Stránka 1 z 2

Extra pomalé pc a internet

Napsal: 29 led 2022 15:56
od Kaliban
Ahoj,

už nějak čas mi extra pomalu jede pc a to nemluvím o rychlosti netu, kdy načtení stránky trvá šíleně dlouho nebo se dokonce úplně zastaví a za chvíli se zase rozjede.

Logy přikládám, děkuji za případnou pomoc.
Kal

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 15:29:27)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <5>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <18>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] (Seznam.cz, a.s. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\LADES\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [109808 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520 2015-05-14] (ASUSTeK Computer Inc. -> ) [File not signed]
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223

Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]

FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-04-07]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 15:15 - 2022-01-29 15:15 - 000000165 ____H C:\Users\LADES\Desktop\~$Kůže Itálie.xlsx
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-27 18:12 - 2022-01-27 18:12 - 000034468 _____ C:\Users\LADES\Downloads\invoice_22000075.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034574 _____ C:\Users\LADES\Downloads\invoice_22000076.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034532 _____ C:\Users\LADES\Downloads\invoice_22000074.pdf
2022-01-27 18:09 - 2022-01-27 18:09 - 000034879 _____ C:\Users\LADES\Downloads\invoice_22000095.pdf
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-26 18:53 - 2022-01-26 18:53 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060 (1).pdf
2022-01-26 18:45 - 2022-01-26 18:45 - 000034530 _____ C:\Users\LADES\Downloads\invoice_22000069.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087 (1).pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035316 _____ C:\Users\LADES\Downloads\invoice_22000085.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035240 _____ C:\Users\LADES\Downloads\invoice_22000080.pdf
2022-01-26 10:22 - 2022-01-26 10:22 - 000000249 _____ C:\Users\LADES\Downloads\orders-22000085.csv
2022-01-26 10:21 - 2022-01-26 10:21 - 000034570 _____ C:\Users\LADES\Downloads\invoice_22000081.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034618 _____ C:\Users\LADES\Downloads\invoice_22000061.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034526 _____ C:\Users\LADES\Downloads\invoice_22000064.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034423 _____ C:\Users\LADES\Downloads\invoice_22000065.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034534 _____ C:\Users\LADES\Downloads\invoice_22000058.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034490 _____ C:\Users\LADES\Downloads\invoice_22000063.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034600 _____ C:\Users\LADES\Downloads\invoice_22000059.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034531 _____ C:\Users\LADES\Downloads\invoice_22000050.pdf
2022-01-25 20:36 - 2022-01-25 20:36 - 000034625 _____ C:\Users\LADES\Downloads\invoice_22000048.pdf
2022-01-25 20:34 - 2022-01-25 20:34 - 000034434 _____ C:\Users\LADES\Downloads\invoice_22000046.pdf
2022-01-25 20:33 - 2022-01-25 20:33 - 000034561 _____ C:\Users\LADES\Downloads\invoice_22000062.pdf
2022-01-25 20:32 - 2022-01-25 20:32 - 000034432 _____ C:\Users\LADES\Downloads\invoice_22000033.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034571 _____ C:\Users\LADES\Downloads\invoice_22000036.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034515 _____ C:\Users\LADES\Downloads\invoice_22000042.pdf
2022-01-25 20:25 - 2022-01-25 20:25 - 000010595 _____ C:\Users\LADES\Downloads\511033371.csv
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 20:16 - 2022-01-25 20:16 - 000014796 _____ C:\Users\LADES\Downloads\OBJEDNÁVKA P. ŠKUNDA 27.12.- REZERVACE .xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-24 12:46 - 2022-01-24 12:46 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321 (1).exe
2022-01-24 12:43 - 2022-01-24 12:43 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321.exe
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:15 - 2022-01-22 18:15 - 000075980 ____N C:\Users\LADES\Desktop\Platba_2201315219_20220114.PDF
2022-01-22 18:15 - 2022-01-22 18:15 - 000052665 _____ C:\Users\LADES\Downloads\CEZ_doklady.zip
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-21 16:18 - 2022-01-21 16:18 - 000083322 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX4507_20220120.pdf
2022-01-21 14:03 - 2022-01-21 14:03 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060.pdf
2022-01-20 15:11 - 2022-01-20 15:11 - 000034686 _____ C:\Users\LADES\Downloads\invoice_22000051.pdf
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-19 16:47 - 2022-01-19 16:47 - 000085355 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX3825_20220117.pdf
2022-01-19 15:43 - 2022-01-19 15:44 - 000034713 _____ C:\Users\LADES\Downloads\invoice_22000038.pdf
2022-01-19 15:35 - 2022-01-19 15:35 - 000035307 _____ C:\Users\LADES\Downloads\invoice_22000044.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 22:06 - 2022-01-16 22:06 - 000066037 _____ C:\Users\LADES\Downloads\ShipmentLabel_D20220116T220633.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 19:37 - 2022-01-11 19:37 - 000008448 _____ C:\Users\LADES\Desktop\Doobjednávka DJ.xlsx
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-07 10:23 - 2022-01-07 10:23 - 000009601 _____ C:\Users\LADES\Desktop\Doobjednávka Flora Jaro 2022.xlsx
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-04 19:02 - 000009647 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-04 08:45 - 000009750 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 14:55 - 003946998 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 15:33 - 2018-10-22 20:39 - 000025600 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 15:31 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 15:21 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 15:09 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 14:33 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-29 08:51 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-26 20:35 - 2021-09-26 19:50 - 000009923 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-23 16:32 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-23 16:31 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-23 16:31 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-23 16:31 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-23 16:30 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF

==================== Files in the root of some directories ========

2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 15:35:40)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Seznam Software (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\SeznamInstall) (Version: - Seznam.cz)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"

==================== Loaded Modules (Whitelisted) =============

2014-09-08 12:38 - 2014-09-08 12:38 - 000051200 _____ () [File not signed] C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

23-01-2022 16:48:35 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (01/28/2022 08:32:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.

Error: (01/27/2022 02:31:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.

Error: (01/26/2022 08:03:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.

Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Presentation Foundation Font Cache 3.0.0.0 bylo dosaženo časového limitu (30000 ms).

Error: (01/24/2022 03:15:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.

Error: (01/24/2022 01:54:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/24/2022 12:40:05 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-H71FTDD)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}


CodeIntegrity:
===============
Date: 2022-01-29 13:03:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\setup\uat_2956.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.

Date: 2022-01-29 11:10:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\x86\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 51%
Total physical RAM: 8054.89 MB
Available physical RAM: 3870.32 MB
Total Virtual: 9334.89 MB
Available Virtual: 4140.49 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:231.93 GB) (Free:79.36 GB) NTFS

\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)

==================== End of Addition.txt =======================

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 16:51
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 17:17
od Kaliban
Zde logy:

# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:24
# OS: Windows 10 Pro
# Scanned: 32022
# Detected: 20


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

PUP.Optional.AdvancedSystemCare C:\ProgramData\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.Seznam.cz C:\Program Files (x86)\Seznam.cz
PUP.Optional.Seznam.cz C:\Users\LADES\AppData\Roaming\Seznam.cz

***** [ Files ] *****

PUP.Optional.Legacy C:\END

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.Legacy HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Legacy HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
PUP.Optional.Seznam.cz HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
PUP.Optional.Seznam.cz HKCU\Software\Seznam.cz
PUP.Optional.Seznam.cz HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
PUP.Optional.Seznam.cz HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce

***** [ Chromium (and derivatives) ] *****

PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.ASUSProductRegistration Folder C:\Program Files (x86)\ASUS\APRP
Preinstalled.ASUSProductRegistration Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:10
# OS: Windows 10 Pro
# Cleaned: 18
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files (x86)\Seznam.cz
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\Seznam.cz

***** [ Files ] *****

Deleted C:\END

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
Deleted HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
Deleted HKCU\Software\Seznam.cz
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce

***** [ Chromium (and derivatives) ] *****

Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [3262 octets] - [29/01/2022 17:08:34]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 17:53
od Rudy
OK. Dejte nové logy FRST+Addition.

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 18:07
od Kaliban
Zde nové logy:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 17:54:42)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <24>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223

Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]

FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 17:54 - 2022-01-29 17:56 - 000023447 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 17:37 - 2022-01-29 17:38 - 000000000 __RHD C:\WINDOWS\KMSAutoS
2022-01-29 17:06 - 2022-01-29 17:06 - 008540344 _____ (Malwarebytes) C:\Users\LADES\Downloads\adwcleaner_8.3.1.exe
2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-29 17:43 - 000009829 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-29 17:43 - 000009939 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 17:07 - 003947029 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-01-29 17:55 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 17:52 - 2021-08-18 19:11 - 000010630 _____ C:\Users\LADES\Desktop\Kůže Itálie.xlsx
2022-01-29 17:39 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 17:34 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 17:31 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-29 17:30 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-29 17:29 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-29 17:29 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-29 17:29 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-29 17:28 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-29 17:14 - 2017-06-14 17:21 - 000000000 ____D C:\Program Files (x86)\ASUS
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\Users\LADES\AppData\Roaming\IObit
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\ProgramData\IObit
2022-01-29 17:09 - 2018-10-22 21:18 - 000000000 ____D C:\AdwCleaner
2022-01-29 17:02 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 16:02 - 2021-09-26 19:50 - 000009915 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF

==================== Files in the root of some directories ========

2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 17:57:19)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

23-01-2022 16:48:35 Naplánovaný kontrolní bod
29-01-2022 17:12:12 AdwCleaner_BeforeCleaning_29/01/2022_17:12:11

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Monitor Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Content Protection HECI Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba HP Print Scan Doctor Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) HD Graphics Control Panel Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AdobeUpdateService byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===============
Date: 2022-01-29 17:36:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-01-29 17:31:50
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 61%
Total physical RAM: 8054.89 MB
Available physical RAM: 3129.64 MB
Total Virtual: 9334.89 MB
Available Virtual: 4589.62 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:231.93 GB) (Free:78.69 GB) NTFS

\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)

==================== End of Addition.txt =======================

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 18:59
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Tasks\KMSAuto
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]

EmptyTemp:
End
Uložte do C:\Users\LADES\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 20:14
od Kaliban
Fix result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 20:01:25) Run:1
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Tasks\KMSAuto
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION => restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"Edge Notifications:" => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.1 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.8 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.11 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.12 => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\WINDOWS\system32\Tasks\KMSAuto => moved successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
C:\ProgramData\TEMP => ":6B27E200" ADS removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18057340 B
Java, Flash, Steam htmlcache => 59799199 B
Windows/system/drivers => 10349262 B
Edge => 0 B
Chrome => 377234182 B
Firefox => 11262684 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3994 B
NetworkService => 3994 B
LADES => 16728322 B

RecycleBin => 70771 B
EmptyTemp: => 471.9 MB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-01-2022 20:12:28)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 20:12:28 ====

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 20:48
od Rudy
Smazáno. Nastala nějaká změna?

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 20:50
od Kaliban
PC je teď rozhodně pružnější, i internet, ale stále to má do dokonalosti značný kus cesty :o

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 21:49
od Rudy
Zkuste ještě defragmenrovat disk.

Re: Extra pomalé pc a internet

Napsal: 29 led 2022 22:17
od Kaliban
To už jsem provedl několikrát a efekt bohužel žádný ...

Re: Extra pomalé pc a internet

Napsal: 30 led 2022 11:22
od Rudy
Můžeme ještě vyčistit prohlížeče. Spusťte postupně tyto utility:

1. Stahnete Zoek.exe https://www.edisk.cz/stahni/21334/zoek.rar_1.3MB.html/ a ulozte jej na plochu

Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize




autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;





Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.

a

2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.

Re: Extra pomalé pc a internet

Napsal: 31 led 2022 20:48
od Kaliban
Zatím se nic nedaří získat volný slot na stažení prográmku Zoek ....

Re: Extra pomalé pc a internet

Napsal: 31 led 2022 20:53
od Rudy
Tak zkuste JRT a pak se pokuste stáhnout Zoek. Pokud se to nepodaří, stáhněte odtud: https://uloz.to/tamhle/Ql0nncy32Csn#!ZG ... udZGx1Mt== .

Re: Extra pomalé pc a internet

Napsal: 01 úno 2022 20:58
od Kaliban
Log Zoek 1

Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by LADES on 01.02.2022 at 20:15:35,33.
Microsoft Windows 10 Pro 10.0.19041 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\LADES\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

01.02.2022 20:19:22 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\VideoLAN deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\KASTNER software deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow deleted successfully
C:\Users\LADES\AppData\Local\Blizzard deleted successfully
C:\Users\LADES\AppData\Local\CrashDumps deleted successfully
C:\Users\LADES\AppData\Local\DBG deleted successfully
C:\Users\LADES\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully

==== Deleting CLSID Registry Keys ======================

==== Deleting CLSID Registry Values ======================

=== Deleting Services ============

==== FireFox Fix ======================

Deleted from C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:

Added to C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Deleting Files \ Folders ======================

C:\PROGRA~2\VideoLAN not found
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} not found
C:\found.000 deleted
C:\PROGRA~3\ProductData deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\LADES\AppData\Local\oobelibMkey.log deleted
C:\Users\LADES\AppData\Local\cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM21FAD.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24EA0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM286F.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29094.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2ABBE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2D0BA.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2EC27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2F903.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-1394-2358-138682.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd2ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaecb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3523.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3534.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3536.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e354a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3560.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3571.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3573.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3575.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3587.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3599.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432537.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4326b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43274e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43276f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432793.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43280a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43281c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c6e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c721.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c752.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c85a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c86b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c908.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e586b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e59aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5a29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5c7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5fbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e600f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e60ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b243.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b245.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b257.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16101f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161033.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161047.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161049.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16104b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161076.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161087.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161089.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16109f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-1610a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ac0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ae1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617c20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1351bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1363d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-136efd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137335.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb579.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb57b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb58d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb60a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb66a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb708.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb71a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb73b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb76c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb78d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eec7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eed1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eef8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef5e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef619.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef65a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef66c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef69c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef710.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef785.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef797.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef799.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242edb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242efe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf062.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf6cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf877.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf8f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf9d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfa42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfcc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfd53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0024.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d00d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0180.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d01ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d026e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d02ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d038b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d061e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d08b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0a48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117412.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117414.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117427.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117429.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11742b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11743d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11745e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117472.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117493.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117495.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117497.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bce6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcfb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bd0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c078a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0865.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0876.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0888.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c089a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c090f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0971.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c09c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f109.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f11f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f123.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f138.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f13a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f150.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a1b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a3d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a453a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a4cfc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a52bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5935.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5ef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6484.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6aa0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a712a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7e0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8341.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8883.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a93f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a9923.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa59a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286ada.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286bea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286c2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286da9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286dcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286eee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f800.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f814.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f837.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f84a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f870.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f872.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f885.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f887.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f889.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d792.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d81e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d833.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474829.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47484a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47485c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47486d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47487f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474906.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47494a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47498b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fca0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fce4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685598.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68560d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68564e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68566f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685715.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685717.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685729.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68574e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68576f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df76e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df7be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df86c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df8cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df91c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df98b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df9eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfa5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfaca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfcf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfd93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfeb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dff21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dffc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169592.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169594.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd061.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd083.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd21f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd25f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd34e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd35f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd3ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd43e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd450.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cdd89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cddaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cde1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a526.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a538.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a54a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a56f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a61f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a77d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f701.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f712.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f714.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f716.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f740.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f742.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f744.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f755.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f757.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f759.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacfd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dad3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadcf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dade0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daee0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22bffaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c001e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c005f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c01f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0297.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c030d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c031e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c036e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c04a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0509.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0549.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c058a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ed8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145eea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d209.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d220.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aa5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ab7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ac9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8afb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7479.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d748a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7629.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d764a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d766b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d768c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d770f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d775f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7407.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7459.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b746b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b752e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b754f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7622.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7644.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7675.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7696.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7738.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70b9ad4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba19d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba4ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70baa1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bade7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb3b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bc05c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bca8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd5de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd813.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdc6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdedd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be23c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be8a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70beca1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bef23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156215.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156255.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1562d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156326.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156367.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156388.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1563e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156469.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15650d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15653e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161e1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161f7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162058.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162106.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162175.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1621b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162225.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162308.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162319.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1623b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162496.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd471c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd472d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd474f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4774.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd479f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ba14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bac1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bbd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c545.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ca1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cbca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cc87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113880.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113893.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113905.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113928.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11392a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11394b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11395d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11397e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fb26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fcc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fdcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25ff93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2601a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2603dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26045c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26048d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26050c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2605aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260697.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26097b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260ae4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aeaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91af03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b08c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b514.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b787.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b7a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf221.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf2af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf36d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf46d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf6b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf943.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfb49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfbd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfca9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfce9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfd78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfdc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac6769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac7b8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac8fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac968d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9aca601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acb1bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc0ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc7b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd16e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd19f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bba1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bc15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bda3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14becd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11600d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11604d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11609d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1160be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11610f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116141.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116172.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116194.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11620b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116374.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116396.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1163e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14370a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14372b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143764.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14377a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d00f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d023.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d025.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d027.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d039.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d050.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d052.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d066.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d068.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d06a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d080.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d082.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3e71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3faf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d403e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d407e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d40af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d416d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d422a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d43b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d44ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d47fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5155.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d536a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5457.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5488.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d54d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5557.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d55b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625de4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625ed2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625f51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626022.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626044.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626055.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626067.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62628c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62679f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-627f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-628feb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62905b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6290f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6291c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d234.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d248.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d26f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d273.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d285.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d287.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d28b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d302.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978b65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978cad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978ccf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978d00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4944.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4987.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4aa3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ac4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ae5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4af7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4b28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4bc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3dff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719de2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb2fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb320.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb381.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb458.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb54d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb55e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e420.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e422.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e433.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e445.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-409fff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a020.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a140.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a161.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a203.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a224.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a286.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a32e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a340.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426785c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426788d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426789f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426791a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426792c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267951.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267963.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267974.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217126.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217159.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21716a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21719b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217210.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217241.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21730b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21733c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21735d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9aa4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9ac5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9af6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9bbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9dc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048756.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404877b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048802.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048804.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31709f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31710d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125ee9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126004.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126139.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12617a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12618b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12619d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12624b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1262ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1264cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181801.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181803.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181815.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181817.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181819.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18181b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181844.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181856.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181858.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0447.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0468.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a04ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a050a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a051c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a057c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a060e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0620.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0631.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0653.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0674.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0676.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0688.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-1869fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ab9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186afa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50dff8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e085.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e2b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e331.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e333.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e345.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e385.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e3a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdac8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f007.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f042.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f171.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f192.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f206.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f237.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f258.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f2ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3960.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3962.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3964.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3968.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f396a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3991.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3993.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3995.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145105.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145132.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145149.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14515b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14516d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0808.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c080a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0834.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0838.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348091.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348093.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348095.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349d79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349daa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349eaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ee3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349f14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da99f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daa03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daaff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dabb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dace8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dad67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204cda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204ceb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204db7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204de8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c971a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c973f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9751.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9753.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9765.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c978a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97e0.tmp deleted