Prosím o kontrolu logu. Děkuji Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: memphisto, Mods_senior, Security team

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 18 bře 2021 12:24

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 12:16:27, on 18.03.2021
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)


Boot mode: Normal

Running processes:
D:\Programy\Steam\steam.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
C:\Users\miros\AppData\Local\Discord\app-0.0.309\Discord.exe
D:\Downloads\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\89.0.774.54\BHO\ie_to_edge_bho.dll
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O2 - BHO: Norton Password Manager - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Programy\Norton Security\Engine32\22.21.1.151\coIEPlg.dll
O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Programy\Norton Security\Engine32\22.21.1.151\coIEPlg.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe CCXProcess] C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
O4 - HKCU\..\Run: [Steam] "D:\Programy\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [Discord] C:\Users\miros\AppData\Local\Discord\Update.exe --processStart Discord.exe --process-start-args --start-minimized
O4 - HKCU\..\Run: [CCleaner Smart Cleaning] "D:\Programy\Ccleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Launcher] "D:\Programy\Launcher\LauncherPatcher.exe"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIPME.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-530 Series"
O4 - HKCU\..\Run: [OneDrive] "C:\Program Files (x86)\Microsoft OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] C:\Users\miros\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\Run: [TB Client] D:\Programy\TrucksBook Client\TB Client.exe -h
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office\Root\Office16\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD Crash Defender Service - Unknown owner - C:\WINDOWS\system32\amdfendrsr.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\c0361132.inf_amd64_1f7832db1fb1721f\B361196\atiesrxx.exe
O23 - Service: AMD User Experience Program Launcher (AUEPLauncher) - AMD - C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPLauncher.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_4d748 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CyberGhost 8 Service (CyberGhost8Service) - CyberGhost S.R.L. - C:\Program Files\CyberGhost 8\Dashboard.Service.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: EasyAntiCheat - Epic Games, Inc - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epic Online Services (EpicOnlineServices) - Epic Games, Inc. - C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\Windows\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.90\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: ICEsound Service (ICEsoundService) - Unknown owner - C:\WINDOWS\system32\ICEsoundService64.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Norton Security (NortonSecurity) - Symantec Corporation - D:\Programy\Norton Security\Engine\22.21.1.151\NortonSecurity.exe
O23 - Service: Norton WSC Service (nsWscSvc) - NortonLifeLock Inc. - D:\Programy\Norton Security\Engine\22.21.1.151\nsWscSvc.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: Rockstar Game Library Service (Rockstar Service) - Rockstar Games - D:\Programy\Launcher\RockstarService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13402 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41746
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod jaro3 » 18 bře 2021 16:54

Stáhni si ATF Cleaner
https://www.majorgeeks.com/mg/getmirror ... ner,2.html
Poklepej na ATF Cleaner.exe, klikni na select all, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome , tak ATF nemusíš použít.


Stáhni si TFC
http://www.geekstogo.com/forum/files/fi ... -oldtimer/
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
http://www.adlice.com/downloadprogress/
pro majitele win7 stáhni zde:
https://filehippo.com/download_adwcleaner/ ( nedávej aktualizaci!)

Ulož si ho na svojí plochu . Klikni na „Souhlasím“ k povrzení podmínek.
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Skenování“
Po skenu se objeví log , který se otevře. ( jinak je uložen systémovem disku jako C:\AdwCleaner [C?].txt ), jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
https://www.malwarebytes.com/mwb-download/thankyou/

na plochu , nainstaluj a spusť ho
-Pokud není program aktuální , klikni na možnost „Aktualizovat nyní“ či „Opravit nyní“.
- bude nalezena aktualizace a nainstaluje se.
- poté klikni na Spustit skenování
- po proběhnutí skenu se ti objeví hláška vpravo dole, tak klikni na Zobrazit zprávu a vyber Export a vyber Kopírovat do schránky a vlož sem celý log. Nebo klikni na „Textový soubor ( .txt)“ a log si ulož.
-jinak se log nachází v programu po kliknutí na „Zprávy“ , nebo je uložen zde: C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs

- po té klikni na tlačítko Dokončit, a program zavři křížkem vpravo nahoře.
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 18 bře 2021 19:46

# -------------------------------
# Malwarebytes AdwCleaner 8.1.0.0
# -------------------------------
# Build: 02-15-2021
# Database: 2021-03-09.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 03-18-2021
# Duration: 00:00:00
# OS: Windows 10 Pro
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Windows\rss

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Microsoft\Etsy

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1447 octets] - [18/03/2021 19:44:25]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 18 bře 2021 19:51

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 18.03.21
Čas skenování: 19:48
Logovací soubor: 8a06dda2-881a-11eb-bd06-7085c2a44fa2.json

-Informace o softwaru-
Verze: 4.3.0.98
Verze komponentů: 1.0.1217
Aktualizovat verzi balíku komponent: 1.0.38349
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 19042.867)
CPU: x64
Systém souborů: NTFS
Uživatel: Desktop\Mirek

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 322979
Zjištěné hrozby: 0
Hrozby umístěné do karantény: 0
Uplynulý čas: 1 min, 44 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41746
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod jaro3 » 18 bře 2021 21:16

Stáhni si Junkware Removal Tool by Thisisu
http://www.bleepingcomputer.com/downloa ... oval-tool/
https://downloads.malwarebytes.com/file/JRT-EOL
na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dloho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.


Sophos Virus Removal Tool je praktický softwarový nástroj, který by mohl odstranit infekce, které antivirový program nedetekuje .
Stáhněte si ho zde z některého odkazu:
http://www.majorgeeks.com/files/details ... _tool.html
http://www.majorgeeks.com/mg/get/sophos ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,2.html

Viry mohou zpomalit počítač, nebo se snaží ukrást vaše data, a ani nevíte , že je máte. Co potřebujete, je rychlý a snadný způsob, jak je najít a zbavit se jich, pokud již máte antivirový program v počítači nainstalován , můžete nainstalovat i nástroj Sophos Virus Removal , který identifikuje a vyčistí zbylé infekce, které mohl Váš antivirový program přehlédnout.
K použití Sophos Virus Removal Tool na něj poklepejte a stiskněte tlačítko „Start scanning“ . Pak bude Sophos Virus Removal Tool vyhledávat a odstraňovat viry, které najde. Může být vyžadován restart.
Pokud byly nalezeny viry , tak po skenu klikni na „Details…“ a potom na „View log file“. Zkopíruj celý log a vlož ho sem. Potom zavři „threat detail“ a klikni na „Start cleanup“.
Jinak se log nachází zde:
C:\ProgramData\Sophos\Sophos Virus Removal Tool\Logs

Stáhni si RogueKiller by Adlice Software
http://www.adlice.com/download/roguekiller/
http://www.bleepingcomputer.com/download/roguekiller/
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- Pro OS Vista a win7,8,10 spusť program RogueKiller.exe jako správce , u XP poklepáním.
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“
- Program skenuje procesy PC. Po proskenování klikni na „Open Report “ , v okně pak na „Open TXT“ a celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 18 bře 2021 21:33

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Enterprise x64
Ran by Mirek (Administrator) on 18.03.2021 at 21:30:26,32
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18.03.2021 at 21:33:06,26
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41746
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod jaro3 » 18 bře 2021 23:25

Ještě to další.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 18 bře 2021 23:42

Sephos nahlásil "Your computer is clean"

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 19 bře 2021 07:18

omlouvám se za zpoždění, včera jsem usnul

RogueKiller Anti-Malware V14.8.5.0 (x64) [Feb 12 2021] (Free) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19042) 64 bits
Started in : Normal mode
User : Mirek [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20210318_104528, Driver : Loaded
Mode : Standard Scan, Scan -- Date : 2021/03/18 23:43:27 (Duration : 07:32:28)
Switches : -minimize

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[Suspicious.Path (Potentially Malicious)] \{382206AF-3B40-4179-A5AB-6282A401826A} -- C:\Users\miros\AppData\Local\Temp\A40A3722-EF37-4529-9B93-5A3552CEE8FB\ga_service.exe [/uninstall] -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 41746
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod jaro3 » 19 bře 2021 17:15

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“,
po jeho skončení - vše zatrhni (dej zatržítka vlevo od nálezů , do bílých políček)
- pak klikni na "Remove Selected"
- Počkej, dokud Status box nezobrazí " Removal finished, please review result "
- Klikni na "Open report " a pak na " Open TXT“ a zkopíruj ten log a vlož obsah té zprávy prosím sem. Log je možno nalézt v C:\ProgramData\RogueKiller\Logs - Zavři RogueKiller.


Vypni antivir i firewall, RogueKiller, Malwarebytes Antimalware, windowsDefender
Stáhni Zoek.exe
http://download.bleepingcomputer.com/smeenk/zoek.exe
https://uloz.to/file/nFH1LwSrGioP/zoek1-rar

Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.


Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Můžeš si zatrhnout i vytvoření bodu obnovy:
Klikni na ozubené kolečko , poté na „Skenování“ a zatrhni „vytvářet body obnovy“.
Vrať se zpět ( klikni na domeček).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Další“. Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, objeví se tisková zpráva , zkopíruj sem celý obsah té zprávy.
Jinak můžeš zprávy vidět , když klikneš vpravo nahoře na „ zprávy“.

Vlož nový log z HJT + informuj o problémech
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 19 bře 2021 17:38

RogueKiller Anti-Malware V14.8.5.0 (x64) [Feb 12 2021] (Free) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19042) 64 bits
Started in : Normal mode
User : Mirek [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20210318_104528, Driver : Loaded
Mode : Standard Scan, Delete -- Date : 2021/03/19 17:31:42 (Duration : 00:05:15)
Switches : -minimize

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Delete ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[Suspicious.Path (Potentially Malicious)] \{382206AF-3B40-4179-A5AB-6282A401826A} -- C:\Users\miros\AppData\Local\Temp\A40A3722-EF37-4529-9B93-5A3552CEE8FB\ga_service.exe (/uninstall) -> Deleted

bandas
Level 1
Level 1
Příspěvky: 70
Registrován: únor 09
Bydliště: vetsinou ano ;o)
Pohlaví: Muž

Re: Prosím o kontrolu logu. Děkuji

Příspěvekod bandas » 19 bře 2021 18:38

Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
Tool run by Mirek on 19.03.2021 at 17:49:57,48.
Microsoft Windows 10 Pro 10.0.19042 x64
Running in: Normal Mode Internet Access Detected
Launched: D:\Downloads\zoek1\zoek (1).exe [Scan all users] [Script inserted]

==== System Restore Info ======================

19.03.2021 17:51:35 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\BkWNErBWWXYU2 deleted successfully
C:\PROGRA~2\bLNOoQtnEyRhNzdQbHR deleted successfully
C:\PROGRA~2\hunDHvovOTUn deleted successfully
C:\PROGRA~2\jqCINXSrU deleted successfully
C:\PROGRA~2\ManyCam deleted successfully
C:\PROGRA~2\MvdoYRhLLBymC deleted successfully
C:\Program Files\Common Files\Autodesk Shared deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\Users\miros\AppData\Roaming\.RTS deleted successfully
C:\Users\miros\AppData\Roaming\A Plague Tale Innocence deleted successfully
C:\Users\miros\AppData\Roaming\Easeware deleted successfully
C:\Users\miros\AppData\Local\DBG deleted successfully
C:\Users\miros\AppData\Local\PeerDistRepub deleted successfully
C:\Users\miros\AppData\Local\Saber deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\DBG deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-3280845815-3375143711-2799469307-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{B7993E1A-469D-4CED-8208-B2E0791F4668} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\5fmo8u63.default\prefs.js:

Added to C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\5fmo8u63.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

Deleted from C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\jp3lv538.default-release\prefs.js:

Added to C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\jp3lv538.default-release\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\5fmo8u63.default

user.js not found
---- FireFox user.js and prefs.js backups ----

prefs__1819_.backup

ProfilePath: C:\Users\miros\AppData\Roaming\Mozilla\Firefox\Profiles\jp3lv538.default-release

user.js not found
---- Lines searchengine removed from prefs.js ----
user_pref("browser.pageActions.persistedActions", "{\"version\":1,\"ids\":[\"bookmark\",\"pinTab\",\"bookmarkSeparator\",\"copyURL\",\"emailLink\",\"a
---- FireFox user.js and prefs.js backups ----

prefs__1819_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\BkWNErBWWXYU2 not found
C:\PROGRA~2\bLNOoQtnEyRhNzdQbHR not found
C:\PROGRA~2\hunDHvovOTUn not found
C:\PROGRA~2\jqCINXSrU not found
C:\PROGRA~2\ManyCam not found
C:\PROGRA~2\MvdoYRhLLBymC not found
C:\Users\miros\AppData\Roaming\.tlauncher deleted
C:\Users\miros\AppData\Roaming\discord deleted
C:\Users\miros\AppData\Roaming\Factorio deleted
C:\Users\miros\AppData\Roaming\simtoolkitpro deleted
C:\Users\miros\AppData\Roaming\uTorrent deleted
C:\Users\miros\AppData\Roaming\~SiMPLEX.ini deleted
C:\Users\miros\AppData\Roaming\patcher.dll deleted
C:\Users\miros\AppData\Roaming\debug.log deleted
C:\PROGRA~3\mozglue.dll deleted
C:\PROGRA~3\softokn3.dll deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\miros\AppData\Local\oobelibMkey.log deleted
C:\Users\miros\AppData\Local\cache deleted
C:\Users\miros\AppData\Local\CrashRpt deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM21F9B.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2224A.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM231B4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM23556.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24189.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24210.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24757.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24FFD.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM258CE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM25A8D.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM263E3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM26AA6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM276BE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM281E9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM28432.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29AA5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29C79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2A4C0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2A614.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2B4ED.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2BC27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2BD0A.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2BD44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2CBA7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2D56E.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2D5C6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2E821.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2EC0C.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2F16A.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2FBA4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2084-3a18-22c28167.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2990-284c-dcc8de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046eea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046eec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046eee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046eff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1088-31f4-9046f6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5432ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5432fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-54330f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543321.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543323.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543334.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543346.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-54335a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-54336b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-54336d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-54337f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543381.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543393.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-543395.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5433a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5433b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5433c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10a0-24c0-5433cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7448.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d744a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d744c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d745e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7472.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7474.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7476.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7478.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d7489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d748b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d749d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d749f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-2b90-53d74ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389bdf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389be1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389be3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389bf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389bf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389bf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1348-968-389c51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458aaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458abb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458abd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458abf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458ad1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458ad3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458ae5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458ae7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458ae9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458afa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458afc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1474-2cec-458b3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319097.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-3190f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319108.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-31910a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-31911c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-31911e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319120.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319132.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319145.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1548-1658-319147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-18989f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-1898f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-189917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-189928.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-18992a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-18992c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-18994e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15d8-2b04-189950.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-1410fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-14110c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-14110e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-141110.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-141122.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-141124.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-141126.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1608-1530-141137.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a24e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a260.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a262.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a264.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a275.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a277.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a279.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a28b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a28d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a28f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16fc-1b54-23a2d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754913.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754915.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75493b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75494c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75495e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754960.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754971.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754973.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754975.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754987.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-754989.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75498b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75499d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-75499f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-7549a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-7549b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2c48-7549b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca312.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca314.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca326.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca328.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca32a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca32c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca33d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca33f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca351.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca353.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca355.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca357.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca369.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca36b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca36d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca37e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca380.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca392.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-189c-2d7c-3fca394.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5a9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5aa1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5ac2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5ac4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5ad6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5ad8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5ada.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5aeb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5aed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1940-1948-5d5aef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4748.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e474a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e475b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e475d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e475f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4771.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4775.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4787.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e4789.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e478b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e479c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e479e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1964-1b00-2e47c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c05f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c0607.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c0609.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c060b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c061c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c061e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c0630.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c0632.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19a4-1638-1c0644.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19e4-4108-c51f82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b54de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b54f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b54f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b54f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5506.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5508.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b550a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b551b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b551d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b551f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5531.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5533.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5535.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5537.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5549.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b554b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b554d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b555e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a78-3d40-b5560.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbde6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbde8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbdfa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbdfc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbdfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a8c-1e18-1cbe68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422528.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-42252a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-42254b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-42254d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-42257e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422582.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422584.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422596.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-4225f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422606.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c10-848-422608.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6582.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6584.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6586.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6588.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e659a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e659c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e659e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e65fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e660c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e660e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6610.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6612.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6624.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6626.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6628.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e662a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e662c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e663d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e663f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6641.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6643.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6655.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6657.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6659.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e666b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e666d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e666f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6680.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6682.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6684.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6696.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6698.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e669a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e66cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e66dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e66fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e671f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6730.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c9c-2198-3e6761.tmp deleted


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: CommonCrawl [Bot] a 3 hosti