Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Poshukach problém

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
cr8gg
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 26 lis 2021 12:26

Poshukach problém

#1 Příspěvek od cr8gg »

Zdravím,
dneska sem zapl PC a Chrome mi vyhodil pouze polovinu záložek a válel se tam navíc vyhledávač "Poshukach". Můžete prosím poradit, jak se toho svinstva zbavit?
Předem moc díky

FRST log zde:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-11-2021
Ran by holsk (administrator) on DESKTOP-ISU7VVA (Micro-Star International Co., Ltd. MS-7B46) (26-11-2021 12:34:44)
Running from C:\Users\holsk\Desktop
Loaded Profiles: holsk
Platform: Microsoft Windows 10 Home Version 21H1 19043.1348 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\MPService.exe
(Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc\AdobeNotificationClient.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(ASUSTeK Computer Inc. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <2>
(ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\LightingService\LightingService.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(ASUSTEK COMPUTER INCORPORATION -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe
(ASUSTEK COMPUTER INCORPORATION -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.UserSessionHelper.exe
(Cooler Master Technology Inc. -> ) C:\Program Files (x86)\CoolerMaster\MasterPlus\cm-blackhawk.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Hry\Origin\OriginWebHelperService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <50>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.59.11001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.59.11001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b7184c0e1c94c102\Display.NvContainer\NVDisplay.Container.exe <2>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Razer USA Ltd. -> THX) C:\Windows\System32\THXV2HSAService.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Asus Headset Svc64] => C:\Program Files\NahimicAPI\NahimicAPISvc64.exe [744200 2021-06-18] (A-Volute SAS -> NahimicAPI)
HKLM\...\Run: [Asus Headset Svc32] => C:\Program Files\NahimicAPI\x86\NahimicAPISvc32.exe [720136 2021-06-18] (A-Volute SAS -> NahimicAPI)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [781552 2021-10-14] (Adobe Inc. -> Adobe Inc.)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [Steam] => D:\Hry\Steam\steam.exe [4267432 2021-11-22] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [EpicGamesLauncher] => D:\Hry\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33435616 2021-10-14] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35342976 2021-11-12] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [com.squirrel.Teams.Teams] => C:\Users\holsk\AppData\Local\Microsoft\Teams\Update.exe [2459280 2021-11-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [EADM] => D:\Hry\Origin\Origin.exe [3145912 2021-11-24] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [ViveportDesktop] => D:\Hry\VR\VIVE\PCClient\Vive.exe [35483208 2020-03-06] (HTC Corp. -> HTC)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [190280 2021-11-17] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [Synapse3] => D:\Programy\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3522168 2021-08-23] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [Discord] => C:\Users\holsk\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [136443968 2021-11-21] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [utweb] => "C:\Users\holsk\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [6849760 2021-10-05] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\MountPoints2: {4c85b6c4-3a61-11eb-8116-309c236ae880} - "E:\OnePlus_setup.exe" /s
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\MountPoints2: {5fd4cca6-c20f-11eb-8138-309c236ae880} - "F:\OnePlus_setup.exe" /s
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\MountPoints2: {ea8af8d4-a8f5-11eb-8134-309c236ae880} - "F:\OnePlus_setup.exe" /s
HKU\S-1-5-18\...\Run: [Synapse3] => D:\Programy\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3522168 2021-08-23] (Razer USA Ltd. -> Razer Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.45\Installer\chrmstp.exe [2021-11-15] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HusRegisterHelper.lnk [2020-04-07]
ShortcutTarget: HusRegisterHelper.lnk -> D:\Hry\VR\VIVE\Updater\App\ViveEyeRegisterHelper\RegisterHelper.exe (HTC Corp. -> HTC Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ROCCAT Swarm Monitor.lnk [2021-06-24]
ShortcutTarget: ROCCAT Swarm Monitor.lnk -> D:\Programy\ROCCAT Swarm\ROCCAT_Swarm_Monitor.exe (Voyetra Turtle Beach, Inc. -> ROCCAT)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VIVE 2018 Switch.lnk [2020-04-07]
ShortcutTarget: VIVE 2018 Switch.lnk -> D:\Hry\VR\VIVE\Updater\App\ViveVRRuntime\ViveVR_utility\SteamVR_ViveVR_Switch.exe (HTC Corp. -> TODO: <Company name>)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\VIVE Cosmos Settings.lnk [2020-04-07]
ShortcutTarget: VIVE Cosmos Settings.lnk -> D:\Hry\VR\VIVE\Updater\App\ViveEyeSettings\ViveSettings.exe (HTC Corp. -> HTC Corp.)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0C413D2E-E2AC-47F6-B385-F50128DA67C5} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1A0E92F1-A8B7-4079-9039-3416050B3AD7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2021-11-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {211A6332-992C-4743-892E-71D8DD328D70} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe Detect_Monitor (No File)
Task: {22A39894-493F-4554-B470-F474817AC3E5} - System32\Tasks\NahimicAPISvc64Run => C:\Program Files\NahimicAPI\NahimicAPISvc64.exe [744200 2021-06-18] (A-Volute SAS -> NahimicAPI)
Task: {240A949E-F33D-4C63-8B1F-08B946EFE2B1} - System32\Tasks\MSI Task Host - MSI.True Color => C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe (No File)
Task: {24C1FF75-56E8-482A-AEFC-585D87818F76} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {266F26C5-CF36-4CEA-8EDF-5F09BB1719D1} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2B5C926B-9E12-419A-A03E-AB31E56A055A} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2C4ED123-1EBB-4DFD-9447-45795CC37B11} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-11-12] (Piriform Software Ltd -> Piriform)
Task: {31D30C02-D09F-4923-BACE-5B10D7163FCA} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {3940102A-F4BD-4EF5-8E24-6FD7F3E6191B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3A0D6423-E1F9-4631-9D93-B848EF9B7599} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {49504937-23B4-43B8-AF1E-72916C248DC8} - System32\Tasks\ASUS\Framework Service => C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe [44588888 2021-08-18] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {49D7759D-3228-4BB0-9B6F-632A6F8C54FC} - System32\Tasks\ASUS\ledcontrolservice3_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AudioSDK\Protocol\AudioLEDControl\ledcontrolservice3.exe [2827112 2021-03-25] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {4A162BA8-5FCD-48BF-9101-EE550BCAAAE7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-28] (Google LLC -> Google LLC)
Task: {4EA94054-9A87-43D4-9025-7DE833153EEC} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe Detect_DisplayID (No File)
Task: {5A196FDC-F53D-4E93-9DFA-ABD0AC9CC92C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {63812B59-AFAA-49B0-9C56-E56A528D72DD} - System32\Tasks\NahimicAPISvc32Run => C:\Program Files\NahimicAPI\x86\NahimicAPISvc32.exe [720136 2021-06-18] (A-Volute SAS -> NahimicAPI)
Task: {742F65F6-49D5-40AF-9713-08DE8D71846A} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [104600 2021-08-19] (ASUSTeK Computer Inc. -> ASUS)
Task: {89DECC42-4DF2-43EB-BFD0-1DC5730B517B} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {8BB9347A-B09F-4FF2-AE22-42A9C7AEB2F8} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {8C48F831-E357-4B52-88E4-429DD7FF8996} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1d77bff40aa9ecd => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-07-18] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {92D512AB-85A0-4CB7-AC4F-40ED1DFC1D14} - System32\Tasks\ROCCAT DEVICE SERVICE => D:\Programy\ROCCAT Swarm\ROCCAT_dev_service.exe [442888 2021-06-15] (Voyetra Turtle Beach, Inc. -> ROCCAT)
Task: {9346C2FB-BECD-4B01-BF34-E536685F0BA0} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22654872 2021-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C7BC69F-7E8D-4FD3-90A6-894513D72191} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [138600 2021-11-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {9F4D444A-AD3F-406C-A16D-EF6BDFA24BCB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {A26F81AF-75B6-4B41-A467-C67F3CA8FD3A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {A4C86C2E-66A7-4C16-85F2-7ECC3EACA335} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe [2178936 2021-08-19] (ASUSTeK Computer Inc. -> ASUS)
Task: {A94BF9AA-7784-43DC-B686-15B54A9D3B58} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8314824 2021-11-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {ABEC322D-2485-4787-9611-7639744E14D6} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BB91B85A-BE45-47B7-84F3-37C318EF29F7} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8314824 2021-11-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {BF054E2E-1C41-452F-AA50-F33974E17CB4} - System32\Tasks\MSILEDKeeper_Host => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe [680632 2018-07-04] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {C0571C6E-9058-49F8-B61E-73B8B44C1533} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-01-28] (Google LLC -> Google LLC)
Task: {C137316E-516D-4DB8-8658-00120966034F} - System32\Tasks\Trojan Remover => C:\Program Files\Loaris Trojan Remover\ltr.exe (No File)
Task: {C1415DC0-7F17-49E9-ABAC-2E3C1DBAA992} - System32\Tasks\CCleanerSkipUAC - holsk => C:\Program Files\CCleaner\CCleaner.exe [29417088 2021-11-12] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {D21AD761-C804-4798-9F3E-3A0CB67FFAE7} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-07-18] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {E2B86005-A478-4E81-905C-81D1A0251784} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [1735504 2021-07-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {F6213CDC-C717-4DE3-9EAF-852D7846B53A} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {F9D2F8E0-C9E0-4943-A010-0C106D8C4F37} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {FE041797-654F-4B39-8C4F-BB54CD5C350C} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22654872 2021-11-04] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSILEDKeeper_Host.job => C:\Program Files (x86)\MSI\MysticLight\LEDKeeper.exe
Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{db372b44-6645-43c1-bbde-50720493c3fe}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{db372b44-6645-43c1-bbde-50720493c3fe}: [DhcpNameServer] 192.168.0.1

Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default [2021-11-26]
Edge HomePage: Default -> hxxps://poshukach.com?fr=ps&gp=496723&altserp=1
Edge StartupUrls: Default -> "hxxps://poshukach.com?fr=ps&gp=496723&altserp=1"
Edge DefaultSearchURL: Default -> hxxps://poshukach.com/search?q={searchTerms}&fr=ps&gp=496723&altserp=1
Edge DefaultSearchKeyword: Default -> Poshukach Engin Search
Edge DefaultSuggestURL: Default -> hxxps://suggest.finditnowonline.com/suggestionfeed/suggestion?format=json&gd=496721&q={searchTerms}
Edge Extension: (Outlook) - C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-20]
Edge Extension: (Word) - C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-20]
Edge Extension: (Excel) - C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-20]
Edge Extension: (PowerPoint) - C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-20]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-10-14] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [File not signed]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-10-14] (Adobe Inc. -> Adobe Systems)
FF Plugin HKU\S-1-5-21-2635428369-3733989882-2362368333-1002: @zoom.us/ZoomVideoPlugin -> C:\Users\holsk\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-16] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default [2021-11-26]
CHR DownloadDir: C:\Users\holsk\Desktop
CHR Notifications: Default -> hxxps://captcha-sourcecenter.com; hxxps://cs.soringpcrepair.com; hxxps://in.pinterest.com; hxxps://kfc.cz; hxxps://pngio.com; hxxps://themindunleashed.com; hxxps://www.autozive.cz; hxxps://www.boredpanda.com; hxxps://www.facebook.com; hxxps://www.gamingbible.co.uk; hxxps://www.instagram.com; hxxps://www.lenovo.com; hxxps://www.mall.tv; hxxps://www.netflix.com; hxxps://www.op.gg; hxxps://www.razer.com; hxxps://www.reddit.com; hxxps://www.wondershare.net; hxxps://www.youtube.com
CHR HomePage: Default -> hxxps://poshukach.com?fr=ps&gp=496723&altserp=1
CHR StartupUrls: Default -> "hxxps://poshukach.com?fr=ps&gp=496723&altserp=1"
CHR Extension: (Prezentace) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-01-28]
CHR Extension: (Dokumenty) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-01-28]
CHR Extension: (Disk Google) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-27]
CHR Extension: (YouTube) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-01-28]
CHR Extension: (Tabulky) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-01-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-10-19]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-11-12]
CHR Extension: (Messenger) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdocgkdfdbcaedenamciifpcglgmgbgj [2020-01-28]
CHR Extension: (Excel Online) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\iljnkagajgfdmfnnidjijobijlfjfgnb [2020-04-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Profile: C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-11-26]
CHR HomePage: Profile 1 -> hxxps://poshukach.com?fr=ps&gp=496723&altserp=1
CHR StartupUrls: Profile 1 -> "hxxps://poshukach.com?fr=ps&gp=496723&altserp=1"
CHR DefaultSearchURL: Profile 1 -> hxxps://poshukach.com/search?q={searchTerms}&fr=ps&gp=496723&altserp=1
CHR DefaultSearchKeyword: Profile 1 -> Poshukach Engin Search
CHR DefaultSuggestURL: Profile 1 -> hxxps://suggest.finditnowonline.com/suggestionfeed/suggestion?format=json&gd=496721&q={searchTerms}
CHR Extension: (Prezentace) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-02-03]
CHR Extension: (Dokumenty) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2020-02-03]
CHR Extension: (Disk Google) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-02-03]
CHR Extension: (YouTube) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-02-03]
CHR Extension: (Plná Peněženka Lištička) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ecmgkhgjmodembdmiimbacpjgcdimiek [2020-02-03]
CHR Extension: (Tabulky) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-02-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-03]
CHR Extension: (Tlačítko „Uložit“ pro Pinterest) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2020-02-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-03]
CHR Extension: (Gmail) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-03]
CHR Profile: C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2 [2021-11-26]
CHR HomePage: Profile 2 -> hxxps://poshukach.com?fr=ps&gp=496723&altserp=1
CHR StartupUrls: Profile 2 -> "hxxps://poshukach.com?fr=ps&gp=496723&altserp=1"
CHR DefaultSearchURL: Profile 2 -> hxxps://poshukach.com/search?q={searchTerms}&fr=ps&gp=496723&altserp=1
CHR DefaultSearchKeyword: Profile 2 -> Poshukach Engin Search
CHR DefaultSuggestURL: Profile 2 -> hxxps://suggest.finditnowonline.com/suggestionfeed/suggestion?format=json&gd=496721&q={searchTerms}
CHR Extension: (Prezentace) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-02-03]
CHR Extension: (Dokumenty) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2020-02-03]
CHR Extension: (Disk Google) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-02-03]
CHR Extension: (YouTube) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-02-03]
CHR Extension: (Tabulky) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-02-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-03]
CHR Extension: (Gmail) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-02-03]
CHR Extension: (Chrome Media Router) - C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-03]
CHR Profile: C:\Users\holsk\AppData\Local\Google\Chrome\User Data\System Profile [2021-10-18]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [844528 2021-10-14] (Adobe Inc. -> Adobe Inc.)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3833088 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3603200 2021-09-07] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 ArmouryCrateService; C:\Program Files\ASUS\ARMOURY CRATE Lite Service\ArmouryCrate.Service.exe [349928 2021-09-15] (ASUSTEK COMPUTER INCORPORATION -> ASUSTeK COMPUTER INC.)
S3 ArmouryLiveUpdate; C:\WINDOWS\System32\DriverStore\FileRepository\rogms.inf_amd64_94d9766656ff6011\ArmouryLiveUpdate.exe [576216 2021-08-29] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.02.06\atkexComSvc.exe [456008 2021-09-15] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-07-18] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
S2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [313008 2021-08-20] (ASUSTeK Computer Inc. -> ASUSTek COMPUTER INC.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [167384 2021-07-18] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12034464 2021-11-04] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [812976 2021-11-02] (EasyAntiCheat Oy -> Epic Games, Inc)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [299680 2021-08-19] (HP Inc. -> HP Inc.)
S2 HTC Account Service; C:\Program Files\HTC Account\Htc.Identity.Service.exe [75840 2019-02-15] (HTC Corp. -> HTC)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11162688 2021-11-21] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [3426008 2021-05-14] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
S2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [86776 2020-12-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7901368 2021-11-26] (Malwarebytes Inc -> Malwarebytes)
R2 MPService; C:\Program Files (x86)\CoolerMaster\MasterPlus\MPService.exe [158208 2021-09-30] () [File not signed]
S2 MSI_Central_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [150840 2021-06-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36152 2021-06-07] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
S2 MysticLight2_Service; C:\Program Files (x86)\MSI\MysticLight\MysticLight2_Service.exe [31928 2018-03-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [39760 2021-05-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
S2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [277688 2021-04-21] (TEFINCOM S.A. -> TEFINCOM S.A.)
S3 Origin Client Service; D:\Hry\Origin\OriginClientService.exe [2557656 2021-11-24] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Hry\Origin\OriginWebHelperService.exe [3476184 2021-11-24] (Electronic Arts, Inc. -> Electronic Arts)
S2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2021-06-04] (Even Balance, Inc. -> )
S2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [254224 2021-03-22] (Razer USA Ltd. -> Razer Inc)
S2 Razer Synapse Service; D:\Programy\Razer\Synapse3\Service\Razer Synapse Service.exe [294520 2021-08-23] (Razer USA Ltd. -> Razer Inc.)
R2 ROG Live Service; C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe [5941936 2021-10-21] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [533824 2021-08-30] (Razer USA Ltd. -> Razer Inc.)
S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182128 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 THXV2HSAService; C:\WINDOWS\System32\THXV2HSAService.exe [264664 2020-11-19] (Razer USA Ltd. -> THX)
S2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [140816 2021-08-27] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 ViveportDesktopService; D:\Hry\VR\VIVE\PCClient\ViveportDesktopService.exe [386632 2020-03-06] (HTC Corp. -> HTC)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe [2872024 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe [128376 2021-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 DCIService; C:\Program Files (x86)\Lavasoft\Web Companion\Service\x64\DCIService.exe [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b7184c0e1c94c102\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b7184c0e1c94c102\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 Asusgio2; C:\WINDOWS\system32\drivers\AsIO2.sys [33832 2019-04-09] (ASUSTeK Computer Inc. -> )
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [43160 2021-08-20] (ASUSTeK Computer Inc. -> )
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [367096 2021-10-08] (Bitdefender SRL -> Bitdefender)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 cpuz149; C:\WINDOWS\temp\cpuz149\cpuz149_x64.sys [44320 2021-11-26] (CPUID S.A.R.L.U. -> CPUID)
R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [17944 2021-08-25] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R1 EneTechIo; C:\WINDOWS\system32\drivers\ene.sys [20992 2020-05-12] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [160176 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 GuiHidUsbDevLowerFFB; C:\WINDOWS\System32\Drivers\GuiHidUsbDevLowerFFB.sys [135192 2021-08-27] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
S3 GuiSTDFUDev; C:\WINDOWS\System32\Drivers\GuiSTDFUDev.sys [139272 2021-08-27] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S3 HarmanAudioService; C:\WINDOWS\System32\drivers\HarmanFilter.sys [42096 2020-07-19] (Harman International Industries, Inc -> Harman International)
S3 HTCAND64; C:\WINDOWS\System32\Drivers\ANDROIDUSB.sys [33736 2020-03-09] (3am.com(Test) -> HTC, Corporation)
S3 JBL_Quantum_Duo; C:\WINDOWS\System32\drivers\JBLQuantumDuo.sys [3824752 2019-11-17] (Microsoft Windows Hardware Compatibility Publisher -> HARMAN TECHNOLOGY CO., LTD.)
S3 LGJoyHidFilter; C:\WINDOWS\system32\drivers\LGJoyHidFilter.sys [57368 2018-05-07] (Logitech Inc -> Logitech Inc.)
S3 LGJoyHidLo; C:\WINDOWS\system32\drivers\LGJoyHidLo.sys [47256 2018-05-07] (Logitech Inc -> Logitech Inc.)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-05-07] (Logitech Inc -> Logitech Inc.)
S3 LGSHidFilt; C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [64280 2018-05-07] (Logitech -> Logitech Inc.)
S3 LGSUsbFilt; C:\WINDOWS\System32\drivers\LGSUsbFilt.Sys [41752 2018-05-07] (Logitech -> Logitech Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-17] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-17] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-17] (Logitech Inc -> Logitech)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210352 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [193448 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [69040 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-11-26] (Malwarebytes Inc -> Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [149424 2021-11-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 MSIGamingHeadset; C:\WINDOWS\System32\drivers\MSGH70.sys [3796072 2019-10-03] (Microsoft Windows Hardware Compatibility Publisher -> C-MEDIA Inc.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\WINDOWS\System32\drivers\NDivert.sys [105184 2021-03-28] (TEFINCOM S.A. -> )
R3 nlwt; C:\WINDOWS\system32\DRIVERS\nlwt.sys [39360 2021-05-09] (TEFINCOM S.A. -> WireGuard LLC)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [38608 2020-12-14] (TEFINCOM S.A. -> TEFINCOM S.A.)
R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32624 2021-03-16] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 Oculus_ViGEmBus; C:\WINDOWS\System32\drivers\Oculus_ViGEmBus.sys [32856 2019-07-04] (Oculus VR, LLC -> Facebook Inc.)
S3 ROGKB; C:\WINDOWS\System32\DriverStore\FileRepository\rogkb.inf_amd64_dff57f9ac0864d8e\ROGKB.sys [33680 2021-07-23] (ASUSTeK Computer Inc. -> )
S3 ROGMS; C:\WINDOWS\System32\DriverStore\FileRepository\rogms.inf_amd64_94d9766656ff6011\ROGMS.sys [33184 2021-08-29] (ASUSTeK Computer Inc. -> )
S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [54632 2021-03-30] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0083; C:\WINDOWS\System32\drivers\RzDev_0083.sys [52288 2020-02-17] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0235; C:\WINDOWS\System32\drivers\RzDev_0235.sys [53112 2018-07-19] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0257; C:\WINDOWS\System32\drivers\RzDev_0257.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0528; C:\WINDOWS\System32\drivers\RzDev_0528.sys [54112 2021-03-22] (Razer USA Ltd. -> Razer Inc)
S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [47944 2018-01-10] (SteelSeries ApS -> SteelSeries ApS)
S3 ssudcdf; C:\WINDOWS\System32\drivers\ssudcdf.sys [36608 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssuddmgr; C:\WINDOWS\System32\drivers\ssuddmgr.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudobex; C:\WINDOWS\System32\drivers\ssudobex.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
S3 ssudrmnet; C:\WINDOWS\System32\drivers\ssudrmnet.sys [70400 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ssudserd; C:\WINDOWS\System32\drivers\ssudserd.sys [206080 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 ss_conn_usb_driver; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver.sys [26368 2014-01-22] (DEVGURU CO LTD -> DEVGURU Co., LTD.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43376 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 sTHXV2VAD; C:\WINDOWS\System32\drivers\THXVAD2.sys [165776 2020-06-09] (Razer USA Ltd. -> Windows (R) Win 7 DDK provider)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project)
R3 tmhidusb; C:\WINDOWS\system32\DRIVERS\tmhidusb.sys [424464 2021-08-27] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmResetMin; C:\WINDOWS\System32\Drivers\tmResetMin.sys [46608 2021-08-27] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S3 tmwbulk; C:\WINDOWS\System32\Drivers\tmwbulk.sys [381984 2021-03-24] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S3 usbaud; C:\WINDOWS\System32\drivers\kinsapo_7p1_spk_uac.sys [107328 2020-09-04] (Synaptics Incorporated -> Synaptics Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48520 2021-11-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [435424 2021-11-03] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86240 2021-11-03] (Microsoft Windows -> Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Program Files (x86)\CoolerMaster\MasterPlus\WinRing0x64.sys [14544 2021-09-30] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 cpuz150; \??\C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [X]
S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus2.sys [X]
S4 NTIOLib_MysticLight; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-26 12:34 - 2021-11-26 12:35 - 000045119 _____ C:\Users\holsk\Desktop\FRST.txt
2021-11-26 12:34 - 2021-11-26 12:34 - 000000000 ____D C:\FRST
2021-11-26 12:32 - 2021-11-26 12:32 - 002311680 _____ (Farbar) C:\Users\holsk\Desktop\FRST64.exe
2021-11-26 12:27 - 2021-11-26 12:27 - 000003208 _____ C:\WINDOWS\system32\Tasks\Trojan Remover
2021-11-26 12:17 - 2021-11-26 12:18 - 000000000 ____D C:\AdwCleaner
2021-11-26 12:17 - 2021-11-26 12:17 - 008540344 _____ (Malwarebytes) C:\Users\holsk\Desktop\AdwCleaner.exe
2021-11-26 12:07 - 2021-11-26 12:07 - 000000000 ____D C:\ProgramData\Loaris
2021-11-26 11:53 - 2021-11-26 11:53 - 000069040 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000210352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000193448 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000149424 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2021-11-26 11:52 - 2021-11-26 11:52 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-11-26 11:52 - 2021-11-26 11:52 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-11-26 11:52 - 2021-11-26 11:52 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-11-26 11:52 - 2021-11-26 11:52 - 000000000 ____D C:\Program Files\Malwarebytes
2021-11-26 11:40 - 2021-11-26 11:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thrustmaster FFB Racing wheel
2021-11-26 11:40 - 2021-11-26 11:40 - 000000000 ____D C:\Program Files\Thrustmaster
2021-11-26 11:40 - 2021-11-26 11:40 - 000000000 ____D C:\Program Files (x86)\Thrustmaster
2021-11-26 11:40 - 2021-03-24 07:11 - 000381984 _____ (© Guillemot R&D, 2021. All rights reserved.) C:\WINDOWS\system32\Drivers\tmwbulk.sys
2021-11-26 00:50 - 2021-11-26 00:50 - 000009042 _____ C:\Users\holsk\Desktop\Thrustmaster T-GT II.odt
2021-11-25 19:59 - 2021-11-25 19:59 - 045213224 _____ (Thrustmaster) C:\Users\holsk\Desktop\2021_TTRS_3.exe
2021-11-25 12:54 - 2021-11-25 12:54 - 000000000 ____D C:\Users\holsk\Documents\TmPid
2021-11-24 21:56 - 2021-11-25 12:57 - 000000000 ____D C:\Users\holsk\Documents\Project CARS 2
2021-11-24 17:32 - 2021-11-24 17:32 - 000095678 _____ C:\Users\holsk\Desktop\Žádost o změnu trvalé adresy - Holovský Radovan.odt
2021-11-23 14:03 - 2021-11-23 14:03 - 000724424 _____ C:\Users\holsk\Desktop\Untitled_2_1.prproj
2021-11-22 19:10 - 2021-11-22 19:10 - 000000695 _____ C:\Users\holsk\Desktop\Klient Riotu.lnk
2021-11-22 17:14 - 2021-11-22 17:14 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk
2021-11-22 17:14 - 2021-11-22 17:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-11-22 17:14 - 2021-11-22 17:14 - 000000000 ____D C:\Program Files\LGHUB
2021-11-20 23:47 - 2021-11-25 23:56 - 000030673 _____ C:\Users\holsk\Desktop\Bose QC45.odt
2021-11-18 16:59 - 2021-11-18 16:59 - 000000000 ____D C:\Users\holsk\AppData\Local\SolidDocuments
2021-11-18 16:58 - 2021-11-18 16:59 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
2021-11-18 16:58 - 2021-11-18 16:59 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk
2021-11-18 16:16 - 2021-11-18 16:16 - 000222542 _____ C:\Users\holsk\Desktop\Prodejní-Faktura-1202111175.pdf
2021-11-18 16:16 - 2021-11-18 16:16 - 000064457 _____ C:\Users\holsk\Desktop\Print-Order-E152103243697276704-OnePlus.pdf
2021-11-18 15:35 - 2021-11-24 09:09 - 000000000 ____D C:\Users\holsk\Desktop\Pojistka Zivotka (T-R-M)
2021-11-17 23:18 - 2021-11-17 23:18 - 000000000 ____D C:\Users\holsk\AppData\Local\ArmouryLiveUpdate
2021-11-17 21:44 - 2021-11-25 15:34 - 000000000 ____D C:\WINDOWS\LastGood.Tmp
2021-11-17 21:43 - 2021-11-09 23:27 - 000038016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2021-11-17 15:23 - 2021-11-11 03:33 - 000656512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 001874664 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2021-11-17 15:22 - 2021-11-11 03:36 - 001874664 _____ C:\WINDOWS\system32\vulkaninfo.exe
2021-11-17 15:22 - 2021-11-11 03:36 - 001464960 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 001450216 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-11-17 15:22 - 2021-11-11 03:36 - 001450216 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2021-11-17 15:22 - 2021-11-11 03:36 - 001208248 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 001111272 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 001111272 _____ C:\WINDOWS\system32\vulkan-1.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 000965352 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2021-11-17 15:22 - 2021-11-11 03:36 - 000965352 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 002116536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 001597568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 001523328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 001174456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 000802232 _____ C:\WINDOWS\system32\nvofapi64.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 000709560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2021-11-17 15:22 - 2021-11-11 03:33 - 000678328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 000635008 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2021-11-17 15:22 - 2021-11-11 03:33 - 000564352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 008725944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 007845816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 005730224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 004940728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 002850432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 000981120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2021-11-17 15:22 - 2021-11-11 03:32 - 000452224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2021-11-17 15:22 - 2021-11-11 03:31 - 000850872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2021-11-17 15:22 - 2021-11-09 23:27 - 000085718 _____ C:\WINDOWS\system32\nvinfo.pb
2021-11-15 19:39 - 2021-11-15 23:06 - 000000000 ____D C:\Users\holsk\Desktop\Urgent ID
2021-11-14 21:22 - 2021-11-14 21:23 - 000000000 ____D C:\Users\holsk\Documents\Battlefield 2042
2021-11-14 18:22 - 2021-11-14 18:22 - 000000000 ____D C:\Users\holsk\Desktop\fotky obi
2021-11-14 18:20 - 2021-11-18 17:06 - 000000000 ____D C:\Users\holsk\Desktop\Foto telefony
2021-11-11 20:33 - 2021-11-11 20:37 - 000485686 _____ C:\Users\holsk\Desktop\Radovan Holovský Změna Údajů Pojištěnce VZP.pdf
2021-11-10 20:41 - 2021-11-10 20:41 - 000000737 _____ C:\Users\Public\Desktop\Battlefield™ 2042.lnk
2021-11-10 20:41 - 2021-11-10 20:41 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2021-11-10 20:41 - 2021-11-10 20:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield™ 2042
2021-11-10 19:53 - 2021-11-10 19:53 - 001328408 _____ C:\WINDOWS\system32\FaceTrackerInternal.dll
2021-11-10 19:53 - 2021-11-10 19:53 - 001321984 _____ C:\WINDOWS\system32\FaceProcessor.dll
2021-11-10 19:53 - 2021-11-10 19:53 - 000503576 _____ C:\WINDOWS\system32\FaceProcessorCore.dll
2021-11-10 19:52 - 2021-11-10 19:52 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-11-10 19:52 - 2021-11-10 19:52 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-11-10 19:52 - 2021-11-10 19:52 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-11-10 19:52 - 2021-11-10 19:52 - 000011363 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-11-10 19:48 - 2021-11-10 19:48 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2022.lnk
2021-11-10 19:45 - 2021-11-10 19:45 - 000000000 ___HD C:\$WinREAgent
2021-11-08 12:53 - 2021-11-08 14:16 - 000026192 _____ C:\Users\holsk\Desktop\Kvalitní vs nekvalitní přísluško.odt
2021-11-06 00:44 - 2021-11-06 00:44 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2021-11-06 00:44 - 2021-11-06 00:44 - 000000000 ____D C:\Program Files\PCHealthCheck
2021-11-02 11:41 - 2021-11-02 11:41 - 411154962 _____ C:\Users\holsk\Downloads\Alza_IT_vyjezd.mp4
2021-11-01 17:33 - 2021-11-01 17:33 - 004585277 _____ C:\Users\holsk\Desktop\28.pluku okopírovaná smlouva.pdf
2021-10-30 18:50 - 2021-10-30 18:50 - 000001142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Media Encoder 2022.lnk
2021-10-30 18:46 - 2021-10-30 18:47 - 000000000 ____D C:\ProgramData\Red Giant
2021-10-30 18:46 - 2021-10-30 18:46 - 000000000 ____D C:\Program Files\Red Giant
2021-10-30 18:45 - 2021-10-30 18:47 - 000000000 ____D C:\Program Files\Maxon Cinema 4D R24
2021-10-30 18:44 - 2021-10-30 18:44 - 000001250 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2022.lnk
2021-10-30 18:38 - 2021-10-30 18:38 - 000001130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro 2022.lnk

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-11-26 12:35 - 2020-01-28 17:48 - 000000000 ____D C:\Program Files (x86)\Google
2021-11-26 12:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-11-26 12:25 - 2020-01-25 16:02 - 000000000 ____D C:\ProgramData\NVIDIA
2021-11-26 12:18 - 2021-06-06 20:01 - 000000000 ____D C:\Users\holsk\AppData\Roaming\Lavasoft
2021-11-26 12:18 - 2021-06-06 20:01 - 000000000 ____D C:\Users\holsk\AppData\Local\Lavasoft
2021-11-26 12:18 - 2021-06-06 20:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
2021-11-26 12:18 - 2021-06-06 20:01 - 000000000 ____D C:\ProgramData\Lavasoft
2021-11-26 12:18 - 2021-06-06 20:01 - 000000000 ____D C:\Program Files (x86)\Lavasoft
2021-11-26 12:18 - 2020-06-16 16:17 - 000000000 ____D C:\Users\holsk\AppData\Roaming\LGHUB
2021-11-26 12:18 - 2020-03-16 13:35 - 000000000 ____D C:\Users\holsk\AppData\Roaming\discord
2021-11-26 12:18 - 2020-01-28 19:42 - 000000000 ____D C:\Users\holsk\AppData\Roaming\Origin
2021-11-26 12:04 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-11-26 11:57 - 2020-01-28 19:22 - 000000000 ____D C:\Users\holsk\AppData\Local\CrashDumps
2021-11-26 11:54 - 2020-03-14 13:27 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2021-11-26 11:52 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-11-26 11:49 - 2020-04-02 09:01 - 000002259 _____ C:\WINDOWS\epplauncher.mif
2021-11-26 11:49 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-11-26 11:48 - 2020-10-04 14:56 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-11-26 11:48 - 2019-12-07 15:41 - 000716764 _____ C:\WINDOWS\system32\perfh005.dat
2021-11-26 11:48 - 2019-12-07 15:41 - 000144942 _____ C:\WINDOWS\system32\perfc005.dat
2021-11-26 11:47 - 2020-01-28 19:29 - 000000000 ____D C:\Program Files\CCleaner
2021-11-26 11:43 - 2020-03-16 13:35 - 000000000 ____D C:\Users\holsk\AppData\Local\Discord
2021-11-26 11:43 - 2020-03-14 13:30 - 000000000 ___RD C:\Users\holsk\Creative Cloud Files
2021-11-26 11:43 - 2020-01-29 18:14 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-11-26 11:43 - 2020-01-28 19:42 - 000000000 ____D C:\ProgramData\Origin
2021-11-26 11:42 - 2020-06-16 16:17 - 000000000 ____D C:\Users\holsk\AppData\Local\LGHUB
2021-11-26 11:42 - 2020-01-28 19:42 - 000000000 ____D C:\Users\holsk\AppData\Local\Origin
2021-11-26 11:42 - 2020-01-27 20:56 - 000000000 ___RD C:\Users\holsk\OneDrive
2021-11-26 11:41 - 2020-10-04 14:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-11-26 11:41 - 2020-10-04 14:52 - 000000296 ____H C:\WINDOWS\Tasks\MSILEDKeeper_Host.job
2021-11-26 11:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-11-26 11:41 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-11-26 11:40 - 2020-08-07 16:43 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-11-26 03:17 - 2020-01-28 19:53 - 000000000 ____D C:\Users\holsk\AppData\Roaming\qBittorrent
2021-11-25 23:21 - 2020-10-04 14:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-11-25 19:41 - 2020-06-08 06:00 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-11-25 19:41 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-11-25 19:04 - 2020-03-27 16:43 - 000000000 ____D C:\Users\holsk\AppData\Roaming\audacity
2021-11-25 12:54 - 2020-01-28 18:06 - 000000000 ____D C:\ProgramData\Package Cache
2021-11-25 00:39 - 2020-01-28 19:39 - 000000000 ____D C:\Users\holsk\AppData\Roaming\vlc
2021-11-25 00:27 - 2020-06-16 16:16 - 000000000 ____D C:\ProgramData\LGHUB
2021-11-24 15:41 - 2020-03-20 16:36 - 000000000 ____D C:\Users\holsk\AppData\Roaming\obs-studio
2021-11-24 15:05 - 2020-03-25 11:45 - 000000000 ____D C:\Users\holsk\Desktop\Texty
2021-11-24 08:40 - 2021-10-26 07:49 - 000000000 ___HD C:\adobeTemp
2021-11-23 14:08 - 2020-11-06 10:45 - 000000000 ____D C:\Users\holsk\Desktop\Adobe Premiere Pro Auto-Save
2021-11-22 19:36 - 2020-01-28 19:29 - 000000000 ____D C:\Users\holsk\AppData\Local\D3DSCache
2021-11-22 19:15 - 2020-01-29 21:48 - 000000000 ____D C:\ProgramData\Riot Games
2021-11-22 19:10 - 2020-01-29 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
2021-11-21 18:06 - 2021-05-16 15:19 - 000000000 ____D C:\Users\holsk\Desktop\terka podcast
2021-11-19 21:24 - 2020-10-04 14:54 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2635428369-3733989882-2362368333-1002
2021-11-19 21:24 - 2020-10-04 09:32 - 000002381 _____ C:\Users\holsk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-11-19 14:06 - 2020-08-26 18:48 - 002224592 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2021-11-19 14:06 - 2020-08-26 18:48 - 000332224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2021-11-19 14:06 - 2020-08-26 18:48 - 000217536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2021-11-19 14:06 - 2020-08-26 18:48 - 000197048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2021-11-19 14:06 - 2020-08-26 18:48 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2021-11-19 14:06 - 2020-08-26 18:48 - 000061904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2021-11-19 14:06 - 2020-01-27 20:54 - 000000000 ____D C:\ProgramData\Packages
2021-11-19 13:58 - 2020-03-14 13:25 - 000000000 ____D C:\Program Files\Adobe
2021-11-18 16:59 - 2020-10-04 14:54 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-11-18 16:58 - 2020-03-14 13:25 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-11-18 16:58 - 2020-02-03 19:12 - 000000000 ____D C:\ProgramData\Adobe
2021-11-18 13:36 - 2020-10-04 14:54 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-11-18 13:36 - 2020-10-04 14:54 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-11-17 23:18 - 2021-05-09 12:30 - 000000000 ____D C:\Program Files (x86)\ASUS
2021-11-17 21:45 - 2020-01-28 18:07 - 000000000 ____D C:\Users\holsk\AppData\Local\NVIDIA
2021-11-17 21:43 - 2020-01-25 16:02 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-11-17 15:07 - 2020-10-04 14:54 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-11-15 18:40 - 2020-01-28 17:48 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-11-15 18:40 - 2020-01-28 17:48 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-11-13 11:01 - 2020-01-28 19:29 - 000000000 ____D C:\Users\holsk\AppData\Local\Battle.net
2021-11-12 22:23 - 2020-02-03 19:29 - 000000000 ____D C:\Program Files\Microsoft Office
2021-11-12 15:36 - 2020-03-20 19:51 - 000000024 _____ C:\Users\holsk\Desktop\znaky.txt
2021-11-11 19:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-11-11 03:32 - 2021-03-21 23:38 - 000792192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2021-11-11 03:30 - 2021-03-21 23:41 - 006432960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2021-11-11 03:30 - 2021-03-21 23:38 - 007582144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2021-11-10 23:45 - 2020-10-04 14:49 - 000469912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-11-10 23:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-11-10 23:45 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-11-10 22:19 - 2020-02-03 19:11 - 000000000 ____D C:\Users\holsk\AppData\Local\Adobe
2021-11-10 19:54 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-11-10 19:44 - 2020-01-31 22:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-11-10 19:42 - 2020-01-31 22:46 - 141529560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-11-09 23:27 - 2021-03-21 23:42 - 000125568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2021-11-03 19:27 - 2020-01-28 19:33 - 000002368 _____ C:\Users\holsk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-11-03 19:27 - 2020-01-28 19:33 - 000002360 _____ C:\Users\holsk\Desktop\Microsoft Teams.lnk
2021-11-03 12:25 - 2020-01-25 16:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-11-02 17:08 - 2021-10-19 17:42 - 000000000 ____D C:\Users\holsk\Desktop\100MSDCF
2021-11-02 09:19 - 2020-10-04 14:49 - 000008192 ___SH C:\DumpStack.log.tmp
2021-10-31 21:27 - 2021-05-09 12:30 - 000000000 ____D C:\ProgramData\ASUS
2021-10-30 19:15 - 2020-01-28 22:26 - 000000000 ____D C:\Users\holsk\AppData\Roaming\Adobe
2021-10-30 18:47 - 2020-03-14 13:37 - 000000000 ____D C:\Users\Public\Documents\Adobe
2021-10-30 10:33 - 2020-01-27 20:54 - 000000000 ____D C:\Users\holsk\AppData\Local\Packages

==================== Files in the root of some directories ========

2020-12-30 10:38 - 2020-12-30 10:38 - 000000110 _____ () C:\Users\holsk\AppData\Roaming\debug.log
2020-10-12 14:36 - 2020-12-14 01:28 - 000001480 _____ () C:\Users\holsk\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2020-03-14 13:26 - 2020-03-14 13:26 - 000000410 _____ () C:\Users\holsk\AppData\Local\oobelibMkey.log
2020-03-09 17:38 - 2020-03-09 17:38 - 000012288 _____ () C:\Users\holsk\AppData\Local\vita_uranus.data

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Addition log zde:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24-11-2021
Ran by holsk (26-11-2021 12:35:37)
Running from C:\Users\holsk\Desktop
Microsoft Windows 10 Home Version 21H1 19043.1348 (X64) (2020-10-04 13:54:10)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2635428369-3733989882-2362368333-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2635428369-3733989882-2362368333-503 - Limited - Disabled)
Guest (S-1-5-21-2635428369-3733989882-2362368333-501 - Limited - Disabled)
holsk (S-1-5-21-2635428369-3733989882-2362368333-1002 - Administrator - Enabled) => C:\Users\holsk
WDAGUtilityAccount (S-1-5-21-2635428369-3733989882-2362368333-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Video Downloader (HKLM\...\{8D675A5F-BA7D-4FC8-8B38-2D1D5A5DB905}) (Version: 4.16.2.4280 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{9bb2c748-86b1-488d-9780-6a9e3a9c50a9}) (Version: 4.16.2.4280 - Open Media LLC)
Adobe Acrobat DC (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 21.007.20099 - Adobe)
Adobe After Effects 2022 (HKLM-x32\...\AEFT_22_0) (Version: 22.0 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.6.0.788 - Adobe Inc.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: - Adobe)
Adobe Media Encoder 2022 (HKLM-x32\...\AME_22_0) (Version: 22.0 - Adobe Inc.)
Adobe Photoshop 2022 (HKLM-x32\...\PHSP_23_0_1) (Version: 23.0.1.68 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_0) (Version: 22.0 - Adobe Inc.)
ARMOURY CRATE Lite Service (HKLM\...\{EF3944FF-2501-4568-B15C-5701E726719E}) (Version: 4.2.10 - ASUS)
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.11 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{9c72488b-eb92-40bd-94a3-de309514c154}) (Version: 1.1.0.11 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Headset Component (HKLM\...\{A3C4120D-8096-4307-91A2-FFE37EBD5A3D}) (Version: 1.3.31.0 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA Headset Component (HKLM-x32\...\{7ec11beb-0dda-4a87-b072-17325d1d6748}) (Version: 1.3.31.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.04.07 - ASUSTek COMPUTER INC.) Hidden
ASUS AURA VGA Component (HKLM\...\{71BB96A6-EAC4-45AE-A17D-D3ED43FF1D14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS AURA VGA Component (HKLM-x32\...\{7a0d5159-cb5e-4f66-91f8-bab46f864f14}) (Version: 0.0.4.3 - ASUSTek COMPUTER INC. ) Hidden
ASUS Framework Service (HKLM-x32\...\{8bf47d14-406b-49e8-8759-966757033aa0}) (Version: 2.1.1.3 - ASUSTek COMPUTER INC.)
ASUS Framework Service (HKLM-x32\...\{EA6A87BE-8AD3-40D2-944C-9DF5FBFF4332}) (Version: 2.1.1.3 - ASUSTek COMPUTER INC.) Hidden
ASUS Keyboard HAL (HKLM\...\{0FA0CDEE-5DC8-421E-A97D-C74FA6E66FC3}) (Version: 1.1.48.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Keyboard HAL (HKLM-x32\...\{79497ebd-229a-42ac-9410-87264af2e929}) (Version: 1.1.48.0 - ASUSTek COMPUTER INC.) Hidden
ASUS Mouse HAL (HKLM\...\{B8F984F2-7887-4DD2-8D96-F9A4BC5A4AC5}) (Version: 1.2.0.11 - ASUSTek COMPUTER INC.) Hidden
ASUS Mouse HAL (HKLM-x32\...\{f4416c94-760b-431e-8516-5c67e2d05b53}) (Version: 1.2.0.11 - ASUSTek COMPUTER INC.) Hidden
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.59 - ASUSTeK Computer Inc.) Hidden
Audacity 3.0.2 (HKLM-x32\...\Audacity_is1) (Version: 3.0.2 - Audacity Team)
AURA DRAM Component (HKLM\...\{9AFE5429-866B-457D-A864-80BCF7672EE8}) (Version: 1.1.14 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{c6391bdc-929f-4a9f-98cd-9a3038379379}) (Version: 1.1.14 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.16 - ASUS)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.16 - ASUS)
AURA Service (HKLM-x32\...\{0E536061-3B55-4D45-BF58-0BDA261C94B0}) (Version: 3.05.06 - ASUSTeK Computer Inc.) Hidden
AURA Service (HKLM-x32\...\{a890e515-8afe-4007-81e7-5c4d3da50086}) (Version: 3.05.06 - ASUSTeK Computer Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 2042 (HKLM-x32\...\{45e281f3-1414-47ea-bb64-4f50d50121f3}) (Version: 1.0.71.3671 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 2.3.0 - EA Digital Illusions CE AB)
CCleaner (HKLM\...\CCleaner) (Version: 5.87 - Piriform)
Diablo II Resurrected (HKLM-x32\...\Diablo II Resurrected) (Version: - Blizzard Entertainment)
Discord (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Discord) (Version: 0.0.309 - Discord Inc.)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.37.0 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{413fe4b8-1352-4234-a775-ff2f04ad9042}) (Version: 1.1.37.0 - Ene Tech.) Hidden
ENE_DRAM_GSKILL_SE (HKLM\...\{5A6AC577-F8F8-4B6A-B684-13FD7E306CA2}) (Version: 1.0.1.0 - Ene Tech.) Hidden
ENE_DRAM_GSKILL_SE (HKLM-x32\...\{bf49eb2f-f2fb-4631-a95a-1f0cadd21eac}) (Version: 1.0.1.0 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{1745D314-9077-46C9-8562-1C62BAE189B7}) (Version: 1.0.2.33 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{5d801c90-9d81-4c67-be5b-07e5855dc22e}) (Version: 1.0.2.33 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.9.1 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{bf1d7028-d935-477f-b5b2-053062f9b527}) (Version: 1.0.9.1 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X-JMI_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.5.1 - ENE Tech) Hidden
ENE_X-JMI_HAL (HKLM-x32\...\{50ec3a07-291b-463e-be86-487eb8cbb71c}) (Version: 1.0.5.1 - ENE Tech) Hidden
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
Excel (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 3.TTRS.2021 - Thrustmaster)
GameInput Redistributable (HKLM-x32\...\{5FAD63E8-8F1C-6687-0325-3BBF64B4FD89}) (Version: 10.1.19041.3918 - Microsoft Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.45 - Google LLC)
HTC Account (HKLM\...\{0BDD3B3E-A0C1-48E1-BA33-3A28B784C10F}) (Version: 1.6.1.7 - HTC Corp.) Hidden
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.8 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{26b750af-32e4-4afb-aed3-d4c571b122ad}) (Version: 1.1.8 - KINGSTON COMPONENTS INC.) Hidden
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2021.12.4779 - Logitech)
Magic Bullet Suite (HKLM\...\Magic Bullet Suite v14.0.4) (Version: - Red Giant LLC)
Malwarebytes version 4.4.11.149 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.4.11.149 - Malwarebytes)
MasterPlus version 1.7.0 (HKLM-x32\...\{2C3A7142-9B45-4C95-993A-A767C2148583}_is1) (Version: 1.7.0 - )
Maxon Cinema 4D 22 (HKLM\...\Maxon Cinema 4D S22) (Version: S22 - Maxon)
Maxon Cinema 4D 24 (HKLM\...\Maxon Cinema 4D S24) (Version: S24 - Maxon)
Maxon Cinema 4D R21 (HKLM\...\Maxon Cinema 4D R21) (Version: R21 - Maxon)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.34 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 96.0.1054.34 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.14527.20276 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\OneDriveSetup.exe) (Version: 21.220.1024.0005 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\Teams) (Version: 1.4.00.29469 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visio - cs-cz (HKLM\...\VisioProRetail - cs-cz) (Version: 16.0.14527.20276 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29913 (HKLM-x32\...\{03d1453c-7d5c-479c-afea-8482f406e036}) (Version: 14.28.29913.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29914 (HKLM-x32\...\{1b5476d9-ab8e-4b0d-b004-059a1bd5568b}) (Version: 14.28.29914.0 - Microsoft Corporation)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
MSI Afterburner 4.6.2 (HKLM-x32\...\Afterburner) (Version: 4.6.2 - MSI Co., LTD)
MSI Center SDK (HKLM-x32\...\{15289038-41BE-48F8-B8B9-0B1021D3089E}}_is1) (Version: 3.2021.0721.01 - MSI)
MSI MysticLight (HKLM-x32\...\{93874B70-6C5E-446A-AF4D-E5AC776A0386}}_is1) (Version: 2.0.0.64 - MSI)
NahimicAPI 64-bit (HKLM\...\{09FE0EB0-1D62-475E-B33D-EC2AAEDC9D3A}) (Version: 1.0.25.0 - Nahimic)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 6.36.6.0 - TEFINCOM S.A.)
NordVPN network TAP (HKLM-x32\...\{97DEC5D6-2BE9-45BB-BFC5-274B851B486B}) (Version: 1.0.1 - NordVPN)
NordVPN network TUN (HKLM\...\{BD0E4F38-D3F6-452D-A32E-B14D721839AC}) (Version: 1.0.1 - NordVPN)
NVIDIA FrameView SDK 1.1.4923.29968894 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.1.4923.29968894 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.23.0.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.23.0.74 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.94 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 496.76 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 496.76 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NVIDIA USBC Driver 1.46.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.46.831.832 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 25.0.1 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20276 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.14527.20276 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
OpenOffice 4.1.7 (HKLM-x32\...\{E3E3C1D4-6886-4EDB-9F12-335641465055}) (Version: 4.17.9800 - Apache Software Foundation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.107.49426 - Electronic Arts, Inc.)
Outlook (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
Overwatch (HKLM-x32\...\Overwatch) (Version: - Blizzard Entertainment)
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.2 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{fdc098ce-d76c-4e2e-a0a6-01a24e9a1f7d}) (Version: 1.0.9.2 - Patriot Memory)
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.0.6.4 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{3c403389-0bc5-4298-bebf-09de0c0b745d}) (Version: 1.0.6.4 - Patriot Memory)
PHISON HAL (HKLM\...\{966E33F0-6786-4B38-AA29-C1B3F6C1955D}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PHISON HAL (HKLM-x32\...\{549da357-1b81-456b-83f2-dcc47c41dfff}) (Version: 1.0.9.0 - PHISON Electronics Corp.) Hidden
PowerPoint (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Project CARS 3 (HKLM-x32\...\Project CARS 3_is1) (Version: - )
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
qBittorrent 4.3.5 (HKLM-x32\...\qBittorrent) (Version: 4.3.5 - The qBittorrent project)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.6.0831.082317 - Razer Inc.)
RivaTuner Statistics Server 7.2.3 (HKLM-x32\...\RTSS) (Version: 7.2.3 - Unwinder)
ROCCAT Swarm (HKLM-x32\...\{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.900 - ROCCAT GmbH) Hidden
ROCCAT Swarm (HKLM-x32\...\InstallShield_{9D12397F-45AF-4517-B492-1D1E2FA475EE}) (Version: 1.93.900 - ROCCAT GmbH)
ROG DELTA S (HKLM-x32\...\{6e5225fe-7e9a-4dc1-8ad3-4747abb6f887}) (Version: 2.06.00 - ASUSTek Computer Inc.)
ROG FALCHION (2.4GHz) (HKLM-x32\...\{b11c4a2b-aed1-4f40-98ac-d0bc376cd7ec}) (Version: 2.11.04 - ASUSTek Computer Inc.)
ROG FALCHION (HKLM-x32\...\{d3219416-369d-45fc-ab26-2ee496746cae}) (Version: 2.11.04 - ASUSTek Computer Inc.)
ROG GLADIUS III (HKLM-x32\...\{5a9f1d4e-f149-4092-bd14-da976a7d18ea}) (Version: 2.10.03 - ASUSTek Computer Inc.)
ROG Live Service (HKLM-x32\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 1.2.18.5 - ASUSTek COMPUTER INC.)
RollerCoaster Tycoon 2: Time Twister (HKLM-x32\...\{BA1E1AFD-D1F2-4C52-88C3-186FC5E61604}) (Version: 1.00.000 - )
RollerCoaster Tycoon 2: Wacky Worlds (HKLM-x32\...\{B1AD83A0-DC92-41E3-B111-E9472349768C}) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Tom Clancy's The Division 2 (HKLM-x32\...\Uplay Install 4932) (Version: - Ubisoft)
Trackmania (HKLM-x32\...\Uplay Install 5595) (Version: - Ubisoft)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 111.0 - Ubisoft)
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.2 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{6870588f-9f28-488b-a169-cf548ad6b393}) (Version: 1.0.0.2 - PD)
UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.)
VIVE Software (HKLM-x32\...\VIVE Software) (Version: 1.0.9.202 - HTC)
VIVEPORT (HKLM-x32\...\VIVEPORT) (Version: 1.0.9.202 - HTC)
VIVEPORT Desktop (HKLM-x32\...\{5529701b-d741-4df6-b133-3c3a9d867e7b}) (Version: 1.3.15.28 - HTC Corp.) Hidden
VIVEPORT Desktop (x86) (HKLM-x32\...\{7AF34FBB-3151-4603-914C-B27F99F81054}) (Version: 1.3.15.28 - HTC Corp.) Hidden
VIVEPORT Diagnosis (HKLM-x32\...\{696774b3-7c7a-4af2-8421-823f4f1e9e30}) (Version: 1.2.1.21 - HTC Corp.)
VIVEPORT Diagnosis (x86) (HKLM-x32\...\{08D2A12E-5F80-4A3D-8FE4-CDA71C893F56}) (Version: 1.2.1.21 - HTC Corp.) Hidden
VIVEPORT DirectX 9.0 (HKLM-x32\...\{4b01ac5b-340e-4644-828b-0882c8255a4e}) (Version: 1.2.0.3 - HTC Corp.) Hidden
VIVEPORT DirectX 9.0 (x86/x64) (HKLM-x32\...\{9D42F21E-7CFA-4C87-99FD-C81CFFCB12E5}) (Version: 1.2.0.3 - HTC Corp.) Hidden
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{589d5178-7c46-4052-8509-a0685184d622}) (Version: 1.0.13.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WeMod (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\WeMod) (Version: 6.3.3 - WeMod)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
Word (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Zoom (HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\ZoomUMX) (Version: 4.6 - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_2.0.1.8_x86__enpm4xejd91yc [2020-07-10] (Adobe Systems Incorporated)
ARMOURY CRATE -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_4.1.6.0_x64__qmba6cd70vzyy [2021-07-18] (ASUSTeK COMPUTER INC.)
Back 4 Blood -> C:\Program Files\WindowsApps\WarnerBros.Interactive.e172091a-6630-4ff3-959f-830_1.279.9438.0_x64__ktmk1xygcecda [2021-11-10] (Warner Bros. Interactive)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_7.11.20.0_x86__kgqvnymyfvs32 [2021-11-08] (king.com)
DIRT 5 -> C:\Program Files\WindowsApps\CodemastersSoftwareCompan.DiRT5_1.2764.50.0_x64__4cfye3zbe1gaw [2021-10-01] (Codemasters Software Company Limited)
Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.474.687.2_x64__8wekyb3d8bbwe [2021-10-01] (Microsoft Studios)
Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2021-10-01] (Microsoft Studios)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_132.3.262.0_x64__v10z8vjag6ke6 [2021-11-18] (HP Inc.)
HyperX NGENUITY -> C:\Program Files\WindowsApps\33C30B79.HyperXNGenuity_5.5.1.0_x64__0a78dr3hq0pvt [2021-11-09] (Kingston Digital Inc.) [Startup Task]
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa [2021-11-05] (Apple Inc.) [Startup Task]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.10.10270.0_x64__8wekyb3d8bbwe [2021-10-30] (Microsoft Studios) [MS Ad]
MSI Center -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_1.0.31.0_x64__kzh8wxbdkxb8p [2021-10-20] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.961.0_x64__56jybvy8sckqj [2021-11-17] (NVIDIA Corp.)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0 [2021-11-13] (Spotify AB) [Startup Task]
We Happy Few -> C:\Program Files\WindowsApps\CompulsionGamesInc.WeHappyFew_1.8.8987.2_x64__eae46zy90r9xg [2021-07-11] (Compulsion Games Inc)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive - Personal] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-7EE8A415C35B} -> [Creative Cloud Files] => C:\Users\holsk\Creative Cloud Files [2020-03-14 13:30]
CustomCLSID: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\holsk\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.21209.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.)
CustomCLSID: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-10-26] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-10-26] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-10-26] (Adobe Inc. -> )
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-10-26] (Adobe Inc. -> )
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programy\winrar\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programy\winrar\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-11-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b7184c0e1c94c102\nvshext.dll [2021-11-11] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2021-10-26] (Adobe Inc. -> )
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2021-11-26] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programy\winrar\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programy\winrar\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2021-08-18 13:27 - 2021-08-18 13:27 - 000477696 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\ffi-napi\prebuilds\win32-ia32\node.napi.node
2021-08-18 13:27 - 2021-08-18 13:27 - 000471040 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\ref-napi\prebuilds\win32-ia32\node.napi.node
2021-08-18 13:27 - 2021-08-18 13:27 - 000454656 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\node_modules\registry-js\prebuilds\win32-ia32\node.napi.node
2021-09-10 17:17 - 2019-12-23 17:51 - 000093184 _____ () [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\zlibwapi.dll
2021-08-18 13:27 - 2021-08-18 13:27 - 000081920 _____ () [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\WindowID\WindowID.dll
2021-10-11 12:13 - 2021-09-30 16:17 - 000295424 _____ () [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\cm-core-temp.dll
2021-10-11 12:13 - 2021-09-30 16:17 - 000009728 _____ () [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\cm-hook.dll
2021-10-11 12:13 - 2021-09-30 16:18 - 004100608 _____ () [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\CMUOT.dll
2021-10-11 12:13 - 2021-09-30 16:17 - 000014336 _____ () [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\hidapi.dll
2021-10-11 12:13 - 2021-07-28 15:31 - 000190976 _____ () [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\OledDataConvert.dll
2020-05-26 16:08 - 2020-05-26 16:08 - 002831360 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\LightingService\log4cxx.dll
2021-07-18 19:06 - 2021-06-03 15:13 - 000976384 _____ (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\KeyboardSDK\ArmouryKbSDK.dll
2021-10-11 12:13 - 2021-09-30 16:17 - 001494016 _____ (CPUID) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\cpuidsdk.dll
2021-10-11 12:13 - 2021-09-30 16:17 - 000060416 _____ (Chicony Electronics Co., Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\audiobox.dll
2021-10-11 12:13 - 2021-09-30 20:08 - 000046080 _____ (OpenLibSys.org) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\WinRing0.dll
2021-09-10 17:17 - 2019-06-26 15:07 - 003394560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\libcrypto-1_1-x64.dll
2021-09-10 17:17 - 2019-06-26 15:07 - 000679424 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\libssl-1_1-x64.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Hry\Origin\LIBEAY32.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Hry\Origin\ssleay32.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\platforms\qwindows.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5Core.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5Gui.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 001179136 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5Network.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 000146432 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5WebSockets.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5Widgets.dll
2021-11-24 08:40 - 2021-11-24 08:40 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Hry\Origin\Qt5Xml.dll
2021-10-11 12:13 - 2020-11-01 01:54 - 001201152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\platforms\qwindows.dll
2021-10-11 12:13 - 2020-11-01 01:29 - 005363200 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\Qt5Core.dll
2021-10-11 12:13 - 2020-11-01 01:38 - 005666816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\Qt5Gui.dll
2021-10-11 12:13 - 2020-11-01 01:46 - 004451328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\Qt5Widgets.dll
2021-10-11 12:13 - 2020-11-01 01:54 - 000125952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\CoolerMaster\MasterPlus\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [239]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
SearchScopes: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&src ... ORM=IESR02
SearchScopes: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&src ... ORM=IESR02
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2021-11-01] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\sharepoint.com -> hxxps://businessleasegroupbv-myfiles.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2020-01-25 15:50 - 2020-01-25 15:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Intel\Shared Libraries\redist\intel64\compiler;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\holsk\Desktop\619a7e1cbe3cc.jpg
DNS Servers: 8.8.8.8 - 8.8.4.4
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: NordVPN LightWeight Firewall -> NordLwf (enabled)
Ethernet 2: NordVPN LightWeight Firewall -> NordLwf (enabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2635428369-3733989882-2362368333-1002\...\StartupApproved\Run: => "Synapse3"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{6E2A64F1-E439-436A-8E37-A78B616DBBF1}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{CAC74188-F477-4CD6-94C3-5756DC209130}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{021948BE-CCFC-46A1-88BF-C58552BC928D}] => (Allow) C:\Users\holsk\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{1B3B5217-1CD2-46C0-943F-A067BD06A789}] => (Allow) D:\Hry\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{E675B81F-E427-4EB6-AFEF-C2655C4C0DAF}] => (Allow) D:\Hry\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{694BDCAB-5C9F-49D2-8861-BF89F96E8E60}C:\users\holsk\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\holsk\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{FD300582-E130-4661-B07C-AE5DF07254FF}C:\users\holsk\appdata\local\microsoft\teams\current\teams.exe] => (Allow) C:\users\holsk\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{75B90931-83D4-460A-9A2D-ABDEE871C2D4}] => (Allow) D:\Hry\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve -> )
FirewallRules: [{57CFC572-6622-402B-AAC9-99C0D6E9628E}] => (Allow) D:\Hry\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve -> )
FirewallRules: [UDP Query User{7FF2C98C-4345-4CCA-BEBC-1B4FCBBD4A6E}D:\hry\steam\steamapps\common\steamvr\tools\steamvr_environments\game\bin\win64\steamtours.exe] => (Allow) D:\hry\steam\steamapps\common\steamvr\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve -> )
FirewallRules: [TCP Query User{94BF2D05-9D2D-4846-9F72-EDD68DC02172}D:\hry\steam\steamapps\common\steamvr\tools\steamvr_environments\game\bin\win64\steamtours.exe] => (Allow) D:\hry\steam\steamapps\common\steamvr\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve -> )
FirewallRules: [{A6B6D02F-F112-45CE-9BBB-7714AB88AC5A}] => (Allow) D:\Hry\Steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{8CA49DD0-0566-41B5-BFA1-5B2ABCC26226}] => (Allow) D:\Hry\Steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{309D9B1C-2A91-4634-BF71-1EFFDA4E72DF}] => (Allow) LPort=9245
FirewallRules: [{CF1309F2-48DE-4931-9646-2BDDC6D8776F}] => (Allow) LPort=9223
FirewallRules: [{9BE46A9E-DCA3-4941-9760-A1AE2E6EEA82}] => (Allow) D:\Hry\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{240ECBD4-8ABF-42CF-8161-9D1414E967C8}] => (Allow) D:\Hry\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{993E2E5F-140B-49B9-B35C-4A274E8631AE}] => (Allow) D:\Hry\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F492FD6F-5E1C-419A-B7E0-A2038024A22D}] => (Allow) D:\Hry\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{CDB39A0B-08E3-4FA5-87F4-DF76E648D42F}D:\hry\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\hry\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{AECADD54-1FDB-4A7C-9EA1-F6E7343AC6F9}D:\hry\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\hry\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{501A2320-8503-49ED-B3FF-148A8CB1C027}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{2B3F1005-2299-410A-A7A3-274052F4A5A4}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{AD50070F-77D7-4BFE-A8DD-DC7E8840C38F}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{2C1E8D6D-8DC6-4599-A7E4-C69DC1C29B22}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{AA6EA756-50D8-4005-B424-A7BA34E47917}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FirewallRules: [{073F5C8C-9EFE-4340-A062-4277754BF262}] => (Allow) C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\SonarHost.exe (Electronic Sports Network i Sverige AB -> ESN Social Software AB)
FirewallRules: [TCP Query User{979960D6-7F47-42F8-BF71-FB54973CEBC8}D:\hry\overwatch\_retail_\overwatch.exe] => (Allow) D:\hry\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [UDP Query User{AD3EB50E-643D-4D75-947D-A08F62CEC069}D:\hry\overwatch\_retail_\overwatch.exe] => (Allow) D:\hry\overwatch\_retail_\overwatch.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
FirewallRules: [{FF7B6043-BF7B-441E-B07B-C1197B53306D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9B3511C8-A996-47CF-B00B-0CCF5491B111}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{3CA075EB-79F6-470F-B241-9C042D0917F2}] => (Allow) E:\Hry V2\Tom Clancy's The Division 2\TheDivision2.exe (Ubisoft Entertainment Sweden AB -> Ubisoft)
FirewallRules: [{796D7345-8BF6-4BD9-AC24-B519484E1EB4}] => (Allow) D:\Hry\uplay\Ubisoft Game Launcher\games\Trackmania\trackmania.exe (NADEO SASU -> Nadeo)
FirewallRules: [{872AC05C-BE62-4804-89EC-8B2EEA6646BA}] => (Allow) D:\Hry\uplay\Ubisoft Game Launcher\games\Trackmania\trackmania.exe (NADEO SASU -> Nadeo)
FirewallRules: [{EA818E7C-AE64-4B6A-A08C-1F5A459B4F91}] => (Allow) LPort=26822
FirewallRules: [TCP Query User{14742AA3-111F-451F-AF7D-FC04D61EC71F}E:\hry v2\battlefield 4\bf4.exe] => (Allow) E:\hry v2\battlefield 4\bf4.exe => No File
FirewallRules: [UDP Query User{C9D4D1E2-0D7D-459C-859E-E1A8802C5EB7}E:\hry v2\battlefield 4\bf4.exe] => (Allow) E:\hry v2\battlefield 4\bf4.exe => No File
FirewallRules: [{805EC9AC-FFF1-4344-A844-C42AC3CCAE52}] => (Allow) D:\Programy\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{823B388C-3B9A-4747-87D0-EC87E3B252EA}] => (Allow) D:\Programy\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{D4AAE62A-DBFF-4F66-A5A2-40E577FBBB3B}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK Computer Inc. -> ASUS)
FirewallRules: [{B783E16C-289B-4131-B74D-FC282C8BDE0A}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK Computer Inc. -> ASUS)
FirewallRules: [{3D16BC69-6FAB-4042-864E-DB6ECDCC7862}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
FirewallRules: [{C77D0998-D8C5-48EE-89CC-C28315755775}] => (Allow) LPort=32682
FirewallRules: [{20BCBF02-BC84-45B9-82D4-5F128C667F56}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK Computer Inc. -> ASUS)
FirewallRules: [{C7480551-8C93-4120-9AF7-163CE91A78A9}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK Computer Inc. -> ASUS)
FirewallRules: [{61297ECF-295D-4182-AA37-95629F54AFE0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
FirewallRules: [{584AA615-4C17-47EE-BE99-C3CA55D18E6C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{1A14E7D6-6B28-4E55-AEF3-72F56A58199F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{66A4208B-CA90-4E09-A1F9-50776E8985D6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{C6FA5A52-A19D-4978-BE4C-0379BCEA4091}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{222C2982-2E4A-47AF-8D73-356B305CCBA6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{18DBE3CC-805D-4E3D-9D0A-3F2063371966}D:\program files (x86)\origin games\battlefield 2042 open beta\bf.exe] => (Allow) D:\program files (x86)\origin games\battlefield 2042 open beta\bf.exe => No File
FirewallRules: [UDP Query User{B55D33B7-F750-4907-A0F3-6D635142A6D2}D:\program files (x86)\origin games\battlefield 2042 open beta\bf.exe] => (Allow) D:\program files (x86)\origin games\battlefield 2042 open beta\bf.exe => No File
FirewallRules: [{EEDB9880-7F8E-45A1-97AF-4A4FE46D3966}] => (Allow) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{089505F2-68DA-47E1-BA33-4EE6E8CD608E}] => (Allow) C:\Program Files (x86)\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{E545403F-8F8E-4DD7-9CAB-72A9B4D2F4EF}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{F457A906-5238-49FC-B7CC-0D7AB117B5E5}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{21C1DA21-EE96-49EB-8041-5C55C5EA09A1}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D324D493-2B49-43A5-BCC8-0C4CE9F3DB7F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{EAE751D4-3BA9-496F-9D33-983C5CECEE1A}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{30A15541-8ADF-4C75-B417-C4C8962E6105}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BC0022DF-4434-45DA-82DB-88E2019C2F9D}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5FECBEAE-6F14-4280-BC00-9030B636DA90}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12122.2.54019.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{4AF4A07C-E6D2-40AF-9D46-C463D7E5DD01}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{54F4D3A0-DBA4-44F4-B61C-12CBD24EB9DE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{5CD31B6B-B2DE-4609-8424-40A8F9320093}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{666BFAD2-C126-482E-A41D-2BE0AF95B5DF}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.78.159.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{DDDAD2E7-8B14-4FCB-AC88-0FB4C0D1D627}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{AC3AD6AB-86BC-4690-8C8C-218FB5A68DB5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BF5AF505-9B9B-49B3-B682-FDA5A0DD794D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{827049E9-B78F-4E66-912E-CBBBC52B29DB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7B214BB6-621B-4C47-846B-3E7E86EA47B6}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7FFA925A-39CB-4A28-8D6E-20494B90E152}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{92DD98F9-AD26-4C97-99A1-2CFF3545F82F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4B97AB04-5F7B-43F7-A79C-3DFAC5CFC705}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.172.439.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{F3175090-C2E2-4BE3-B197-4C85999483B2}E:\hry v2\battlefield 2042\bf2042trial.exe] => (Allow) E:\hry v2\battlefield 2042\bf2042trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{56086971-2742-465C-BBBA-88FF84CC63C3}E:\hry v2\battlefield 2042\bf2042trial.exe] => (Allow) E:\hry v2\battlefield 2042\bf2042trial.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{E6E95CD8-F836-46D9-A24C-788B1EE74254}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{68983E47-A8E2-43C6-B577-2F46CD171B64}E:\hry v2\battlefield 2042\bf2042.exe] => (Allow) E:\hry v2\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{144ADCE7-CFA6-4D4F-9AE1-8576919586B8}E:\hry v2\battlefield 2042\bf2042.exe] => (Allow) E:\hry v2\battlefield 2042\bf2042.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{B86E19AA-87A0-458E-846A-7DA9635742D8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\96.0.1054.34\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6DB43A67-88F2-4F19-9567-65D45A7F2E52}] => (Allow) E:\SteamLibrary\steamapps\common\Project CARS 2\pCARS2.exe (Slightly Mad Studios Ltd) [File not signed]
FirewallRules: [{D99C02A1-7138-4AD8-8415-6FDFD754CC41}] => (Allow) E:\SteamLibrary\steamapps\common\Project CARS 2\pCARS2.exe (Slightly Mad Studios Ltd) [File not signed]
FirewallRules: [{38198FF4-4801-44B0-8DF9-007D670CF965}] => (Allow) E:\Hry V2\Battlefield 2042\BF2042_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{2712C1E7-AEC2-436C-9D0A-D445E56DDAF2}] => (Allow) E:\Hry V2\Battlefield 2042\BF2042_launcher.exe (EasyAntiCheat Oy -> Epic Games, Inc)
FirewallRules: [{5E5F2366-58BE-4A02-865F-BE8574B21FFB}] => (Allow) LPort=32682
FirewallRules: [{9A841089-85A3-47FD-AEDC-97056D8118F1}] => (Allow) LPort=26822
FirewallRules: [{8290AB41-6317-458F-BB39-FC901C90586F}] => (Allow) LPort=26820
FirewallRules: [{C56569C7-CE42-404A-9D97-52AB8D09E89E}] => (Allow) C:\Users\holsk\Desktop\FRST64.exe (Farbar) [File not signed]
FirewallRules: [{324CACE8-CE63-4B48-A34D-2777899EFF0B}] => (Allow) C:\Users\holsk\Desktop\FRST64.exe (Farbar) [File not signed]
FirewallRules: [{DC5162F4-A0B5-433C-BD18-E2D5800B9D5B}] => (Allow) C:\Users\holsk\Desktop\FRST64.exe (Farbar) [File not signed]
FirewallRules: [{EECE50DF-7871-4A22-A6A0-8FF570426199}] => (Allow) C:\Users\holsk\Desktop\FRST64.exe (Farbar) [File not signed]

==================== Restore Points =========================

26-11-2021 11:39:08 Removed Thrustmaster FFB Racing Wheel

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/26/2021 11:59:35 AM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SecHealthUI.exe verze 10.0.19041.844 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2640

Čas spuštění: 01d7e2b356b25e2f

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe

ID hlášení: 99ff1842-ba49-497f-94d1-823baf7aa55b

Úplný název balíčku s chybou: Microsoft.Windows.SecHealthUI_10.0.19041.1023_neutral__cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: SecHealthUI

Typ zablokování: Cross-process

Error: (11/26/2021 11:57:28 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: assistant.exe, verze: 4.0.0.1170, časové razítko: 0x618d7788
Název chybujícího modulu: Qt5Core.dll, verze: 5.14.1.0, časové razítko: 0x603971ce
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000219dc5
ID chybujícího procesu: 0x16bc
Čas spuštění chybující aplikace: 0x01d7e2b45bcc24a3
Cesta k chybující aplikaci: C:\Program Files\Malwarebytes\Anti-Malware\assistant.exe
Cesta k chybujícímu modulu: C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
ID zprávy: c73169d7-2b38-4d47-b62a-bfc89ec1eb11
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (11/26/2021 11:49:42 AM) (Source: Microsoft Security Client Setup) (EventID: 100) (User: DESKTOP-ISU7VVA)
Description: HRESULT:0x8004FF6F
Description:You don’t need to install Microsoft Security Essentials. Your version of Windows includes an updated version of Windows Defender that provides the same level of protection as Microsoft Security Essentials, along with other significant improvements. <a>For more information on the differences and improvements, see online Help</a>. Error code:0x8004FF6F.

Error: (11/26/2021 11:48:02 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CCleaner64.exe, verze: 5.87.0.9306, časové razítko: 0x618e5dad
Název chybujícího modulu: CCleaner64.exe, verze: 5.87.0.9306, časové razítko: 0x618e5dad
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000c1584
ID chybujícího procesu: 0x59b0
Čas spuštění chybující aplikace: 0x01d7e2b31074d22f
Cesta k chybující aplikaci: C:\Program Files\CCleaner\CCleaner64.exe
Cesta k chybujícímu modulu: C:\Program Files\CCleaner\CCleaner64.exe
ID zprávy: 270d9b28-4c24-4a08-ade7-edabdfa83010
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (11/25/2021 12:45:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: LEDKeeper2.exe, verze: 2.0.0.19, časové razítko: 0x60f76347
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.1348, časové razítko: 0x9166324b
Kód výjimky: 0xe0434352
Posun chyby: 0x0012b502
ID chybujícího procesu: 0x15a8
Čas spuštění chybující aplikace: 0x01d7e1d3d04a2183
Cesta k chybující aplikaci: C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID zprávy: 770a4326-d49b-47c5-bb2a-a236205161ed
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (11/25/2021 12:45:35 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: LEDKeeper2.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.OutOfMemoryException
na System.Threading.Thread.StartInternal(System.Security.Principal.IPrincipal, System.Threading.StackCrawlMark ByRef)
na System.Threading.Thread.Start(System.Threading.StackCrawlMark ByRef)
na System.Threading.Thread.Start()
na System.Management.ThreadDispatch.DispatchThread()
na System.Management.ThreadDispatch.Start()
na System.Management.ManagementScope.Initialize()
na System.Management.ManagementObjectSearcher.Initialize()
na System.Management.ManagementObjectSearcher.Get()
na MSI_LED.App.Application_Startup(System.Object, System.Windows.StartupEventArgs)
na System.Windows.Application.OnStartup(System.Windows.StartupEventArgs)
na System.Windows.Application.<.ctor>b__1_0(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.DispatcherOperation.InvokeImpl()
na System.Windows.Threading.DispatcherOperation.InvokeInSecurityContext(System.Object)
na MS.Internal.CulturePreservingExecutionContext.CallbackWrapper(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na MS.Internal.CulturePreservingExecutionContext.Run(MS.Internal.CulturePreservingExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Windows.Threading.DispatcherOperation.Invoke()
na System.Windows.Threading.Dispatcher.ProcessQueue()
na System.Windows.Threading.Dispatcher.WndProcHook(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
na MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
na System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
na System.Windows.Threading.Dispatcher.PushFrame(System.Windows.Threading.DispatcherFrame)
na System.Windows.Application.RunDispatcher(System.Object)
na System.Windows.Application.RunInternal(System.Windows.Window)
na System.Windows.Application.Run(System.Windows.Window)
na System.Windows.Application.Run()
na MSI_LED.App.Main()

Error: (11/22/2021 09:18:19 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na \\?\Volume{37338c69-82be-bd13-a659-b7f0ecfd3b04}\, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (11/22/2021 09:18:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na \\?\Volume{eddada4f-0cd7-84e3-9038-67febba34d85}\, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (11/26/2021 12:19:35 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby ASUS Com Service bylo dosaženo časového limitu (30000 ms).

Error: (11/26/2021 12:19:05 PM) (Source: DCOM) (EventID: 10005) (User: DESKTOP-ISU7VVA)
Description: Služba DCOM zjistila chybu 1053 při pokusu o spuštění služby asComSvc s argumenty Není k dispozici za účelem spuštění serveru:
{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}

Error: (11/26/2021 12:19:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby ASUS Com Service bylo dosaženo časového limitu (30000 ms).

Error: (11/26/2021 12:18:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba MSI Voice Control Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/26/2021 12:18:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/26/2021 12:18:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba ARMOURY CRATE Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (11/26/2021 12:18:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba LGHUB Updater Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (11/26/2021 12:18:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba LightKeeperService byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
================
Date: 2021-11-26 11:53:15
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {8AD44E83-E931-420D-B333-51C9C8C51C7C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Úplné prohledávání
Uživatel: DESKTOP-ISU7VVA\holsk

Date: 2021-11-26 11:50:24
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {0A196B2C-D053-4953-8E14-05329F6BA1A1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Úplné prohledávání
Uživatel: DESKTOP-ISU7VVA\holsk

Date: 2021-11-25 16:25:53
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {9B919C8B-8975-4201-ADD6-A86E8FC3F394}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-11-24 13:01:11
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {B00BDEE4-C110-4DCE-98E1-94ECB3EB254F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-11-23 14:27:08
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {0199D6F7-ADB1-4F6E-921B-9658CAC6713D}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: American Megatrends Inc. A.20 12/21/2017
Motherboard: Micro-Star International Co., Ltd. Z370 SLI PLUS (MS-7B46)
Processor: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz
Percentage of memory in use: 17%
Total physical RAM: 65489.42 MB
Available physical RAM: 53703.83 MB
Total Virtual: 75217.42 MB
Available Virtual: 63973.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:232.28 GB) (Free:14.2 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:1863.02 GB) (Free:55.32 GB) NTFS
Drive e: (Nový svazek) (Fixed) (Total:931.5 GB) (Free:180.46 GB) NTFS

\\?\Volume{103b8171-3633-4ecf-be44-243a2993d0f7}\ () (Fixed) (Total:0.49 GB) (Free:0.05 GB) NTFS
\\?\Volume{eddada4f-0cd7-84e3-9038-67febba34d85}\ () (Fixed) (Total:38.8 GB) (Free:0 GB) NTFS
\\?\Volume{37338c69-82be-bd13-a659-b7f0ecfd3b04}\ () (Fixed) (Total:26.76 GB) (Free:0 GB) NTFS
\\?\Volume{0c0fcfa8-d211-4db2-96d7-0d120f0b48e4}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: E153DA30)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 232.9 GB) (Disk ID: 00000000)

Partition: GPT.
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 3.
Attempted reading MBR returned 0 bytes.
Could not read MBR for disk 4.

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Poshukach problém

#2 Příspěvek od JaRon »

FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

cr8gg
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 26 lis 2021 12:26

Re: Poshukach problém

#3 Příspěvek od cr8gg »

Zoek Log:


Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by holsk on 26.11.2021 at 15:19:45,73.
Microsoft Windows 10 Home 10.0.19043 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\holsk\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

26.11.2021 15:21:49 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Lavasoft deleted successfully
C:\PROGRA~2\Origin Games deleted successfully
C:\Program Files\NordVPN network TUN deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\Users\holsk\AppData\Local\PackageStaging deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~2\Lavasoft not found
C:\PROGRA~2\Origin Games deleted
C:\Users\holsk\AppData\Roaming\NZXT CAM deleted
C:\DumpStack.log.tmp deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\holsk\AppData\Local\oobelibMkey.log deleted
C:\Users\holsk\AppData\Local\cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2724C.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2903B.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM293F8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2A1FE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36c94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36ca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36ca8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36caa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cbe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cc2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cc4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cd9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cdb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36ced.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cf1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36cf3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36d04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1344-4378-f36d06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e362.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e373.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e385.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e3b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e3e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e3f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e41a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e42b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e44c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e46e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e47f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e491.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e4a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e4b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e4c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e4f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e508.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e51a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-142c-1b78-36e52c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca277a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca278c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca278e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca2790.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-15ec-51a0-2ca27ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fab6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fac8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299faca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299facc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fade.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fae0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fae2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fae4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299faf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299faf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299faf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fafb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1664-2424-299fb29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bb9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-50c8-9bbd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-1908ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190911.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190913.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190915.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190928.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-19092a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-19092c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-19092e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c7c-2f94-190940.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f388b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f388d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f388f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ccc-2ff4-43f38ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e411a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e411b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41235.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41249.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4125a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4125c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4126e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41270.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41274.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41286.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e41288.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4128a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4128c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4129d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e4129f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e412a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd4-20d0-3e412a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657438.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657498.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657517.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657528.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-6575b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657607.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657638.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657688.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-6576c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-6576fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657779.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657a59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657a8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657b09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657b49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657b7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657b8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657c97.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1dd8-1da8-657d26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664bd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664c07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664c29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664c5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664c7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664cac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664ccd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664cee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664d00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664d31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664d62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664d83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664e11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664e42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664ea2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664ec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664ee5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664f06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e08-56c4-4664f27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-230478.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-23047a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-23047c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-23048d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-23048f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-230491.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-230493.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1e50-2918-2304da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134315.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134317.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134328.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13432a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13432c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13432e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134340.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134342.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134344.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134346.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134358.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13435a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13435c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-13435e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134371.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134373.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134375.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1edc-1850-134377.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beac5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bead7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bead9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beaeb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beb99.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bec08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-becd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bed54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bed95.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beda6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bedd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bede9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bedeb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bedfc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bee2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bee5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-bee7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beeb0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f34-d58-beec2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb826d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb827e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb8280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb8282.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb8294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb8296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb8298.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb829a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20a8-1ba8-2fb82df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7e5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7e7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7e80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7ea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7ec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7ee4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2230-16f0-3a7f4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d8d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05d8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05da1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05da3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05da5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05da7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05db9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05dbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05dbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-22f8-58b8-d05dbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94170.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94181.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94183.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94185.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94187.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-94199.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-9419b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-9419d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-9419f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-251c-2538-941e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f18fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f190f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1911.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1932.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1953.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1974.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f19a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f19c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f19ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f19fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26dc-5840-1f1a3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-38179c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-38179e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2754-1484-3817fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337c95.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337ca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337ca8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337cba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27a0-1038-337cbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28df9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfc4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfde.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfe0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dfe2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dff3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dff5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dff7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28dff9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28e00b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28e00d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29d0-2ea0-28e00f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c177e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c178f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c1791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c1793.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c1795.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2af4-1b0-5c17f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c642b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c642d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c643e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6440.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6452.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6454.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6466.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6468.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c646a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c646c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c647d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c647f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6491.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6493.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c64ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6511.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6513.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6515.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6526.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6528.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c653a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c653c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c659c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c659e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c65f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6608.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c660a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c660c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c660e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c661f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b54-5664-6c6621.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e8d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9e8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ea3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9eb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9eb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9eb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9eca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ecc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ece.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ee0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ee2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c28-1b54-5f9ee4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23a9ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2cb8-9a8-23aa80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a2893.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a28fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a2900.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a2911.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a2913.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e84-1ad4-a2915.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-958e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-958f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-958f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-958f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95907.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95909.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9590b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9590d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9590f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95920.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95922.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95924.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95926.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95938.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9593a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9594c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9595d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-9595f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2fdc-3208-95981.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e499.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e49b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e49d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e4af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e4b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e4f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e4f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e505.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e536.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e538.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e54a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e54c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e54e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e550.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e571.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e573.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e584.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e586.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-14f4-12e588.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde6ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde701.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde703.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde715.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde717.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde719.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde72a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde74c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde75d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde75f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde771.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde775.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde777.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde789.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde78b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde78d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde78f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-33c4-984-dde791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-308ff7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-308ff8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-308ffcf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-309002f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090052.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090095.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-30900e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090106.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090108.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090129.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-309014b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-309019b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-30901cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-30901ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-30901ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-30901f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3520-2518-3090260.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f05fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f0600.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f0612.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f0614.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-36a4-1f88-1f0616.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96ac2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96ad3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96ad5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96ad7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96ae9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96aeb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96aed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96aef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3888-c40-96b34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1ccb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cdd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cdf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cf0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cf2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1cf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-391c-a4c-3fc1d5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2dce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2de0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2de2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2df4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2df6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2df8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2dfa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3988-2910-b2e50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-403486d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-403488e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-40348b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034900.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034902.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034933.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034944.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034965.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034977.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034989.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-403498b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-40349ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-40349cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-40349fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034a1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034a31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034a71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034a93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3c68-5160-4034aa4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164b9f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164ba86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164baa8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164baaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164bacb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164baec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164bafe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164bb00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3de8-3e84-164bb02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b8d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4b93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4ba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e40-41c8-c4ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883ea2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883f11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883f32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883f53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3883f84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884003.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884063.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884094.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-38840d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884105.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884127.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-3884177.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-38841a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-38841d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-38841fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-388420b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-388424c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3e8c-54c4-38842cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129bd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129c19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129c59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129c9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129d28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129db7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129de8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129e48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129ee6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129f55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-129f67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a0ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a120.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a190.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a24d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a28e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a33c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a39b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4058-11e8-12a3dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4639.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e464b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e464d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e464f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4660.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4662.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4674.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4676.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4688.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e468a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e468c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e469d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e469f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46f0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e46f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4703.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4705.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-40a0-32c4-6e4707.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e13f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e151.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e153.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e155.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e157.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e168.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e16a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e16c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e16e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e180.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e184.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e186.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e198.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e19a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e19c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e19e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e1a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4234-2284-64e1b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ee4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ee7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ee8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ee90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4eec1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4eed3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4eee5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4eef6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4290-106c-c4ef7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-42dc-1754-bdc72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94a8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4328-3158-94aac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9eb9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebb0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebb4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebd7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebd9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebdb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-43f8-4578-9ebed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435418.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243542a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243542c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243542e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435440.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435442.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435444.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435446.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435457.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435459.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243545b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243545d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243545f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435471.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435473.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435475.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435477.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-2435489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-44f8-e40-243548b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bd5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bd71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bda2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bdc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bdd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bde6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9be07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9be38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9be79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9beb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9becb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9beec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9befe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bf2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bf40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bf90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bfb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bfc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4650-1930-3f9bfe5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea4c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea4e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea4fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea4fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea4fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea51f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea521.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea533.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea535.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea537.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea54a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea54c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea55e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea560.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea562.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea564.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea566.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-47cc-4b08-1ea578.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9d999.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9d9d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9da29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9da2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9daaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dabc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dadd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9daef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9db10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9db22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9db62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9db93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dbb6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dbc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dbda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dc2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dca9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4dc-223c-9dcab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7ec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7ef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f06.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f08.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7f95.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7fa6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7fc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7fe9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d7ffb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d807a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d808b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4ee8-1858-d80bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-5116d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511708.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51170a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51170c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51172d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51172f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511741.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511743.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511745.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511756.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511758.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51175a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51175c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-51176e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511770.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511782.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511784.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-511795.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f48-17bc-5117a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d5a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d5a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d5b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d5b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d712.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d80e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d84e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d8ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d90e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d93e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d97f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d9b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6d9c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6da21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6da71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6da93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6dac3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6dad5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f8c-19c0-3c6db16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-5739f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a18.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4fbc-35e4-573a55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c221.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c233.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c245.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c258.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c25a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c25c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c26e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c270.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c274.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c286.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c288.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c28a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c28c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c28e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c29f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c2b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5190-5224-32c2c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fb7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fbf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fc98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-550-8bc-33fcaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-59c-5a0-1bf56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382400.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382402.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382423.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382425.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382427.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382429.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38243b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38243d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38243f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382441.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382452.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382454.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382456.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382468.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38246a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38246c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-38246e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382480.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-62c-5abc-382482.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c6e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117c9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117caf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117ccb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117cde.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8e4-2cfc-117ce0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-147192.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-b98-ba0-1471f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5a71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5a73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5a94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5ab5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5ad7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5af8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5ba4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5ba6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5bb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5bc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-dac-3d24-34e5beb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-24171eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-24171fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-24171ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417201.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417203.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417205.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417216.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417218.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-241721a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-241721c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-241722e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417230.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417232.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417234.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417245.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-2417249.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-241724b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-db4-11d8-241725d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152c9f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152ca1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152cb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152cb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152cb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152cb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152ccb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152ccd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152ccf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152cd1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152ce2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152f36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-152f86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-e0c-a2c-153024.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86ce0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86cf2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86cf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86cf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86cf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d0c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d0e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86d7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86dbe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-fd4-2280-3e86ddf.tmp deleted
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Lavasoft\WebCompanion.exe_Url_siq0lwf3tzgxp2khfkllybk3idtbehng deleted
C:\Users\Public\Desktop\4K Video Downloader.lnk deleted
"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Cookies" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Cookies-journal" not deleted
"C:\Users\holsk\AppData\Roaming\discord\lockfile" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\lockfile" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache\data_0" deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache\data_1" deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache\data_2" deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache\data_3" deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache\index" deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache\data_0" deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache\data_1" deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache\data_2" deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache\data_3" deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache\index" deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000005.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000007.log" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000008.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\LOCK" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\LOG" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\MANIFEST-000001" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\000003.log" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\LOCK" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\LOG" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\MANIFEST-000001" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000005.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000909.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000912.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000915.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000917.log" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000918.ldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\LOCK" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\LOG" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\MANIFEST-000001" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\000003.log" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\LOCK" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\LOG" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\MANIFEST-000001" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\000003.log" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\LOCK" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\LOG" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\MANIFEST-000001" not deleted
"C:\Users\holsk\AppData\Roaming\MPC-HC" deleted
"C:\Users\holsk\AppData\Roaming\discord" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Cache" not deleted
"C:\Users\holsk\AppData\Roaming\discord\GPUCache" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Session Storage" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db" not deleted
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb" not deleted
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage" not deleted
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb" not deleted

==== Chromium Look ======================


Plná Peněženka Lištička - holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ecmgkhgjmodembdmiimbacpjgcdimiek
Chrome Media Router - holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Chrome Media Router - holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Outlook - holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb
Word - holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi
Excel - holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm
PowerPoint - holsk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf

==== Chromium Startpages ======================

C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Preferences
tps://app.asana.com/0/inbox/968156158381980/1200764531533216/1201234053031035"},{"url":"https://socialblade.com/youtube/user/al ... g-recipes/"}],"protection":{"macs":{"browser":{"show_home_button":"D1AA7223BB8027EFD1F63EFAA76DC8767F1E4BE3D75C3928308FA4F883AE9FD4"},"default_search_provider_data":{"template_url_data":"9DB85CC95B89CB40BEC9C686154765184036D1E11C6629D8CF03BEC3C1180987"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"BF94E936CB83B009AF9005FB3FD8C08566B3907D04262C0B461AC257BE07D82D","ahfgeienlihckogmohjhadlkjgocpleb":"12EDD198B1D23F5D35375AFBC91F0902F4336C0AF82AD4895EF0B8CF912623F6","aohghmighlieiainnegkcijnfilokake":"78C22AF7503F633BCEEE08196E3AA7D65328D14421EC0E079B48796352A96D11","apdfllckaahabafndbhieahigkjlhalf":"FBB164BDD58F534DC24D4F1FA9EDEF55CCEAB241D75E7E363D61183F036D8AAB","blpcfgokakmgnkcojhhkbfbldkacnbeo":"5D65F5E696E56231FF31BD5B97C5C0EADE3DA7E02A6435D6A8F7C959C8496113","felcaaldnbdncclmgdcncolpebgiejap":"69729593BA30DA6490FE206238CA405C21D9DF9F3918ED36B01F9EEFD9504234","gfdkimpbcpahaombhbimeihdjnejgicl":"635E51D9C1EC130550FF5723C6456AD924457E6469D315EE5FE67B75410B019A","ghbmnnjooekpmoecnnnilnnbdlolhkhi":"903C230DF86D191F593FEC8FA4B4A9829E2D21653B64A2E0A7470DC454C4ED56","gighmmpiobklfepjocnamgkkbiglidom":"F253E0557EE5A335EAD42B34D0F20EE3C24BCBE888141F066B7887F69784528A","hdocgkdfdbcaedenamciifpcglgmgbgj":"EF2F8B4F7032C9E08EBC4650D639FDBE59365531AD7983CAA5986AA26A5F7819","iljnkagajgfdmfnnidjijobijlfjfgnb":"0D6B6DD4B0BAC83B415BFC55CE50F1CAD7357CC95E26B90BD8B7AAB939053BF7","kmendfapggjehodndflmmgagdbamhnfd":"CAC1FE27FBAC43C510679CF7A1897AE24B6F7493A3511B6F796B9C380A7207CB","mfehgcgbbipciphmccgaenjidiccnmng":"EE6188353558C4580D0B367D54B3155AF60C5942298457B6B7976C59CAEDA4D9","mhjfbmdgcfjbbpaeojofohoefgiehjai":"A080BF6A2B06F84F48C42F48F03B32166679CE83A6E4F799A2BEE599BFAB6583","neajdppkdcdipfabeoofebfddakdcjhd":"0C7FBD73BD70EAF3E9F445D71671E7C092F7CADBFADBEE7BBA6C3450AE47CBA2","nkeimhogjdpnpccoofpliimaahmaaome":"481D5E74D86421969501472E8EB8D8A32DCFDB472522172D4588E78B684D4FA3","nmmhkkegccagdldgiimedpiccmgmieda":"A9F2D40E4B30474C311EA865EF1958A9ED0B97BB5A20D132F1D089A68D15EFAA","pjkljhegncpnkpknbcohdijeoejaedia":"5B8A0C8E898EA875A83364CABD530710632C84527683BC63118CC0F13CE194CA"}},"google":{"services":{"account_id":"EDEE41C266D67574435F1A2532E4C3AB7A86D38550EDB6C3BF585638924F6C89","last_account_id":"AA495632CA9FC73A5EFAC99E8B1D8F0069A87B565B84496FDFE18CAA1889B7FD","last_username":"1B6BE047ECBB289066ECC37B00F9092B4CF5FEEF2370A01DA228C2597708073C"}},"homepage":"22F1E43F457016EF811CCD6B8536CD9672B8D408DD3D15154626A2D15D8B7058","homepage_is_newtabpage":"C56632CF3ED668891611BDC7D0BBB3B20A7FDC256CAE623F96EEA697C5EA7EB0","media":{"cdm":{"origin_data":"70C72C7ACAEDCE76D1CB9D817CB550BE3A42291AA831A3EC2C3EA69CF0FB82FC","origins":"32AD765A3E96C6FC4B3FF2F9719529AC4D042095DE6F2B1B779E1F55A128F829"},"storage_id_salt":"382392345A530D94AA3344124595D15B77C420F6DDFDBB37F12D071D78733C07"},"module_blocklist_cache_md5_digest":"5C98577665EC29F53C1AE60246DFAD7D264F6CEB29CCDA721789FC6B6E55B021","pinned_tabs":"709ABEF4DE8F0E0D0ED96714D161B21950780EEE4004AF5B0618C50CAC12B328","prefs":{"preference_reset_time":"76F002909097061D2EB19FDC73E19F30B224E1710FBDA4450AB5D43F95E012C6"},"safebrowsing":{"incidents_sent":"6FD03CE0AE40D3EF7E308CB74EF02FC115B3FCEBE7871F0D383E825DB24590C3"},"search_provider_overrides":"56305CBA5D9397314273A44F645857087D5E62CE887F5F87C2DCBD66A1EF555E","session":{"restore_on_startup":"63722ACE22923498FF262321C3D684C61E082023B3FCD8937F0A33253AD9FA61","startup_urls":"C1B239793515449FD422B4BB7507F9FDC22DBD496B8655D561EAB50C021704D4"},"settings_reset_prompt":{"last_triggered_for_default_search":"FB88DA92E324C10313E4768D0712DA19A1EBC34359DAE166B50554FF6F3645F0","last_triggered_for_homepage":"BC90DEE0B4578FF30BBEAE3EE32673185411F4D2908FA755FA3EA055D4CDA06B","last_triggered_for_startup_urls":"A10222EEEEC1034071BCF00A958F294EA30EF0712483DCC4E58E903845E3F4D9","prompt_wave":"3AF9AD65F0437BFC6759A13D6F976DAE15DB9B021D73F319FB8CB4BBD5DD2224"},"software_reporter":{"prompt_seed":"045660A6FD0E54F5415A623D3B0867E8575B0C780806BBB8C7240735D342C1B8","prompt_version":"B6713267757016B67E663B70B77F8E3D54634CA38FC21597C800305E57972958","reporting":"863529DE00237324F37869FFFE557BB202F5B3ACA0B7001738FC9BA5636EB3CD"}},"super_mac":"C432871D0EA09537A8464AF010BD53AE2B290E06BEBC35095B0F7845C6F8A1EC"},"session":{"restore_on_startup":4,"startup_urls":["https://poshukach.com?fr=ps&gp=496723&altserp=1"]}}

C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences
","networkingPrivate","processes","storage","system.cpu","settingsPrivate","tabCapture","tabs","webview","https://hangouts.google.com/*","https:/ ... /home/gsse"],"update_url":"https://clients2.google.com/service/upd ... _resources":["cast_sender.js","cast_setup/*"]},"never_activated_since_loaded":true,"path":"pkedcjkdefgpdelpbcmbmeomcjbeemfm\\7919.1028.0.0_0","preferences":{},"regular_only_preferences":{},"state":1,"was_installed_by_default":true,"was_installed_by_oem":false}}},"google":{"services":{"account_id":"117106368543372652287","last_account_id":"117106368543372652287","last_username":"lokajova.terez@gmail.com"}},"pinned_tabs":[],"protection":{"macs":{"browser":{"show_home_button":"D1AA7223BB8027EFD1F63EFAA76DC8767F1E4BE3D75C3928308FA4F883AE9FD4"},"default_search_provider_data":{"template_url_data":"7D0A78D5C7D0979C84A7E18E195DE0381CC5FCAA93C1685D429C610699F39D77"},"extensions":{"settings":{"aapocclcgogkmnckokdopfmhonfmgoek":"D8C3B7657306BD2A689681435866DDA13DBDA498E67A0C47003314B4F618BDF9","ahfgeienlihckogmohjhadlkjgocpleb":"BE2AA8AFAC94CC38E20F4CABED0F8001A46CC87A1B12D4C55D77AEFE662884C2","aohghmighlieiainnegkcijnfilokake":"BAE1008A5FBA4BF0BB7311D4CA715601935C34929EFD996B9F43695800394510","apdfllckaahabafndbhieahigkjlhalf":"8D6523A7D772AB503B4B22AC36B15C5B867592ADC2BBE0FA0C7B64029DE7C119","blpcfgokakmgnkcojhhkbfbldkacnbeo":"9299F8C7EA9017D16CD3008574FA2177FA5FF60B79615B177E719621D27684FC","ecmgkhgjmodembdmiimbacpjgcdimiek":"1F4D9EC3CF53B39DFB15BB4A7D704A51F3B719E6D27F53714E3D231700C53033","felcaaldnbdncclmgdcncolpebgiejap":"D6535F6D18A0F41F794C437886A5E95090260E8C4C6001AF604910F068C5CD63","gfdkimpbcpahaombhbimeihdjnejgicl":"6F52A0467B4651DD450BBC4992B185371CFED3948844353BBF6D72C54BC879A9","ghbmnnjooekpmoecnnnilnnbdlolhkhi":"1B4B092E1BD8602289B5C5C29C5043655FB1670741F9EA9493E139FF5E38A69A","gpdjojdkbbmdfjfahjcgigfpmkopogic":"A90C296BFD1C492F6E3E6C79B8BD3AC3F0E546690A0EB2A06D9C8A96C1C842E4","kmendfapggjehodndflmmgagdbamhnfd":"DBB000DFCE37A2491B3E91D071C3F6E2497685BBC69A4C5EF78D386CD46D03F3","mfehgcgbbipciphmccgaenjidiccnmng":"00986CDBCD300CA8A5BE7045CEDBDC38A2F76DD26F134B9B7B6741482A122E45","mgndgikekgjfcpckkfioiadnlibdjbkf":"FA1136DFD084CCA0302F3F708039FFBADD64E0401C3D2723E7AA0654E6AAA8B7","mhjfbmdgcfjbbpaeojofohoefgiehjai":"C1FAD596D2AF137B76996FCA162BB95D886040F85F247FAB88D7EA03263C0631","neajdppkdcdipfabeoofebfddakdcjhd":"061DFD135DA2C57BFDA154E6F840F8C88E9657FA2F7F416C29A57187E93E0BD3","nkeimhogjdpnpccoofpliimaahmaaome":"EF04611CF7F8D8582DA5BEEFCEDFA2E683E79699748F29BB9F79EE0D450E7263","nmmhkkegccagdldgiimedpiccmgmieda":"9773F60903BC977B39406F68FD690C541FEEAA62834E786441ADF717C94BF77A","pjkljhegncpnkpknbcohdijeoejaedia":"0C672245363ABDEC2D3B5F8F2C0C6FC325B53FB71BB59610120604D0773274F4","pkedcjkdefgpdelpbcmbmeomcjbeemfm":"2E5F7E62342875DBB39C286D476869AA4B30DA69B9FD89F8FF368DB46D0533BC"}},"google":{"services":{"account_id":"DD343E9F20D416680C28D4FC6BA28C03118634F56D2A0C119ACD47122F41C64E","last_account_id":"38A594B5D290AE9C1B32812C4B84E6C99133BE9736985001B263E7324FCF42BA","last_username":"C76A4FAB4560DCAB333A6DBEDB23046D71C17C57CAB660B316903FB4FDF54D4E"}},"homepage":"22F1E43F457016EF811CCD6B8536CD9672B8D408DD3D15154626A2D15D8B7058","homepage_is_newtabpage":"C56632CF3ED668891611BDC7D0BBB3B20A7FDC256CAE623F96EEA697C5EA7EB0","media":{"storage_id_salt":"54364687977750DB6E5B7685DFD4E3656B24DF331AB6A1AC031B3EBFE173FCA4"},"module_blacklist_cache_md5_digest":"9FE0447823663D8FCDE3EA0E322B917FCD752FDA3790170F846A44FC859D7A29","pinned_tabs":"99F706261E02203735EF32C4B94F7B75EEC746AB8BBC92646B145AA6ABFAB080","prefs":{"preference_reset_time":"76F002909097061D2EB19FDC73E19F30B224E1710FBDA4450AB5D43F95E012C6"},"safebrowsing":{"incidents_sent":"6FD03CE0AE40D3EF7E308CB74EF02FC115B3FCEBE7871F0D383E825DB24590C3"},"search_provider_overrides":"56305CBA5D9397314273A44F645857087D5E62CE887F5F87C2DCBD66A1EF555E","session":{"restore_on_startup":"63722ACE22923498FF262321C3D684C61E082023B3FCD8937F0A33253AD9FA61","startup_urls":"C1B239793515449FD422B4BB7507F9FDC22DBD496B8655D561EAB50C021704D4"},"settings_reset_prompt":{"last_triggered_for_default_search":"FB88DA92E324C10313E4768D0712DA19A1EBC34359DAE166B50554FF6F3645F0","last_triggered_for_homepage":"BC90DEE0B4578FF30BBEAE3EE32673185411F4D2908FA755FA3EA055D4CDA06B","last_triggered_for_startup_urls":"A10222EEEEC1034071BCF00A958F294EA30EF0712483DCC4E58E903845E3F4D9","prompt_wave":"3AF9AD65F0437BFC6759A13D6F976DAE15DB9B021D73F319FB8CB4BBD5DD2224"},"software_reporter":{"prompt_seed":"045660A6FD0E54F5415A623D3B0867E8575B0C780806BBB8C7240735D342C1B8","prompt_version":"B6713267757016B67E663B70B77F8E3D54634CA38FC21597C800305E57972958","reporting":"863529DE00237324F37869FFFE557BB202F5B3ACA0B7001738FC9BA5636EB3CD"}},"super_mac":"5943CEB894D614FF400617A136D85CD5C375122716DA257C9E742BFA14D90343"},"default_search_provider_data":{"template_url_data":{"contextual_search_url":"","created_by_policy":false,"date_created":"0","doodle_url":"","favicon_url":"https://www.poshukach.com/favicon.ico", ... _encodings":["UTF-8"],"keyword":"Poshukach Engin Search","last_modified":"0","last_visited":"0","logo_url":"","new_tab_url":"","originating_url":"","prepopulate_id":20,"safe_for_autoreplace":true,"search_url_post_params":"","short_name":"Poshukach Engin Search","suggestions_url":"https://suggest.finditnowonline.com/sug ... artup_urls":["https://poshukach.com?fr=ps&gp=496723&altserp=1"],"restore_on_startup":4}}

C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Preferences
":"A10222EEEEC1034071BCF00A958F294EA30EF0712483DCC4E58E903845E3F4D9","prompt_wave":"3AF9AD65F0437BFC6759A13D6F976DAE15DB9B021D73F319FB8CB4BBD5DD2224"},"software_reporter":{"prompt_seed":"045660A6FD0E54F5415A623D3B0867E8575B0C780806BBB8C7240735D342C1B8","prompt_version":"B6713267757016B67E663B70B77F8E3D54634CA38FC21597C800305E57972958","reporting":"863529DE00237324F37869FFFE557BB202F5B3ACA0B7001738FC9BA5636EB3CD"}},"super_mac":"4E831FD47E0BEEAB90002334B9CF6445C4FB5EC221E28E0054D700BF15FB6AD5"},"default_search_provider_data":{"template_url_data":{"contextual_search_url":"","created_by_policy":false,"date_created":"0","doodle_url":"","favicon_url":"https://www.poshukach.com/favicon.ico", ... _encodings":["UTF-8"],"keyword":"Poshukach Engin Search","last_modified":"0","last_visited":"0","logo_url":"","new_tab_url":"","originating_url":"","prepopulate_id":20,"safe_for_autoreplace":true,"search_url_post_params":"","short_name":"Poshukach Engin Search","suggestions_url":"https://suggest.finditnowonline.com/sug ... artup_urls":["https://poshukach.com?fr=ps&gp=496723&altserp=1"],"restore_on_startup":4}}

C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Preferences
43F","ihmafllikibpmigkcoadcmckbfhibefp":"2D3B712526B2EFD9A56E93A2DADA59A4D7FF79F47F6135CC0DBEB8453BAB6965","jdiccldimpdaibmpdkjnbmckianbfold":"030066375C8A22F5A2EA942D37DC6A10C06D88ADA61D7336AA52009B787E7651","kmendfapggjehodndflmmgagdbamhnfd":"2C15DDC89879E8C668D6DDB740132038E9FEB25C739E64B4C4C1BDE73E48B093","leffmjdabcgaflkikcefahmlgpodjkdm":"7F38ED1F20DF34855B453256D95209E6E752A7E3632E867A5C92D95F2E639D9D","mhjfbmdgcfjbbpaeojofohoefgiehjai":"FBB3F951F74EF89C38EF4DD1EF3D8D9CA7DC54F7EB1CFAF728401BFD98C32FB6","ncbjelpjchkpbikbpkcchkhkblodoama":"E92C3AA9A6E3A3A1672B42C8E6285CB2F7122E11DDB35C1F6D4CCB59B5306417","nkeimhogjdpnpccoofpliimaahmaaome":"2EC5EE84D54D08D88C47472D6CBBF8390C185852FF47BA92625D6C150C818CE2","opfacbhaojodjaojgocnibmklknchehf":"579F3160D324719755460ED974A43E0D1E5013DDF4BA8FA83BBECF47C3DCA647"}},"homepage":"F47203DC787B94C633BCC9387CCF10EF1F373BBC42A2DA25342F741DB03979DC","homepage_is_newtabpage":"3D304A89A1B2716AC3DCE6DDDF97FD25E938176B011EA02BEC988351B5A28C5B","media":{"cdm":{"origin_data":"6F7BBE73B1E00973317688721339C5FFF2661AE655F8CBD27301CEE47E1F07A7","origins":"74A26AB09A02E0AD1C202546C6BFE6D1CAC85E7861A20FB8E60E3BD9D8F73516"},"storage_id_salt":"6443A9E2848E996F8C882AEE6EC584ADBDEF625C54DAEF52A6544B2BC00AF229"},"pinned_tabs":"D8131D6968FDCBB559452136CD111A04937535A9248E67F5C881DFBE6426BE97","prefs":{"preference_reset_time":"70DDE223085BEAD704770DEA2048A28373B827F19AB8810451EBC3661759E425"},"safebrowsing":{"incidents_sent":"E7E68D599EA7DA35BE862B564F04512ABD8B4BF53B9B546CB64BD7BD7991411E"},"search_provider_overrides":"7E7A069EA896C7E42520E5F3D033FCD9D5482B734DC17D0D6A20981666E813CD","session":{"restore_on_startup":"B5E05F93254B280F07E07B48F5989B39A57137CCA6558BF917A9A74D5C78EFF5","startup_urls":"1FD9D5221232B9AB5D8475235EDFD56A19D1129CDC7BF4578EB9BB291BF5C18E"},"settings_reset_prompt":{"last_triggered_for_default_search":"F5934DCA06032BDBCA0363A75157F3877FD0BB65B376D097945E9EB8D2719C6B","last_triggered_for_homepage":"620988E8E844AACBBEA807731523EB630BA69AD555E878CD7705266A0DE79F12","last_triggered_for_startup_urls":"CA76FA240EA53646F3D1F3FE16FC2011E230C73BE7F2471452747C5168FCC684","prompt_wave":"CE067072F3B59239C43895EF7D5977056F0B852B29D0AA29DB896348280C163B"},"software_reporter":{"prompt_seed":"9D05A59C828B7A57AEBE1825CF4C65719C89BDF9AEFBEEAF0DDC9216688F146D","prompt_version":"D46F1BB5F1BA524B7010063A762DF5864A53FD46D74355AD18E09CA346F9E558","reporting":"2D329D42166A3CE3AFB86A51CD8F9C5EFE0CD5720B92E82C95F0F8F8B939C2A0"}},"super_mac":"1F9A21DAFBB4EF9B164518FC8A16CA310D04AC9BCEF279A73D5697848AAAC6DC"},"default_search_provider_data":{"template_url_data":{"contextual_search_url":"","created_by_policy":false,"created_from_play_api":false,"date_created":"0","doodle_url":"","favicon_url":"https://www.poshukach.com/favicon.ico", ... _encodings":["UTF-8"],"keyword":"Poshukach Engin Search","last_modified":"0","last_visited":"0","logo_url":"","managed_default_search_engine":false,"managed_search_engine":false,"new_tab_url":"","originating_url":"","prepopulate_id":20,"safe_for_autoreplace":true,"search_url_post_params":"","short_name":"Poshukach Engin Search","short_name_lang":"","suggestions_url":"https://suggest.finditnowonline.com/sug ... artup_urls":["https://poshukach.com?fr=ps&gp=496723&altserp=1"],"restore_on_startup":4}}


==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"

==== Reset Google Chrome ======================

C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Secure Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Secure Preferences was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Secure Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences_backup was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Web Data was reset successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Web Data was reset successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\holsk\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Default\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Default User\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\holsk\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 1\Cache emptied successfully
C:\Users\holsk\AppData\Local\Google\Chrome\User Data\Profile 2\Cache emptied successfully
C:\Users\holsk\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=1649 folders=1442 918829393 bytes)

==== Empty Temp Folders ======================

C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\holsk\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not found
"C:\Users\holsk\AppData\Roaming\discord\Cookies" not found
"C:\Users\holsk\AppData\Roaming\discord\Cookies-journal" not found
"C:\Users\holsk\AppData\Roaming\discord\lockfile" not found
"C:\Users\holsk\AppData\Roaming\LGHUB\lockfile" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000005.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000007.log" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\000008.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\LOCK" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\LOG" not found
"C:\Users\holsk\AppData\Roaming\discord\Session Storage\MANIFEST-000001" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\000003.log" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\LOCK" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\LOG" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\MANIFEST-000001" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000005.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000909.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000912.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000915.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000917.log" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\000918.ldb" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\LOCK" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\LOG" not found
"C:\Users\holsk\AppData\Roaming\discord\Local Storage\leveldb\MANIFEST-000001" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\000003.log" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\LOCK" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\LOG" not found
"C:\Users\holsk\AppData\Roaming\discord\shared_proto_db\metadata\MANIFEST-000001" not found
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\000003.log" not found
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\LOCK" not found
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\LOG" not found
"C:\Users\holsk\AppData\Roaming\LGHUB\Local Storage\leveldb\MANIFEST-000001" not found
"C:\Users\holsk\AppData\Roaming\discord" not found
"C:\Users\holsk\AppData\Roaming\LGHUB" not found

==== EOF on 26.11.2021 at 16:01:23,94 ======================

cr8gg
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 26 lis 2021 12:26

Re: Poshukach problém

#4 Příspěvek od cr8gg »

JRT Log

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 8.1.4 (07.09.2017)
Operating System: Windows 10 Home x64
Ran by holsk (Administrator) on 26.11.2021 at 16:04:29,26
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




File System: 0




Registry: 2

Successfully deleted: HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)
Successfully deleted: HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C} (Registry Key)




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 26.11.2021 at 16:06:03,66
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Poshukach problém

#5 Příspěvek od JaRon »

Ak problem zmizol, tak uz len vycisti registreCCleanerom a hotovo :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

cr8gg
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 26 lis 2021 12:26

Re: Poshukach problém

#6 Příspěvek od cr8gg »

Geniální... díky moc za rychlý přístup :)

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15214
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Poshukach problém

#7 Příspěvek od JaRon »

Rado sa stalo
Pekny vecer :)
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Zamčeno