Računar radi usporeno, disk zapucava na 100%

Računar radi usporeno, disk zapucava na 100%

offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Naime u poslednje vreme primetio sam da mi PC radi poprilično sporo, teško otvara Chrome, programe itd.. Skinuo sam Malwarebytes i obrisao neke viruse koje je našao ali i dalje nisam siguran da mi je kompjuter čist sto posto. Svaki put kad uključim računar disk ode na 100% zauzetosti??
Windows 10 x64 Pro
Intel i5 3470 3.2GHz
8 GB RAM
Integrisana grafa
LC Power 600H-12V
Internet - Telekom 10/1Mbps

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23.08.2018
Ran by Milan (administrator) on DESKTOP-IN1GTFS (31-08-2018 18:10:35)
Running from C:\Users\Milan\Desktop
Loaded Profiles: Milan (Available Profiles: Milan)
Platform: Windows 10 Pro Version 1803 17134.165 (X64) Language: English (United Kingdom)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: [Link mogu videti samo ulogovani korisnici]

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.10314.31700.0_x64__8wekyb3d8bbwe\Office16\OfficeHubTaskHost.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18071.11811.0_x64__8wekyb3d8bbwe\Video.UI.exe
(MyCity) C:\Program Files (x86)\MCShield\MCShieldRTM.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1807.2121.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1004615203-4130574628-2229610655-1001\...\Run: [MCShield Monitor] => C:\Program Files (x86)\MCShield\MCShieldRTM.exe [650816 2014-04-11] (MyCity)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{28da4a31-ad97-47d9-8c90-42ec28abb5a4}: [DhcpNameServer] 192.168.1.1 0.0.0.0

Internet Explorer:
==================
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-01-16] (Microsoft Corporation)

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit PhantomPDF Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit PhantomPDF\plugins\npFoxitPhantomPDFPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-01-10] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-07-17] (Google Inc.)

Chrome:
=======
CHR HomePage: Default -> [Link mogu videti samo ulogovani korisnici]
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Profile: C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default [2018-08-31]
CHR Extension: (Slides) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-17]
CHR Extension: (Flash Video Downloader) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2018-08-29]
CHR Extension: (Docs) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-17]
CHR Extension: (Google Drive) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-17]
CHR Extension: (YouTube) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-17]
CHR Extension: (Sheets) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-17]
CHR Extension: (Google Docs Offline) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-22]
CHR Extension: (Chrome Web Store Payments) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-17]
CHR Extension: (Gmail) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-17]
CHR Extension: (Chrome Media Router) - C:\Users\Milan\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-05]

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [328608 2015-07-30] (Intel Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)
S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe [3925648 2018-07-17] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe [100080 2018-07-17] (Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [604160 2018-04-12] (Realtek )
S3 smbdirect; C:\Windows\System32\DRIVERS\smbdirect.sys [152064 2018-04-12] (Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46592 2018-07-17] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [340008 2018-07-17] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [59944 2018-07-17] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-31 18:10 - 2018-08-31 18:11 - 000009355 _____ C:\Users\Milan\Desktop\FRST.txt
2018-08-31 18:10 - 2018-08-31 18:10 - 000000000 ____D C:\FRST
2018-08-31 18:09 - 2018-08-31 18:09 - 002413056 _____ (Farbar) C:\Users\Milan\Desktop\FRST64.exe
2018-08-31 17:47 - 2018-08-31 17:48 - 016798624 _____ (Piriform Ltd) C:\Users\Milan\Downloads\ccsetup546.exe
2018-08-31 16:27 - 2018-08-31 16:27 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2018-08-31 16:27 - 2018-08-31 16:27 - 000000000 ____D C:\Users\Milan\AppData\Local\CEF
2018-08-31 16:26 - 2018-08-31 16:26 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2018-08-31 16:24 - 2018-08-31 17:44 - 000000000 ____D C:\ProgramData\AVAST Software
2018-08-31 16:07 - 2018-08-31 16:07 - 000000000 ____D C:\Users\Milan\AppData\Local\mbam
2018-08-31 16:06 - 2018-08-31 16:06 - 000000000 ____D C:\Program Files\Malwarebytes
2018-08-31 16:04 - 2018-08-31 16:06 - 079805216 _____ (Malwarebytes ) C:\Users\Milan\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.441-1.0.6571.exe
2018-08-30 17:16 - 2018-08-31 17:45 - 000000000 ____D C:\ProgramData\MCShield
2018-08-30 17:16 - 2018-08-30 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MCShield
2018-08-30 17:16 - 2018-08-30 17:16 - 000000000 ____D C:\Program Files (x86)\MCShield
2018-08-30 17:13 - 2018-08-30 17:13 - 002856736 _____ (MyCity) C:\Users\Milan\Downloads\MCShield-Setup.exe
2018-08-29 14:02 - 2018-08-29 14:02 - 000281057 _____ C:\Users\Milan\Downloads\ant_video_downloader_and_player-2.3.0-fx.xpi
2018-08-29 04:40 - 2018-08-29 04:40 - 000000000 ____D C:\Users\Milan\Documents\MEGAsync Downloads
2018-08-29 04:28 - 2018-08-31 17:41 - 000000000 ____D C:\Windows\System32\Tasks\MEGA
2018-08-29 04:28 - 2018-08-29 04:28 - 000000000 ____D C:\Users\Milan\AppData\Local\Mega Limited
2018-08-29 04:26 - 2018-08-29 04:27 - 028794424 _____ (MEGA Limited) C:\Users\Milan\Downloads\MEGAsyncSetup.exe
2018-08-23 14:14 - 2018-08-23 14:14 - 000001996 _____ C:\Windows\system32\cpu.txt
2018-08-13 03:27 - 2018-08-13 03:35 - 000000000 ____D C:\Users\Milan\Documents\GTA San Andreas User Files
2018-08-13 02:55 - 2018-08-13 02:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2018-08-13 02:55 - 2018-08-13 02:55 - 000000000 ____D C:\Program Files\Speccy
2018-08-13 02:54 - 2018-08-13 02:54 - 006889184 _____ (Piriform Ltd) C:\Users\Milan\Downloads\spsetup132.exe
2018-08-13 02:53 - 2018-08-31 12:58 - 000004168 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{126423C1-273C-406A-9708-79A4E9FF4B71}
2018-08-13 02:50 - 2018-08-13 02:51 - 000000000 ____D C:\Users\Milan\AppData\Local\Adobe
2018-08-13 02:50 - 2018-08-13 02:50 - 001204720 _____ (Adobe Systems Incorporated) C:\Users\Milan\Downloads\flashplayer30pp_fa_install.exe
2018-08-13 02:45 - 2018-08-13 02:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Opera Software
2018-08-13 02:45 - 2018-08-13 02:53 - 000000000 ____D C:\Users\Milan\AppData\Local\Opera Software
2018-08-13 02:44 - 2018-08-13 02:44 - 001576536 _____ (Opera Software) C:\Users\Milan\Downloads\OperaSetup.exe
2018-08-12 18:02 - 2018-08-31 16:11 - 000000000 ____D C:\Users\Milan\AppData\Local\svc10.17134
2018-08-12 18:00 - 2018-08-23 16:15 - 000000010 _____ C:\Windows\system32\90
2018-08-12 17:43 - 2018-08-23 13:17 - 000003102 _____ C:\Windows\System32\Tasks\WinDef Update Service
2018-08-12 17:43 - 2018-08-23 13:17 - 000000000 ____D C:\Users\Milan\AppData\Local\WindowsDefenderTemp
2018-08-11 23:42 - 2018-08-11 23:42 - 000431728 _____ C:\Users\Milan\Downloads\wnetwatcher_setup.exe
2018-08-11 23:42 - 2018-08-11 23:42 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft Wireless Network Watcher
2018-08-11 23:42 - 2018-08-11 23:42 - 000000000 ____D C:\Program Files (x86)\NirSoft
2018-08-05 20:16 - 2018-08-11 22:58 - 000000175 _____ C:\Users\Milan\Desktop\New Text Document.txt
2018-08-05 18:44 - 2018-08-30 18:13 - 000000000 ____D C:\Users\Milan\AppData\Roaming\TelekomSerbia
2018-08-05 18:44 - 2018-08-05 22:01 - 000000000 ____D C:\Users\Milan\AppData\Roaming\Verimatrix
2018-08-05 18:44 - 2018-08-05 18:44 - 000000000 ____D C:\ProgramData\Verimatrix
2018-08-05 18:43 - 2018-08-30 18:12 - 000000000 ____D C:\Users\Milan\AppData\Roaming\huawei
2018-08-05 18:43 - 2018-08-05 18:43 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mtsTV GO.lnk
2018-08-05 18:43 - 2018-08-05 18:43 - 000000000 ____D C:\Program Files (x86)\mtsTV GO
2018-08-05 18:42 - 2018-08-05 18:43 - 019550531 _____ ( ) C:\Users\Milan\Downloads\mtsTV_GO_Setup_version_1.23.6.0.exe

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-08-31 18:00 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-08-31 17:50 - 2018-07-25 01:00 - 000000000 ____D C:\Users\Milan\AppData\Roaming\uTorrent
2018-08-31 17:50 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\LiveKernelReports
2018-08-31 17:48 - 2018-07-17 02:54 - 000003936 _____ C:\Windows\System32\Tasks\CCleaner Update
2018-08-31 17:44 - 2018-07-17 03:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-08-31 17:44 - 2018-07-17 02:41 - 000000000 __SHD C:\Users\Milan\IntelGraphicsProfiles
2018-08-31 17:43 - 2018-04-11 23:04 - 000524288 _____ C:\Windows\system32\config\BBI
2018-08-31 17:36 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2018-08-31 14:36 - 2018-07-17 03:06 - 000000000 ____D C:\Windows\system32\SleepStudy
2018-08-31 01:16 - 2018-04-12 01:36 - 000000000 ____D C:\Windows\INF
2018-08-30 21:56 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\AppReadiness
2018-08-30 19:56 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-08-25 20:33 - 2018-07-25 02:03 - 000000000 ____D C:\Users\Milan\AppData\Local\ElevatedDiagnostics
2018-08-23 16:21 - 2018-07-27 16:23 - 000081896 _____ C:\Windows\system32\dsfgl.ad
2018-08-23 12:49 - 2018-07-25 00:32 - 000000651 _____ C:\Users\Milan\Desktop\VT3.lnk
2018-08-23 12:49 - 2018-07-17 02:25 - 000838560 _____ C:\Windows\system32\PerfStringBackup.INI
2018-08-14 14:52 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\system32\Macromed
2018-08-14 14:51 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-08-13 03:28 - 2018-04-12 01:33 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000390656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplayx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\dpnathlp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnathlp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpwsockx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\dpnsvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000024064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpmodemx.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnsvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dplaysvr.exe
2018-08-13 03:28 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhupnp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\dpnhpast.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhupnp.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000008704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnhpast.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnlobby.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\dpnaddr.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnlobby.dll
2018-08-13 03:28 - 2018-04-12 01:33 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnaddr.dll
2018-08-13 03:28 - 2018-04-12 01:30 - 000000000 ____D C:\Windows\CbsTemp
2018-08-12 18:23 - 2018-07-17 02:33 - 000000000 ____D C:\Users\Milan
2018-08-08 22:43 - 2018-07-17 02:41 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-08-08 22:43 - 2018-07-17 02:41 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-08-03 00:21 - 2018-07-19 18:53 - 000001018 _____ C:\Users\Milan\Desktop\PotPlayer 64 bit.lnk
2018-08-03 00:18 - 2018-07-19 18:53 - 000000000 ____D C:\Users\Milan\AppData\Roaming\PotPlayerMini64
2018-08-01 21:43 - 2018-07-28 12:49 - 000000000 ____D C:\ProgramData\Packages

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-07-17 03:06

==================== End of FRST.txt ============================
[Link mogu videti samo ulogovani korisnici]



offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Čisto izgleda. Da li imaš SSD i da li se to dešava samo nakon pokretanja Windowsa ili stalno?



offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Nemam SSD, samo HDD - TOSHIBA MQ01ABD050. Ovo sa diskom se dešava kada uključim računar. Powershell tada najviše zauzima disk.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Da li se disk "smiri" nakog nekog vremena ili je stalno zakucan na 100%?

offline
  • Pridružio: 21 Feb 2011
  • Poruke: 385

Smiri se nakon nekog vremena, samo iritira kad se uključi, treba mu dosta da dođe u normalu.

offline
  • Pridružio: 26 Avg 2010
  • Poruke: 10622
  • Gde živiš: Hypnos Control Room, Tokyo Metropolitan Government Building

Malware nije uzrok već Windows 10 za razliku od 7 i 8.1 malo više drlja p odisku kad se pokrene. Razmisli o kupovini SSDa.




Sledeća procedura će implementirati završno čišćenje.

Arrow Preuzmi "Xplode"-ov DelFix alat i snimi ga na Desktop.
Dvoklikom pokreni alat i štikliraj kućice ispred sledećih opcija;

Remove disinfection tools
Create registry backup
Purge System Restore


Klikni na dugme Run i pričekaj trenutak dok alat ne završi svoj rad.
Od ovog trenutka, svi korišćeni alati u ovoj temi bi trebali biti obrisani.
Alat će takođe formirati izveštaj za tebe. (C:\DelFix.txt)

Alat će snimiti i zdravo stanje registy-ja i napraviti backup koristeci integrisan program "ERUNT" u %windir%\ERUNT\DelFix
Alat briše stare system restore tačke i pravi novu, svežu tačku nakon čišćenja.

Ko je trenutno na forumu
 

Ukupno su 992 korisnika na forumu :: 81 registrovanih, 6 sakrivenih i 905 gosta   ::   [ Administrator ] [ Supermoderator ] [ Moderator ] :: Detaljnije

Najviše korisnika na forumu ikad bilo je 3466 - dana 01 Jun 2021 17:07

Korisnici koji su trenutno na forumu:
Korisnici trenutno na forumu: 6aurora9, acov34, Aleksa-, Apok, B61, babaroga, bavar357, bbogdan, Ben Roj, blatruc82, bojan581, bojanstros9, bolimejoli, Buzdovan, BWG, casual03, Cigi, Cili, crazydkure, Dare, darkkran, Darko Jovanovic, Desmond, djboj, Djole3621, draganca, dukajov, galico, Grilzz, Hardenberg, ikan, Ir, ivan_8282, Jovan1983, kendzo-andzo-boni-fju, kutija11, ljuba.b, Magistar78, markolopin, markoni.slo, Marky, MGBRBG, mikidragi, mikrimaus, milan.tatanac1, mile33, milutin134, Mineral, mitja2512, mkukoleca, mrav pesadinac, nikoladim, Nobunaga, Orc, panzerwaffe, Paraglajder, Peruta, Pinchroller, PlayerOne, PMsnow, raf87, raso76, S2M, samo opusteno, SamostalniReferent, Sava89, Sir Budimir, Smajser, sspp, stokssone, tachinni, Toper, tvlada, ujke, vaci, Vlada1389, vladulns, vukajlo71, yiyi, Zvone, ZZZ