Prosím o kontrolu logu
Moderátoři: Mods_senior, Security team
Pravidla fóra
Návod na použití programu HijackThis || Návod na vyčištění počítače CCleanerem || FAQ: Antiviry
Návod na použití programu HijackThis || Návod na vyčištění počítače CCleanerem || FAQ: Antiviry
Re: Prosím o kontrolu logu
Ještě udělej RogueKiller.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Program : RogueKillerSVC
Version : 3.5.2.0
x64 : Yes
Program Date : Nov 25 2025
Location : C:\Program Files\RogueKiller\RogueKillerSvc.exe
Premium : No
Company : Adlice Software
Website : https://www.adlice.com/
Operating System : Windows 11 (10.0.26200) 64-bit
64-bit OS : Yes
Startup : 0
WindowsPE : No
User : Jenda
User is Admin : Yes
Date : 2025/11/27 09:20:29
Type : Scan
Aborted : No
Scan Mode : Quick
Duration : 7
Found items : 0
Total scanned : 1006
removed_count : 0
Signatures Version : 20251124_085712
Truesight Driver : Yes
Updates Count : 0
Custom Locations : N/A
************************* Warnings *************************
************************* Updates *************************
************************* Processes *************************
************************* Modules *************************
************************* Services *************************
************************* Scheduled Tasks *************************
************************* Registry *************************
************************* WMI *************************
************************* Hosts File *************************
is_too_big : No
hosts_file_path : N/A
************************* Filesystem *************************
************************* Web Browsers *************************
************************* Antirootkit *************************
Version : 3.5.2.0
x64 : Yes
Program Date : Nov 25 2025
Location : C:\Program Files\RogueKiller\RogueKillerSvc.exe
Premium : No
Company : Adlice Software
Website : https://www.adlice.com/
Operating System : Windows 11 (10.0.26200) 64-bit
64-bit OS : Yes
Startup : 0
WindowsPE : No
User : Jenda
User is Admin : Yes
Date : 2025/11/27 09:20:29
Type : Scan
Aborted : No
Scan Mode : Quick
Duration : 7
Found items : 0
Total scanned : 1006
removed_count : 0
Signatures Version : 20251124_085712
Truesight Driver : Yes
Updates Count : 0
Custom Locations : N/A
************************* Warnings *************************
************************* Updates *************************
************************* Processes *************************
************************* Modules *************************
************************* Services *************************
************************* Scheduled Tasks *************************
************************* Registry *************************
************************* WMI *************************
************************* Hosts File *************************
is_too_big : No
hosts_file_path : N/A
************************* Filesystem *************************
************************* Web Browsers *************************
************************* Antirootkit *************************
Re: Prosím o kontrolu logu
2025-11-26 18:38:45.125 -- Opening log --
2025-11-26 18:38:45.125 Sophos Virus Removal Tool version 2.9.0
2025-11-26 18:38:45.125 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 18:38:45.125 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 18:38:45.125 SXL4 URL: https://4.sophosxl.net/lookup
2025-11-26 18:38:46.817 -- Closing log --
2025-11-26 18:38:45.125 Sophos Virus Removal Tool version 2.9.0
2025-11-26 18:38:45.125 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 18:38:45.125 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 18:38:45.125 SXL4 URL: https://4.sophosxl.net/lookup
2025-11-26 18:38:46.817 -- Closing log --
Re: Prosím o kontrolu logu
2025-11-26 16:39:13.052 Sophos Virus Removal Tool version 2.9.0
2025-11-26 16:39:13.052 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 16:39:13.052 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 16:39:13.052 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 16:39:13.052 Checking for updates...
2025-11-26 16:39:13.052 Update progress: proxy server not available
2025-11-26 16:39:14.722 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 16:39:20.907 Option all = no
2025-11-26 16:39:20.907 Option recurse = yes
2025-11-26 16:39:20.907 Option archive = no
2025-11-26 16:39:20.907 Option service = yes
2025-11-26 16:39:20.907 Option confirm = yes
2025-11-26 16:39:20.907 Option sxl = yes
2025-11-26 16:39:20.907 Option max-data-age = 35
2025-11-26 16:39:20.907 Option vdl-logging = yes
2025-11-26 16:39:20.911 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 16:39:20.911 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 16:39:20.911 Component SVRTcli.exe version 2.9.0
2025-11-26 16:39:20.911 Component control.dll version 2.9.0
2025-11-26 16:39:20.911 Component SVRTservice.exe version 2.9.0
2025-11-26 16:39:20.911 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 16:39:20.911 Component engine\veex.dll version 3.81.0.2510
2025-11-26 16:39:20.911 Component engine\savi.dll version 9.0.23.2510
2025-11-26 16:39:20.942 Component rkdisk.dll version 1.5.33.1
2025-11-26 16:39:20.942 Version info: Product version 2.9.0
2025-11-26 16:39:20.942 Version info: Detection engine 3.81.0
2025-11-26 16:39:20.942 Version info: Detection data 5.82
2025-11-26 16:39:20.942 Version info: Build date 16.02.2021
2025-11-26 16:39:20.942 Version info: Data files added 208
2025-11-26 16:39:20.942 Version info: Last successful update (not yet updated)
2025-11-26 17:05:41.663 Could not open C:\hiberfil.sys
2025-11-26 17:05:41.669 Could not open C:\pagefile.sys
2025-11-26 17:10:02.512 >>> Virus 'Mal/ZboCheMan-D' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe
2025-11-26 17:10:05.543 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
2025-11-26 17:12:33.497 Could not open C:\swapfile.sys
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{09396154-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{093961d3-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{09396207-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59310cf4-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59310f07-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59311149-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{9a79db85-c913-11f0-afa4-c0c622d732b6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{aaedf6e6-c779-11f0-afa0-f246c15d1a48}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:54.466 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Network\Cookies
2025-11-26 17:12:54.514 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:12:55.924 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies
2025-11-26 17:12:55.924 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies-journal
2025-11-26 17:12:55.972 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_0a9344xs7nr4m\amdlinkuwp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\amdlinkuwp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GameBarElevatedFT_Alias.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GetHelp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MediaPlayer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerMCPServer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerServer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\winget.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.GetHelp_8wekyb3d8bbwe\GetHelp.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.OutlookForWindows_8wekyb3d8bbwe\olk.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\mspaint.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\pbrush.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ScreenSketch_8wekyb3d8bbwe\SnippingTool.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsNotepad_8wekyb3d8bbwe\notepad.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore-mcp.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\store.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsTerminal_8wekyb3d8bbwe\wt.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.XboxGamingOverlay_8wekyb3d8bbwe\GameBarElevatedFT_Alias.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ZuneMusic_8wekyb3d8bbwe\MediaPlayer.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore-mcp.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\VisualAssist.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teamsupdate.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_autostarter.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_modulehost_ac.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\mspaint.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teamsupdate.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_autostarter.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_modulehost_ac.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\notepad.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\olk.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\pbrush.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python3.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\SnippingTool.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\store.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\VisualAssist.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerMCPServer.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerServer.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\winget.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\wt.exe
2025-11-26 17:13:29.684 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies
2025-11-26 17:13:29.684 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies-journal
2025-11-26 17:13:29.781 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:16:28.463 Could not open C:\Windows\System32\config\BBI
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:37:07.340 The following items will be cleaned up:
2025-11-26 17:37:07.340 Mal/ZboCheMan-D
2025-11-26 17:37:07.340 Mal/EncPk-MK
2025-11-26 17:38:38.609 Error level 0
2025-11-26 17:38:38.609 Scan completed.
2025-11-26 17:38:38.609
------------------------------------------------------------
2025-11-26 17:44:26.913 Sophos Virus Removal Tool version 2.9.0
2025-11-26 17:44:26.913 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 17:44:26.913 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 17:44:26.913 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 17:44:26.913 Checking for updates...
2025-11-26 17:44:26.921 Update progress: proxy server not available
2025-11-26 17:44:28.574 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 17:44:34.753 Option all = no
2025-11-26 17:44:34.753 Option recurse = yes
2025-11-26 17:44:34.753 Option archive = no
2025-11-26 17:44:34.753 Option service = yes
2025-11-26 17:44:34.753 Option confirm = yes
2025-11-26 17:44:34.753 Option sxl = yes
2025-11-26 17:44:34.753 Option max-data-age = 35
2025-11-26 17:44:34.753 Option vdl-logging = yes
2025-11-26 17:44:34.755 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 17:44:34.755 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 17:44:34.755 Component SVRTcli.exe version 2.9.0
2025-11-26 17:44:34.755 Component control.dll version 2.9.0
2025-11-26 17:44:34.755 Component SVRTservice.exe version 2.9.0
2025-11-26 17:44:34.755 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 17:44:34.755 Component engine\veex.dll version 3.81.0.2510
2025-11-26 17:44:34.755 Component engine\savi.dll version 9.0.23.2510
2025-11-26 17:44:34.755 Component rkdisk.dll version 1.5.33.1
2025-11-26 17:44:34.755 Version info: Product version 2.9.0
2025-11-26 17:44:34.755 Version info: Detection engine 3.81.0
2025-11-26 17:44:34.755 Version info: Detection data 5.82
2025-11-26 17:44:34.755 Version info: Build date 16.02.2021
2025-11-26 17:44:34.755 Version info: Data files added 208
2025-11-26 17:44:34.755 Version info: Last successful update (not yet updated)
2025-11-26 17:50:32.604 Could not open C:\hiberfil.sys
2025-11-26 17:50:32.620 Could not open C:\pagefile.sys
2025-11-26 17:53:40.085 >>> Virus 'Mal/ZboCheMan-D' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe
2025-11-26 17:53:42.802 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
2025-11-26 17:55:00.905 Could not open C:\swapfile.sys
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{09396154-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{093961d3-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{09396207-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59310cf4-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59310f07-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59311149-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{9a79db85-c913-11f0-afa4-c0c622d732b6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{aaedf6e6-c779-11f0-afa0-f246c15d1a48}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:12.418 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Network\Cookies
2025-11-26 17:55:12.451 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:55:13.333 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies
2025-11-26 17:55:13.333 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies-journal
2025-11-26 17:55:13.381 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_0a9344xs7nr4m\amdlinkuwp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\amdlinkuwp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GameBarElevatedFT_Alias.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GetHelp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MediaPlayer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerMCPServer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerServer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\winget.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.GetHelp_8wekyb3d8bbwe\GetHelp.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.OutlookForWindows_8wekyb3d8bbwe\olk.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\mspaint.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\pbrush.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ScreenSketch_8wekyb3d8bbwe\SnippingTool.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsNotepad_8wekyb3d8bbwe\notepad.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore-mcp.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\store.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsTerminal_8wekyb3d8bbwe\wt.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.XboxGamingOverlay_8wekyb3d8bbwe\GameBarElevatedFT_Alias.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ZuneMusic_8wekyb3d8bbwe\MediaPlayer.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore-mcp.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\VisualAssist.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teamsupdate.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_autostarter.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_modulehost_ac.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\mspaint.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teamsupdate.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_autostarter.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_modulehost_ac.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\notepad.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\olk.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\pbrush.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python3.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\SnippingTool.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\store.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\VisualAssist.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerMCPServer.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerServer.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\winget.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\wt.exe
2025-11-26 17:55:24.754 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies
2025-11-26 17:55:24.754 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies-journal
2025-11-26 17:55:24.802 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:57:11.806 Could not open C:\Windows\System32\config\BBI
2025-11-26 17:57:14.059 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 18:16:27.845 The following items will be cleaned up:
2025-11-26 18:16:27.845 Mal/ZboCheMan-D
2025-11-26 18:16:27.845 Mal/EncPk-MK
2025-11-26 18:31:36.940 Threat 'Mal/ZboCheMan-D' has been cleaned up.
2025-11-26 18:31:36.940 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe" belongs to malware 'Mal/ZboCheMan-D'.
2025-11-26 18:31:36.940 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe" has been cleaned up.
2025-11-26 18:31:36.940 Removal successful
2025-11-26 18:31:39.467 Threat 'Mal/EncPk-MK' has been cleaned up.
2025-11-26 18:31:39.467 Process "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe:pid:00003328" belongs to malware 'Mal/EncPk-MK'.
2025-11-26 18:31:39.467 Process "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe:pid:00003328" has been cleaned up.
2025-11-26 18:31:39.467 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll" belongs to malware 'Mal/EncPk-MK'.
2025-11-26 18:31:39.467 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll" has been cleaned up.
2025-11-26 18:31:39.467 Removal successful
2025-11-26 18:31:39.908 Error level 0
2025-11-26 18:32:54.802 Scan completed.
2025-11-26 18:32:54.802
------------------------------------------------------------
2025-11-26 18:38:40.157 Sophos Virus Removal Tool version 2.9.0
2025-11-26 18:38:40.157 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 18:38:40.157 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 18:38:40.157 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 18:38:40.157 Checking for updates...
2025-11-26 18:38:40.162 Update progress: proxy server not available
2025-11-26 18:38:41.803 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 18:38:45.125 Option all = no
2025-11-26 18:38:45.125 Option recurse = yes
2025-11-26 18:38:45.125 Option archive = no
2025-11-26 18:38:45.125 Option service = yes
2025-11-26 18:38:45.125 Option confirm = yes
2025-11-26 18:38:45.125 Option sxl = yes
2025-11-26 18:38:45.125 Option max-data-age = 35
2025-11-26 18:38:45.125 Option vdl-logging = yes
2025-11-26 18:38:45.125 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 18:38:45.125 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 18:38:45.125 Component SVRTcli.exe version 2.9.0
2025-11-26 18:38:45.125 Component control.dll version 2.9.0
2025-11-26 18:38:45.125 Component SVRTservice.exe version 2.9.0
2025-11-26 18:38:45.125 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 18:38:45.125 Component engine\veex.dll version 3.81.0.2510
2025-11-26 18:38:45.125 Component engine\savi.dll version 9.0.23.2510
2025-11-26 18:38:45.125 Component rkdisk.dll version 1.5.33.1
2025-11-26 18:38:45.125 Version info: Product version 2.9.0
2025-11-26 18:38:45.125 Version info: Detection engine 3.81.0
2025-11-26 18:38:45.125 Version info: Detection data 5.82
2025-11-26 18:38:45.125 Version info: Build date 16.02.2021
2025-11-26 18:38:45.125 Version info: Data files added 208
2025-11-26 18:38:45.125 Version info: Last successful update (not yet updated)
2025-11-26 18:38:47.009 Error level 1
2025-11-26 18:38:47.009 Scan completed.
2025-11-26 18:38:47.009
------------------------------------------------------------
2025-11-26 16:39:13.052 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 16:39:13.052 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 16:39:13.052 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 16:39:13.052 Checking for updates...
2025-11-26 16:39:13.052 Update progress: proxy server not available
2025-11-26 16:39:14.722 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 16:39:20.907 Option all = no
2025-11-26 16:39:20.907 Option recurse = yes
2025-11-26 16:39:20.907 Option archive = no
2025-11-26 16:39:20.907 Option service = yes
2025-11-26 16:39:20.907 Option confirm = yes
2025-11-26 16:39:20.907 Option sxl = yes
2025-11-26 16:39:20.907 Option max-data-age = 35
2025-11-26 16:39:20.907 Option vdl-logging = yes
2025-11-26 16:39:20.911 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 16:39:20.911 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 16:39:20.911 Component SVRTcli.exe version 2.9.0
2025-11-26 16:39:20.911 Component control.dll version 2.9.0
2025-11-26 16:39:20.911 Component SVRTservice.exe version 2.9.0
2025-11-26 16:39:20.911 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 16:39:20.911 Component engine\veex.dll version 3.81.0.2510
2025-11-26 16:39:20.911 Component engine\savi.dll version 9.0.23.2510
2025-11-26 16:39:20.942 Component rkdisk.dll version 1.5.33.1
2025-11-26 16:39:20.942 Version info: Product version 2.9.0
2025-11-26 16:39:20.942 Version info: Detection engine 3.81.0
2025-11-26 16:39:20.942 Version info: Detection data 5.82
2025-11-26 16:39:20.942 Version info: Build date 16.02.2021
2025-11-26 16:39:20.942 Version info: Data files added 208
2025-11-26 16:39:20.942 Version info: Last successful update (not yet updated)
2025-11-26 17:05:41.663 Could not open C:\hiberfil.sys
2025-11-26 17:05:41.669 Could not open C:\pagefile.sys
2025-11-26 17:10:02.512 >>> Virus 'Mal/ZboCheMan-D' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe
2025-11-26 17:10:05.543 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
2025-11-26 17:12:33.497 Could not open C:\swapfile.sys
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{09396154-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{093961d3-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{09396207-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59310cf4-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59310f07-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{59311149-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{9a79db85-c913-11f0-afa4-c0c622d732b6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:33.592 Could not open C:\System Volume Information\{aaedf6e6-c779-11f0-afa0-f246c15d1a48}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:12:54.466 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Network\Cookies
2025-11-26 17:12:54.514 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:12:55.924 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies
2025-11-26 17:12:55.924 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies-journal
2025-11-26 17:12:55.972 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_0a9344xs7nr4m\amdlinkuwp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\amdlinkuwp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GameBarElevatedFT_Alias.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GetHelp.exe
2025-11-26 17:12:56.195 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MediaPlayer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerMCPServer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerServer.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\winget.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.GetHelp_8wekyb3d8bbwe\GetHelp.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.OutlookForWindows_8wekyb3d8bbwe\olk.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\mspaint.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\pbrush.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ScreenSketch_8wekyb3d8bbwe\SnippingTool.exe
2025-11-26 17:12:56.211 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsNotepad_8wekyb3d8bbwe\notepad.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore-mcp.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\store.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsTerminal_8wekyb3d8bbwe\wt.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.XboxGamingOverlay_8wekyb3d8bbwe\GameBarElevatedFT_Alias.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ZuneMusic_8wekyb3d8bbwe\MediaPlayer.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore-mcp.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\VisualAssist.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:12:56.227 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teamsupdate.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_autostarter.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_modulehost_ac.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\mspaint.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teamsupdate.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_autostarter.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_modulehost_ac.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\notepad.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\olk.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\pbrush.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python3.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\SnippingTool.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\store.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\VisualAssist.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerMCPServer.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerServer.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\winget.exe
2025-11-26 17:12:56.243 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\wt.exe
2025-11-26 17:13:29.684 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies
2025-11-26 17:13:29.684 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies-journal
2025-11-26 17:13:29.781 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:16:28.463 Could not open C:\Windows\System32\config\BBI
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:16:30.826 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:37:07.340 The following items will be cleaned up:
2025-11-26 17:37:07.340 Mal/ZboCheMan-D
2025-11-26 17:37:07.340 Mal/EncPk-MK
2025-11-26 17:38:38.609 Error level 0
2025-11-26 17:38:38.609 Scan completed.
2025-11-26 17:38:38.609
------------------------------------------------------------
2025-11-26 17:44:26.913 Sophos Virus Removal Tool version 2.9.0
2025-11-26 17:44:26.913 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 17:44:26.913 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 17:44:26.913 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 17:44:26.913 Checking for updates...
2025-11-26 17:44:26.921 Update progress: proxy server not available
2025-11-26 17:44:28.574 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 17:44:34.753 Option all = no
2025-11-26 17:44:34.753 Option recurse = yes
2025-11-26 17:44:34.753 Option archive = no
2025-11-26 17:44:34.753 Option service = yes
2025-11-26 17:44:34.753 Option confirm = yes
2025-11-26 17:44:34.753 Option sxl = yes
2025-11-26 17:44:34.753 Option max-data-age = 35
2025-11-26 17:44:34.753 Option vdl-logging = yes
2025-11-26 17:44:34.755 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 17:44:34.755 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 17:44:34.755 Component SVRTcli.exe version 2.9.0
2025-11-26 17:44:34.755 Component control.dll version 2.9.0
2025-11-26 17:44:34.755 Component SVRTservice.exe version 2.9.0
2025-11-26 17:44:34.755 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 17:44:34.755 Component engine\veex.dll version 3.81.0.2510
2025-11-26 17:44:34.755 Component engine\savi.dll version 9.0.23.2510
2025-11-26 17:44:34.755 Component rkdisk.dll version 1.5.33.1
2025-11-26 17:44:34.755 Version info: Product version 2.9.0
2025-11-26 17:44:34.755 Version info: Detection engine 3.81.0
2025-11-26 17:44:34.755 Version info: Detection data 5.82
2025-11-26 17:44:34.755 Version info: Build date 16.02.2021
2025-11-26 17:44:34.755 Version info: Data files added 208
2025-11-26 17:44:34.755 Version info: Last successful update (not yet updated)
2025-11-26 17:50:32.604 Could not open C:\hiberfil.sys
2025-11-26 17:50:32.620 Could not open C:\pagefile.sys
2025-11-26 17:53:40.085 >>> Virus 'Mal/ZboCheMan-D' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe
2025-11-26 17:53:42.802 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
2025-11-26 17:55:00.905 Could not open C:\swapfile.sys
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{09396154-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{093961d3-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.936 Could not open C:\System Volume Information\{09396207-ca16-11f0-afac-f80adecf57c6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59310cf4-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59310f07-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{59311149-cae1-11f0-afaf-fa70a44930af}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{9a79db85-c913-11f0-afa4-c0c622d732b6}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:00.952 Could not open C:\System Volume Information\{aaedf6e6-c779-11f0-afa0-f246c15d1a48}{3808876b-c176-4e48-b7ae-04046e6cc752}
2025-11-26 17:55:12.418 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Network\Cookies
2025-11-26 17:55:12.451 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:55:13.333 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies
2025-11-26 17:55:13.333 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Network\Cookies-journal
2025-11-26 17:55:13.381 Could not open C:\Users\Jenda\AppData\Local\Microsoft\Windows\SharedWebView\EBWebView\WV2Profile_widgets\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_0a9344xs7nr4m\amdlinkuwp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\amdlinkuwp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GameBarElevatedFT_Alias.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\GetHelp.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MediaPlayer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerMCPServer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\WindowsPackageManagerServer.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\winget.exe
2025-11-26 17:55:13.508 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.GetHelp_8wekyb3d8bbwe\GetHelp.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.OutlookForWindows_8wekyb3d8bbwe\olk.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\mspaint.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.Paint_8wekyb3d8bbwe\pbrush.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ScreenSketch_8wekyb3d8bbwe\SnippingTool.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsNotepad_8wekyb3d8bbwe\notepad.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore-mcp.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\microsoftstore.exe
2025-11-26 17:55:13.525 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsStore_8wekyb3d8bbwe\store.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.WindowsTerminal_8wekyb3d8bbwe\wt.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.XboxGamingOverlay_8wekyb3d8bbwe\GameBarElevatedFT_Alias.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\Microsoft.ZuneMusic_8wekyb3d8bbwe\MediaPlayer.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore-mcp.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\microsoftstore.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\VisualAssist.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teamsupdate.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_autostarter.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\ms-teams_modulehost_ac.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\mspaint.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teamsupdate.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_autostarter.exe
2025-11-26 17:55:13.541 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams_modulehost_ac.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\notepad.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\olk.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\pbrush.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\python3.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\SnippingTool.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\store.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\VisualAssist.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerMCPServer.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\WindowsPackageManagerServer.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\winget.exe
2025-11-26 17:55:13.557 Could not open C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\wt.exe
2025-11-26 17:55:24.754 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies
2025-11-26 17:55:24.754 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Network\Cookies-journal
2025-11-26 17:55:24.802 Could not open C:\Users\Jenda\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalState\EBWebView\Default\Safe Browsing Network\Safe Browsing Cookies
2025-11-26 17:57:11.806 Could not open C:\Windows\System32\config\BBI
2025-11-26 17:57:14.059 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\ActionsMcpHost.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\ActionsMcpHost.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 17:57:14.075 Could not open C:\Windows\System32\config\systemprofile\AppData\Local\Microsoft\WindowsApps\MicrosoftWindows.DesktopStickerEditorCentennial.exe
2025-11-26 18:16:27.845 The following items will be cleaned up:
2025-11-26 18:16:27.845 Mal/ZboCheMan-D
2025-11-26 18:16:27.845 Mal/EncPk-MK
2025-11-26 18:31:36.940 Threat 'Mal/ZboCheMan-D' has been cleaned up.
2025-11-26 18:31:36.940 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe" belongs to malware 'Mal/ZboCheMan-D'.
2025-11-26 18:31:36.940 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe" has been cleaned up.
2025-11-26 18:31:36.940 Removal successful
2025-11-26 18:31:39.467 Threat 'Mal/EncPk-MK' has been cleaned up.
2025-11-26 18:31:39.467 Process "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe:pid:00003328" belongs to malware 'Mal/EncPk-MK'.
2025-11-26 18:31:39.467 Process "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\ksde.exe:pid:00003328" has been cleaned up.
2025-11-26 18:31:39.467 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll" belongs to malware 'Mal/EncPk-MK'.
2025-11-26 18:31:39.467 File "C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll" has been cleaned up.
2025-11-26 18:31:39.467 Removal successful
2025-11-26 18:31:39.908 Error level 0
2025-11-26 18:32:54.802 Scan completed.
2025-11-26 18:32:54.802
------------------------------------------------------------
2025-11-26 18:38:40.157 Sophos Virus Removal Tool version 2.9.0
2025-11-26 18:38:40.157 Copyright (c) 2009-2021 Sophos Limited. All rights reserved.
2025-11-26 18:38:40.157 This tool will scan your computer for viruses and other threats. If it finds any, it will give you the option to remove them.
2025-11-26 18:38:40.157 Windows version 6.2 SP 0.0 build 9200 SM=0x100 PT=0x1 WOW64
2025-11-26 18:38:40.157 Checking for updates...
2025-11-26 18:38:40.162 Update progress: proxy server not available
2025-11-26 18:38:41.803 Update error: failed to read remote metadata (error 4)
[V46381] SU::Handle::readRemoteMetadata + SU::Handle::readRemoteMetadata()
[V75884] SU::Metadata::readRemoteMetadata SU::Metadata::readRemoteMetadata()
[I40394] Downloading customer file from sophos:1:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:1:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.com/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:2:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:2:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E26245] Error fetching data from http://dci.sophosupd.net/update/d/8a/d8 ... 768996.dat: WinHttpSendRequest (error 12007)
[I26245] No proxy was used.
[I40394] Downloading customer file from sophos:3:1
[V81533] SU::createCachedPackageSource creating cached package source for sophos:3:1: url=SOPHOS
[V81533] SU::createCachedPackageSource creating http_source_specific_data to download customer file
[V81533] SU::createCachedPackageSource creating package source to download customer file
[E75373] Ran out of sophos aliases for this update source
[E35369] Out of update sources
[E99999] Out of sources
2025-11-26 18:38:45.125 Option all = no
2025-11-26 18:38:45.125 Option recurse = yes
2025-11-26 18:38:45.125 Option archive = no
2025-11-26 18:38:45.125 Option service = yes
2025-11-26 18:38:45.125 Option confirm = yes
2025-11-26 18:38:45.125 Option sxl = yes
2025-11-26 18:38:45.125 Option max-data-age = 35
2025-11-26 18:38:45.125 Option vdl-logging = yes
2025-11-26 18:38:45.125 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2025-11-26 18:38:45.125 Machine ID: 8ef5bc7d6e6c4ab4a8030dae50fddb7c
2025-11-26 18:38:45.125 Component SVRTcli.exe version 2.9.0
2025-11-26 18:38:45.125 Component control.dll version 2.9.0
2025-11-26 18:38:45.125 Component SVRTservice.exe version 2.9.0
2025-11-26 18:38:45.125 Component engine\osdp.dll version 1.44.1.2510
2025-11-26 18:38:45.125 Component engine\veex.dll version 3.81.0.2510
2025-11-26 18:38:45.125 Component engine\savi.dll version 9.0.23.2510
2025-11-26 18:38:45.125 Component rkdisk.dll version 1.5.33.1
2025-11-26 18:38:45.125 Version info: Product version 2.9.0
2025-11-26 18:38:45.125 Version info: Detection engine 3.81.0
2025-11-26 18:38:45.125 Version info: Detection data 5.82
2025-11-26 18:38:45.125 Version info: Build date 16.02.2021
2025-11-26 18:38:45.125 Version info: Data files added 208
2025-11-26 18:38:45.125 Version info: Last successful update (not yet updated)
2025-11-26 18:38:47.009 Error level 1
2025-11-26 18:38:47.009 Scan completed.
2025-11-26 18:38:47.009
------------------------------------------------------------
Re: Prosím o kontrolu logu
Ahoj stále mi blbne discord ukazuje update failed a stále na něm běží odpočet a nic to nedělá. A kaspersky mi stále píše připojení vpn není k dispozici
Re: Prosím o kontrolu logu
2025-11-26 17:10:02.512 >>> Virus 'Mal/ZboCheMan-D' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\troubleshoot.exe
2025-11-26 17:10:05.543 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
Ten Kaspersky máš legální?
Vypni antivir i firewall, RogueKiller, Malwarebytes Antimalware, windowsDefender
Stáhni zoek:
ttps://datoid.cz/zhmnlC/zoek-1-exe
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.
Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe
(posuvník dolu na download)
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat nyní“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Vykonat“ ( vymazat). Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, klikni vlevo na „zprávy“ a pak na „otevři zprávu“ a zkopíruj sem celý obsah té zprávy.
Pak napiš co problémy.
2025-11-26 17:10:05.543 >>> Virus 'Mal/EncPk-MK' found in file C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.23\wireguard_go.dll
Ten Kaspersky máš legální?
Vypni antivir i firewall, RogueKiller, Malwarebytes Antimalware, windowsDefender
Stáhni zoek:
ttps://datoid.cz/zhmnlC/zoek-1-exe
Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:
Kód: Vybrat vše
autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin; Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.
Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe
(posuvník dolu na download)
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat nyní“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Vykonat“ ( vymazat). Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, klikni vlevo na „zprávy“ a pak na „otevři zprávu“ a zkopíruj sem celý obsah té zprávy.
Pak napiš co problémy.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Ahoj kaspersky je placený a nejde mi sem dát ty logy protže je jich moc
Re: Prosím o kontrolu logu
zoek má přes 600000 znaků tak to posílám přes ůschovnu
https://www.uschovna.cz/zasilka/TQUBH2RFN26T39FA-EHU/
zeman mi nejde nainstalovat píše to, že instal sdk failed
https://www.uschovna.cz/zasilka/TQUBH2RFN26T39FA-EHU/
zeman mi nejde nainstalovat píše to, že instal sdk failed
Re: Prosím o kontrolu logu
Ok a co Zemana?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Ahoj zeman mi nejde spustit píše instal SDKfailed
Re: Prosím o kontrolu logu
Tak to nech. Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Problémy jsou stále stejné něco mě blokuje komunikaci, discord při spuštění ukáže tabulku update failed a furt dokola se odečítá čas. A druhý problém při spuštění hry war thunder mě nechce připojit a píše mi, že nejsem připopjený k internetu.Přitom wor of thanks mi jede bez problémů. Už jsem warthunder dvakrát přeinstaloval a problém s připojením zůstává. A na whatsapu když chci odeslat fotky tak to nejde nebo když mi někdo pošle nějaký soubor tak nejde stáhnout nebo otevřít. Děkuju , že se s tím zabýváte, protože už nevím co s tím.
