Prosím o kontrolu logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Prosím o kontrolu logu  Vyřešeno

Příspěvekod stredis » 19 čer 2022 15:57

Prosím o kontrolu logu, notebook totálně zpomalený, zasekaný. Předem děkuji

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 15:55:42, on 19. 6. 2022
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.1566)


Boot mode: Normal

Running processes:
C:\Users\Lenovo\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
C:\Windows\SysWOW64\UMonit64.exe
C:\Program Files (x86)\Opera\assistant\browser_assistant.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_pepper.exe
C:\Program Files (x86)\Opera\assistant\browser_assistant.exe
C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
C:\Users\Lenovo\Downloads\koledy\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkI ... id=UE13DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=
O2 - BHO: IEToEdge BHO - {1FD49718-1D00-4B19-AF5F-070AF6D5D54C} - C:\Program Files (x86)\Microsoft\Edge\Application\102.0.1245.39\BHO\ie_to_edge_bho.dll
O4 - HKLM\..\Run: [Opera Browser Assistant] C:\Program Files (x86)\Opera\assistant\browser_assistant.exe
O4 - HKCU\..\Run: [Skype for Desktop] C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
O4 - HKCU\..\Run: [com.squirrel.Teams.Teams] C:\Users\Lenovo\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated"
O4 - HKCU\..\Run: [Microsoft Edge Update] "C:\Users\Lenovo\AppData\Local\Microsoft\EdgeUpdate\1.3.161.35\MicrosoftEdgeUpdateCore.exe"
O4 - HKLM\..\Policies\Explorer\Run: [BtvStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User '?')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User '?')
O4 - HKUS\S-1-5-21-2215220899-4135103373-892421381-1001\..\Run: [Skype for Desktop] C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (User '?')
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: AtherosSvc - Unknown owner - C:\WINDOWS\System32\drivers\AdminService.exe (file missing)
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_b28b32 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: Epson Scanner Service (EpsonScanSvc) - Unknown owner - C:\WINDOWS\system32\EscSvc64.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\100.0.4896.127\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files (x86)\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP Print Scan Doctor Service (HPPrintScanDoctorService) - HP Inc. - C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService2.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt and Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 10373 bytes

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 19 čer 2022 17:11

Stáhni si ATF Cleaner
https://www.majorgeeks.com/mg/getmirror ... ner,2.html
Poklepej na ATF Cleaner.exe, klikni na select all, poté:
-Když používáš Firefox (Mozzila), klikni na Firefox nahoře a vyber: Select All, poté klikni na Empty Selected.
-Když používáš Operu, klikni nahoře na Operu a vyber: Select All, poté klikni na Empty Selected. Poté klikni na Main (hlavní stránku ) a klikni na Empty Selected.
Po vyčištění klikni na Exit k zavření programu.
ATF-Cleaner je jednoduchý nástroj na odstranění historie z webového prohlížeče. Program dokáže odstranit cache, cookies, historii a další stopy po surfování na Internetu. Mezi podporované prohlížeče patří Internet Explorer, Firefox a Opera. Aplikace navíc umí odstranit dočasné soubory Windows, vysypat koš atd.
- Pokud používáš jen Google Chrome ,Edge , tak ATF nemusíš použít.


Stáhni si TFC
http://www.geekstogo.com/forum/files/fi ... -oldtimer/
Otevři soubor a zavři všechny ostatní okna, Klikni na Start k zahájení procesu. Program by neměl trvat dlouho.
Poté by se měl PC restartovat, pokud ne , proveď sám.

Stáhni AdwCleaner (by Xplode)
http://www.bleepingcomputer.com/download/adwcleaner/
http://www.adlice.com/downloadprogress/
pro majitele win7 stáhni zde:
https://filehippo.com/download_adwcleaner/ ( nedávej aktualizaci!)

Ulož si ho na svojí plochu . Klikni na „Souhlasím“ k povrzení podmínek.
Ukonči všechny programy , okna a prohlížeče
Spusť program poklepáním a klikni na „Skenování“
Po skenu se objeví log , který se otevře. ( jinak je uložen systémovem disku jako) C:\AdwCleaner\Logs, jeho obsah sem celý vlož.

Stáhni si Malwarebytes' Anti-Malware
https://www.malwarebytes.com/mwb-download/thankyou/

na plochu , nainstaluj a spusť ho
-Pokud není program aktuální , klikni na možnost „Aktualizovat nyní“ či „Opravit nyní“.
- bude nalezena aktualizace a nainstaluje se.
- poté klikni na Spustit skenování
- po proběhnutí skenu se ti objeví hláška vpravo dole, tak klikni na Zobrazit zprávu a vyber Export a vyber Kopírovat do schránky a vlož sem celý log. Nebo klikni na „Textový soubor ( .txt)“ a log si ulož.
-jinak se log nachází v programu po kliknutí na „Zprávy“ , nebo je uložen zde: C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\Logs

- po té klikni na tlačítko Dokončit, a program zavři křížkem vpravo nahoře.
(zatím nic nemaž!).
Pokud budou problémy , spusť v nouz. režimu.

Stáhni si CrystalDiskInfo
https://www.stahuj.cz/utility_a_ostatni ... ldiskinfo/
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 19 čer 2022 20:25

# -------------------------------
# Malwarebytes AdwCleaner 8.3.2.0
# -------------------------------
# Build: 03-23-2022
# Database: 2022-03-15.3 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 06-19-2022
# Duration: 00:01:05
# OS: Windows 10 Home
# Scanned: 32047
# Detected: 38


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\DOMStorage\adnetworkperformance.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\DOMStorage\bestpriceninja.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\DOMStorage\foxi69.tlscdn.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\DOMStorage\pstatic.bestpriceninja.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\DOMStorage\tlscdn.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\bestpriceninja.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\foxi69.tlscdn.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\pstatic.bestpriceninja.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tlscdn.com
PUP.Optional.Legacy HKCU\Software\Microsoft\Tinstalls
PUP.Optional.Legacy HKLM\Software\Wow6432Node\\Classes\CLSID\{8BF0126F-A5B7-4720-ABB2-2414A0AF5474}
PUP.Optional.SlimCleanerPlus HKCU\Software\Microsoft\Internet Explorer\DOMStorage\castplatform.com
PUP.Optional.SlimCleanerPlus HKCU\Software\Microsoft\Internet Explorer\DOMStorage\cdn.castplatform.com
PUP.Optional.Uniblue HKLM\Software\Classes\SpeedUpMyPC

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.HPMediaSmart Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}
Preinstalled.HPMediaSmart Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{01FB4998-33C4-4431-85ED-079E3EEFE75D}
Preinstalled.LenovoEnergyManager Folder C:\Program Files (x86)\LENOVO\ENERGY MANAGER
Preinstalled.LenovoEnergyManager Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LENOVO\ENERGY MANAGER
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Energy Manager
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|Lenovo Utility
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Energy Manager
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Run|Lenovo Utility
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{AC768037-7079-4658-AC24-2897650E0ABE}
Preinstalled.LenovoEnergyManager Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{AC768037-7079-4658-AC24-2897650E0ABE}
Preinstalled.LenovoPower2Go File C:\Users\Lenovo\Desktop\CyberLink Power2Go.lnk
Preinstalled.LenovoPower2Go Folder C:\Program Files (x86)\LENOVO\POWER2GO
Preinstalled.LenovoPower2Go Folder C:\Users\Lenovo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LENOVO\POWER2GO
Preinstalled.LenovoPower2Go Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|UpdateP2GShortCut
Preinstalled.LenovoPower2Go Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{40BF1E83-20EB-11D8-97C5-0009C5020658}
Preinstalled.LenovoPowerDVD File C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk
Preinstalled.LenovoPowerDVD Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|RemoteControl10
Preinstalled.LenovoPowerDVD Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
Preinstalled.LenovoPowerDVD Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}
Preinstalled.LenovoYouCam File C:\Users\Lenovo\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Lenovo YouCam.lnk
Preinstalled.LenovoYouCam File C:\Users\Public\Desktop\Lenovo YouCam.lnk
Preinstalled.LenovoYouCam Folder C:\Program Files (x86)\LENOVO\YOUCAM
Preinstalled.LenovoYouCam Folder C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LENOVO\YOUCAM
Preinstalled.LenovoYouCam Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|YouCam Tray



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 19 čer 2022 21:14

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 19.06.22
Čas skenování: 20:56
Logovací soubor: 7e6870dc-f001-11ec-b887-3c970eda0c35.json

-Informace o softwaru-
Verze: 4.5.10.200
Verze komponentů: 1.0.1702
Aktualizovat verzi balíku komponent: 1.0.56293
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 19043.1706)
CPU: x64
Systém souborů: NTFS
Uživatel: idea-PC\Lenovo

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Ruční
Výsledek: Dokončeno
Skenované objekty: 316112
Zjištěné hrozby: 0
Hrozby umístěné do karantény: 0
Uplynulý čas: 15 min, 33 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 0
(Nebyly zjištěny žádné škodlivé položky)

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 19 čer 2022 21:19

----------------------------------------------------------------------------
CrystalDiskInfo 8.17.0 (C) 2008-2022 hiyohiyo
Crystal Dew World: https://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 10 [10.0 Build 19043] (x64)
Date : 2022/06/19 21:17:52

-- Controller Map ----------------------------------------------------------
+ Intel(R) 8 Series Chipset Family SATA AHCI Controller [ATA]
- ST500LM000-1EJ162
- HL-DT-ST DVDRAM GU71N
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(01) ST500LM000-1EJ162 : 500,1 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(01) ST500LM000-1EJ162
----------------------------------------------------------------------------
Model : ST500LM000-1EJ162
Firmware : LVD3
Serial Number : W3716PPT
Disk Size : 500,1 GB (8,4/137,4/500,1/----)
Buffer Size : Neznámy údaj
Queue Depth : 32
# of Sectors : 976773168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ACS-2
Minor Version : ACS-3 Revision 3b
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 2780 hodin
Power On Count : 3601 krát
Temperature : 44 C (111 F)
Health Status : Dobrý
Features : S.M.A.R.T., APM, NCQ
APM Level : 8080h [ON]
AAM Level : ----
Drive Letter : C: D:

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 103 _99 __6 00000057B578 Počet chyb čtení
03 _99 _99 __0 000000000000 Čas na roztočení ploten
04 _97 _97 _20 000000000E1D Počet spuštění/zastavení
05 100 100 _10 000000000000 Počet přemapovaných sektorů
07 _60 _57 _30 008F09E8014F Počet chybných hledání
09 _97 _97 __0 000000000ADC Hodin v činnosti
0A 100 100 _97 000000000000 Počet opakovaných pokusů o roztočení ploten
0C _97 _97 _20 000000000E11 Počet cyklů zapnutí zařízení
B8 100 100 _99 000000000000 Ukončovacích chyb
BB 100 100 __0 000000000000 Ohlášeno neopravitelných chyb
BC 100 _97 __0 000000000007 Časový limit příkazu
BD _90 _90 __0 00000000000A Vysoká rychlost zápisu
BE _56 _52 _45 00002C1B002C Teplota toku vzduchu
BF 100 100 __0 000000000000 Počet udalostí zaznamenaných otřesovým senzorem
C0 100 100 __0 000000000066 Počet vypnutí disku
C1 _93 _93 __0 000000003D33 Počet cyklů načítání/vymazání
C2 _44 _48 __0 000E0000002C Teplota
C5 100 100 __0 000000000000 Počet podezřelých sektorů
C6 100 100 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
FE 100 100 __0 000000000000 Ochrana proti pádu

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 5733 3731 3650 5054
020: 0000 0000 0004 4C56 4433 2020 2020 5354 3530 304C
030: 4D30 3030 2D31 454A 3136 3220 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0010
060: FFFF 0FFF 0000 0004 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 8F0E 0006 004C 004C
080: 03F0 001F 346B 7D09 6163 3469 BC09 6163 407F 002F
090: 002F 8080 FFFE 0000 FE00 0000 0000 0000 0000 0000
100: 6030 3A38 0000 0000 0000 0000 6003 0000 5000 C500
110: 6E2B 0B0B 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6030
130: 3A38 6030 3A38 2020 0002 0140 0108 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 0000 05FF 0280 0000 0000
150: 0008 0000 0000 0000 0000 0001 0000 0000 7200 8806
160: 0000 0000 0000 0000 0000 0000 0000 0000 0003 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 1081 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 107F 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0003 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 17A5

-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 67 63 78 B5 57 00 00 00 00 03 03
010: 00 63 63 00 00 00 00 00 00 00 04 32 00 61 61 1D
020: 0E 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 3C 39 4F 01 E8 09 8F 00 00 09 32
040: 00 61 61 DC 0A 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 61 61 11 0E 00 00 00
060: 00 00 B8 32 00 64 64 00 00 00 00 00 00 00 BB 32
070: 00 64 64 00 00 00 00 00 00 00 BC 32 00 64 61 07
080: 00 00 00 00 00 00 BD 3A 00 5A 5A 0A 00 00 00 00
090: 00 00 BE 22 00 38 34 2C 00 1B 2C 00 00 00 BF 32
0A0: 00 64 64 00 00 00 00 00 00 00 C0 32 00 64 64 66
0B0: 00 00 00 00 00 00 C1 32 00 5D 5D 33 3D 00 00 00
0C0: 00 00 C2 22 00 2C 30 2C 00 00 00 0E 00 00 C5 12
0D0: 00 64 64 00 00 00 00 00 00 00 C6 10 00 64 64 00
0E0: 00 00 00 00 00 00 C7 3E 00 C8 C8 00 00 00 00 00
0F0: 00 00 FE 32 00 64 64 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 8B 00 00 73
170: 03 00 01 00 01 62 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 75 0E 00 00 00 01 01 01 01 01 01 01
190: 01 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 AF D0 72 DA 1A 09 00 00
1B0: 00 00 00 00 01 00 A6 2A 25 45 20 BE 04 00 00 00
1C0: 5B 6F F2 0C 07 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 E6 12 00 00 01 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 08
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 CA

-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 0A 00 00 00 00 00 00 00 00
030: 00 00 07 1E 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B8 63 00 00 00 00 00 00 00 00 00 00 BB 00
070: 00 00 00 00 00 00 00 00 00 00 BC 00 00 00 00 00
080: 00 00 00 00 00 00 BD 00 00 00 00 00 00 00 00 00
090: 00 00 BE 2D 00 00 00 00 00 00 00 00 00 00 BF 00
0A0: 00 00 00 00 00 00 00 00 00 00 C0 00 00 00 00 00
0B0: 00 00 00 00 00 00 C1 00 00 00 00 00 00 00 00 00
0C0: 00 00 C2 00 00 00 00 00 00 00 00 00 00 00 C5 00
0D0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0E0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0F0: 00 00 FE 00 00 00 00 00 00 00 00 00 00 00 00 00
100: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 89

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 19 čer 2022 21:52

Spusť znovu AdwCleaner (u Windows Vista či Windows7, klikni na AdwCleaner pravým a vyber „Spustit jako správce
klikni na „Skenování“ , po prohledání klikni na „ do karantény

Program provede opravu, po automatickém restartu klikni na Zobrazit logovací soubor“ a pak poklepej na odpovídají log, (C:\AdwCleaner [C?].txt) , jeho obsah sem celý vlož.

Stáhni si Junkware Removal Tool by Thisisu
http://www.bleepingcomputer.com/downloa ... oval-tool/
https://downloads.malwarebytes.com/file/JRT-EOL
na svojí plochu.

Deaktivuj si svůj antivirový program. Pravým tl. myši klikni na JRT.exe a vyber „spustit jako správce“. Pro pokračování budeš vyzván ke stisknutí jakékoliv klávesy. Na nějakou klikni.
Začne skenování programu. Skenování může trvat dlouho , podle množství nákaz. Po ukončení skenu se objeví log (JRT.txt) , který se uloží na ploše.
Zkopíruj sem prosím celý jeho obsah.


Sophos Virus Removal Tool je praktický softwarový nástroj, který by mohl odstranit infekce, které antivirový program nedetekuje .
Stáhněte si ho zde z některého odkazu:
https://www.majorgeeks.com/mg/getmirror ... ool,1.html
https://www.majorgeeks.com/mg/get/sopho ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,1.html
http://www.majorgeeks.com/mg/getmirror/ ... ool,2.html

Viry mohou zpomalit počítač, nebo se snaží ukrást vaše data, a ani nevíte , že je máte. Co potřebujete, je rychlý a snadný způsob, jak je najít a zbavit se jich, pokud již máte antivirový program v počítači nainstalován , můžete nainstalovat i nástroj Sophos Virus Removal , který identifikuje a vyčistí zbylé infekce, které mohl Váš antivirový program přehlédnout.
K použití Sophos Virus Removal Tool na něj poklepejte a stiskněte tlačítko „Start scanning“ . Pak bude Sophos Virus Removal Tool vyhledávat a odstraňovat viry, které najde. Může být vyžadován restart.
Pokud byly nalezeny viry , tak po skenu klikni na „Details…“ a potom na „View log file“. Zkopíruj celý log a vlož ho sem. Potom zavři „threat detail“ a klikni na „Start cleanup“.
Jinak se log nachází zde:
C:\ProgramData\Sophos\Sophos Virus Removal Tool\Logs

Stáhni si RogueKiller by Adlice Software
http://www.adlice.com/download/roguekiller/
http://www.bleepingcomputer.com/download/roguekiller/
na svojí plochu.
- Zavři všechny ostatní programy a prohlížeče.
- - klikni na „Scan“. V novém okně nic neměň a klikni dole na „Start“ ve sloupci „Quick Scan“
- Program skenuje procesy PC. Po proskenování klikni na „Results “ , v dalším okně pak levým t. na „Export“ a vyber : „Text File“ , log nazvi třeb RK a ulož do dokumentů nebo na plochu. Otevři soubor a celý obsah logu sem zkopíruj.
Pokud je program blokován , zkus ho spustit několikrát. Pokud dále program nepůjde spustit a pracovat, přejmenuj ho na winlogon.exe.
-pokud bude mít log více než 60.000 znaků , rozděl ho a vlož do více příspěvků
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 19 čer 2022 22:24

# -------------------------------
# Malwarebytes AdwCleaner 8.3.2.0
# -------------------------------
# Build: 03-23-2022
# Database: 2022-03-15.3 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 06-19-2022
# Duration: 00:01:13
# OS: Windows 10 Home
# Scanned: 32049
# Detected: 0


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.


AdwCleaner[S00].txt - [5815 octets] - [19/06/2022 20:22:49]
AdwCleaner[C00].txt - [6061 octets] - [19/06/2022 20:32:39]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 19 čer 2022 22:42

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by Lenovo (Administrator) on ne 19. 06. 2022 at 22:30:44,03
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on ne 19. 06. 2022 at 22:38:18,35
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 20 čer 2022 00:28

Ještě to další , zítra pokračujeme.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 20 čer 2022 16:48

Sophos čistý.

Program : RogueKiller Anti-Malware
Version : 15.5.3.0
x64 : Yes
Program Date : Jun 13 2022
Location : C:\Program Files\RogueKiller\RogueKiller64.exe
Premium : No
Company : Adlice Software
Website : https://www.adlice.com/
Contact : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19043) 64-bit
64-bit OS : Yes
Startup : 0
WindowsPE : No
User : Lenovo
User is Admin : Yes
Date : 2022/06/20 13:51:07
Type : Scan
Aborted : No
Scan Mode : Quick
Duration : 117
Found items : 0
Total scanned : 936
Signatures Version : 20220620_090830
Truesight Driver : Yes
Updates Count : 0
Arguments : -minimize

************************* Warnings *************************

************************* Processes *************************

************************* Modules *************************

************************* Services *************************

************************* Scheduled Tasks *************************

************************* Registry *************************

************************* WMI *************************

************************* Hosts File *************************
is_too_big : No
hosts_file_path : N/A


************************* Filesystem *************************

************************* Web Browsers *************************

************************* Antirootkit *************************

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod jaro3 » 20 čer 2022 18:59

Vypni antivir i firewall, RogueKiller, Malwarebytes Antimalware, windowsDefender
Stáhni Zoek.exe
http://download.bleepingcomputer.com/smeenk/zoek.exe
https://uloz.to/file/nFH1LwSrGioP/zoek1-rar

Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.


Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe

(posuvník dolu na download)
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat nyní“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Vykonat“ ( vymazat). Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, klikni vlevo na „zprávy“ a pak na „otevři zprávu“ a zkopíruj sem celý obsah té zprávy.

Vlož nový log z HJT + informuj o problémech
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

stredis
Level 2
Level 2
Příspěvky: 164
Registrován: prosinec 07
Pohlaví: Nespecifikováno
Stav:
Offline

Re: Prosím o kontrolu logu

Příspěvekod stredis » 20 čer 2022 20:33

Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
Tool run by Lenovo on po 20. 06. 2022 at 19:09:46,32.
Microsoft Windows 10 Home 10.0.19043 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Lenovo\Desktop\zoek (1).exe [Scan all users] [Script inserted]

==== System Restore Info ======================

20. 6. 2022 19:14:35 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Zemana AntiMalware deleted successfully
C:\PROGRA~2\COMMON~1\AV deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\Users\Lenovo\AppData\Local\DBG deleted successfully
C:\Users\Lenovo\AppData\Local\NetworkTiles deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\NetworkTiles deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{05DE28F5-F5A1-4C1F-ADE8-47416BA72C17} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{06AC54F4-0D84-4426-AA0C-A4D5C403A597} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{080C409B-E27F-4702-A48F-5E013F84BD1F} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0B534B3B-D5FE-4AC5-B83F-76250662B9A8} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{0D7208EB-AC8A-4E7E-ADC4-29A0F38495DF} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1075AC8E-BA4B-4B9C-A36F-B7510AE36FE9} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10C56CCC-7328-427A-BE89-69EA2D515C5A} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{129E5072-6D9F-45DC-A928-3F908F0C0313} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13740AA8-FCB3-4BBF-A94C-CF63D510E49C} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16161D0B-967D-4371-9A10-11A22E9DEF13} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{17417CB4-B105-4DF5-A0A6-E4F304FFB290} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AA11BDB-E46B-4174-AFB9-284024A3F37A} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B3A3E4D-8BB1-464D-AD57-B11A84D4B25E} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D4500F0-0CA4-4C44-BDCE-D99E0CFFA6C3} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28ABBD3B-3780-4F0C-AA6A-5787C5BEE16B} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B53CD1F-B9F8-430D-9A0D-8A3961E153B3} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E3F6B97-CDAC-485B-8420-E2BF98EC25B3} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43847452-E8B0-4417-B3A3-701875FA37F1} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47D620A6-1B65-458E-9338-59C6531FDCB1} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B7FA8D4-D0C3-4EE2-AF29-FF75F6C16D1D} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F9683C1-CE07-463A-9CC1-1D7E89D92799} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{596F7415-BB1A-4418-AF6F-CC96B0073EE9} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C1C65FA-AFB4-47EA-9B8B-13CF7160E3F8} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C609333-0691-491F-82CA-F426103A411A} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F2FDD50-5666-4FA3-9E1F-FADA12606532} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6131F348-5A3A-4E6E-B9F1-5F33DA478F8C} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6533A7DC-813D-4E5C-ADE4-232B1456D007} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{681BE05A-B4E6-4671-B716-FB8F1A75FB28} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6F697CC1-EEEF-4514-A9CC-867A1BC89EA9} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A22ED55-DDF9-4494-993C-6709CC931AA5} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{812C0C81-92D8-4AF9-933A-53E230A9220F} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87134F9A-E169-4786-915D-D20A33CBFC00} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{878B1125-97FA-4A0A-A18F-71FA4050391E} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{898A0D19-0310-492C-9BFE-2DC9D08DBB05} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A65B4CF-39F1-49C5-B44D-542C33E00EA9} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91D03C77-3345-472F-A50E-F150EBAA2AED} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97147773-6BA1-44DB-B821-9FA0021F9C98} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{99DF6EDE-55EC-407C-8D6B-9694463525C9} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A06CA2D-DF52-4486-962C-F68032CC82A3} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADC7449D-0717-47DC-9675-02ABC637943F} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1D437D7-AD66-4B7D-BEFC-F5CEBE037FBC} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B96448A0-D902-4B39-9E2E-FE2B075C5FE6} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B9B3D51E-6C42-4BDE-A054-9D25D667AFC2} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF3BABE6-6B0E-4FEC-9502-69461B9CF28E} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C125C273-D8CC-4F58-BB13-CA0CC797FE10} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C3535C6D-160E-45AC-9627-DA91731CD548} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9005F0C-B127-4A12-9596-A9E55AE57521} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB8AA63D-2D0C-4EDC-85FE-1994E4D58672} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0B2CB05-E872-4F31-9954-CDEAECFBF2E3} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E07B3FF3-A093-4899-826D-92055CAD0A38} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E125D0E6-6ACF-4DB8-90C6-563FD6E82541} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3E53B51-0393-4B8C-AC41-06E1AFF855AA} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E78A21BE-68B1-4313-AEE9-394C58F11E4F} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA4C33A4-5E55-490A-B619-FAF132D5DCFF} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED5B63F3-B7B0-4D4F-9EF4-394D12817BD6} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EFA65B62-ABC1-4FBE-87B7-D669D189C455} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F30EE02F-A163-4EFF-A68D-0170A00D0D4C} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F96D4A0D-7EF6-40AB-B5C0-1C44A1221912} deleted successfully
HKEY_USERS\S-1-5-21-2215220899-4135103373-892421381-1001\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FED59047-8767-4820-A4A6-A434105AD0CD} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\Zemana AntiMalware not found
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM23D93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM248D0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2980B.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d34-1938-fa52b5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca85e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca86f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca890.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca8b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca8c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca8e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca8f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca93b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca94c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca96e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca98f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca9a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca9b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca9d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca9e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11ca9f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1118-23a4-11caa08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce8cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce8e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce8f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce8f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce906.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce92b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce93d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce94e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce950.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce962.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce973.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce975.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce987.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce999.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce99b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce99d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-132c-106c-1ce9be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fb42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fbe3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fc23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fc35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fc46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fc68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fc89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fcaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fcbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fced.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fd0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fd10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fd22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fdb0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fde1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fe12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fe24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1540-1728-32fe45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22e943fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22e9d841.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22e9f9a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea103d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea1d8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea3686.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea3bc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea4ace.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea56f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea730b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea8869.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22ea9a0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eaada9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eab8c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eac8f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eacf31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eadc52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eaf606.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1748-3368-22eb0f4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315ba4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315bb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315bd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315c17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315c38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315c5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315cb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315ccb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315ccd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315cee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a6c-16e4-2315d8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa322.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa344.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa365.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa386.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa388.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa39a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa3bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa3cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa3cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa3e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa3f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa404.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa415.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa427.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa438.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa43a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa45c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa46d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cd8-24b4-aa47f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-127083.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-127d27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128075.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-1283c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128933.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128a7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128b0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128bc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128d90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-128f86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-1290d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-1294f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-1296b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-129897.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-129cee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-129d2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-129ddd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-129f94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e70-f7c-12a5e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be1068.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be151d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be16c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be184d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be21d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be2a33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be2ad2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be2d35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be2f1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be3046.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be3171.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be329c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be32ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be3475.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be34e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be3544.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be371b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be379a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f0c-b68-15be3d1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a14b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1506.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1528.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a152a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a154b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a155c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a156e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1570.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1582.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a15ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a160f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1620.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-217c-4a1642.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51100a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51100e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110116.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110128.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110139.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-511014b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-511016c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51101ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51101be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51101d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110211.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110241.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110253.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51102b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51102d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-51102f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110309.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20f0-24e4-5110378.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617897.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86178b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86178e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86178fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86178fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-861790f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617930.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617932.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617943.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617955.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617957.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-8617969.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-861797a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-861797c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-861798e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86179a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86179a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86179b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-21f8-25cc-86179c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-383651.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-388b59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-38aef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-38e44b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3913c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-391e89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-396095.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-39796f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-399100.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-39922b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-39cb4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-39f500.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3a4014.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3a6997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3aa52b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3ac558.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3b05fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3b1c94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3b6e8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3b9d03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3bdcbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3c2496.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3c7102.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3c9a28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3cf51b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3d28a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3d8672.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3d9902.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3dbc5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3ddd52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3e1b67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3e75ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3eabd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3ee8c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3f19c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3f2d7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3f6aa8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2270-11c8-3f8759.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ad965.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ad986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ad9a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ad9f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-ada96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adab8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adaba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adacb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adadd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adb1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2284-1b30-adb3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4fae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4fc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4fd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4fe3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4fe5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b4ff7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5008.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b500a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b501c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b502e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5030.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5041.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5063.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b5076.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b50a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b50b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b50ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-229c-27a4-b50dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f79d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f79f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f79f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7a9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7aac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7aae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7ac0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2338-2748-5f7ac2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0c7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0ca0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0cb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0cd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0cd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0ce6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0ce8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0cfa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0d99.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0daa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2370-7ac-1e0dbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c69fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c6c71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c6dea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c6ef6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c6fc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c70ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7218.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7314.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7559.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7635.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c76f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7918.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c7a71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c82b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c862d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c86db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c87c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c87e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2418-2d08-45c8887.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeeded.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeee99.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeeeab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeeebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeeede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2734-18d8-4eeef69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6bb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6bd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6bd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6c46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6c77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6cd9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6d09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6da8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6dc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6dfa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6e0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6efa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6f88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6faa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f6fcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f702b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27d4-174c-53f703c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bed65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bee61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bef00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bef21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-befbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf0fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf10b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf12c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf13e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf150.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf1cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf1f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf221.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf232.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf263.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf2b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf2e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf2f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2818-2810-bf327.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d2068e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d21136c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d2171ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d219717.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d21ccfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d21ea0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d2204bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d22318b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d226270.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d229951.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d22c370.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d230a10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d233dd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d237fa2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d23a722.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d23c952.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d23f8ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d242eb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a3c-151c-d247789.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c23d58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2643b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c26c6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c26e13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2814f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c28b63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c29037.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c291ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c296c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c29c14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c29e97.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2a456.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2b0db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2c61a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2cddd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2d35d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2d9a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2db02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2f533.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2f7d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2fb04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c2fd48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c3027a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c30625.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c3078f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c31404.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c32934.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c32b69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c32e1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c332a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c340fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c34e5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c354e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c35861.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c35a28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c35d56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c3890c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ac8-448-6c38d34.tmp deleted


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 10 hostů