Kontrola logu ntb Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:50

==== Deleting Files \ Folders ======================

C:\PROGRA~2\Razer not found
C:\Users\mrmar\AppData\Local\Razer not found
C:\PROGRA~2\Rockstar Games not found
C:\Users\mrmar\AppData\Local\Rockstar Games deleted
C:\Users\mrmar\AppData\Roaming\discord deleted
C:\Users\mrmar\AppData\Roaming\Signal deleted
C:\Users\mrmar\.android deleted
C:\Users\mrmar\AppData\Roaming\~SiMPLEX.ini deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\mrmar\AppData\Local\oobelibMkey.log deleted
C:\Users\mrmar\AppData\Local\cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM213E6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM232A0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM265A5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2C21B.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-224-23a0-5c54d53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-40d4-2954-e2af38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-6020-3e28-7c0b86a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-6100-34ac-9bd6a47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a1547.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a1558.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a155a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a155c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a156e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a1570.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a1582.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a1584.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-45e4-4a15ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fbe4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fbf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fc76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fc98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fca9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fcbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fd0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fd2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fd4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fd8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fdaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fe1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fe4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fe71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fe82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455feb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455fef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-455ffe0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-17a4-2030-4560011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823b98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823ba9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823bab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823bbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823bbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c2c-35d4-823bc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d3e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d426.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d438.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d43a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d43c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d44e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d450.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d452.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d463.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d465.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d467.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d479.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d47b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d48c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c5c-1d74-465d4ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c49b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c4fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c50d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c52e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c540.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c551.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c563.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c575.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c596.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c5a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2018-37a0-21c5c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e33ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e33f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3402.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3404.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3418.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e341a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e341c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e341e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e342f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3431.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3433.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3435.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3447.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3449.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e344b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e345c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e345e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2154-9d0-e3462.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54b90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54ba1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54ba3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54bee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54c92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54ca4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54ca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54cb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54cc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54ccb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54cdd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54cdf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54d3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54d41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-224-23a0-5c54d43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b6c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b6da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b70b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b71d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b75d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b79e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b7af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b7d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b7f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b873.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b930.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b980.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b9b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b9d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2b9f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2ba44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2bae2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2bb13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2450-303c-5a2bbff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c116c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c116e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c1180.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c1182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c1193.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2700-55cc-c11ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcf0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcf2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fcf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27c4-47c8-9fd39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e8f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e909.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e90b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e90d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e91e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e920.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e932.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e944.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e965.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e996.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14e9c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14ea07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b8-d20-14ea28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-73664e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-73665f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-736661.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-736663.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-736675.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-736677.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-736679.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-73668a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-73668c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-73668e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac4-5104-7366d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a27f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a291.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a293.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a2ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a301.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-1c8c-9a4a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38101e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38104f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381070.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381091.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-3810c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-3810f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381105.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381116.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381128.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38112a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38112c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38113e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381140.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381153.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381155.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381157.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-381188.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38118a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e90-5eb8-38118c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b1836d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b1837f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b18381.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b18383.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b18394.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b18396.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b18398.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ed4-32cc-b183f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e0f5.tmp deleted
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Reklama
Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:50

C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e126.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e128.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e12a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e13b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e13d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e15e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e170.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e193.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e1a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e1d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e1e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e1e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e1fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e21c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e23e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e240.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e251.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ef8-2fac-36e272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638cde.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638ce0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638cf2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638cf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638cf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3240-15c0-638d62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de8d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14de9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14dea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14dea3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14dea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14deb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14deb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14debb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14debd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-35fc-32c4-14dece.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d2ece.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3141.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d323f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d32ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d335c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d340a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3516.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3547.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3623.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3645.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3741.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3752.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d37c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d37f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3862.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3950.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d3f6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3940-23f8-a7d4078.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf5e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf5f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf5f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf61a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf61c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf61e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf63f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf661.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf663.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf665.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf676.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf697.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a20-1520-bf6e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe8d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe961.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe973.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe994.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe9c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe9d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fe9e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51fea90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51feaa2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51feb02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51feb13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51feb34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51feb85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51febb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3a4c-295c-51febd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee311.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee332.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee334.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee346.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee34a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee35b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee35d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee35f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee371.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee373.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee375.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee377.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee398.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee39a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee39c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee3ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee3b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee3d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c18-49bc-3ee3f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-288404.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-288406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-288417.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-288419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-28841b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-28843d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-28845e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-28847f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-288481.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c70-e2c-2884f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136017.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136028.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13602a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13602c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13603e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136040.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136042.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136044.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136058.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13605a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13605c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13606d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13606f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136071.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136083.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136085.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136087.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-136098.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3dc8-4220-13609a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3cf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3d26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3d76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3da7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3db9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3dcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3dec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3e98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3ec9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3efa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3f1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3f2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3ff8-457c-b3fac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2add8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2adea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2adec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2adfd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2adff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2ae92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aeb4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aec5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aec7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aed9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aedb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aeed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2aeef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2af00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2af02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2af14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2af16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40d4-2954-e2af37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b22f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b241.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b252.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b254.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b256.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b268.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b26a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b26c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b27d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b27f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b281.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b283.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b295.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b297.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b299.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b2ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b2ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b2af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b2c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4294-4d8-9b2c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef334.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef345.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef357.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef359.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef35b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef36d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef36f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef380.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef382.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef394.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef3ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef400.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef402.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef413.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-490c-4600-dbef425.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca077.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca0c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca127.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca187.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca1c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca218.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca249.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca2ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca2eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca30c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca30e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca320.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca331.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca353.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca3a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca3b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca3c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca3e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4978-31c4-73ca418.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ab90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10aba1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10aba3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10aba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10aba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abde.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abf0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abf2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10abf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ac08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4998-3fac-10ac0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373742.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373754.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373785.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373797.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-3737b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-3737d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-3737fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-37384a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-37385c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-37387d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-37388f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-3738c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373920.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373941.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373972.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373974.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373985.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-373999.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4cd0-1040-37399b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13804.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13816.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13818.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1382a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1382c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1383d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1383f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13841.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13855.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13857.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13869.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1386b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1387c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1387e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13890.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13892.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d138f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1390a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1390c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1391d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1391f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13933.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13935.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13937.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13948.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1394a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1395c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1395e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13970.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13972.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13983.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13985.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d13999.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d1399b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ef0-468-2d139f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1f7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1f8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1f8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1f90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1f92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fa4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fa6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fa8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1faa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fd9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1feb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5304-12f4-b1fef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bfcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bfce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bfdf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bfe1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bfe3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bff5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1bff7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c009.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c00b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c01c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c01e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c030.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c032.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c034.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c045.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c047.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c059.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c05b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c06d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c06f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c071.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c082.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c084.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c096.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c098.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c0aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c0ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c0bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c0de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c100.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c102.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c113.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c115.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c127.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c129.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c13b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c19a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c19c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5664-5834-2a1c1ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919a45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919a56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919a78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919a99.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919aab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919aad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919add.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919aef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919af1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5700-1f10-3919b84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53096.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d530a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d530b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d530db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d530fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d530fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d5311f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53144.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53156.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53168.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d5316a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d5317b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d5318d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d5318f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d53191.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d531a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d531a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-58e4-1d18-4d531d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c199.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c1ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c1bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c1de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c1ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c211.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c244.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c284.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c2fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c35d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c36f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c390.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c3e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5d0c-60d8-11c401.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b68c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b69d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b69f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b6fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b700.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b711.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b723.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b725.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b736.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b738.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b73a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b74c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b74e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b775.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b777.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b789.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b79b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b79d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b79f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b7ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b801.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b814.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b826.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b828.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b83a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b83c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b83e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b84f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b851.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b865.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b867.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6020-3e28-7c0b869.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd611d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6238.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd626b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd628c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd62ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd633c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd636d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd63dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd63fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd641f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd646f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd64b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd64c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd64f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6513.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6719.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd674a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6827.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6857.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd68c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6907.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd69c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd69f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-6100-34ac-9bd6a46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1ef00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1ef41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1ef72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1ef93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1efa5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f014.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f045.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f076.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f133.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f193.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f270.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f39b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f552.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f583.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f5c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f604.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f645.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f666.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f687.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-665c-5458-14b1f6a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38eb6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38eb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38eba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38ecc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38ece.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38eff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-700-704-38f88.tmp deleted
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:51

C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1046.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1057.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1059.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b106b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b106d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b107e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1080.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1092.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1094.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b10f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1108.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b110a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b111b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b111d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b112f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1131.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1133.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1145.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1158.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b115a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b115c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b116e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1170.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b11a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b11a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1205.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1216.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1218.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b122a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b122c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b123d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b123f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1251.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1253.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1255.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1257.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1269.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b126b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b126d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b127e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1282.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b1298.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b12aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b12ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b12ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-d20-51d4-58b12bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95308.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95319.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9531b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9531d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9531f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95331.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95333.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95335.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95337.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9534a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9534c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9534e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95362.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95364.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95366.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-95378.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9537a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-1558-9537c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb37d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb3f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb404.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb40a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb41c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb41e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ec4-352c-2cb420.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ab59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ab7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20abca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ac59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ac6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20acbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ad1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ad7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ad8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20addc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20ae94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20aec5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20af82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20af94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-f20-3ba8-20afa6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42352a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42353b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42355d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42358e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4235ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42360f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42363f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-423661.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-423672.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-423684.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4236b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4236c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4236d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4236ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4236fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42371d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42375d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-42377e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4237a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd8-19b4-4237b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d64c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d65d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d65f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d671.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d683.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d694.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d696.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d698.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d6f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d708.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d71a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d71c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-ff0-4058-413d71e.tmp deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google deleted
C:\windows\SysNative\GroupPolicy\Machine deleted
C:\windows\SysNative\GroupPolicy\User deleted
C:\windows\SysNative\GroupPolicy\GPT.INI deleted
C:\WINDOWS\Syswow64\GroupPolicy\gpt.ini deleted
C:\WINDOWS\Syswow64\InstallUtil.InstallLog deleted
C:\Users\mrmar\speedtest.exe deleted
"C:\DumpStack.log.tmp" not deleted
"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not deleted

==== Orphaned Tasks deleted from Registry ======================

Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask_Once deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"web2pdfextension.17@acrobat.adobe.com"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi" [03.05.2020 16:13]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"web2pdfextension.17@acrobat.adobe.com"="C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi" [03.05.2020 16:13]

==== Firefox Extensions ======================

ProfilePath: C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release
- Dizionario italiano - %ProfilePath%\extensions\it-IT@dictionaries.addons.mozilla.org.xpi
- Italiano IT Language Pack - %ProfilePath%\extensions\langpack-it@firefox.mozilla.org.xpi
- IBM Security Rapport - %ProfilePath%\extensions\rapportext@trusteer.com.xpi
- __MSG_appName__ - %ProfilePath%\extensions\{fca67f41-776b-438a-9382-662171858615}.xpi

==== Firefox Plugins ======================

Profilepath: C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release
- C:\Program Files x86\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll - [?]
- C:\Program Files x86\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll - [?]
- C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL - [?]


==== Chromium Look ======================

Google Chrome Version: 88.0.4324.182

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
efaidnbmnnnibpcajpcglclefindmkaj - No path found[]

HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
lmjegmlicamnimmfhcmpkclmigmmcbeh - No path found[]

YouTube Music - mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\cinhimbnkkaeohfgghhklpknlkffjgod
uBlockâ‚€ - mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm
GoFullPage - Full Page Screen Capture - mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdpohaocaechififmbbbbbknoalclacl
Chrome Media Router - mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
FormApps Extension - mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi
PDF Viewer - mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oemmndcbldboiebfnladdacbdfmadadm
Chrome Media Router - mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Google Drive App Launcher - mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh
Chrome Media Router - mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Chrome Media Router - mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
IDM Integration Module - mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://www.google.com"
"Search Bar"="http://www.google.com/ie"
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
@="http://www.google.com/search?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://www.google.com/ie"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5}"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5}] not found

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchUrl]
"(Default)"="http://search.msn.com/results.asp?q=%s"
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search]
"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\SearchScopes\{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5} - http://www.bing.com/search?q={SearchTerms}&form=PRLNC1&src=IE11TR&pc=LCTE
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes\{C5BE99CD-CAF5-499C-AEB4-0E92B8F19DF5} - http://www.bing.com/search?q={SearchTerms}&form=PRLNC1&src=IE11TR&pc=LCTE
HKCU\SearchScopes "DefaultScope"="{012E1000-F331-11DB-8314-0800200C9A66}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02
HKCU\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} - http://www.google.com/search?q={sear

==== Reset Google Chrome ======================

C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Guest Profile\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Guest Profile\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Secure Preferences was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Web Data will be reset at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal will be reset at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data will be reset at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data-journal will be reset at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Web Data-journal was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Web Data-journal was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile\Web Data-journal was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Guest Profile\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Guest Profile\Web Data-journal was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Web Data was reset successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

C:\Users\mrmar\AppData\Local\Mozilla\Firefox\Profiles\cs2rvsw2.default-release\cache2 emptied successfully

==== Empty Edge Cache ======================

Edge Cache Emptied Successfully

==== Empty Chrome Cache ======================

C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache will be emptied at reboot
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 3\Cache emptied successfully
C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile\Cache emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Guest Profile\Cache emptied successfully
C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1915 folders=1577 331833398 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\mrmar\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\mrmar\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\DumpStack.log.tmp" not deleted
"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Web Data" not found
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal" not found
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data" not found
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data-journal" not found
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache\data_0" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache\data_1" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache\data_2" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache\data_3" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Cache\index" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache\data_0" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache\data_1" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache\data_2" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache\data_3" deleted
"C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Cache\index" deleted

==== EOF on 23.02.2021 at 21:27:21,22 ======================
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:52

Jenom ještě pro info, Zeman návod není aktuální.

Aktuální stav vyzkouším hned a dám do 3 hodin zpětnou vazbu.
Přílohy
Snímek obrazovky 2021-02-25 194424.jpg
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:53

Informace o kontroly
Název produktu    :  Zemana AntiMalware
Stav kontroly    :  Dokončena
Datum kontroly    :  25.02.2021 19:45:23
Typ kontroly    :  Inteligentní kontrola
Čas trvání    :  00:00:24
Zkontrolované objekty    :  2553
Zjištěné objekty    :  2
Vyloučené objekty    :  0
Automatické odesílání    :  Ne
Operační systém    :  Windows 10 x64
Procesor    :  8X Intel(R) Core(TM) i7-8565U CPU @ 1.80GHz
Režim systému BIOS    :  UEFI
Informace o doméně    :  WORKGROUP,False,NetSetupWorkgroupName
CUID    :  14630A58F3AE438D760032


Odhalení
MD5    :  
Stav    :  Zkontrolováno
Objekt    :  --profile-directory
Vydavatel    :  
Velikost    :  0
Odhalení    :  Hijack:Browser/Chrome Shortcut
Akce    :  Vymazat
-----------------------------------------------------------------------
MD5    :  
Stav    :  Zkontrolováno
Objekt    :  c:\users\mrmar\appdata\roaming\mozilla\firefox\profiles\cs2rvsw2.default-release\extensions\{fca67f41-776b-438a-9382-662171858615}.xpi
Vydavatel    :  
Velikost    :  0
Odhalení    :  HijackExt:FirefoxPlugin/{fca67f41-776b-438a-9382-662171858615}
Akce    :  Vymazat
-----------------------------------------------------------------------
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 25 úno 2021 19:59

Stále mám problémy, jakoukoliv aplikaci spustím tak se vždy sekne myš na 1-1,5 sekundy.

Např. totalcmd, chrome, firefox...

Mám natočit na video z mobilu?

Díky moc za rady
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola logu ntb

Příspěvekod jaro3 » 25 úno 2021 20:07

Nevidím log z RK po výmazu , udělej.

-Vlož nový log z HJT

- Vypni antivir i firewall.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
další odkaz:
http://www.bleepingcomputer.com/downloa ... scan-tool/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 27 úno 2021 20:14

RogueKiller Anti-Malware V14.8.5.0 (x64) [Feb 12 2021] (Free) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19041) 64 bits
Started in : Normal mode
User : mrmar [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20210222_102815, Driver : Loaded
Mode : Standard Scan, Delete -- Date : 2021/02/23 20:45:10 (Duration : 00:05:55)

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Delete ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[PUP.HackTool (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{90C679C8-663A-4F3F-87EF-814C63A3BE35}C:\windows\files\bin\kmss.exe -- [%SystemRoot%\files\bin\kmss.exe] -> Deleted
[PUP.HackTool (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{1643F788-C3AB-43D4-A50A-E77EBB073129}C:\windows\files\bin\kmss.exe -- [%SystemRoot%\files\bin\kmss.exe] -> Deleted
[PUP.HackTool (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{CA671193-033F-4778-B280-95624AB0E545}C:\windows\files\bin\kmss.exe -- [%SystemRoot%\files\bin\kmss.exe] -> Deleted
[PUP.HackTool (Potentially Malicious)] HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{2912B4A7-0DF2-4880-A575-841357DA5E16}C:\windows\files\bin\kmss.exe -- [%SystemRoot%\files\bin\kmss.exe] -> Deleted
[PUP.HackTool (Potentially Malicious)] files -- %SystemRoot%\files -> Deleted
=> Configure.xml -- C:\Windows\files\CONFIG~1.XML -> Deleted
=> Uninstall.xml -- C:\Windows\files\UNINST~1.XML -> Deleted
=> cleanospp.exe -- C:\Windows\files\x64\CLEANO~1.EXE -> Deleted
=> msvcr100.dll -- C:\Windows\files\x64\msvcr100.dll -> Deleted
=> x64 -- C:\Windows\files\x64 -> Deleted
=> cleanospp.exe -- C:\Windows\files\x86\CLEANO~1.EXE -> Deleted
=> msvcr100.dll -- C:\Windows\files\x86\msvcr100.dll -> Deleted
=> x86 -- C:\Windows\files\x86 -> Deleted
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 27 úno 2021 20:14

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:07:40, on 27.02.2021
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)


Boot mode: Normal

Running processes:
C:\Program Files (x86)\TeamViewer\TeamViewer.exe
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe
C:\Users\mrmar\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe
C:\Users\mrmar\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe
C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
C:\WINDOWS\Lenovo\iMController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
C:\WINDOWS\SysWOW64\DllHost.exe
C:\Users\mrmar\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://lenovo17win10.msn.com/?pc=LCTE
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\88.0.705.74\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O2 - BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O2 - BHO: SmartSelect - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O3 - Toolbar: Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll
O4 - HKLM\..\Run: [Client Access Service] "C:\Program Files (x86)\IBM\Client Access\cwbsvstr.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS6ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [Acrobat Assistant 8.0] "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe"
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKLM\..\Run: [TeamsMachineInstaller] %ProgramFiles%\Teams Installer\Teams.exe --checkInstall --source=PROPLUS
O4 - HKCU\..\Run: [EpicGamesLauncher] "C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe" -silent
O4 - HKCU\..\Run: [GoogleDriveSync] "C:\Program Files\Google\Drive\googledrivesync.exe" /autostart
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [CCXProcess] "C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe"
O4 - HKCU\..\Run: [Actual Multiple Monitors] "C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe"
O4 - HKCU\..\Run: [Adobe Acrobat Synchronizer] "C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe"
O4 - HKCU\..\Run: [BingWallpaperApp] C:\Users\mrmar\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\mrmar\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\Windows\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\root\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: 602Updater (602XML Updater) - Software602 a.s. - C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AdobeUpdateService - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: Intel® SGX AESM (AESMService) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fafb1d329fdfe2c6\aesm_service.exe
O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Actual Multiple Monitors Service (amm_LSService) - Actual Tools - C:\Program Files (x86)\Actual Multiple Monitors\LogonScreenService.exe
O23 - Service: @oem4.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\WINDOWS\system32\BtwRSupportService.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_7e9f6c2b529606e0\IntelCpHeciSvc.exe
O23 - Service: Intel(R) Content Protection HDCP Service (cplspcon) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_7e9f6c2b529606e0\IntelCpHDCPSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_4cd4458 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CxAudioSvc Service (CxAudioSvc) - Conexant Systems, Inc - C:\WINDOWS\CxSvc\CxAudioSvc.exe
O23 - Service: CxUIUSvc Service (CxUIUSvc) - Unknown owner - C:\WINDOWS\System32\CxUIUSvc64.exe (file missing)
O23 - Service: CxUtilSvc - Conexant Systems, Inc. - C:\Windows\CxSvc\CxUtilSvc.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @oem2.inf,%ServiceDisplayName%;Dolby DAX API Service (DolbyDAXAPI) - Unknown owner - C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @oem89.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service (esifsvc) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_9196e89091d8bdbb\esif_uf.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: NVIDIA FrameView SDK service (FvSvc) - NVIDIA - C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.190\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: @oem129.inf,%iaStorAfsWindowsService.Name%;Intel(R) Optane(TM) Memory Service (iaStorAfsService) - Unknown owner - C:\WINDOWS\System32\iaStorAfsService.exe (file missing)
O23 - Service: Intel(R) Graphics Command Center Service (igccservice) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_27bc2b5aa4e51896\OneApp.IGCC.WinService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7b8fb5f6ba170ca0\igfxCUIService.exe
O23 - Service: @oem57.inf,%ImcSvcDisplayName%;System Interface Foundation Service (ImControllerService) - Lenovo Group Ltd. - C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
O23 - Service: @oem1.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface (Intel(R) Capability Licensing Service TCP IP Interface) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe
O23 - Service: @oem1.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service (Intel(R) TPM Provisioning Service) - Intel(R) Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\TPMProvisioningService.exe
O23 - Service: Intel(R) Audio Service (IntelAudioService) - Unknown owner - C:\WINDOWS\system32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (file missing)
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LenovoVantageService - Lenovo Group Ltd. - C:\Program Files (x86)\Lenovo\VantageService\3.5.27.0\LenovoVantageService.exe
O23 - Service: @oem131.inf,%LNBITS.SVCDESC%;Lenovo Notebook ITS Service (LITSSVC) - Unknown owner - C:\WINDOWS\System32\LNBITSSvc.exe (file missing)
O23 - Service: McAfee Firewall Core Service (mfefire) - McAfee, LLC - C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
O23 - Service: McAfee Service Controller (mfemms) - McAfee, LLC - C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
O23 - Service: McAfee Validation Trust Protection Service (mfevtp) - Unknown owner - C:\Windows\system32\mfevtps.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6e7eeeb0f1b98a43\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: OpenVpnService - - C:\Program Files\OpenVPN\bin\openvpnserv2.exe
O23 - Service: OpenVPN Interactive Service (OpenVPNServiceInteractive) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: OpenVPN Legacy Service (OpenVPNServiceLegacy) - The OpenVPN Project - C:\Program Files\OpenVPN\bin\openvpnserv.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: RogueKiller RTP (rkrtservice) - Unknown owner - C:\Program Files\RogueKiller\RogueKillerSvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: RstMwService - Intel Corporation - C:\WINDOWS\System32\DriverStore\FileRepository\iastorac.inf_amd64_436f3ee9eaa8b817\RstMwService.exe
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: System Update (SUService) - Unknown owner - C:\Program Files (x86)\Lenovo\System Update\SUService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: Synaptics Audio APO Service (SynaAPOService) - Unknown owner - C:\WINDOWS\System32\SynAudSrv.exe (file missing)
O23 - Service: TeamViewer - TeamViewer Germany GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: Wireless Keyboard 850 Notification Service (WirelessKB850NotificationService) - Unknown owner - C:\WINDOWS\system32\WirelessKB850NotificationService.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 19116 bytes
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 27 úno 2021 20:15

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-02-2021
Ran by mrmar (administrator) on LAPTOP-6ITC27E6 (LENOVO 81SW) (27-02-2021 20:10:33)
Running from C:\Users\mrmar\Downloads
Loaded Profiles: mrmar
Platform: Windows 10 Home Version 2004 19041.804 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\OpenVPN\bin\openvpn-gui.exe
(Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools) C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe
(Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools) C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsCenter64.exe
(Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools) C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsShellCenter64.exe
(Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools) C:\Program Files (x86)\Actual Multiple Monitors\LogonScreenService.exe
(Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\Adobe Installer.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <4>
(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\acrotray.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(Conexant Systems LLC -> Conexant Systems, Inc) C:\Windows\CxSvc\CxAudioSvc.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe
(Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\System32\CxUIUSvc64.exe
(Conexant Systems LLC -> Synaptics Incorporated.) C:\Windows\System32\SynAudSrv.exe
(Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2>
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <13>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_9196e89091d8bdbb\esif_uf.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7b8fb5f6ba170ca0\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_7b8fb5f6ba170ca0\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_27bc2b5aa4e51896\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_7e9f6c2b529606e0\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_7e9f6c2b529606e0\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_436f3ee9eaa8b817\RstMwService.exe
(Intel(R) Software Development Products -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_fafb1d329fdfe2c6\aesm_service.exe
(Intel(R) Trust Services -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\SocketHeciServer.exe
(Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\mrmar\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Lenovo -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.5.27.0\Lenovo.Vantage.AddinHost.exe
(Lenovo -> Lenovo Group Ltd.) C:\Program Files (x86)\Lenovo\VantageService\3.5.27.0\LenovoVantageService.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe <2>
(Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\LNBITSSvc.exe
(LENOVO INC) C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.2.1.0_x64__5grkq8ppsgwt4\VFS\ProgramFilesX64\Lenovo\LenovoUtility\utility.exe
(Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\mrmar\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\mrmar\AppData\Local\Microsoft\OneDrive\21.016.0124.0003\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\mrmar\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\WirelessKB850NotificationService.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2101.10.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2101.9-0\MsMpEng.exe
(Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_6e7eeeb0f1b98a43\Display.NvContainer\NVDisplay.Container.exe <2>
(OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(OpenVPN Technologies, Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe
(Software602 a.s. -> Software602 a.s.) C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(Synaptics Hong Kong Limited, Taiwan Branch (H.K.)) C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio3_1.0.39.0_x64__qt57b6kdvhcfw\Flow\Flow.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [834336 2019-03-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [openvpn-gui] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [676992 2018-08-09] () [File not signed]
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1667208 2020-11-24] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3951024 2019-10-11] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
HKLM-x32\...\Run: [Client Access Service] => C:\Program Files (x86)\IBM\Client Access\cwbsvstr.exe [24627 2007-03-12] (IBM Corporation) [File not signed]
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2095672 2020-10-06] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5237416 2021-02-15] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [107879704 2020-10-14] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32411536 2020-10-01] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [50011008 2021-01-20] (Google LLC -> )
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3411232 2020-12-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [680720 2021-02-17] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [Actual Multiple Monitors] => C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsCenter.exe [1952512 2019-12-27] (Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5536424 2021-02-15] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Run: [BingWallpaperApp] => C:\Users\mrmar\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe [10906504 2021-01-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\MountPoints2: {afab3c04-550d-11eb-91b6-087190fdcaea} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\KOAYTJ_P: C:\Windows\System32\spool\prtprocs\x64\KOAYTJ_P.DLL [92680 2016-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Monotype Imaging Inc.)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [65496 2020-10-22] (Adobe Inc. -> Adobe Systems Inc)
HKLM\...\Print\Monitors\C364SeriesPCL Language Monitor: C:\Windows\system32\KOAYTJ_L.DLL [25608 2016-02-11] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.)
HKLM\...\Print\Monitors\HP Standard TCP/IP Port: C:\Windows\system32\HpTcpMon.dll [331264 2009-09-16] (Hewlett Packard) [File not signed]
HKLM\...\Print\Monitors\rica4Rlm: C:\Windows\system32\rica4Rlm.dll [28160 2013-12-26] (Microsoft Windows Hardware Compatibility Publisher -> RICOH CO.,Ltd.)
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\Windows\system32\602localmon.dll [54864 2018-05-31] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
HKLM\...\Print\Monitors\us008 Langmon: C:\Windows\system32\us008lm.dll [31256 2016-02-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.190\Installer\chrmstp.exe [2021-02-26] (Google LLC -> Google LLC)
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0115FD60-1EB1-4A9B-AD50-D3B8A592E482} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\793b0d9c-b97d-413a-acb3-14821c1181d0 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {07324F7D-1562-4B43-A0B8-908A67A23733} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-2114862974-1071683145-3095331456-1001 => C:\Users\mrmar\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [87848 2021-01-22] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {0C1F6E30-879F-4455-BEFC-30565BAA6564} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {11EC611F-D2E2-4119-BC1F-8A7F9A1DF5B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1691CB13-909F-4638-B089-B501B87CF7ED} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {16EA293F-AF46-4C0E-8DEC-3B2B947476D5} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {26A646D8-B41F-4E4F-AFE0-712D651B7946} - System32\Tasks\Lenovo\Vantage\Schedule\VantageTelemetryAddinTask => C:\Program Files (x86)\Lenovo\VantageService\3.5.27.0\ScheduleEventAction.exe [24368 2020-12-29] (Lenovo -> Lenovo Group Ltd.)
Task: {29B09DEC-2B15-4F50-B034-C941F2AC28FD} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [61872 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {29EF4D20-8E22-4A07-B0FF-8C9F51264C66} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9a99a608-32fd-4bb4-945d-a401aefc2fab => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {2E54E32B-3739-4BB2-B81A-806ED8A5C5D7} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\230c4bdf-c3a4-4669-a290-3e013981a514 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
Task: {30F7BD5C-E7B5-4CD8-A0F6-FAF14698952E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-29] (Google Inc -> Google LLC)
Task: {3BC9D496-B42F-42DC-A7C9-BB3FF9972DF1} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService
Task: {3EE25638-0595-4302-B492-8C2BA0DEDE95} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22993800 2021-02-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {4169489C-FC8C-40B0-859E-3D98AEB049A0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {42EAB1F6-386B-4892-8186-22E52E8920F7} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {4B499973-3F95-433F-9475-7D795E780A46} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4CD77B38-3F75-405B-B9E9-C0C14B7B3835} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [143888 2021-02-04] (Lenovo -> Lenovo Group Ltd.)
Task: {51BDE1A3-EA18-4140-A807-945690E05C1C} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [694752 2021-02-24] (Mozilla Corporation -> Mozilla Foundation)
Task: {636FE655-6307-436B-A152-9AA79C5E86CB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-11-29] (Google Inc -> Google LLC)
Task: {73459EAE-EE98-49CD-81E9-88AB8ABFAD40} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758224 2021-02-10] (Lenovo -> )
Task: {76E5DAA9-89F9-4A2B-B154-BF9CCA412416} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758224 2021-02-10] (Lenovo -> )
Task: {870BC396-9763-40D3-B858-6CCECCE5C643} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {8BA6C62D-F8BA-4B27-899F-EBCA3868C2D4} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe lenovo-utility://
Task: {8E21C6D0-08A9-42AC-B019-62BFC0D8666B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9A8D6FE4-5477-45F5-A040-A9BA72C2A375} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService
Task: {A741DAD3-EA87-4EA0-A22B-70CD146B9B36} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A8A5981B-369F-46C1-838C-8A8973CA466E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AE5D5F74-1879-481F-A180-C821C8890246} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4552376 2019-08-20] (McAfee, LLC -> McAfee, LLC.)
Task: {B1991935-C7E4-4C42-A04E-ED98C83B46D6} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [658808 2020-07-29] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {B2F73735-5F95-48A0-AEC6-603FFFCDC983} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BBCBFDF9-784A-4185-9A80-49AEC35106E3} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {C5AC61BC-E769-4890-8BF8-099279EDDF02} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MpCmdRun.exe [562240 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D4A1B3A5-05C4-4A0D-98B9-6973605E44BF} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E29E593B-80EB-4EEF-8C3D-7853838246EB} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {E86A8D3A-D3D2-47D4-9BD0-499F4D318943} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115016 2021-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {E9B91D4C-8E9A-469A-A256-8DDEBF5DFC64} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {EBEA8F13-4A42-471D-96FE-3E764FD83B67} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ECD0FFA4-04DB-4B96-8F60-A2F8FF946FB6} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F409C015-8482-4D26-B64B-08231044C1ED} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\32b61fe4-c0b7-47d1-b8a1-fc3bd4743f99 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.68.1
Tcpip\..\Interfaces\{0a234709-9e40-4de2-b6a2-d1ee9b0bb46c}: [DhcpNameServer] 192.168.0.1 192.168.68.1
Tcpip\..\Interfaces\{a273af6c-a201-4f4c-9a8f-fa443b45c277}: [DhcpNameServer] 172.16.50.12 172.16.50.14
Tcpip\..\Interfaces\{e61d339b-47ed-4136-bdbd-676262b9d5e3}: [DhcpNameServer] 46.174.32.250 8.8.8.8

Edge:
=======
Edge Extension: (No Name) -> EdgeExtension_TonecIncIDMIntegrationModule_e7b5mm5d3r6v2 => C:\Program Files\WindowsApps\TonecInc.IDMIntegrationModule_6.38.6.0_neutral__e7b5mm5d3r6v2 [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-27]
Edge Extension: (ExpressVPN: VPN proxy to unblock everything) - C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fgddmllnllkalaagkghckoinaemmogpe [2021-01-31]
Edge Profile: C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-02-27]
Edge Extension: (IDM Integration Module) - C:\Users\mrmar\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2021-02-13]
Edge HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2020-12-12]

FireFox:
========
FF DefaultProfile: yd9zma32.default
FF ProfilePath: C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\yd9zma32.default [2020-03-10]
FF ProfilePath: C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release [2021-02-27]
FF NewTab: Mozilla\Firefox\Profiles\cs2rvsw2.default-release -> about:newtab
FF Extension: (Dizionario italiano) - C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release\Extensions\it-IT@dictionaries.addons.mozilla.org.xpi [2020-12-21]
FF Extension: (Italiano (IT) Language Pack) - C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release\Extensions\langpack-it@firefox.mozilla.org.xpi [2021-02-24]
FF Extension: (IBM Security Rapport) - C:\Users\mrmar\AppData\Roaming\Mozilla\Firefox\Profiles\cs2rvsw2.default-release\Extensions\rapportext@trusteer.com.xpi [2020-03-22] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2020-05-03]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-10-06] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2012-01-12] (Google Inc. -> Google, Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @software602.cz/602XML Filler -> C:\Program Files (x86)\Software602\602XML\Filler\npfiller.dll [2018-01-08] (Software602 a.s. -> Software602 a.s.)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-02-15] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-10-06] (Adobe Inc. -> Adobe Systems)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default [2021-02-27]
CHR Notifications: Default -> hxxps://dashboard.tawk.to; hxxps://web.telegram.org; hxxps://web.whatsapp.com; hxxps://www.messenger.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxps://www.google.com/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-02-23]
CHR Extension: (uBlock Origin) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-02-23]
CHR Extension: (Dropbox for Gmail) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpdmhfocilnekecfjgimjdeckachfbec [2021-02-23]
CHR Extension: (Adobe Acrobat) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-02-23]
CHR Extension: (Samsung Internet) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\epejdmjgfibjaffbmojllapapjejipkh [2021-02-23]
CHR Extension: (Google Play Music) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2021-02-23]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-02-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-23]
CHR Extension: (Chrome Media Router) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-23]
CHR Profile: C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-02-27]
CHR Notifications: Profile 1 -> hxxps://web.whatsapp.com
CHR HomePage: Profile 1 -> hxxps://mail.google.com/mail/u/0/#inbox
CHR StartupUrls: Profile 1 -> "hxxps://mail.google.com/mail/u/0/#inbox","hxxp://www.proxmark.org/forum/viewtopic.php?pid=37373#p37373"
CHR Extension: (Adobe Acrobat) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-02-27]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-02-27]
CHR Extension: (FormApps Extension) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2021-02-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-27]
CHR Extension: (PDF Viewer) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oemmndcbldboiebfnladdacbdfmadadm [2021-02-27]
CHR Extension: (Chrome Media Router) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-27]
CHR Profile: C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4 [2021-02-27]
CHR Notifications: Profile 4 -> hxxps://web.whatsapp.com
CHR HomePage: Profile 4 -> hxxps://mail.google.com/mail/u/0/#inbox
CHR StartupUrls: Profile 4 -> "hxxps://mail.google.com/mail/u/0/#inbox","hxxp://www.proxmark.org/forum/viewtopic.php?pid=37373#p37373"
CHR Extension: (Prezentace) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-02-27]
CHR Extension: (Dokumenty) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\aohghmighlieiainnegkcijnfilokake [2021-02-27]
CHR Extension: (YouTube) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-27]
CHR Extension: (Adobe Acrobat) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-02-27]
CHR Extension: (Tabulky) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-02-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-02-27]
CHR Extension: (AdBlock — best ad blocker) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-02-27]
CHR Extension: (FormApps Extension) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2021-02-27]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-02-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-27]
CHR Extension: (PDF Viewer) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\oemmndcbldboiebfnladdacbdfmadadm [2021-02-27]
CHR Extension: (Gmail) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-27]
CHR Extension: (Chrome Media Router) - C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-27]
CHR Profile: C:\Users\mrmar\AppData\Local\Google\Chrome\User Data\System Profile [2021-02-27]
CHR HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\mrmar\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2021-02-24]
CHR HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 27 úno 2021 20:15

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [85344 2011-10-10] (Software602 a.s. -> Software602 a.s.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [852024 2020-10-06] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 amm_LSService; C:\Program Files (x86)\Actual Multiple Monitors\LogonScreenService.exe [609536 2020-10-11] (Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8686928 2020-09-11] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8905608 2021-02-13] (Microsoft Corporation -> Microsoft Corporation)
R2 DolbyDAXAPI; C:\WINDOWS\system32\dolbyaposvc\DAX3API.exe [644976 2019-03-13] (Dolby Laboratories, Inc. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2019-11-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.5.27.0\LenovoVantageService.exe [29488 2020-12-29] (Lenovo -> Lenovo Group Ltd.)
R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1643688 2019-05-06] (Lenovo -> Lenovo(beijing) Limited)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [371840 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [604216 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
S3 mfevtp; C:\Windows\system32\mfevtps.exe [509728 2019-01-16] (McAfee, Inc. -> McAfee, LLC)
S3 OpenVpnService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [15872 2018-08-09] () [File not signed]
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [75392 2018-08-09] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 OpenVPNServiceLegacy; C:\Program Files\OpenVPN\bin\openvpnserv.exe [75392 2018-08-09] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [13686592 2021-02-12] (Adlice -> )
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12835096 2021-01-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WirelessKB850NotificationService; C:\WINDOWS\system32\WirelessKB850NotificationService.exe [176624 2018-05-14] (Microsoft Corporation -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6e7eeeb0f1b98a43\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6e7eeeb0f1b98a43\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2021-02-25] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 BEDaisy; C:\Program Files (x86)\Common Files\BattlEye\BEDaisy.sys [3092344 2020-09-14] (BattlEye Innovations e.K. -> )
R3 BHTPCRDR; C:\WINDOWS\System32\drivers\bhtpcrdr.sys [175816 2020-05-21] (BayHub Technology Inc. -> BayHubTech/O2Micro)
S3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77384 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 HidGuardian; C:\WINDOWS\System32\drivers\HidGuardian.sys [26736 2017-04-17] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [47200 2020-02-08] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [511024 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [373808 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [86136 2019-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [517168 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [981032 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [117800 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [254024 2019-01-22] (McAfee, Inc. -> McAfee, LLC)
S3 RzDev_005c; C:\WINDOWS\System32\drivers\RzDev_005c.sys [51992 2019-10-10] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0306; C:\WINDOWS\System32\drivers\RzDev_0306.sys [51776 2019-09-19] (Razer USA Ltd. -> Razer Inc)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2018-08-09] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows -> Microsoft Corporation)
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus.sys [X]
S3 ssudmdm; \SystemRoot\system32\DRIVERS\ssudmdm.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-27 20:10 - 2021-02-27 20:11 - 000044912 _____ C:\Users\mrmar\Downloads\FRST.txt
2021-02-27 20:10 - 2021-02-27 20:10 - 002301440 _____ (Farbar) C:\Users\mrmar\Downloads\FRST64.exe
2021-02-27 20:10 - 2021-02-27 20:10 - 000000000 ____D C:\FRST
2021-02-27 10:30 - 2021-02-27 10:30 - 000002491 _____ C:\Users\mrmar\Desktop\Kamil (A4F) - Chrome.lnk
2021-02-25 19:57 - 2021-02-25 19:57 - 000000000 ____D C:\Users\mrmar\AppData\Local\GHISLER
2021-02-25 19:56 - 2021-02-25 19:56 - 000000000 ____D C:\Users\mrmar\AppData\Local\Tvsukernel
2021-02-25 19:41 - 2021-02-27 20:11 - 000757184 _____ C:\WINDOWS\ZAM.krnl.trace
2021-02-25 19:41 - 2021-02-25 19:41 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2021-02-25 19:41 - 2021-02-25 19:41 - 000003558 _____ C:\WINDOWS\system32\Tasks\AMHelper
2021-02-25 19:41 - 2021-02-25 19:41 - 000001344 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2021-02-25 19:41 - 2021-02-25 19:41 - 000001344 _____ C:\ProgramData\Desktop\Zemana AntiMalware.lnk
2021-02-25 19:41 - 2021-02-25 19:41 - 000000000 ____D C:\Users\mrmar\AppData\Local\Zemana
2021-02-25 19:41 - 2021-02-25 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2021-02-25 19:41 - 2021-02-25 19:41 - 000000000 ____D C:\Program Files (x86)\Zemana
2021-02-25 19:40 - 2021-02-25 19:41 - 000000000 ____D C:\Users\mrmar\AppData\Local\AMSDK
2021-02-25 19:40 - 2021-02-25 19:40 - 012795472 _____ (Zemana Ltd. ) C:\Users\mrmar\Downloads\AntiMalware_Setup.exe
2021-02-25 18:53 - 2021-02-25 18:53 - 000000277 _____ C:\WINDOWS\SysWOW64\InstallUtil.InstallLog
2021-02-25 18:53 - 2021-02-25 18:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo
2021-02-25 16:45 - 2021-02-25 16:45 - 000014156 _____ C:\Users\mrmar\advanced_ip_scanner_MAC.bin
2021-02-25 16:45 - 2021-02-25 16:45 - 000000015 _____ C:\Users\mrmar\advanced_ip_scanner_Comments.bin
2021-02-25 16:45 - 2021-02-25 16:45 - 000000015 _____ C:\Users\mrmar\advanced_ip_scanner_Aliases.bin
2021-02-25 16:08 - 2021-02-25 16:08 - 020385120 _____ (Famatech Corp. ) C:\Users\mrmar\Downloads\Advanced_IP_Scanner_2.5.3850.exe
2021-02-25 16:08 - 2021-02-25 16:08 - 000001061 _____ C:\Users\Public\Desktop\Advanced IP Scanner.lnk
2021-02-25 16:08 - 2021-02-25 16:08 - 000001061 _____ C:\ProgramData\Desktop\Advanced IP Scanner.lnk
2021-02-25 16:08 - 2021-02-25 16:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced IP Scanner v2
2021-02-25 16:08 - 2021-02-25 16:08 - 000000000 ____D C:\Program Files (x86)\Advanced IP Scanner
2021-02-25 15:57 - 2021-02-25 16:27 - 000000000 ____D C:\Users\mrmar\Downloads\faktury SDIRI
2021-02-25 11:48 - 2021-02-25 11:51 - 1458503343 _____ C:\Users\mrmar\Downloads\Narozky (1).zip
2021-02-24 18:41 - 2021-02-24 18:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-02-24 18:30 - 2021-02-25 19:54 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-02-23 21:12 - 2014-02-13 23:59 - 000024064 _____ C:\WINDOWS\zoek-delete.exe
2021-02-23 20:49 - 2021-02-23 21:07 - 000000000 ____D C:\zoek_backup
2021-02-23 20:48 - 2020-09-06 23:04 - 002038755 _____ C:\Users\mrmar\Desktop\zoek (1).exe
2021-02-23 20:46 - 2021-02-23 20:46 - 001800862 _____ C:\Users\mrmar\Downloads\zoek1.rar
2021-02-23 20:45 - 2021-02-23 20:45 - 000004370 _____ C:\Users\mrmar\Desktop\rog.txt
2021-02-23 19:24 - 2021-02-23 19:24 - 000002414 _____ C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Signal.lnk
2021-02-23 19:24 - 2021-02-23 19:24 - 000002406 _____ C:\Users\mrmar\Desktop\Signal.lnk
2021-02-23 19:23 - 2021-02-23 19:23 - 122952872 _____ (Open Whisper Systems) C:\Users\mrmar\Downloads\signal-desktop-win-1.40.1.exe
2021-02-22 23:28 - 2021-02-22 23:28 - 000860069 _____ C:\Users\mrmar\Downloads\Konkureční nabídka HVP (2).pdf
2021-02-22 23:28 - 2021-02-22 23:28 - 000235870 _____ C:\Users\mrmar\Downloads\Smlouva_č._2019936517 (1).pdf
2021-02-22 23:27 - 2021-02-22 23:27 - 000235870 _____ C:\Users\mrmar\Downloads\Smlouva_č._2019936517.pdf
2021-02-22 23:24 - 2021-02-22 23:24 - 000252056 _____ C:\Users\mrmar\Downloads\Sleva 2019923790 Jaroslav Jančík.pdf
2021-02-22 23:21 - 2021-02-22 23:21 - 000157313 _____ C:\Users\mrmar\Downloads\00004714546.PDF
2021-02-22 23:21 - 2021-02-22 23:21 - 000157311 _____ C:\Users\mrmar\Downloads\00004714547.PDF
2021-02-22 23:21 - 2021-02-22 23:21 - 000115209 _____ C:\Users\mrmar\Downloads\00004714549.PDF
2021-02-22 23:21 - 2021-02-22 23:21 - 000115202 _____ C:\Users\mrmar\Downloads\00004714548.PDF
2021-02-22 22:57 - 2021-02-22 22:57 - 000157334 _____ C:\Users\mrmar\Downloads\00004714449.PDF
2021-02-22 22:57 - 2021-02-22 22:57 - 000115179 _____ C:\Users\mrmar\Downloads\00004714450.PDF
2021-02-22 22:41 - 2021-02-22 22:41 - 000236122 _____ C:\Users\mrmar\Downloads\Smlouva č. 2019933629.pdf
2021-02-22 22:33 - 2021-02-22 22:40 - 000950768 _____ C:\Users\mrmar\Downloads\Konkureční nabídka HVP (1).pdf
2021-02-22 22:33 - 2021-02-22 22:33 - 000012095 _____ C:\Users\mrmar\Downloads\pro potřeby kalkulace.xlsx
2021-02-22 22:09 - 2021-02-22 22:10 - 000000000 ____D C:\Users\mrmar\Downloads\Narozky
2021-02-22 22:08 - 2021-02-22 22:09 - 469781001 _____ C:\Users\mrmar\Downloads\Narozky.zip
2021-02-22 22:01 - 2021-02-22 22:01 - 000115175 _____ C:\Users\mrmar\Downloads\2B94114 ZK.PDF
2021-02-22 22:01 - 2021-02-22 22:01 - 000115171 _____ C:\Users\mrmar\Downloads\1BY2015 ZK.PDF
2021-02-22 21:59 - 2021-02-22 21:59 - 000157325 _____ C:\Users\mrmar\Downloads\00004714399.PDF
2021-02-22 21:59 - 2021-02-22 21:59 - 000157312 _____ C:\Users\mrmar\Downloads\00004714397.PDF
2021-02-22 13:24 - 2021-02-22 13:24 - 000049447 _____ C:\Users\mrmar\Downloads\21100022.pdf
2021-02-22 13:19 - 2021-02-22 13:19 - 000047881 _____ C:\Users\mrmar\Downloads\21100001.pdf
2021-02-22 11:41 - 2021-02-22 11:41 - 000032912 _____ C:\Users\mrmar\Downloads\asp-osv-zakl (6).pdf
2021-02-22 11:40 - 2021-02-22 11:40 - 000030419 _____ C:\Users\mrmar\Downloads\asp-mv-nv-zakl (2).pdf
2021-02-22 09:56 - 2021-02-22 09:56 - 000047697 _____ C:\Users\mrmar\Downloads\asp-mv-nv-roz (2).pdf
2021-02-22 09:56 - 2021-02-22 09:56 - 000030419 _____ C:\Users\mrmar\Downloads\asp-mv-nv-zakl (1).pdf
2021-02-22 08:57 - 2021-02-22 08:57 - 000129077 _____ C:\Users\mrmar\Downloads\Faktura_s_razítkem_20FS11216 (3).pdf
2021-02-22 08:56 - 2021-02-22 08:56 - 000129077 _____ C:\Users\mrmar\Downloads\Faktura_s_razítkem_20FS11216 (2).pdf
2021-02-21 22:22 - 2021-02-21 22:22 - 000001799 _____ C:\Users\mrmar\Desktop\CrystalDiskInfo.lnk
2021-02-21 22:22 - 2021-02-21 22:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2021-02-21 22:22 - 2021-02-21 22:22 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2021-02-21 22:21 - 2021-02-21 22:21 - 004707568 _____ (Crystal Dew World ) C:\Users\mrmar\Downloads\CrystalDiskInfo8_11_0.exe
2021-02-21 19:54 - 2021-02-21 19:54 - 000631512 _____ C:\Users\mrmar\Downloads\756578267 (1).pdf
2021-02-21 19:53 - 2021-02-21 19:53 - 000012643 _____ C:\Users\mrmar\Downloads\2020 (1).xlsx
2021-02-21 19:50 - 2021-02-21 19:50 - 000015404 _____ C:\Users\mrmar\Downloads\etikety (19).pdf
2021-02-21 19:49 - 2021-02-21 19:49 - 000000540 _____ C:\Users\mrmar\Downloads\objednavky-2021-02-21-19-49-18.csv
2021-02-21 19:46 - 2021-02-21 19:46 - 000000519 _____ C:\Users\mrmar\Downloads\objednavky-2021-02-21-19-46-35.csv
2021-02-21 18:44 - 2021-02-21 18:44 - 000103302 _____ C:\Users\mrmar\Downloads\etikety (18).pdf
2021-02-21 18:43 - 2021-02-21 18:43 - 000111395 _____ C:\Users\mrmar\Downloads\pdf (30).pdf
2021-02-21 18:36 - 2021-02-21 18:36 - 000001783 _____ C:\Users\mrmar\Downloads\objednavky-2021-02-21-18-36-36.csv
2021-02-19 17:00 - 2021-02-19 17:00 - 000030715 _____ C:\Users\mrmar\Downloads\etikety.pdf
2021-02-19 16:59 - 2021-02-19 16:59 - 000091528 _____ C:\Users\mrmar\Downloads\pdf.pdf
2021-02-19 16:08 - 2021-02-19 16:10 - 000525174 _____ C:\Users\mrmar\Downloads\Kalkulace HAV Eichler BUS (1).pdf
2021-02-19 16:06 - 2021-02-19 16:03 - 000525677 _____ C:\Users\mrmar\Downloads\Kalkulace HAV Eichler BUS - kopie.pdf
2021-02-19 16:02 - 2021-02-19 16:03 - 000525677 _____ C:\Users\mrmar\Downloads\Kalkulace HAV Eichler BUS.pdf
2021-02-19 15:59 - 2021-02-19 15:59 - 000032912 _____ C:\Users\mrmar\Downloads\asp-osv-zakl (5).pdf
2021-02-19 15:53 - 2021-02-19 15:53 - 001079851 _____ C:\Users\mrmar\Downloads\lpu0919 - havarijní (2).pdf
2021-02-19 15:10 - 2021-02-19 15:13 - 000078447 _____ C:\Users\mrmar\Downloads\PDF Agro Monet vyúčtování 2020 úprava.xlsx
2021-02-19 14:55 - 2021-02-19 14:55 - 000468496 _____ C:\Users\mrmar\Downloads\Seznam pojištěných ELMOSTOJ 2020 (2).pdf
2021-02-18 16:50 - 2021-02-18 16:50 - 000201884 _____ C:\Users\mrmar\Downloads\Faktura - daňový doklad_ 2020-21235.pdf
2021-02-18 11:25 - 2021-02-18 11:25 - 000062102 _____ C:\Users\mrmar\Downloads\Příkaz mzdy - leden.pdf
2021-02-18 11:11 - 2021-02-18 11:11 - 000120698 _____ C:\Users\mrmar\Downloads\SKM_C224e21021810120 (1).pdf
2021-02-18 10:31 - 2021-02-19 15:23 - 000014288 _____ C:\Users\mrmar\Downloads\vyúčtování za 2020 akt. 15.2.2021 - doplněno.xlsx
2021-02-18 10:31 - 2021-02-18 10:31 - 000172808 _____ C:\Users\mrmar\Downloads\SKM_C224e21021810300.pdf
2021-02-18 10:26 - 2021-02-18 10:26 - 000014125 _____ C:\Users\mrmar\Downloads\vyúčtování za 2020 akt. 15.2.2021.xlsx
2021-02-18 10:15 - 2021-02-18 10:15 - 000120698 _____ C:\Users\mrmar\Downloads\SKM_C224e21021810120.pdf
2021-02-18 10:13 - 2021-02-18 10:13 - 000172711 _____ C:\Users\mrmar\Downloads\Scan (7) (1).pdf
2021-02-18 10:00 - 2021-02-18 10:00 - 000468496 _____ C:\Users\mrmar\Downloads\Seznam pojištěných ELMOSTOJ 2020 (1).pdf
2021-02-18 10:00 - 2021-02-18 10:00 - 000342202 _____ C:\Users\mrmar\Downloads\Dohody 2020 šití.pdf
2021-02-18 10:00 - 2021-02-18 10:00 - 000243438 _____ C:\Users\mrmar\Downloads\ELMOSTOJ PS č. 0510555015 předpis 2020 (1).pdf
2021-02-17 19:22 - 2021-02-17 19:22 - 000469975 _____ C:\Users\mrmar\Downloads\SRE21186919.pdf
2021-02-17 18:49 - 2021-02-17 18:49 - 000470246 _____ C:\Users\mrmar\Downloads\SRE21186244.pdf
2021-02-17 12:44 - 2021-02-17 12:44 - 000192324 _____ C:\Users\mrmar\Downloads\Smlouva č. 2019584294.pdf
2021-02-17 10:24 - 2021-02-17 10:24 - 000466321 _____ C:\Users\mrmar\Downloads\2020-008312 (3).pdf
2021-02-17 10:24 - 2021-02-17 10:24 - 000093576 _____ C:\Users\mrmar\Desktop\hlášenka 2020-008312.pdf
2021-02-17 10:23 - 2021-02-17 10:23 - 000090182 _____ C:\Users\mrmar\Downloads\00004619772.PDF
2021-02-17 10:04 - 2021-02-17 10:04 - 000466321 _____ C:\Users\mrmar\Downloads\2020-008312 (2).pdf
2021-02-17 10:04 - 2021-02-17 10:04 - 000466321 _____ C:\Users\mrmar\Downloads\2020-008312 (1).pdf
2021-02-16 21:20 - 2021-02-16 21:20 - 000000456 _____ C:\Users\mrmar\Downloads\rezervace.ics
2021-02-15 23:32 - 2019-12-07 01:49 - 000040960 _____ () C:\Users\mrmar\Desktop\memtest.exe
2021-02-15 23:31 - 2021-02-15 23:31 - 000017671 _____ C:\Users\mrmar\Downloads\MemTest.zip
2021-02-15 23:31 - 2019-12-07 01:49 - 000040960 _____ () C:\Users\mrmar\Downloads\memtest.exe
2021-02-15 22:51 - 2021-02-15 22:51 - 000407330 _____ C:\Users\mrmar\Downloads\2019767203-zelena-karta.pdf
2021-02-15 22:49 - 2021-02-15 22:49 - 000019456 _____ C:\Users\mrmar\Downloads\export-smluv (5).xls
2021-02-15 21:31 - 2021-02-15 21:37 - 000000000 ____D C:\ProgramData\RogueKiller
2021-02-15 21:31 - 2021-02-15 21:31 - 000000870 _____ C:\Users\Public\Desktop\RogueKiller.lnk
2021-02-15 21:31 - 2021-02-15 21:31 - 000000870 _____ C:\ProgramData\Desktop\RogueKiller.lnk
2021-02-15 21:31 - 2021-02-15 21:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2021-02-15 21:31 - 2021-02-15 21:31 - 000000000 ____D C:\Program Files\RogueKiller
2021-02-15 21:30 - 2021-02-15 21:30 - 040494928 _____ (Adlice Software ) C:\Users\mrmar\Downloads\RogueKiller_setup.exe
2021-02-15 20:50 - 2021-02-15 20:50 - 000000000 ____D C:\ProgramData\Sophos
2021-02-15 20:47 - 2021-02-15 20:47 - 001790024 _____ (Malwarebytes) C:\Users\mrmar\Downloads\JRT.exe
2021-02-15 20:47 - 2021-02-15 20:47 - 000002775 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2021-02-15 20:47 - 2021-02-15 20:47 - 000002775 _____ C:\ProgramData\Desktop\Sophos Virus Removal Tool.lnk
2021-02-15 20:47 - 2021-02-15 20:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2021-02-15 20:47 - 2021-02-15 20:47 - 000000000 ____D C:\Program Files (x86)\Sophos
2021-02-15 20:45 - 2021-02-15 20:46 - 206758184 _____ (Sophos Limited) C:\Users\mrmar\Downloads\Sophos Virus Removal Tool.exe
2021-02-15 20:39 - 2021-02-15 20:39 - 008463216 _____ (Malwarebytes) C:\Users\mrmar\Downloads\adwcleaner_8.1.exe
2021-02-15 19:07 - 2021-02-15 19:07 - 000007430 _____ C:\Users\mrmar\Downloads\3211107719.xlsx
2021-02-15 08:39 - 2021-02-15 08:39 - 002086424 _____ (Malwarebytes) C:\Users\mrmar\Downloads\MBSetup (1).exe
2021-02-15 08:39 - 2021-02-15 08:39 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-02-15 08:36 - 2021-02-15 08:36 - 008457584 _____ (Malwarebytes) C:\Users\mrmar\Downloads\adwcleaner_8.0.9.1.exe
2021-02-15 08:36 - 2021-02-15 08:36 - 008447152 _____ (Malwarebytes) C:\Users\mrmar\Downloads\AdwCleaner (1).exe
2021-02-14 21:50 - 2021-02-14 21:50 - 000013824 _____ C:\Users\mrmar\Downloads\export-smluv (4).xls
2021-02-14 21:49 - 2021-02-14 21:49 - 000216966 _____ C:\Users\mrmar\Downloads\209019300492_958_2019300492_Pojistná_smlouva.pdf
2021-02-14 21:31 - 2021-02-14 21:31 - 000448512 _____ (OldTimer Tools) C:\Users\mrmar\Downloads\TFC.exe
2021-02-14 21:30 - 2021-02-14 21:30 - 000050688 _____ (Atribune.org) C:\Users\mrmar\Downloads\ATF-Cleaner.exe
2021-02-14 19:53 - 2021-02-14 19:53 - 000166921 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100019.pdf
2021-02-14 19:44 - 2021-02-14 19:44 - 000162258 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100020.pdf
2021-02-14 18:52 - 2021-02-14 18:52 - 000080721 _____ C:\Users\mrmar\Downloads\3210601560 (2).pdf
2021-02-14 18:50 - 2021-02-14 18:50 - 000009453 _____ C:\Users\mrmar\Downloads\srážkoá daň DPPO MARTIN +Jitka 2021 (1).xlsx
2021-02-14 18:49 - 2021-02-14 18:49 - 000080721 _____ C:\Users\mrmar\Downloads\3210601560 (1).pdf
2021-02-14 18:47 - 2021-02-14 18:47 - 000049211 _____ C:\Users\mrmar\Downloads\20210210-103535.pdf
2021-02-14 18:42 - 2021-02-14 18:42 - 000009453 _____ C:\Users\mrmar\Downloads\srážkoá daň DPPO MARTIN +Jitka 2021.xlsx
2021-02-14 18:36 - 2021-02-14 18:36 - 000080721 _____ C:\Users\mrmar\Downloads\3210601560.pdf
2021-02-14 18:32 - 2021-02-14 18:32 - 000169605 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100027.pdf
2021-02-14 14:27 - 2021-02-14 14:30 - 000000000 ____D C:\Users\mrmar\Downloads\dyna (1)
2021-02-14 14:25 - 2021-02-14 14:25 - 000453232 _____ C:\Users\mrmar\Downloads\dyna (1).zip
2021-02-14 13:20 - 2021-02-14 13:20 - 000045469 _____ C:\Users\mrmar\Downloads\repository.kodi-czsk-1.0.2 (1).zip
2021-02-13 11:30 - 2021-02-13 11:30 - 007259744 _____ (Jan Fiala ) C:\Users\mrmar\Downloads\pspad504inst_cz.exe
2021-02-13 11:25 - 2021-02-13 11:25 - 000388608 _____ (Trend Micro Inc.) C:\Users\mrmar\Downloads\HijackThis (1).exe
2021-02-13 11:19 - 2021-02-13 11:19 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-02-13 11:19 - 2021-02-13 11:19 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-02-13 11:19 - 2021-02-13 11:19 - 001314112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-02-13 11:19 - 2021-02-13 11:19 - 000010892 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-02-13 11:18 - 2021-02-13 11:18 - 000231232 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-02-12 14:33 - 2021-02-12 14:33 - 001002063 _____ C:\Users\mrmar\Downloads\20210108094056.pdf
2021-02-12 14:32 - 2021-02-12 14:33 - 001002100 _____ C:\Users\mrmar\Downloads\20210108094029.pdf
2021-02-12 13:45 - 2021-02-12 13:45 - 000833049 _____ C:\Users\mrmar\Downloads\scan (7).pdf
2021-02-12 13:41 - 2021-02-12 13:41 - 000910755 _____ C:\Users\mrmar\Downloads\scan (6).pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000890724 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2356.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000887805 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2353.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000887175 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2351.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000886440 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2355.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000881442 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2352.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000872971 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2357.pdf
2021-02-12 13:32 - 2021-02-12 13:32 - 000866678 _____ C:\Users\mrmar\Downloads\Vinkulace2BF2354.pdf
2021-02-12 13:25 - 2021-02-12 13:25 - 000240787 _____ C:\Users\mrmar\Downloads\saz0754 (3).pdf
2021-02-12 11:55 - 2021-02-12 11:55 - 000081482 _____ C:\Users\mrmar\Downloads\8.2.2021.pdf
2021-02-12 11:55 - 2021-02-12 11:55 - 000025267 _____ C:\Users\mrmar\Downloads\menujan2021.pdf
2021-02-12 09:12 - 2021-02-12 09:12 - 000067277 _____ C:\Users\mrmar\Downloads\00004706913.PDF
2021-02-11 21:00 - 2021-02-11 21:00 - 000068326 _____ C:\Users\mrmar\Downloads\Potvrzení_žádosti_o_ukončení_smlouvy (26).pdf
2021-02-11 20:56 - 2021-02-11 20:56 - 000157464 _____ C:\Users\mrmar\Downloads\00004706673.PDF
2021-02-11 20:56 - 2021-02-11 20:56 - 000115207 _____ C:\Users\mrmar\Downloads\00004706674.PDF
2021-02-11 14:18 - 2021-02-11 14:18 - 000067326 _____ C:\Users\mrmar\Downloads\LUGO plus.xlsx
2021-02-11 11:05 - 2021-02-11 11:05 - 000128865 _____ C:\Users\mrmar\Downloads\Seznam vozidel ADP - HVP + A4F.xlsx
2021-02-11 10:48 - 2021-02-11 10:48 - 000562130 _____ C:\Users\mrmar\Downloads\2021-000471.pdf
2021-02-11 10:15 - 2021-02-11 10:15 - 000333049 _____ C:\Users\mrmar\Downloads\Seznam Flotila HZB, s.r.o. - DIRECT + HVP + A4F.xlsx
2021-02-11 10:14 - 2021-02-11 10:14 - 000328840 _____ C:\Users\mrmar\Downloads\Seznam Flotila UNICUS Bohemia - Direct + HVP + A4F.xlsx
2021-02-10 10:13 - 2021-02-10 10:13 - 000512882 _____ C:\Users\mrmar\Downloads\Pojistné podmínky - Léto 2020, Zima 2020-2021 (1).pdf
2021-02-10 08:41 - 2021-02-10 08:42 - 001415920 _____ C:\Users\mrmar\Downloads\kalkulace.xlsm
2021-02-09 18:41 - 2021-02-09 18:41 - 000086826 _____ C:\Users\mrmar\Downloads\Export.pdf
2021-02-09 17:51 - 2021-02-09 17:51 - 000339074 _____ C:\Users\mrmar\Downloads\Vydana faktura - 20-30-0026.pdf
2021-02-09 17:05 - 2021-02-09 17:05 - 000017748 _____ C:\Users\mrmar\Downloads\Seznam vydaných faktur 09-02-21 17-05-14 Kamil Růžička.xlsx
2021-02-09 17:04 - 2021-02-09 17:04 - 000003833 _____ C:\Users\mrmar\Downloads\Seznam vydaných faktur 09-02-21 17-03-33 Kamil Růžička.xlsx
2021-02-09 16:53 - 2021-02-09 16:53 - 000609009 _____ C:\Users\mrmar\Downloads\2211367736 (1).pdf
2021-02-09 13:35 - 2021-02-09 13:35 - 001809631 _____ C:\Users\mrmar\Documents\Doručená pošta.pdf
2021-02-08 20:32 - 2021-02-08 20:32 - 000608475 _____ C:\Users\mrmar\Downloads\2211367736.pdf
2021-02-08 20:27 - 2021-02-08 20:27 - 000611136 _____ C:\Users\mrmar\Downloads\2211187717.pdf
2021-02-08 19:34 - 2021-02-08 19:34 - 000315123 _____ C:\Users\mrmar\Downloads\CPP01_Pojistné_podmínky_CP_-01_20-1.pdf
2021-02-08 19:28 - 2021-02-08 19:28 - 000240787 _____ C:\Users\mrmar\Downloads\saz0754 (2).pdf
2021-02-08 14:20 - 2021-02-08 14:20 - 000234149 _____ C:\Users\mrmar\Downloads\6009064596 Pojistná smlouva.pdf
2021-02-08 14:20 - 2021-02-08 14:20 - 000230836 _____ C:\Users\mrmar\Downloads\6009064598 Pojistná smlouva.pdf
2021-02-07 16:46 - 2021-02-07 16:46 - 001026279 _____ C:\Users\mrmar\Downloads\ČSAD Kyjov Servisní flotila Direct + HVP + A4F 1Q 2021-2.xlsx
2021-02-07 16:09 - 2021-02-07 23:13 - 000002379 _____ C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-02-07 16:09 - 2021-02-07 23:13 - 000002371 _____ C:\Users\mrmar\Desktop\Microsoft Teams.lnk
2021-02-07 16:09 - 2021-02-07 16:09 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Teams
2021-02-06 11:46 - 2021-02-06 11:46 - 000000000 ____D C:\Program Files (x86)\Teams Installer
2021-02-06 11:44 - 2021-02-06 11:44 - 000002509 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002504 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002503 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002467 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002466 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000002446 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-02-06 11:44 - 2021-02-06 11:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-02-06 11:40 - 2021-02-21 17:16 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-02-06 11:40 - 2021-02-06 11:40 - 000000000 ____D C:\Program Files\Microsoft Office 15
2021-02-06 11:36 - 2021-02-06 11:36 - 000001205 _____ C:\Users\mrmar\Desktop\OneDrive - Martin Persch.lnk
2021-02-06 11:31 - 2021-02-06 11:32 - 000000000 ____D C:\Users\mrmar\AppData\Local\SaraResults
2021-02-06 11:28 - 2021-02-27 20:03 - 000000000 ___RD C:\Users\mrmar\OneDrive - Martin Persch
2021-02-06 11:18 - 2021-02-06 11:18 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2021-02-06 11:18 - 2021-02-06 11:18 - 000000000 ____D C:\Users\mrmar\AppData\Local\SaRALogs
2021-02-06 09:36 - 2021-02-06 09:36 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bing Wallpaper
2021-02-05 08:06 - 2021-02-05 08:06 - 010934339 _____ C:\Users\mrmar\Downloads\screencapture-idnes-cz-2021-02-05-08_06_03.pdf
2021-02-05 07:57 - 2021-02-05 07:57 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2021-02-05 07:56 - 2021-02-05 07:56 - 003213736 _____ (Lenovo ) C:\Users\mrmar\Downloads\LSBSetup (1).exe
2021-02-04 18:39 - 2021-02-04 18:39 - 000170238 _____ C:\Users\mrmar\Downloads\VNE5046N40M046904.pdf
2021-02-04 18:37 - 2021-02-04 18:37 - 000169471 _____ C:\Users\mrmar\Downloads\VNE5446P30M046902.pdf
2021-02-04 18:37 - 2021-02-04 18:37 - 000169467 _____ C:\Users\mrmar\Downloads\VNE5446P50M046920.pdf
2021-02-04 18:36 - 2021-02-04 18:40 - 000230682 _____ C:\Users\mrmar\Downloads\VNE5046N80M046906.pdf
2021-02-04 18:35 - 2021-02-04 18:35 - 000168112 _____ C:\Users\mrmar\Downloads\VNE5046N20M046903.pdf
2021-02-04 18:35 - 2021-02-04 18:35 - 000168086 _____ C:\Users\mrmar\Downloads\VNE5046N60M046905.pdf
2021-02-04 18:34 - 2021-02-04 18:34 - 000173329 _____ C:\Users\mrmar\Downloads\VNE5046N40M046899.pdf
2021-02-04 18:18 - 2021-02-04 18:18 - 001239505 _____ C:\Users\mrmar\Downloads\ČSAD Kyjov Servisní flotila Direct + HVP + A4F po změnách OPRAVA - kopie.xlsx
2021-02-04 18:06 - 2021-02-04 18:06 - 000001084 _____ C:\Users\mrmar\Desktop\AS400.lnk
2021-02-04 10:39 - 2021-02-04 10:39 - 000207872 _____ C:\Users\mrmar\Documents\kyjov.xls
2021-02-02 20:56 - 2021-02-02 20:56 - 000229306 _____ C:\Users\mrmar\Downloads\woo-idoklad (1).zip
2021-02-02 20:45 - 2021-02-02 20:48 - 000171959 _____ C:\Users\mrmar\Downloads\00004685157.PDF
2021-02-02 20:36 - 2021-02-02 20:36 - 000161763 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100008.pdf
2021-02-02 20:12 - 2021-02-02 20:12 - 000090604 _____ C:\Users\mrmar\Downloads\075-pripojisteni.pdf
2021-02-02 19:47 - 2021-02-02 19:47 - 000017465 _____ C:\Users\mrmar\Downloads\Seznam vydaných faktur 02-02-21 19-47-38 .xlsx
2021-02-02 19:47 - 2021-02-02 19:47 - 000009379 _____ C:\Users\mrmar\Downloads\Seznam vydaných faktur 02-02-21 19-47-08 .xlsx
2021-02-02 19:11 - 2021-02-02 19:11 - 000137883 _____ C:\Users\mrmar\Downloads\priloha_868740494_0_Inventura OSVČ.pdf
2021-02-02 18:55 - 2021-02-02 18:55 - 000496655 _____ C:\Users\mrmar\Downloads\Financni-zpravodaj_2021-c-08.pdf
2021-02-02 17:14 - 2021-02-02 17:14 - 121801472 _____ (Open Whisper Systems) C:\Users\mrmar\Downloads\signal-desktop-win-1.39.6.exe
2021-02-02 17:01 - 2021-02-02 17:01 - 000348915 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21-30-0003.pdf
2021-02-02 17:01 - 2021-02-02 17:01 - 000338794 _____ C:\Users\mrmar\Downloads\Vydana faktura - 20-30-0103.pdf
2021-02-02 16:48 - 2021-02-02 16:48 - 000240787 _____ C:\Users\mrmar\Downloads\saz0754 (1).pdf
2021-02-02 16:35 - 2021-02-02 16:35 - 000200987 _____ C:\Users\mrmar\Downloads\WhatsApp Image 2021-01-31 at 10.39.15.jpeg
2021-02-02 16:26 - 2021-02-02 16:26 - 000417693 _____ C:\Users\mrmar\Downloads\t0415a0 (1).pdf
2021-02-02 16:19 - 2021-02-02 16:19 - 001125032 _____ C:\Users\mrmar\Downloads\VECTOR-protokol-o-kontrole-ČNB-web.pdf
2021-02-02 16:00 - 2021-02-02 16:01 - 000417693 _____ C:\Users\mrmar\Downloads\t0415a0.pdf
2021-02-02 15:39 - 2021-02-02 21:49 - 000000000 ____D C:\Users\mrmar\Downloads\YetiForceCRM-6.1.0-complete
2021-02-02 15:38 - 2021-02-02 15:38 - 053816787 _____ C:\Users\mrmar\Downloads\YetiForceCRM-6.1.0-complete.zip
2021-02-02 15:04 - 2021-02-02 15:04 - 000348665 _____ C:\Users\mrmar\Downloads\Vydana faktura - 20-30-0137.pdf
2021-02-02 15:04 - 2021-02-02 15:04 - 000338590 _____ C:\Users\mrmar\Downloads\Vydana faktura - 20-30-0119.pdf
2021-02-02 15:04 - 2021-02-02 15:04 - 000338496 _____ C:\Users\mrmar\Downloads\Vydana faktura - 20-30-0134.pdf
2021-02-02 15:03 - 2021-02-02 15:03 - 000048450 _____ C:\Users\mrmar\Downloads\Pohyb_23656424851_na_uctu_2400448495.pdf
2021-02-02 14:48 - 2021-02-02 14:48 - 016544178 _____ C:\Users\mrmar\Downloads\hala (2).zip
2021-02-02 10:39 - 2021-02-25 19:46 - 000001252 _____ C:\Users\mrmar\Desktop\Kamil (Chorvatské ENC) - Chrome.lnk
2021-02-02 09:45 - 2021-02-02 09:45 - 000037167 _____ C:\Users\mrmar\Downloads\00004684186.CSV
2021-02-02 09:43 - 2021-02-02 09:43 - 000062287 _____ C:\Users\mrmar\Downloads\00004684181.CSV
2021-02-02 09:35 - 2021-02-02 09:35 - 000017632 _____ C:\Users\mrmar\Downloads\kontingencni-tabulka-excel-reseni.xlsx
2021-02-01 19:03 - 2021-02-01 19:03 - 000166896 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100006.pdf
2021-02-01 18:59 - 2021-02-01 18:59 - 000166281 _____ C:\Users\mrmar\Downloads\Vydana faktura - 21100005.pdf
2021-01-29 19:32 - 2021-01-29 19:32 - 000000000 ____D C:\Users\mrmar\Downloads\1
2021-01-29 19:30 - 2021-01-29 19:30 - 007706285 _____ C:\Users\mrmar\Downloads\ESP2.EXE
2021-01-29 19:29 - 2021-01-29 19:29 - 000117283 _____ (Xceed Software Inc. 1-450-442-2626 sfx@xceedsoft.com http://www.xceedsoft.com) C:\Users\mrmar\Downloads\AS400Attribs.exe
2021-01-29 19:29 - 2001-07-09 12:33 - 000000056 _____ C:\Users\mrmar\Downloads\AS400attribs.vbw
2021-01-29 19:29 - 2001-07-09 12:32 - 000017015 _____ C:\Users\mrmar\Downloads\AS400Attribs.frm
2021-01-29 19:29 - 2001-07-09 12:32 - 000000704 _____ C:\Users\mrmar\Downloads\AS400attribs.vbp
2021-01-29 19:29 - 2001-07-05 22:05 - 000015772 _____ C:\Users\mrmar\Downloads\ATMAPI32.BAS
2021-01-29 19:06 - 2021-01-29 19:10 - 000013490 _____ C:\Users\mrmar\Downloads\Sešit2.xlsm
2021-01-29 18:56 - 2021-01-29 18:56 - 000022298 _____ C:\Users\mrmar\Documents\doc1.docm
2021-01-29 18:39 - 2021-01-29 18:39 - 000018049 _____ C:\Users\mrmar\Downloads\Copy of cwbtfxla.zip
2021-01-29 18:39 - 2021-01-29 18:39 - 000000000 ____D C:\Users\mrmar\Downloads\cwbtfxla
2021-01-29 18:35 - 2021-01-29 18:35 - 000000000 ___SD C:\Users\mrmar\Documents\Zdroje dat
2021-01-28 08:53 - 2021-01-28 08:53 - 000089552 _____ C:\Users\mrmar\Downloads\pdf (29).pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-02-27 20:07 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-02-27 20:06 - 2019-12-21 13:40 - 000000000 ____D C:\Users\mrmar\AppData\Local\ElevatedDiagnostics
2021-02-27 20:04 - 2019-09-20 14:13 - 000000000 ____D C:\ProgramData\NVIDIA
2021-02-27 20:03 - 2020-06-03 12:36 - 000000000 ___RD C:\Users\mrmar\Creative Cloud Files
2021-02-27 20:03 - 2019-11-30 23:04 - 000000000 ___RD C:\Users\mrmar\Disk Google
2021-02-27 20:02 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-02-27 20:02 - 2019-11-29 08:42 - 000000000 __SHD C:\Users\mrmar\IntelGraphicsProfiles
2021-02-27 18:08 - 2020-03-10 16:54 - 000000000 ____D C:\ProgramData\Mozilla
2021-02-27 18:04 - 2020-10-01 15:18 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-02-27 16:11 - 2020-03-10 16:54 - 000000000 ____D C:\Users\mrmar\AppData\LocalLow\Mozilla
2021-02-27 13:47 - 2019-12-19 11:24 - 000000000 ____D C:\Users\mrmar\Documents\Soubory aplikace Outlook
2021-02-27 11:03 - 2020-11-23 09:39 - 000000000 ___RD C:\Users\mrmar\Documents\Scanned Documents
2021-02-27 10:41 - 2019-11-29 08:45 - 000000000 ____D C:\Users\mrmar\AppData\Local\PlaceholderTileLogoFolder
2021-02-27 10:40 - 2020-10-12 10:43 - 000000000 ____D C:\Users\mrmar\AppData\Local\Deployment
2021-02-27 10:33 - 2019-12-09 11:00 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2021-02-27 10:33 - 2019-12-09 11:00 - 000000000 ___HD C:\ProgramData\Documents\AdobeGCData
2021-02-27 10:29 - 2020-12-03 16:58 - 000000000 ___HD C:\adobeTemp
2021-02-27 10:29 - 2019-12-25 23:04 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-02-26 02:39 - 2019-11-29 08:52 - 000002312 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-02-25 20:02 - 2020-10-01 15:28 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-02-25 20:02 - 2019-12-07 15:41 - 000719302 _____ C:\WINDOWS\system32\perfh005.dat
2021-02-25 20:02 - 2019-12-07 15:41 - 000145428 _____ C:\WINDOWS\system32\perfc005.dat
2021-02-25 20:02 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-02-25 19:54 - 2020-10-01 15:27 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-02-25 19:54 - 2020-10-01 15:18 - 000008192 ___SH C:\DumpStack.log.tmp
2021-02-25 19:54 - 2020-03-27 18:57 - 000000000 ____D C:\WINDOWS\TempInst
2021-02-25 19:54 - 2020-03-10 16:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-02-25 19:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-02-25 19:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-02-25 19:54 - 2019-12-07 10:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI
2021-02-25 19:54 - 2019-11-30 00:23 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-02-25 19:54 - 2019-09-20 14:08 - 000000000 ___HD C:\Intel
2021-02-25 19:54 - 2019-09-20 13:53 - 000000000 ____D C:\ProgramData\Lenovo
2021-02-25 18:53 - 2020-10-01 15:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT
2021-02-25 18:53 - 2019-09-20 13:53 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-02-25 18:51 - 2020-10-01 15:27 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2114862974-1071683145-3095331456-1001
2021-02-25 18:51 - 2020-10-01 11:56 - 000002376 _____ C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-02-25 16:45 - 2020-10-01 11:56 - 000000000 ____D C:\Users\mrmar
2021-02-25 12:00 - 2019-11-29 01:11 - 000000000 ____D C:\Users\mrmar\AppData\Local\D3DSCache
2021-02-24 18:41 - 2020-03-10 16:54 - 000001016 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-02-23 21:29 - 2019-11-29 08:48 - 000002447 _____ C:\Users\mrmar\Desktop\Martin - Chrome.lnk
2021-02-23 21:27 - 2019-12-04 17:45 - 000000008 __RSH C:\ProgramData\ntuser.pol
2021-02-23 21:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2021-02-23 21:07 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-02-23 20:47 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-02-23 20:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-02-23 20:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-02-23 20:02 - 2019-12-01 09:53 - 000000000 ____D C:\Program Files (x86)\Grand Theft Auto V
2021-02-23 07:13 - 2019-11-29 01:01 - 000000000 ____D C:\Users\mrmar\AppData\Local\CrashDumps
2021-02-22 22:39 - 2019-11-29 08:42 - 000000000 ____D C:\Users\mrmar\AppData\Local\Packages
2021-02-21 23:30 - 2020-08-21 11:13 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-02-21 19:32 - 2019-09-20 14:17 - 000000000 ____D C:\ProgramData\Goodix
2021-02-21 17:15 - 2020-06-09 07:05 - 000002430 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-02-21 17:15 - 2020-06-09 07:05 - 000002268 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-02-21 17:15 - 2020-06-09 07:05 - 000002268 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-02-21 17:15 - 2019-11-29 08:42 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Adobe
2021-02-19 16:03 - 2019-12-02 21:22 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\vlc
2021-02-18 11:16 - 2020-06-25 17:50 - 000000000 ____D C:\Users\mrmar\Desktop\tisk
2021-02-17 08:31 - 2019-12-25 23:06 - 000000000 ____D C:\Program Files\Adobe
2021-02-15 21:27 - 2021-01-05 19:47 - 000000000 ____D C:\Users\mrmar\Downloads\LOIC-1.0.8-binary
2021-02-15 21:16 - 2019-12-08 20:42 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\FileZilla
2021-02-15 20:56 - 2020-04-06 10:20 - 000000000 ____D C:\Ais_Win
2021-02-15 20:42 - 2020-03-24 13:04 - 000000000 ____D C:\AdwCleaner
2021-02-15 19:11 - 2020-05-29 15:15 - 000002125 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
2021-02-15 19:11 - 2020-05-29 15:15 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2021-02-15 19:10 - 2020-10-01 15:27 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-02-15 19:04 - 2019-12-05 09:10 - 000000000 ____D C:\Users\mrmar\AppData\Local\Adobe
2021-02-15 19:02 - 2020-10-18 11:00 - 000000000 ____D C:\Users\mrmar\Desktop\100CANON - lepší
2021-02-14 10:22 - 2019-11-29 08:42 - 000000000 ____D C:\Users\mrmar\AppData\Local\ConnectedDevicesPlatform
2021-02-13 11:48 - 2020-10-01 20:22 - 000113554 ____H C:\Users\mrmar\AppData\Local\IconCache.db.backup
2021-02-13 11:41 - 2020-12-21 17:00 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Zoom
2021-02-13 11:30 - 2019-12-25 23:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSPad editor
2021-02-13 11:30 - 2019-12-25 23:01 - 000000000 ____D C:\Program Files (x86)\PSPad editor
2021-02-13 11:22 - 2020-10-01 15:18 - 005125336 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-02-13 11:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-02-13 11:21 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-02-13 11:21 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-02-12 17:30 - 2019-11-30 00:47 - 130141752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-02-12 17:30 - 2019-11-30 00:47 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-02-12 09:00 - 2019-04-19 06:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-02-09 17:24 - 2020-01-05 17:52 - 000000000 ___RD C:\Users\mrmar\Dropbox
2021-02-08 19:19 - 2019-12-31 13:28 - 000000592 ____H C:\Users\mrmar\Downloads\.picasa.ini
2021-02-08 19:16 - 2020-10-01 15:27 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-02-08 19:16 - 2020-10-01 15:27 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-02-07 16:10 - 2020-11-10 19:12 - 000000000 ____D C:\Users\mrmar\AppData\Local\SquirrelTemp
2021-02-06 11:47 - 2019-04-19 06:05 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-02-06 11:40 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-02-06 09:33 - 2020-10-01 15:27 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-02-06 09:33 - 2020-10-01 15:27 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-02-05 20:04 - 2020-08-21 11:13 - 000734016 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
2021-02-05 20:03 - 2020-08-21 11:13 - 000470848 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
2021-02-05 07:59 - 2020-01-17 19:30 - 000000000 ____D C:\Users\mrmar\AppData\Local\LenovoServiceBridge
2021-02-05 07:57 - 2020-10-01 15:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-02-05 07:55 - 2020-10-02 14:34 - 000003001 _____ C:\WINDOWS\system32\InstallUtil.InstallLog
2021-02-03 15:51 - 2020-11-21 17:56 - 000000000 ____D C:\Users\mrmar\AppData\Roaming\Kodi
2021-01-31 20:47 - 2020-02-08 16:50 - 000000000 ____D C:\Program Files (x86)\Steam
2021-01-30 22:25 - 2020-02-09 08:07 - 000000000 ____D C:\Users\mrmar\AppData\Local\MK11

==================== Files in the root of some directories ========

2019-12-04 17:45 - 2019-12-04 17:45 - 001138744 _____ (Akeo Consulting) C:\Program Files (x86)\rufus-3.8.exe
2020-10-18 18:23 - 2020-10-22 17:29 - 000000132 _____ () C:\Users\mrmar\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2021-02-24 18:34 - 2021-02-24 18:34 - 000000000 _____ () C:\Users\mrmar\AppData\Local\oobelibMkey.log
2020-03-01 21:41 - 2020-03-24 21:25 - 000000128 _____ () C:\Users\mrmar\AppData\Local\PUTTY.RND
2020-01-14 09:19 - 2020-01-14 09:19 - 000000017 _____ () C:\Users\mrmar\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK

Uživatelský avatar
Martinor
Level 3
Level 3
Příspěvky: 437
Registrován: listopad 06
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline
Kontakt:

Re: Kontrola logu ntb

Příspěvekod Martinor » 27 úno 2021 20:16

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-02-2021
Ran by mrmar (27-02-2021 20:11:36)
Running from C:\Users\mrmar\Downloads
Windows 10 Home Version 2004 19041.804 (X64) (2020-10-01 14:27:19)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2114862974-1071683145-3095331456-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2114862974-1071683145-3095331456-503 - Limited - Disabled)
Guest (S-1-5-21-2114862974-1071683145-3095331456-501 - Limited - Disabled)
mrmar (S-1-5-21-2114862974-1071683145-3095331456-1001 - Administrator - Enabled) => C:\Users\mrmar
WDAGUtilityAccount (S-1-5-21-2114862974-1071683145-3095331456-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Actual Multiple Monitors 8.14.3 (HKLM-x32\...\Actual Multiple Monitors_is1) (Version: 8.14.3 - Actual Tools)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 21.001.20138 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.3.1.470 - Adobe Inc.)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Advanced IP Scanner 2.5 (HKLM-x32\...\{4012E407-3BB2-443D-95D0-FC6662AA2E50}) (Version: 2.5.3850 - Famatech)
Aktualizace NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
AudaPen/AudaStation v.2.64 (Remove Only) (HKLM-x32\...\{FE58DBD8-129B-11D7-8D51-005056CAD6CB}) (Version: 2.64.0.28 - Audatex)
Backup and Sync from Google (HKLM\...\{00BA5D43-DC76-4DF2-A38C-5D3B8FABF5E4}) (Version: 3.54.3529.0458 - Google, Inc.)
Balíček ovladače systému Windows - Broadcom Corporation (bcbtums) Bluetooth (07/14/2015 12.0.1.658) (HKLM\...\BABE4E18F2E0DA329C1139E5584082BBE6F64E5F) (Version: 07/14/2015 12.0.1.658 - Broadcom Corporation)
Balíček ovladače systému Windows - Silicon Laboratories Inc. (silabser) Ports (06/20/2019 10.1.8.2466) (HKLM\...\0DCBF9E02547BF68CDF30C6659AFF6168B61068A) (Version: 06/20/2019 10.1.8.2466 - Silicon Laboratories Inc.)
Balíček ovladače systému Windows - Sony Computer Entertainment Inc. Wireless controller for PLAYSTATION(R)3 Driver Package (01/20/2012 1.4.0.0) (HKLM\...\D5410AE5FA467EF0F19558D5F60C991A79E11B51) (Version: 01/20/2012 1.4.0.0 - Sony Computer Entertainment Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bing Wallpaper (HKLM-x32\...\{8B387E3C-BF8E-4550-B4ED-A1400EC855AA}) (Version: 1.0.8.2 - Microsoft Corporation)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
CrystalDiskInfo 8.11.0 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.11.0 - Crystal Dew World)
cwbin64a (HKLM\...\{B84E3B73-8A6D-434A-B656-327A560BDE24}) (Version: 05.04.0000 - IBM) Hidden
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
FAR file manager (HKLM-x32\...\FAR manager) (Version: - )
FileZilla Client 3.52.0.5 (HKLM-x32\...\FileZilla Client) (Version: 3.52.0.5 - Tim Kosse)
GENERAL 8.2.0.8 (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\GENERAL 8.2.0.8) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 88.0.4324.190 - Google LLC)
GpsVideoPlayer (HKLM-x32\...\{2B66B3E3-3FE6-4D50-A9FA-BD4A39597EB1}) (Version: 1.0.1.54 - Your Company Name)
Grand Theft Auto V Update (HKLM-x32\...\R3JhbmRUaGVmdEF1dG9W_is1) (Version: 1 - )
Hitman 3 (HKLM-x32\...\Hitman 3_is1) (Version: - )
HP Color LaserJet Pro MFP M477 (HKLM-x32\...\{15758d59-89d2-4595-b92f-0145a142f8f7}) (Version: 16.0.19137.738 - Hewlett-Packard)
HP Dropbox Plugin (HKLM-x32\...\{19EDEC5D-055E-4AD0-88AC-C342608FC47E}) (Version: 36.0.445.57508 - HP)
HP Google Drive Plugin (HKLM-x32\...\{1B225296-B1F1-40B3-8427-844E97CB2D1B}) (Version: 36.0.445.57508 - HP)
HPCLJProMFPM477 (HKLM-x32\...\{9F4A8FAA-994E-4623-AB4C-D00F51DA189D}) (Version: 0.05.0000 - Hewlett-Packard) Hidden
IBM iSeries Access for Windows (HKLM-x32\...\ClientAccessExpress) (Version: - )
IBM iSeries Access for Windows SI37892 (HKLM-x32\...\ClientAccessExpressSP) (Version: - )
Intel(R) Chipset Device Software (HKLM-x32\...\{70281077-96c3-4f75-938c-dc4746110c00}) (Version: 10.1.17903.8106 - Intel(R) Corporation)
KeyFreeze (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\266e56dfe0bcee5a) (Version: 1.0.0.1 - KeyFreeze)
Kodi (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Kodi) (Version: - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo Service Bridge (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.1.7 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0117 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 3.5.27.0 - Lenovo Group Ltd.)
LogiOptionsExcelAddin (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\5B9DBC017A73395321F758581D1CBC19EA9DF4FF) (Version: 8.36.40.0 - Logitech)
LogiOptionsWordAddin (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\77F95DB8F75F35C40BD868B4D39ADCCB966A0FD1) (Version: 8.36.40.0 - Logitech)
Logitech Options (HKLM\...\LogiOptions) (Version: 8.36.86 - Logitech)
Microsoft 365 Apps pro firmy - cs-cz (HKLM\...\O365BusinessRetail - cs-cz) (Version: 16.0.13628.20448 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 88.0.705.74 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.141.59 - )
Microsoft OneDrive (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\OneDriveSetup.exe) (Version: 21.016.0124.0003 - Microsoft Corporation)
Microsoft Support and Recovery Assistant (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\339020b868450372) (Version: 17.0.5991.13 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\Teams) (Version: 1.3.00.34662 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60724 - Microsoft Corporation)
Minimal ADB and Fastboot version 1.4.3 (HKLM-x32\...\{B561660D-8B3C-491D-9E3E-293F14FCAADA}_is1) (Version: 1.4.3 - Samuel Rodberg)
Mozilla Firefox 86.0 (x64 cs) (HKLM\...\Mozilla Firefox 86.0 (x64 cs)) (Version: 86.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 74.0 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA FrameView SDK 1.1.4923.29214634 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29214634 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.20.5.70 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.5.70 - NVIDIA Corporation)
NVIDIA GeForce NOW 2.0.26.116 (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeforceNOW) (Version: 2.0.26.116 - NVIDIA Corporation)
NVIDIA Install Application (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer) (Version: 2.1002.344.0 - NVIDIA Corporation) Hidden
NVIDIA Ovladače grafiky 452.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 452.11 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13628.20330 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.13628.20274 - Microsoft Corporation) Hidden
OpenVPN 2.4.5 (HKLM\...\OpenVPN) (Version: 2.4.5 - LinuxBox.cz)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.8 - Google, Inc.)
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 5.0.4.543 - Jan Fiala)
PuTTY release 0.73 (64-bit) (HKLM\...\{44F7642C-AB7E-4468-B028-E8D08A0CBB0E}) (Version: 0.73.0.0 - Simon Tatham)
qBittorrent 4.2.1 (HKLM-x32\...\qBittorrent) (Version: 4.2.1 - The qBittorrent project)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
RogueKiller version 14.8.5.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 14.8.5.0 - Adlice Software)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.00.01.24 - HP Printing Korea Co., Ltd.)
Samsung Easy Wireless Setup (HKLM-x32\...\Easy Wireless Setup) (Version: 3.70.18.0 - Samsung Electronics Co., Ltd.)
Samsung OCR Software (HKLM-x32\...\Samsung OCR Software) (Version: 1.01.18 (31.05.2018) - HP Printing Korea Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.)
Signal 1.31.0 (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\{7d96caee-06e6-597c-9f2f-c7bb2e0948b4}) (Version: 1.31.0 - Open Whisper Systems)
Signal 1.40.1 (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\7d96caee-06e6-597c-9f2f-c7bb2e0948b4) (Version: 1.40.1 - Open Whisper Systems)
Software602 Form Filler (HKLM-x32\...\{9210AEE3-6ECB-4271-A125-1039E94A6A51}) (Version: 4.75 - Software602 a.s.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.7.0 - Sophos Limited)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{39AF0813-FA7B-4860-ADBE-93B9B214B914}) (Version: 1.3.0.28779 - Microsoft Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.5.3 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.14.5 - TeamViewer)
Technitium MAC Address Changer v6.0 (HKLM-x32\...\TMACv6.0) (Version: 6.0 - Technitium)
Tftpd64 Standalone Edition (remove only) (HKLM-x32\...\Tftpd64) (Version: - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
Ulož.to FileManager 2.77 (64-bit) (HKLM\...\3f2e2cd28b0e4e4396c2402fbc85a0f0_is1) (Version: 2.77 - Uloz.to cloud a.s.)
VAT(Custom) Programmable remote control V8 (HKLM-x32\...\VAT(Custom) Programmable remote control V8) (Version: 8.2.2.6.200113 - VAT Electronic s.r.o.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.12 - VideoLAN)
Win32DiskImager version 1.0.0 (HKLM-x32\...\{3DFFA293-DF2C-4B23-92E5-3433BDC310E1}}_is1) (Version: 1.0.0 - ImageWriter Developers)
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs)
WinDirStat 1.1.2 (HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\WinDirStat) (Version: - )
Zemana AntiMalware verze 3.2.27 (HKLM-x32\...\{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1) (Version: 3.2.27 - Zemana)

Packages:
=========
Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2020-05-29] (Adobe Systems Incorporated)
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2020-07-12] (Adobe Systems Incorporated)
Deezer Music -> C:\Program Files\WindowsApps\Deezer.62021768415AF_4.32.20.0_x86__q7m17pa7q8kj0 [2021-02-21] (Deezer SA)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-12-10] (Microsoft Corporation)
Intel® Graphics Control Panel -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsControlPanel_3.3.0.0_x64__8j3eq9eme6ctt [2020-02-26] (INTEL CORP)
KONICA MINOLTA Print Experience -> C:\Program Files\WindowsApps\KONICAMINOLTAINC.KONICAMINOLTAPrintExperience_1.4.1.0_neutral__s63fsn2sety0r [2020-10-30] (KONICA MINOLTA INC)
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2101.29.0_x64__k1h2ywk1493x8 [2021-02-12] (LENOVO INC.)
LenovoUtility -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.2.1.0_x64__5grkq8ppsgwt4 [2021-01-20] (LENOVO INC) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-11-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-11-30] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-02-12] (Microsoft Studios) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.960.0_x64__56jybvy8sckqj [2021-01-20] (NVIDIA Corp.)
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.3282.0_x64__8j3eq9eme6ctt [2021-02-12] (INTEL CORP) [Startup Task]
Příslušenství pro Xbox -> C:\Program Files\WindowsApps\Microsoft.XboxDevices_300.2011.9001.0_x64__8wekyb3d8bbwe [2021-01-14] (Microsoft Corporation)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.2.171.0_x64__dt26b99r8h8gj [2019-09-20] (Realtek Semiconductor Corp)
RICOH Driver Utility -> C:\Program Files\WindowsApps\3EA2211E.RICOHDriverUtility_4.7.0.0_x86__fxme7667cy4q4 [2021-02-12] (Ricoh Company, Ltd.)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.22661.0_x64__8wekyb3d8bbwe [2019-11-30] (Microsoft Corporation)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2020-05-06] (Samsung Electronics Co. Ltd.)
SmartAudio 3 -> C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio3_1.0.39.0_x64__qt57b6kdvhcfw [2019-09-20] (Synaptics Hong Kong Limited, Taiwan Branch (H.K.))

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001_Classes\CLSID\{04271989-C4D2-6B62-EDD6-C545740990B9} -> [OneDrive - Martin Persch] => C:\Users\mrmar\OneDrive - Martin Persch [2021-02-06 11:28]
CustomCLSID: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-AD328D5CD34F} -> [Creative Cloud Files] => C:\Users\mrmar\Creative Cloud Files [2020-06-03 12:36]
CustomCLSID: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\mrmar\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20289.5\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\mrmar\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20244.4\x64\Microsoft.Teams.AddinLoader.dll => No File
CustomCLSID: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-02-22] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-02-22] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-02-22] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-01-20] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-01-20] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-01-20] (Google LLC -> Google)
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2020-07-29] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-02-22] (Adobe Inc. -> )
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2021-02-02] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2021-01-20] (Google LLC -> Google)
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers1: [WinCDEmu] -> {D0E37FD2-F675-426F-B09A-2CF37BA46FD5} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2021-01-20] (Google LLC -> Google)
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\ProgramData\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers5: [Actual Multiple Monitors] -> {96703F22-7167-4098-A19A-9749F3A3C6ED} => C:\Program Files (x86)\Actual Multiple Monitors\ActualMultipleMonitorsShellExtension64.dll [2020-10-11] (Actual Tools (Mikhail Yurievich Tretyakov IP) -> Actual Tools)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvlt.inf_amd64_6e7eeeb0f1b98a43\nvshext.dll [2020-12-07] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2020-07-29] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-02-22] (Adobe Inc. -> )
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2021-02-02] (Adobe Inc. -> Adobe Systems Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\mrmar\Desktop\Investuj (investuj.finance) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 2"
ShortcutWithArgument: C:\Users\mrmar\Desktop\Kamil (A4F) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 4"
ShortcutWithArgument: C:\Users\mrmar\Desktop\Martin - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\mrmar\Desktop\YouTube Music.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=cinhimbnkkaeohfgghhklpknlkffjgod
ShortcutWithArgument: C:\Users\mrmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\YouTube Music.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=cinhimbnkkaeohfgghhklpknlkffjgod

==================== Loaded Modules (Whitelisted) =============

2015-03-17 00:34 - 2015-03-17 00:34 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2021-02-27 20:03 - 2021-02-27 20:03 - 000114176 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_ctypes.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000172544 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_elementtree.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 002255872 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_hashlib.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000032256 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_multiprocessing.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000046080 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_psutil_windows.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000047616 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_socket.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 002824704 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_ssl.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000026112 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\_yappi.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000080896 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\bz2.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000015872 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\common.time34.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000007680 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\hashobjs_ext.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000301568 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\PIL._imaging.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000168448 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\pyexpat.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 001084416 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\pysqlite2._sqlite.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000548864 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\pythoncom27.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 000137728 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\pywintypes27.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 000010752 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\select.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000020992 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\thumbnails_ext.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000689664 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\unicodedata.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000119808 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\usb_ext.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000128512 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32api.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000438784 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32com.shell.shell.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000011776 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32crypt.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000023040 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32event.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000149504 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32file.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000223232 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32gui.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000048128 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32inet.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000029696 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32pdh.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000027648 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32pipe.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000044032 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32process.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000020480 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32profile.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000136192 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32security.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000026624 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\win32ts.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000034304 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\windows.conditional.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000037888 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\windows.connectivity.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000071680 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\windows.device_monitor.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000103936 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\windows.volumes.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000019968 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\windows.winwrap.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 001325056 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._controls_.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 001489408 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._core_.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 001007104 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._gdi_.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000103424 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._html2.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 000916992 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._misc_.pyd
2021-02-27 20:03 - 2021-02-27 20:03 - 001039872 _____ () [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wx._windows_.pyd
2021-02-02 06:49 - 2021-02-02 06:49 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2009-09-16 18:44 - 2009-09-16 18:44 - 000153088 _____ (Hewlett Packard) [File not signed] C:\WINDOWS\System32\hptcpmib.dll
2009-09-16 18:45 - 2009-09-16 18:45 - 000331264 _____ (Hewlett Packard) [File not signed] C:\WINDOWS\System32\HpTcpMon.dll
2009-09-16 11:44 - 2009-09-16 11:44 - 000132096 _____ (Hewlett Packard) [File not signed] C:\WINDOWS\System32\hpzjrd01.dll
2009-09-16 11:44 - 2009-09-16 11:44 - 000596992 _____ (Hewlett-Packard) [File not signed] C:\WINDOWS\System32\hpzjcd01.dll
2019-11-29 15:27 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2009-09-16 18:45 - 2009-09-16 18:45 - 000317440 _____ (Microsoft Corporation) [File not signed] C:\WINDOWS\System32\HPTcpMUI.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 003043328 _____ (Python Software Foundation) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\python27.dll
2019-09-20 14:19 - 2019-09-20 14:19 - 001460224 _____ (Robert Simpson, et al.) [File not signed] C:\Program Files\WindowsApps\22094SynapticsIncorporate.SmartAudio3_1.0.39.0_x64__qt57b6kdvhcfw\Flow\x64\SQLite.Interop.dll
2020-12-22 09:23 - 2020-05-30 14:58 - 001280000 _____ (Robert Simpson, et al.) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\GenericMessagingPlugin\x86\x86\SQLite.Interop.dll
2017-11-08 07:35 - 2017-11-08 07:35 - 000123904 _____ (Samsung Electronics Co., Ltd.) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\SmartScreenPrint\CDAKEYMonitor64.dll
2020-06-20 10:18 - 2020-04-09 08:17 - 000944840 _____ (SQLite Development Team) [File not signed] C:\ProgramData\Lenovo\iMController\Plugins\LenovoWiFiSecurityPlugin\x86\x86\e_sqlite3.dll
2017-02-12 01:28 - 2015-09-28 19:08 - 000255488 _____ (Sysprogs OU) [File not signed] C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll
2018-05-18 09:57 - 2018-05-18 09:57 - 003696128 _____ (TODO: <Company name>) [File not signed] C:\Program Files (x86)\Samsung\Easy Printer Manager\ScanFax2PC\CDAScan2PCMonitor64.dll
2020-03-20 22:33 - 2012-05-09 13:29 - 000145920 _____ (Windows (R) Codename Longhorn DDK provider) [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\602xpsui.DLL
2021-02-27 20:03 - 2021-02-27 20:03 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxbase30u_net_vc90_x64.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxbase30u_vc90_x64.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxmsw30u_adv_vc90_x64.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxmsw30u_core_vc90_x64.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxmsw30u_html_vc90_x64.dll
2021-02-27 20:03 - 2021-02-27 20:03 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\mrmar\AppData\Local\Temp\_MEI199122\wxmsw30u_webview_vc90_x64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [468]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com/
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001 -> DefaultScope {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-05-04] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2021-02-06] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\sharepoint.com -> hxxps://perschcz-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2021-02-23 20:51 - 000000841 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;C:\PROGRA~2\IBM\CLIENT~1;C:\PROGRA~2\IBM\CLIENT~1\Shared;C:\PROGRA~2\IBM\CLIENT~1\Emulator;C:\Program Files\PuTTY\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\mrmar\AppData\Local\Microsoft\BingWallpaperApp\WPImages\20210209.jpg
DNS Servers: 192.168.0.1 - 192.168.68.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is disabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2114862974-1071683145-3095331456-1001\...\StartupApproved\Run: => "Steam"
Lenovo IdeaPad S540-15IWL- verze 81SW000VCK


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 7 hostů