Премини към съдържанието

Препоръчан отговор


Здравейте, проблемът е следния: Windows зарежда много бавно, а след като зареди почти не може да се стартира никоя програма и го пускам под Safe Mode,но сега успях поне да изтегля програмата. И друг път съм се обръщала към Вас и съм се разминавала с преинсталирането. Благодаря Ви предварително! :) Редактирах поста, тъй като излезе и другия файл.

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-10-2015
Ran by 123 (administrator) on 123-PC (07-10-2015 23:00:47)
Running from C:\Users\123\Desktop
Loaded Profiles: 123 (Available Profiles: 123)
Platform: Microsoft Windows 7 Ultimate  (X86) Language: English (United States)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
() C:\Program Files\ASUS\ControlDeck\ControlDeckStartUp.exe
(Pandora.TV) C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
() C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ASUS) C:\Program Files\ASUS\ATK Media\DMedia.exe
(AlcorMicro Co., Ltd.) C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Ask) C:\Program Files\Ask.com\Updater\Updater.exe
(Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AMD) C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_19_0_0_185.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [641704 2012-07-04] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AMD AVT] => C:\Program Files\AMD AVT\bin\kdbsync.exe [20992 2012-03-19] ()
HKLM\...\Run: [ATKMEDIA] => C:\Program Files\ASUS\ATK Media\DMedia.exe [159744 2009-04-20] (ASUS)
HKLM\...\Run: [AmIcoSinglun] => C:\Program Files\AmIcoSingLun\AmIcoSinglun.exe [237568 2009-04-09] (AlcorMicro Co., Ltd.)
HKLM\...\Run: [avgnt] => C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-29] (Avira Operations GmbH & Co. KG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [919008 2012-07-27] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [91520 2010-03-13] (Microsoft Corporation)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask)
HKLM\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [337432 2013-10-23] (Power Software Ltd)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472984 2013-06-03] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeCEPServiceManager] => C:\Program Files\Common Files\Adobe\CEPServiceManager4\CEPServiceManager.exe [1039248 2013-03-13] (Adobe Systems Incorporated)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [271744 2014-09-26] (Oracle Corporation)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\DTLite.exe [3671872 2012-04-17] (DT Soft Ltd)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\Run: [OfficeSyncProcess] => C:\Program Files\Microsoft Office\Office14\MSOSYNC.EXE [718720 2010-12-21] (Microsoft Corporation)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\Run: [Facebook Update] => C:\Users\123\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2012-12-01] (Facebook Inc.)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [55357464 2015-09-04] (Skype Technologies S.A.)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\Run: [HydraVisionDesktopManager] => C:\Program Files\ATI Technologies\HydraVision\HydraDM.exe [393216 2012-07-04] (AMD)
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\...\MountPoints2: {cae2cddc-470b-11e4-9923-00235458b9ca} - C:\Windows\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL I:\Common_Handset_USB_Driver.exe
Startup: C:\Users\123\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Screen Clipper and Launcher.lnk [2012-10-10]
ShortcutTarget: OneNote 2010 Screen Clipper and Launcher.lnk -> C:\Program Files\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-1704683370-1436480126-2971112288-1000] => http=;ftp=;https=;
AutoConfigURL: [S-1-5-21-1704683370-1436480126-2971112288-1000] => http=;ftp=;https=;
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5EE6AC5E-F55B-4FC2-B382-0BC8B9F9C53F}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{F6B90CFE-3A1F-4545-B2BE-59E62EE6CAD7}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://eu.ask.com/?l=dis&o=102876&gct=hp
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
URLSearchHook: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
SearchScopes: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 -> {4DF442D8-D339-454A-8CF2-31AA13D3CDB8} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=HIP&o=102876&src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=^6G&apn_dtid=^YYYYYY^YY^BG&apn_uid=3df550cf-08ef-43f0-934b-2854b1e5bed2&apn_sauid=24DBD69F-4FF8-432B-A9C9-0A30CDB53F24
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-07-27] (Adobe Systems Incorporated)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2011-02-12] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-12-17] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-12-21] (Microsoft Corporation)
BHO: Ask Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-12-17] (Oracle Corporation)
Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
Toolbar: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 -> Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab

FireFox:
========
FF ProfilePath: C:\Users\123\AppData\Roaming\Mozilla\Firefox\Profiles\8jphjhpx.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_19_0_0_185.dll [2015-09-21] ()
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-12-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-12-17] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2012-07-27] (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-07-27] (Adobe Systems)
FF Plugin HKU\S-1-5-21-1704683370-1436480126-2971112288-1000: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\123\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited)

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-08-29] (Avira Operations GmbH & Co. KG) [File not signed]
S2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-29] (Avira Operations GmbH & Co. KG) [File not signed]
S2 KMService; C:\Windows\system32\srvany.exe [8192 2012-10-10] () [File not signed]
S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625816 2012-06-22] (Pandora.TV)
R2 spmgr; C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe [125496 2007-08-03] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2009-07-14] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [88840 2013-09-05] () [File not signed]
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [136672 2013-08-29] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-21] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [242240 2012-10-09] (DT Soft Ltd)
R2 ghaio; C:\Program Files\ASUS\NB Probe\SPM\ghaio.sys [20936 2007-08-03] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-06-18] (Malwarebytes Corporation)
R1 SCDEmu; C:\Windows\system32\Drivers\SCDEmu.sys [114376 2013-10-23] (Power Software Ltd)
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
S3 cleanhlp; \??\C:\EEK\Run\cleanhlp32.sys [X]
S3 IntcAzAudAddService; system32\drivers\RTKVHDA.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-07 23:00 - 2015-10-07 23:01 - 00011927 _____ C:\Users\123\Desktop\FRST.txt
2015-10-07 21:45 - 2015-10-07 21:45 - 00021891 _____ C:\Users\123\Downloads\Addition.txt
2015-10-07 21:44 - 2015-10-07 23:00 - 00000000 ____D C:\FRST
2015-10-07 21:44 - 2015-10-07 22:11 - 00016040 _____ C:\Users\123\Downloads\FRST.txt
2015-10-07 21:44 - 2015-10-07 21:44 - 01697792 _____ (Farbar) C:\Users\123\Desktop\FRST.exe
2015-10-04 13:18 - 2015-10-04 17:19 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-09-23 22:16 - 2015-09-23 22:16 - 00000000 ____D C:\Users\123\.ViberPC
2015-09-23 22:16 - 2015-09-23 22:16 - 00000000 ____D C:\Users\123\.QtWebEngineProcess
2015-09-23 22:15 - 2015-09-23 22:16 - 00000000 ____D C:\Users\123\AppData\Local\Viber

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-10-07 22:58 - 2012-10-07 21:26 - 00778150 _____ C:\Windows\system32\PerfStringBackup.INI
2015-10-07 22:56 - 2012-10-07 21:14 - 01953760 _____ C:\Windows\WindowsUpdate.log
2015-10-07 22:50 - 2009-07-14 07:53 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-10-07 22:48 - 2009-07-14 07:39 - 00229069 _____ C:\Windows\setupact.log
2015-10-07 22:47 - 2012-10-08 18:36 - 00000000 ____D C:\Users\123\AppData\Roaming\uTorrent
2015-10-07 22:01 - 2014-01-19 18:19 - 00098520 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamswissarmy.sys
2015-10-07 22:00 - 2014-06-17 14:22 - 00001064 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-10-07 22:00 - 2014-06-17 14:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-10-07 22:00 - 2014-06-17 14:22 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2015-10-07 18:39 - 2012-10-08 19:16 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-10-07 17:11 - 2012-10-08 21:39 - 00000000 ____D C:\Users\123\AppData\Roaming\Skype
2015-10-07 16:27 - 2012-12-01 17:22 - 00000920 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1704683370-1436480126-2971112288-1000UA.job
2015-10-07 16:27 - 2012-12-01 17:22 - 00000898 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1704683370-1436480126-2971112288-1000Core.job
2015-10-06 21:32 - 2012-12-10 00:15 - 00000000 ____D C:\Users\123\AppData\LocalLow\AskToolbar
2015-10-04 17:19 - 2014-06-06 17:03 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-10-04 17:19 - 2012-10-07 23:39 - 00117644 _____ C:\Windows\PFRO.log
2015-09-30 21:04 - 2009-07-14 07:53 - 00032592 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-09-27 09:25 - 2012-10-08 21:39 - 00000000 ____D C:\ProgramData\Skype
2015-09-23 22:16 - 2014-07-12 18:42 - 00000000 ____D C:\Users\123\AppData\Roaming\ViberPC
2015-09-23 22:16 - 2012-10-07 21:21 - 00000000 ____D C:\Users\123
2015-09-21 23:39 - 2012-10-08 19:16 - 00780488 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2015-09-21 23:39 - 2012-10-08 19:16 - 00142536 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2012-11-18 21:48 - 2012-11-18 21:48 - 0377470 _____ () C:\Users\123\AppData\Roaming\advbg.ico
2012-11-18 21:48 - 2012-11-18 21:48 - 0000103 _____ () C:\Users\123\AppData\Roaming\Още Игри на Български.URL

Some files in TEMP:
====================
C:\Users\123\AppData\Local\Temp\AdobeApplicationManager.exe
C:\Users\123\AppData\Local\Temp\jre-6u35-windows-i586-iftw.exe
C:\Users\123\AppData\Local\Temp\jre-7u71-windows-i586-iftw.exe
C:\Users\123\AppData\Local\Temp\KMP_3.8.0.123.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.0.126.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.129.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.130.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.131.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.132.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.133.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.134.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.135.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.136.exe
C:\Users\123\AppData\Local\Temp\KMP_3.9.1.138.exe
C:\Users\123\AppData\Local\Temp\KMP_4.0.0.0.exe
C:\Users\123\AppData\Local\Temp\nsj1AD5.tmp.exe
C:\Users\123\AppData\Local\Temp\ose00000.exe
C:\Users\123\AppData\Local\Temp\PIPInstaller_PTV_.exe
C:\Users\123\AppData\Local\Temp\safeguard.exe
C:\Users\123\AppData\Local\Temp\setup.exe
C:\Users\123\AppData\Local\Temp\SkypeSetup.exe
C:\Users\123\AppData\Local\Temp\utt91EC.tmp.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll
[2009-07-14 02:24] - [2012-11-07 17:46] - 0811520 ____A (Microsoft Corporation) 8626F0C30D4E3564FFDD25C90F4426F1

C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-09-26 22:24

==================== End of FRST.txt ============================

Addition.txt

Редактирано от psihologiq (преглед на промените)
  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте,

Проблема при вас не се дължи на зловреден софтуер. Имате няколко потенциално нежелани програми, които ще премахнем, но като гледам типа на грешките, май самата Операционна Система ви е омазана или хардуерен проблем. Подозирам заминаващ хард диск, защото обикновено проблеми при I/O операциите са именно при грешки в твърдия диск и това би обяснило бавното зареждане на системата и проблемите ви като цяло. Ако се окаже там проблема трябва да направите бекъп на важните си документи на външен носител и да закупите нов диск и да преинсталирате наново. Има и вариант с клониране на диска за да спестите преинсталацията като вземете новия диск, но при вас не се препоръчва, защото заради заминаващия диск, регистрите ви са яко омазани...

Error: (10/07/2015 11:00:34 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1542) (User: NT AUTHORITY)
Description: Windows cannot load classes registry file.
 DETAIL - An I/O operation initiated by the registry failed unrecoverably. The registry could not read in, or write out, or flush, one of the files that contain the system's image of the registry.

Error: (10/07/2015 11:00:33 PM) (Source: Disk) (EventID: 7) (User: )
Description: The device, \Device\Harddisk0\DR0, has a bad block.

СТЪПКА 1

Засега деинсталирайте следните програми по следния начин:

Ask Toolbar
Ask Toolbar Updater
Mozilla Maintenance Service
Pandora Service

Изтеглете програмата GeekUninstaller и я запазете на десктопа.

Разархивирайте я и стартирайте файла geek.exe IxXO5oO.jpg
От списъка намерете Ask Toolbar (примера е за Mozilla Firefox, но това е просто за показно).

Кликнете с десен бутон върху програмата и изберете Uninstall
 
XhV2QLa.png

След края на инсталацията ще се отвори прозорец подканващ ви да премахнете всички остатъци от програмата (ако има такива, ако няма този прозорец няма да се появи):

Пример за Mozilla браузъра:

geekuninstaller-3.png

Натиснете бутона Finish за да изтриете останките от програмата.

Повторете стъпките за програмите:

Ask Toolbar Updater
Mozilla Maintenance Service
Pandora Service

 

СТЪПКА 2

Също така направете и следното:

 

Изтеглете edit-text.giffixlist.txt и го запазете в папката от която стартирахте FRST.exe.
Стартирайте FRST.exe и натиснете бутона Fix веднъж!
След като приключи, ако ви поиска рестарт - съгласете се. След рестарта публикувайте лог файла - fixlog.txt, който ще се създаде след работата на програмата.
 
Внимание: Скрипта е създаден за текущата система. Да не се ползва за други системи с подобни проблеми!

 

СТЪПКА 3

 

Проверете дяла и за грешки и лоши сектори и да поправим някои от проблемите с файловата система.

В полето за търсене CMD => кликнете върху файла CMD.exe и изберете Run as administrator => въведете командата: chkdsk c: /x /f /r => натиснете Enter

Съгласете се с Y на диалоговия прозорец. Рестартирайте компютъра и би трябвало проверката да започне.След това вижте какви са били резултатите.

Рапорта от проверката ще намерите тук: В полето за търсене въведете eventvwr.msc => Аpplications => събитие WinInit Event ID 1001. Kопирайте рапорта в следващия си пост.

Ето как да намерите лог файла.

Ако с командата ви е трудно просто отворете My Computer => кликнете с десен бутон на дял C:\ и изберете Properties => отидете на Tools => Check Now... => сложете двете отметки и натиснете бутона Start. Рестартирайте системата и изчакайте проверката да приключи (може да мине над час). След това проверете отново и публикувайте лог файла от последната дата.

 

СТЪПКА 4

 

В полето за търсене на Windows въведете CMD => кликнете с десен бутон върху CMD.exe и изберете Run as administrator.

След това с копи/пейст изпълнете една по една командите и след всяка натиснете Enter

sfc /scannow

findstr /c:"[SR]" %windir%\Logs\CBS\CBS.log >"%userprofile%\Desktop\sfcdetails.txt"

Сега трябва да се появи sfcdetails.txt на десктопа. Прикачете файла, който ще се появи на десктопа - sfcdetails.txt в следващия си коментар и пишете дали има промяна.

 

СТЪПКА 5

 

Изтеглете и стартирайте файла SFCFix.exe.с десен клик на мишката => Run as administraror.

Следвайте инструкциите, които ще се появят подканващи ви да натиснете произволен клавиш от клавиатурата.

Ако ви поиска инсталационния диск на места, го поставете в оптичното устройство преди да натиснете ОК.

Публикувайте лог файла, който ще се появи.

 

Това е засега. :)

Поздрави!

  • Харесва ми 5

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Благодаря за бързия отговор. Направих стъпка едно и ето резултата и от втората част. Продължавам нататък :)

Fix result of Farbar Recovery Scan Tool (x86) Version:07-10-2015
Ran by 123 (2015-10-08 10:29:16) Run:1
Running from C:\Users\123\Desktop
Loaded Profiles: 123 (Available Profiles: 123)
Boot Mode: Normal

==============================================

fixlist content:
*****************
start
CreateRestorePoint:
CloseProcesses:
HKLM\...\Run: [] => [X]
HKLM\...\Run: [ApnUpdater] => C:\Program Files\Ask.com\Updater\Updater.exe [1648264 2013-04-25] (Ask)
C:\Program Files\Ask.com
ProxyServer: [S-1-5-21-1704683370-1436480126-2971112288-1000] => http=;ftp=;https=;
AutoConfigURL: [S-1-5-21-1704683370-1436480126-2971112288-1000] => http=;ftp=;https=;
RemoveProxy:
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://eu.ask.com/?l=dis&o=102876&gct=hp
URLSearchHook: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 - UrlSearchHook Class - {00000000-6E41-4FD3-8538-502F5495E5FC} - C:\Program Files\Ask.com\GenericAskToolbar.dll (Ask)
SearchScopes: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 -> {4DF442D8-D339-454A-8CF2-31AA13D3CDB8} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=HIP&o=102876&src=crm&q={searchTerms}&locale=en_EU&apn_ptnrs=^6G&apn_dtid=^YYYYYY^YY^BG&apn_uid=3df550cf-08ef-43f0-934b-2854b1e5bed2&apn_sauid=24DBD69F-4FF8-432B-A9C9-0A30CDB53F24
BHO: Ask Toolbar -> {D4027C7F-154A-4066-A1AD-4243D8127440} -> C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
Toolbar: HKLM - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
Toolbar: HKU\S-1-5-21-1704683370-1436480126-2971112288-1000 -> Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll [2013-04-25] (Ask)
R2 PanService; C:\Program Files\PANDORA.TV\PanService\PandoraService.exe [625816 2012-06-22] (Pandora.TV)
C:\Program Files\PANDORA.TV
S3 cleanhlp; \??\C:\EEK\Run\cleanhlp32.sys [X]
2015-10-06 21:32 - 2012-12-10 00:15 - 00000000 ____D C:\Users\123\AppData\LocalLow\AskToolbar
Task: {1B795790-F2A9-47A8-B860-8C48F793F795} - System32\Tasks\{356B24CF-B36D-4D06-9D90-7DD5BA621999} => Firefox.exe http://ui.skype.com/ui/0/5.10.0.116/bg/abandoninstall?source=lightinstaller&page=tsInstall
Task: {3C4EA78B-82EB-4A35-90D7-C54D6E667A88} - System32\Tasks\{B989266C-4CE3-45D0-A657-B4B3DA7CD659} => Firefox.exe http://ui.skype.com/ui/0/6.22.0.107/bg/abandoninstall?page=tsProgressBar
Task: {59AC13D1-1951-4BD4-B45B-0E4D222FF73A} - System32\Tasks\{895F31EF-718D-40C3-A323-30DE50EFA22E} => Firefox.exe http://ui.skype.com/ui/0/6.22.0.107/bg/abandoninstall?page=tsPlugin
Task: {83A2FC61-5913-4803-9F7E-43ED7CA15FD5} - System32\Tasks\{2EA0E246-6501-4B23-A9D8-20D2ABC74671} => Firefox.exe http://ui.skype.com/ui/0/6.18.0.106/bg/abandoninstall?source=lightinstaller&page=tsPlugin
Task: {9982F1A9-8DD5-48E8-89EA-41FD35342181} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files\Ask.com\UpdateTask.exe [2013-04-25] () <==== ATTENTION
Task: {CC1FAD37-1B6F-4F21-B66B-23109082B550} - System32\Tasks\{7B911E52-E3C8-4766-A7D2-8A9824EDEBAA} => Firefox.exe http://ui.skype.com/ui/0/6.3.0.107/bg/abandoninstall?page=tsProgressBar
Task: {F9A90B63-16C6-416C-BE97-600C19255C37} - System32\Tasks\{325B2BF6-C2D1-4FCA-AEEB-2CE8EB678385} => Firefox.exe http://ui.skype.com/ui/0/6.22.0.107/bg/abandoninstall?page=tsMain
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys => ""="Driver"
FirewallRules: [{056CC987-24C4-449D-829B-3C5C585F87F9}] => (Allow) C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
FirewallRules: [{211B4998-A571-4449-AAA1-5E1D2DAE9599}] => (Allow) C:\Program Files\PANDORA.TV\PanService\PandoraService.exe
cmd: bitsadmin /reset /allusers
cmd: netsh winsock reset catalog
cmd: ipconfig /flushdns
Hosts:
EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ => value not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\ApnUpdater => value not found.
"C:\Program Files\Ask.com" => File/Folder not found.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\AutoConfigURL => value not found.

========= RemoveProxy: =========

HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => value removed successfully.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\DefaultConnectionSettings => value removed successfully.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\\SavedLegacySettings => value removed successfully.


========= End of RemoveProxy: =========

HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\URLSearchHooks\\{00000000-6E41-4FD3-8538-502F5495E5FC} => value not found.
"HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4DF442D8-D339-454A-8CF2-31AA13D3CDB8}" => key removed successfully.
HKCR\CLSID\{4DF442D8-D339-454A-8CF2-31AA13D3CDB8} => key not found.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value not found.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found.
HKU\S-1-5-21-1704683370-1436480126-2971112288-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{D4027C7F-154A-4066-A1AD-4243D8127440} => value removed successfully.
HKCR\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440} => key not found.
PanService => service not found.
"C:\Program Files\PANDORA.TV" => File/Folder not found.
cleanhlp => service removed successfully.
"C:\Users\123\AppData\LocalLow\AskToolbar" => File/Folder not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B795790-F2A9-47A8-B860-8C48F793F795}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B795790-F2A9-47A8-B860-8C48F793F795}" => key removed successfully.
C:\Windows\System32\Tasks\{356B24CF-B36D-4D06-9D90-7DD5BA621999} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{356B24CF-B36D-4D06-9D90-7DD5BA621999}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3C4EA78B-82EB-4A35-90D7-C54D6E667A88}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C4EA78B-82EB-4A35-90D7-C54D6E667A88}" => key removed successfully.
C:\Windows\System32\Tasks\{B989266C-4CE3-45D0-A657-B4B3DA7CD659} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{B989266C-4CE3-45D0-A657-B4B3DA7CD659}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{59AC13D1-1951-4BD4-B45B-0E4D222FF73A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59AC13D1-1951-4BD4-B45B-0E4D222FF73A}" => key removed successfully.
C:\Windows\System32\Tasks\{895F31EF-718D-40C3-A323-30DE50EFA22E} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{895F31EF-718D-40C3-A323-30DE50EFA22E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{83A2FC61-5913-4803-9F7E-43ED7CA15FD5}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{83A2FC61-5913-4803-9F7E-43ED7CA15FD5}" => key removed successfully.
C:\Windows\System32\Tasks\{2EA0E246-6501-4B23-A9D8-20D2ABC74671} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2EA0E246-6501-4B23-A9D8-20D2ABC74671}" => key removed successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9982F1A9-8DD5-48E8-89EA-41FD35342181} => key not found.
C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Scheduled Update for Ask Toolbar => key not found.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CC1FAD37-1B6F-4F21-B66B-23109082B550}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC1FAD37-1B6F-4F21-B66B-23109082B550}" => key removed successfully.
C:\Windows\System32\Tasks\{7B911E52-E3C8-4766-A7D2-8A9824EDEBAA} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{7B911E52-E3C8-4766-A7D2-8A9824EDEBAA}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F9A90B63-16C6-416C-BE97-600C19255C37}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F9A90B63-16C6-416C-BE97-600C19255C37}" => key removed successfully.
C:\Windows\System32\Tasks\{325B2BF6-C2D1-4FCA-AEEB-2CE8EB678385} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{325B2BF6-C2D1-4FCA-AEEB-2CE8EB678385}" => key removed successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp" => key removed successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\CleanHlp.sys" => key removed successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\CleanHlp" => key removed successfully.
"HKLM\System\CurrentControlSet\Control\SafeBoot\Network\CleanHlp.sys" => key removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{056CC987-24C4-449D-829B-3C5C585F87F9} => value removed successfully.
HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{211B4998-A571-4449-AAA1-5E1D2DAE9599} => value removed successfully.

=========  bitsadmin /reset /allusers =========


BITSADMIN version 3.0 [ 7.5.7600 ]
BITS administration utility.
(C) Copyright 2000-2006 Microsoft Corp.

BITSAdmin is deprecated and is not guaranteed to be available in future versions of Windows.
Administrative tools for the BITS service are now provided by BITS PowerShell cmdlets.

0 out of 0 jobs canceled.

========= End of CMD: =========


=========  netsh winsock reset catalog =========


Sucessfully reset the Winsock Catalog.
You must restart the computer in order to complete the reset.


========= End of CMD: =========


=========  ipconfig /flushdns =========


Windows IP Configuration

Successfully flushed the DNS Resolver Cache.

========= End of CMD: =========

C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
EmptyTemp: => 2.4 GB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 10:34:30 ====

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Имах проблем одеве с трета стъпка, но по втория начин, който сте описали тръгна :) 

Редактирано от psihologiq (преглед на промените)
  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Log Name:      Application
Source:        Microsoft-Windows-Wininit
Date:          8.10.2015 г. 13:02:42 ч.
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      123-PC
Description:


Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.                         

CHKDSK is verifying files (stage 1 of 5)...
  164608 file records processed.                                         

File verification completed.
  116 large file records processed.                                   

  0 bad file records processed.                                     

  2 EA records processed.                                           

  60 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  200696 index entries processed.                                        

Index verification completed.
  0 unindexed files scanned.                                        

  0 unindexed files recovered.                                      

CHKDSK is verifying security descriptors (stage 3 of 5)...
  164608 file SDs/SIDs processed.                                        

Cleaning up 486 unused index entries from index $SII of file 0x9.
Cleaning up 486 unused index entries from index $SDH of file 0x9.
Cleaning up 486 unused security descriptors.
Security descriptor verification completed.
  18045 data files processed.                                           

CHKDSK is verifying Usn Journal...
  35747704 USN bytes processed.                                            

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
Read failure with status 0xc000009c at offset 0x5bf274000 for 0x10000 bytes.
Read failure with status 0xc000009c at offset 0x5bf277000 for 0x1000 bytes.
Windows replaced bad clusters in file 11183
of name \Users\123\AppData\Local\MICROS~1\Windows\UsrClass.dat.
  164592 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24652754 free clusters processed.                                        

Free space verification is complete.
Adding 1 bad clusters to the Bad Clusters File.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
Correcting errors in the Volume Bitmap.
Windows has made corrections to the file system.

 146520800 KB total disk space.
  47582352 KB in 95092 files.
     56304 KB in 18046 indexes.
         4 KB in bad sectors.
    271124 KB in use by the system.
     65536 KB occupied by the log file.
  98611016 KB available on disk.

      4096 bytes in each allocation unit.
  36630200 total allocation units on disk.
  24652754 allocation units available on disk.

Internal Info:
00 83 02 00 fd b9 01 00 b0 11 03 00 00 00 00 00  ................
d9 02 00 00 3c 00 00 00 00 00 00 00 00 00 00 00  ....<...........
f8 8c 37 00 50 01 36 00 20 1a 36 00 00 00 36 00  ..7.P.6. .6...6.

Windows has finished checking your disk.
Please wait while your computer restarts.

Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-Wininit" Guid="{206f6dea-d3c5-4d10-bc72-989f03c8b84b}" EventSourceName="Wininit" />
    <EventID Qualifiers="16384">1001</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-10-08T10:02:42.000000000Z" />
    <EventRecordID>154954</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>123-PC</Computer>
    <Security />
  </System>
  <EventData>
    <Data>

Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.                         

CHKDSK is verifying files (stage 1 of 5)...
  164608 file records processed.                                         

File verification completed.
  116 large file records processed.                                   

  0 bad file records processed.                                     

  2 EA records processed.                                           

  60 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  200696 index entries processed.                                        

Index verification completed.
  0 unindexed files scanned.                                        

  0 unindexed files recovered.                                      

CHKDSK is verifying security descriptors (stage 3 of 5)...
  164608 file SDs/SIDs processed.                                        

Cleaning up 486 unused index entries from index $SII of file 0x9.
Cleaning up 486 unused index entries from index $SDH of file 0x9.
Cleaning up 486 unused security descriptors.
Security descriptor verification completed.
  18045 data files processed.                                           

CHKDSK is verifying Usn Journal...
  35747704 USN bytes processed.                                            

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
Read failure with status 0xc000009c at offset 0x5bf274000 for 0x10000 bytes.
Read failure with status 0xc000009c at offset 0x5bf277000 for 0x1000 bytes.
Windows replaced bad clusters in file 11183
of name \Users\123\AppData\Local\MICROS~1\Windows\UsrClass.dat.
  164592 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24652754 free clusters processed.                                        

Free space verification is complete.
Adding 1 bad clusters to the Bad Clusters File.
CHKDSK discovered free space marked as allocated in the
master file table (MFT) bitmap.
Correcting errors in the Volume Bitmap.
Windows has made corrections to the file system.

 146520800 KB total disk space.
  47582352 KB in 95092 files.
     56304 KB in 18046 indexes.
         4 KB in bad sectors.
    271124 KB in use by the system.
     65536 KB occupied by the log file.
  98611016 KB available on disk.

      4096 bytes in each allocation unit.
  36630200 total allocation units on disk.
  24652754 allocation units available on disk.

Internal Info:
00 83 02 00 fd b9 01 00 b0 11 03 00 00 00 00 00  ................
d9 02 00 00 3c 00 00 00 00 00 00 00 00 00 00 00  ....&lt;...........
f8 8c 37 00 50 01 36 00 20 1a 36 00 00 00 36 00  ..7.P.6. .6...6.

Windows has finished checking your disk.
Please wait while your computer restarts.
</Data>
  </EventData>
</Event>

sfcdetails.txt

Определено има промяна и сега си зарежда нормално :) Само искам да ви попитам, тъй като нямам инсталационен диск да следвам ли и пета стъпка? Благодаря Ви много :)


  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Да моля, направете и стъпка 5. :)

А иначе промяната ще е временна, защото има лоши сектори по хард диска и рано или късно ще се наложи замяна с нов. Никой не може обаче да каже колко му остава...може след седмица да се срине, може да изкара и няколко години така и затова си направете бекъп на важните неща за всеки случай и като съберете парички и решите можете да извършите подмяната. Добра идея е да стартирате CHKDSK и за дял F:\ (другия ви дял) и след това още веднъж да направите проверката за дял C:\ и след това публикувайте резултатите. :)

 

Поздрави!

  • Харесва ми 2

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Значи ще започвам със събирането на паричките :) 

Ето лога и от стъпка 5

SFCFix version 2.4.5.0 by niemiro.
Start time: 2015-10-08 14:33:21.698
Microsoft Windows 7  - x86
Not using a script file.

 


AutoAnalysis::
SUMMARY: No corruptions were detected.
AutoAnalysis:: directive completed successfully.

 


Successfully processed all directives.
SFCFix version 2.4.5.0 by niemiro has completed.
Currently storing 0 datablocks.
Finish time: 2015-10-08 14:34:10.639
----------------------EOF-----------------------

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Log Name:      Application
Source:        Chkdsk
Date:          8.10.2015 г. 15:19:41 ч.
Event ID:      26214
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      123-PC
Description:
Chkdsk was executed in read/write mode.  

Checking file system on F:
Volume dismounted.  All opened handles to this volume are now invalid.

CHKDSK is verifying files (stage 1 of 5)...
  8192 file records processed.                                         

File verification completed.
  0 large file records processed.                                   

  0 bad file records processed.                                     

  0 EA records processed.                                           

  0 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  8268 index entries processed.                                        

Index verification completed.


CHKDSK is verifying security descriptors (stage 3 of 5)...
  8192 file SDs/SIDs processed.                                        

Cleaning up 18 unused index entries from index $SII of file 0x9.
Cleaning up 18 unused index entries from index $SDH of file 0x9.
Cleaning up 18 unused security descriptors.
Security descriptor verification completed.
  38 data files processed.                                           

CHKDSK is verifying file data (stage 4 of 5)...
  8176 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24340059 free clusters processed.                                        

Free space verification is complete.
Windows has checked the file system and found no problems.

  97675168 KB total disk space.
    237728 KB in 163 files.
        76 KB in 40 indexes.
     77124 KB in use by the system.
     65536 KB occupied by the log file.
  97360240 KB available on disk.

      4096 bytes in each allocation unit.
  24418792 total allocation units on disk.
  24340060 allocation units available on disk.

Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Chkdsk" />
    <EventID Qualifiers="0">26214</EventID>
    <Level>4</Level>
    <Task>0</Task>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-10-08T12:19:41.000000000Z" />
    <EventRecordID>155017</EventRecordID>
    <Channel>Application</Channel>
    <Computer>123-PC</Computer>
    <Security />
  </System>
  <EventData>
    <Data>

Checking file system on F:
Volume dismounted.  All opened handles to this volume are now invalid.

CHKDSK is verifying files (stage 1 of 5)...
  8192 file records processed.                                         

File verification completed.
  0 large file records processed.                                   

  0 bad file records processed.                                     

  0 EA records processed.                                           

  0 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  8268 index entries processed.                                        

Index verification completed.


CHKDSK is verifying security descriptors (stage 3 of 5)...
  8192 file SDs/SIDs processed.                                        

Cleaning up 18 unused index entries from index $SII of file 0x9.
Cleaning up 18 unused index entries from index $SDH of file 0x9.
Cleaning up 18 unused security descriptors.
Security descriptor verification completed.
  38 data files processed.                                           

CHKDSK is verifying file data (stage 4 of 5)...
  8176 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24340059 free clusters processed.                                        

Free space verification is complete.
Windows has checked the file system and found no problems.

  97675168 KB total disk space.
    237728 KB in 163 files.
        76 KB in 40 indexes.
     77124 KB in use by the system.
     65536 KB occupied by the log file.
  97360240 KB available on disk.

      4096 bytes in each allocation unit.
  24418792 total allocation units on disk.
  24340060 allocation units available on disk.
</Data>
    <Binary>00200000D6000000670100000000000020000000000000000000000000000000</Binary>
  </EventData>
</Event>

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

И другия лог от C :)

Log Name:      Application
Source:        Microsoft-Windows-Wininit
Date:          8.10.2015 г. 16:55:36 ч.
Event ID:      1001
Task Category: None
Level:         Information
Keywords:      Classic
User:          N/A
Computer:      123-PC
Description:


Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.                         

CHKDSK is verifying files (stage 1 of 5)...
  164608 file records processed.                                         

File verification completed.
  115 large file records processed.                                   

  0 bad file records processed.                                     

  2 EA records processed.                                           

  60 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  200704 index entries processed.                                        

Index verification completed.
  0 unindexed files scanned.                                        

  0 unindexed files recovered.                                      

CHKDSK is verifying security descriptors (stage 3 of 5)...
  164608 file SDs/SIDs processed.                                        

Cleaning up 7 unused index entries from index $SII of file 0x9.
Cleaning up 7 unused index entries from index $SDH of file 0x9.
Cleaning up 7 unused security descriptors.
Security descriptor verification completed.
  18049 data files processed.                                           

CHKDSK is verifying Usn Journal...
  35430568 USN bytes processed.                                            

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
  164592 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24644053 free clusters processed.                                        

Free space verification is complete.
Windows has checked the file system and found no problems.

 146520800 KB total disk space.
  47616828 KB in 96596 files.
     57332 KB in 18050 indexes.
         4 KB in bad sectors.
    270424 KB in use by the system.
     65536 KB occupied by the log file.
  98576212 KB available on disk.

      4096 bytes in each allocation unit.
  36630200 total allocation units on disk.
  24644053 allocation units available on disk.

Internal Info:
00 83 02 00 e1 bf 01 00 61 1d 03 00 00 00 00 00  ........a.......
db 02 00 00 3c 00 00 00 00 00 00 00 00 00 00 00  ....<...........
00 8e 20 00 50 01 1f 00 20 1a 1f 00 00 00 1f 00  .. .P... .......

Windows has finished checking your disk.
Please wait while your computer restarts.

Event Xml:
<Event xmlns="http://schemas.microsoft.com/win/2004/08/events/event">
  <System>
    <Provider Name="Microsoft-Windows-Wininit" Guid="{206f6dea-d3c5-4d10-bc72-989f03c8b84b}" EventSourceName="Wininit" />
    <EventID Qualifiers="16384">1001</EventID>
    <Version>0</Version>
    <Level>4</Level>
    <Task>0</Task>
    <Opcode>0</Opcode>
    <Keywords>0x80000000000000</Keywords>
    <TimeCreated SystemTime="2015-10-08T13:55:36.000000000Z" />
    <EventRecordID>155039</EventRecordID>
    <Correlation />
    <Execution ProcessID="0" ThreadID="0" />
    <Channel>Application</Channel>
    <Computer>123-PC</Computer>
    <Security />
  </System>
  <EventData>
    <Data>

Checking file system on C:
The type of the file system is NTFS.

A disk check has been scheduled.
Windows will now check the disk.                         

CHKDSK is verifying files (stage 1 of 5)...
  164608 file records processed.                                         

File verification completed.
  115 large file records processed.                                   

  0 bad file records processed.                                     

  2 EA records processed.                                           

  60 reparse records processed.                                      

CHKDSK is verifying indexes (stage 2 of 5)...
  200704 index entries processed.                                        

Index verification completed.
  0 unindexed files scanned.                                        

  0 unindexed files recovered.                                      

CHKDSK is verifying security descriptors (stage 3 of 5)...
  164608 file SDs/SIDs processed.                                        

Cleaning up 7 unused index entries from index $SII of file 0x9.
Cleaning up 7 unused index entries from index $SDH of file 0x9.
Cleaning up 7 unused security descriptors.
Security descriptor verification completed.
  18049 data files processed.                                           

CHKDSK is verifying Usn Journal...
  35430568 USN bytes processed.                                            

Usn Journal verification completed.
CHKDSK is verifying file data (stage 4 of 5)...
  164592 files processed.                                                

File data verification completed.
CHKDSK is verifying free space (stage 5 of 5)...
  24644053 free clusters processed.                                        

Free space verification is complete.
Windows has checked the file system and found no problems.

 146520800 KB total disk space.
  47616828 KB in 96596 files.
     57332 KB in 18050 indexes.
         4 KB in bad sectors.
    270424 KB in use by the system.
     65536 KB occupied by the log file.
  98576212 KB available on disk.

      4096 bytes in each allocation unit.
  36630200 total allocation units on disk.
  24644053 allocation units available on disk.

Internal Info:
00 83 02 00 e1 bf 01 00 61 1d 03 00 00 00 00 00  ........a.......
db 02 00 00 3c 00 00 00 00 00 00 00 00 00 00 00  ....&lt;...........
00 8e 20 00 50 01 1f 00 20 1a 1f 00 00 00 1f 00  .. .P... .......

Windows has finished checking your disk.
Please wait while your computer restarts.
</Data>
  </EventData>
</Event>

 

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Супер... Сега още малко съвети за увеличаване на производителността на системата:

 

Добра идея е и да почистите папките с временно съдържание. Отворете Start Menu-то и въведете cleanmgr.exe => кликнете с десен бутон върху файла cleanmgr.exe и изберете Run as administrator. Изберете дял C:\ => сложете всички отметки => натиснете Ок и след това Delete Files.

 

Ако диска ви не е SSD, то направете и дефрагментация на дяла по следния начин:

Забележка: Само ако диска НЕ Е SSD!!!

Изтеглете MyDefrag и я инсталирайте.

Отворете следната папка C:\Program Files\MyDefrag v4.3.1\Scripts и изтрийте всички файлове в нея.

Изтеглете следния архив и го разархивирайте в C:\Program Files\MyDefrag v4.3.1\Scripts, която е празна в момента.

Стартирайте MyDefrag.exe и изберете System Disk Level V и посочете системния дял C: и натиснете Run

KcdlAEi.jpg

Може да отнеме доста време, защото за основа на скрипта са използвани скриптовете на Jaspion и на някои други потребители + мои лични настройки и модификации.

Скрипта ще направи приоритизация на често използваните програми и файлове.

След като приключи ще изпише Finished и можете да затворите програмата от X-са.

 

Проверете за стари приложения с помощта на PatchMyPC или с програмата Secunia Personal Software Inspector.

 

Инсталирайте Unchecky за да се предпазите от адуер по време на инсталацията на даден софтуер.

 

Можете да прочетете и следните няколко теми:

Оптимизиране на Windows с цел по-добра производителност

Ръководство за поддръжка на Windows (XP, Vista и 7) [Revision 2.0]

След това пишете как е положението. :)

Поздрави! ;)

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Здравейте. Почистих папките, само за дефрагментацията на диска не знам дали е SSD или не :)

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Едва ли е SSD, но за да сте по-сигурни можете да стартирате Speccy portable и да направите снимка на Storage секцията или още по-добре направо изтеглете и стартирайте CrystalDiskInfo

(разархивирайте архива и стартирайте файла DiskInfo.exe => кликнете на дял C:\) и направете снимка на прозореца. :)

Поздрави!

 

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Не е SSD и можете да го дефрагментирате по описания нагоре начин. Надписа ТРЕВОГА също не бива да ви притеснява. Просто в Smart на диска, е записано, че е имало лоши сектори и те са били маркирани от Операционната Система като такива. Има начин за запушване на устата на надписа като например стартиране на HDDRegenerator (стартиран преди зареждане на Операционната Система от Hiren's Boot CD например) или с някои от тестовете на HDSentinel (като например безопасния за данните - Read + Write + read (refresh data area), но като цяло с първата програма се работи малко по-трудно и е платена, втората и тя е платена и винаги има шанс за загуба на данни и няма да си струва времето и риска за извършването им. Евентуално понеже сте с диск на Seagate можете да инсталирате SeaTools за Windows. Тя има версии за работа под Windows и преди Windows да стартира. Разбира се от нея е добре да се стартират всички тестове без Advanced Tests, които ще са пагубни за данните на диска, но отново ще е леко безсмислено, защото именно в Advanced Tests =>  опцията Full Erase (която изтрива целия диск и го пълни с нули) е най-подходяща за възстановяване на лоши сектори. Така или иначе Windows вече ги е маркирал като лоши и съобщението в SMART-а може да се игнорира. Останалото е вече за педанти и напреднали потребители. :)

Ами остава да кажете след дефрагментацията как е положението и приключваме.;)

  • Харесва ми 2

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Чудесно, сега ще го направя :) Благодаря за всичките обяснения и търпението :)

 

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Готова съм, значи като изключим заминаващия си хард, направо работи като нов :) Благодаря много, че се отзовахте макар темата да не беше много за тук :) Да сте живи и здрави целият екип и да има повече хора като вас! :handshake::wors:

  • Харесва ми 2

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Благодарим за милите думи и се радвам, че успях да ви помогна. Мисля, че 4КБ лоши сектори не са чак толкова много и диска може да работи още дълго, но просто все пак правете, често бекъп и го проверявайте често с CHKDSK командата. Ако видите след това в лога, че този ред е набъбнал:

4 KB in bad sectors.

Ще знаете, че положението се влошава и трябва час по-скоро да го занесете в сервиз за подмяна.

Има и лесен начин да проверявате диска, да го почиствате и дефрагментиране (за последното се изисква малко пипване по скрипта), но все пак в лицето на софтуера - ScanDefrag 5.7

С програмата можете по лесен начин да планирате в кой ден и в колко часа да започнат процедурите по поддръжката на диска. Аз обикновено преди я ползвах на Windows 7 и я стартирах през нощта, но вече съм с SSD диск и не се налага да я използвам повече. Ако желаете просто и хвърлете един поглед. ;)

Поздрави и приятен уикенд! :bye1:

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Благодаря за програмата, ще я сваля, надявам се, ще мога да се оправя с нея :)

Приятен уикенд и на вас! :bye1:

  • Харесва ми 1

Сподели този отговор


Линк към този отговор
Сподели в други сайтове

Регистрирайте се или влезете в профила си за да коментирате

Трябва да имате регистрация за да може да коментирате това

Регистрирайте се

Създайте нова регистрация в нашия форум. Лесно е!

Нова регистрация

Вход

Имате регистрация? Влезте от тук.

Вход

×

Информация

Поставихме бисквитки на устройството ви за най-добро потребителско изживяване. Можете да промените настройките си за бисквитки, или в противен случай приемаме, че сте съгласни с нашите условия за ползване.