604160 2018-04-12] (Realtek )
S3 smbdirect; C:\Windows\System32\DRIVERS\smbdirect.sys [152064 2018-04-12] (Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46592 2018-07-17] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [340008 2018-07-17] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [59944 2018-07-17] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-31 18:10 - 2018-08-31 18:11 - 000009355 _____ C:\Users\Milan\Desktop\FRST.txt
2018-08-31 18:10 - 2018-08-31 18:10 - 000000000 ____D C:\FRST
2018-08-31 18:09 - 2018-08-31 18:09 - 002413056 _____ (Farbar) C:\Users\Milan\Desktop\FRST64.exe
2018-08-31 17:47 - 2018-08-31 17:48 - 016798624 _____ (Piriform Ltd) C:\Users\Milan\Downloads\ccsetup546.exe
2018-08-31 16:27 - 2018-08-31 16:27 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2018-08-31 16:27 - 2018-08-31 16:27 - 000000000 ____D C:\Users\Milan\AppData\Local\CEF
2018-08-31 16:26 - 2018-08-31 16:26 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-08-31 16:24 - 2018-08-31 17:44 - 000000000 ____D C:\ProgramData\AVAST Software
2018-08-31 16:07 - 2018-08-31 16:07 - 000000000 ____D C:\Users\Milan\AppData\Local\mbam
2018-08-31 16:06 - 2018-08-31 16:06 - 000000000 ____D C:\Program Files\Malwarebytes
2018-08-31 16:04 - 2018-08-31 16:06 - 079805216 _____ (Malwarebytes ) C:\Users\Milan\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.441-1.0.6571.exe
2018-08-30 17:16 - 2018-08-31 17:45 - 000000000 ____D C:\ProgramData\MCShield
2018-08-30 17:16 - 2018-08-30 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2018-08-30 17:16 - 2018-08-30 17:16 - 000000000 ____D C:\Program Files (x86)\MCShield
2018-08-30 17:13 - 2018-08-30 17:13 - 002856736 _____ (MyCity) C:\Users\Milan\Downloads\MCShield-Setup.exe
2018-08-29 14:02 - 2018-08-29 14:02 - 000281057 _____ C:\Users\Milan\Downloads\ant_video_downloader_and_player-2.3.0-fx.xpi
2018-08-29 04:40 - 2018-08-29 04:40 - 000000000 ____D C:\Users\Milan\Documents\MEGAsync Downloads
2018-08-29 04:28 - 2018-08-31 17:41 - 000000000 ____D C:\Windows\System32\Tasks\MEGA
2018-08-29 04:28 - 2018-08-29 04:28 - 000000000 ____D C:\Users\Milan\AppData\Local\Mega Limited
2018-08-29 04:26 - 2018-08-29 04:27 - 028794424 _____ (MEGA Limited) C:\Users\Milan\Downloads\MEGAsyncSetup.exe
2018-08-23 14:14 - 2018-08-23 14:14 - 000001996 _____ C:\Windows\system32\cpu.txt
2018-08-13 03:27 - 2018-08-13 03:35 - 000000000 ____D C:\Users\Milan\Documents\GTA San Andreas User Files
2018-08-13 02:55 - 2018-08-13 02:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2018-08-13 02:55 - 2018-08-13 02:55 - 000000000 ____D C:\Program Files\Speccy
2018-08-13 02:54 - 2018-08-13 02:54 - 006889184 _____ (Piriform Ltd) C:\Users\Milan\Downloads\spsetup132.exe
2018-08-13 02:53 - 2018-08-31 12:58 - 000004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{126423C1-273C-406A-9708-79A4E9FF4B71}
2018-08-13 02:50 - 2018-08-13 02:51 - 000000000 ____D C:\Users\Milan\AppData\Local\Adobe
2018-08-13 02:50 - 2018-08-13 02:50 - 001204720 _____ (Adobe Systems Incorporated) C:\Users\Milan\Downloads\flashplayer30pp_fa_install.exe
2018-08-13 02:45 - 2018-08-13 02:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Opera Software
2018-08-13 02:45 - 2018-08-13 02:53 - 000000000 ____D C:\Users\Milan\AppData\Local\Opera Software
2018-08-13 02:44 - 2018-08-13 02:44 - 001576536 _____ (Opera Software) C:\Users\Milan\Downloads\OperaSetup.exe
2018-08-12 18:02 - 2018-08-31 16:11 - 000000000 ____D C:\Users\Milan\AppData\Local\svc10.17134
2018-08-12 18:00 - 2018-08-23 16:15 - 000000010 _____ C:\Windows\system32\90
2018-08-12 17:43 - 2018-08-23 13:17 - 000003102 _____ C:\Windows\System32\Tasks\WinDef Update Service
2018-08-12 17:43 - 2018-08-23 13:17 - 000000000 ____D C:\Users\Milan\AppData\Local\WindowsDefenderTemp
2018-08-11 23:42 - 2018-08-11 23:42 - 000431728 _____ C:\Users\Milan\Downloads\wnetwatcher_setup.exe
2018-08-11 23:42 - 2018-08-11 23:42 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher
2018-08-11 23:42 - 2018-08-11 23:42 - 000000000 ____D C:\Program Files (x86)\NirSoft
2018-08-05 20:16 - 2018-08-11 22:58 - 000000175 _____ C:\Users\Milan\Desktop\New Text Document.txt
2018-08-05 18:44 - 2018-08-30 18:13 - 000000000 ____D C:\Users\Milan\AppData\Roaming\TelekomSerbia
2018-08-05 18:44 - 2018-08-05 22:01 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Verimatrix
2018-08-05 18:44 - 2018-08-05 18:44 - 000000000 ____D C:\ProgramData\Verimatrix
2018-08-05 18:43 - 2018-08-30 18:12 - 000000000 ____D C:\Users\Milan\AppData\Roaming\huawei
2018-08-05 18:43 - 2018-08-05 18:43 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mtsTV GO.lnk
2018-08-05 18:43 - 2018-08-05 18:43 - 000000000 ____D C:\Program Files (x86)\mtsTV GO
2018-08-05 18:42 - 2018-08-05 18:43 - 019550531 _____ ( ) C:\Users\Milan\Downloads\mtsTV_GO_Setup_version_1.23.6.0.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-31 18:00 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-08-31 17:50 - 2018-07-25 01:00 - 000000000 ____D C:\Users\Milan\AppData\Roaming\uTorrent
2018-08-31 17:50 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\LiveKernelReports
2018-08-31 17:48 - 2018-07-17 02:54 - 000003936 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-08-31 17:44 - 2018-07-17 03:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-08-31 17:44 - 2018-07-17 02:41 - 000000000 __SHD C:\Users\Milan\IntelGraphicsProfiles
2018-08-31 17:43 - 2018-04-11 23:04 - 000524288 _____ C:\Windows\system32\config\BBI
2018-08-31 17:36 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2018-08-31 14:36 - 2018-07-17 03:06 - 000000000 ____D C:\Windows\system32\SleepStudy
2018-08-31 01:16 - 2018-04-12 01:36 - 000000000 ____D C:\Windows\INF
2018-08-30 21:56 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\AppReadiness
2018-08-30 19:56 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-08-25 20:33 - 2018-07-25 02:03 - 000000000 ____D C:\Users\Milan\AppData\Local\ElevatedDiagnostics
2018-08-23 16:21 - 2018-07-27 16:23 - 000081896 _____ C:\Windows\system32\dsfgl.ad
2018-08-23 12:49 - 2018-07-25 00:32 - 000000651 _____ C:\Users\Milan\Desktop\VT3.lnk
2018-08-23 12:49 - 2018-07-17 02:25 - 000838560 _____ C:\Windows\system32\PerfStringBackup.INI
2018-08-14 14:52 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\system32\Macromed
2018-08-14 14:51 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-08-13 03:28 - 2018-04-12 01:33 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2018-08-13 03:28 - 2018-04-12 01:30 - 000000000 ____D C:\Windows\CbsTemp
2018-08-12 18:23 - 2018-07-17 02:33 - 000000000 ____D C:\Users\Milan
2018-08-08 22:43 - 2018-07-17 02:41 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-08-08 22:43 - 2018-07-17 02:41 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-08-03 00:21 - 2018-07-19 18:53 - 000001018 _____ C:\Users\Milan\Desktop\PotPlayer 64 bit.lnk
2018-08-03 00:18 - 2018-07-19 18:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\PotPlayerMini64
2018-08-01 21:43 - 2018-07-28 12:49 - 000000000 ____D C:\ProgramData\Packages

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-07-17 03:06

==================== End of FRST.txt ============================
https://www.mycity.rs/must-login.png

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Čisto izgleda. Da li imaš SSD i da li se to dešava samo nakon pokretanja Windowsa ili stalno?

offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Nemam SSD, samo HDD - TOSHIBA MQ01ABD050. Ovo sa diskom se dešava kada uključim računar. Powershell tada najviše zauzima disk.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Da li se disk "smiri" nakog nekog vremena ili je stalno zakucan na 100%?

offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Smiri se nakon nekog vremena, samo iritira kad se uključi, treba mu dosta da dođe u normalu.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Malware nije uzrok već Windows 10 za razliku od 7 i 8.1 malo više drlja p odisku kad se pokrene. Razmisli o kupovini SSDa.




Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 765 korisnika na forumu :: 28 registrovanih, 4 sakrivenih i 733 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: _Rade, anbeast, bankulen, Bubimir, DPera, flash12, gmlale, goxin, havoc995, ILGromovnik, Karla, kjkszpj, Kriglord, kripo, Kubovac, kybonacci, M1los, mikki jons, milenko crazy north, milos.cbr, Mixelotti, novator, r77adder, sabros, slonic_tonic, SR-3m, StepskiVuk, tubular