
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Extra pomalé pc a internet
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Extra pomalé pc a internet
Ahoj,
už nějak čas mi extra pomalu jede pc a to nemluvím o rychlosti netu, kdy načtení stránky trvá šíleně dlouho nebo se dokonce úplně zastaví a za chvíli se zase rozjede.
Logy přikládám, děkuji za případnou pomoc.
Kal
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 15:29:27)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <5>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <18>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] (Seznam.cz, a.s. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\LADES\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [109808 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520 2015-05-14] (ASUSTeK Computer Inc. -> ) [File not signed]
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223
Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]
FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-04-07]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 15:15 - 2022-01-29 15:15 - 000000165 ____H C:\Users\LADES\Desktop\~$Kůže Itálie.xlsx
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-27 18:12 - 2022-01-27 18:12 - 000034468 _____ C:\Users\LADES\Downloads\invoice_22000075.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034574 _____ C:\Users\LADES\Downloads\invoice_22000076.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034532 _____ C:\Users\LADES\Downloads\invoice_22000074.pdf
2022-01-27 18:09 - 2022-01-27 18:09 - 000034879 _____ C:\Users\LADES\Downloads\invoice_22000095.pdf
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-26 18:53 - 2022-01-26 18:53 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060 (1).pdf
2022-01-26 18:45 - 2022-01-26 18:45 - 000034530 _____ C:\Users\LADES\Downloads\invoice_22000069.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087 (1).pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035316 _____ C:\Users\LADES\Downloads\invoice_22000085.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035240 _____ C:\Users\LADES\Downloads\invoice_22000080.pdf
2022-01-26 10:22 - 2022-01-26 10:22 - 000000249 _____ C:\Users\LADES\Downloads\orders-22000085.csv
2022-01-26 10:21 - 2022-01-26 10:21 - 000034570 _____ C:\Users\LADES\Downloads\invoice_22000081.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034618 _____ C:\Users\LADES\Downloads\invoice_22000061.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034526 _____ C:\Users\LADES\Downloads\invoice_22000064.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034423 _____ C:\Users\LADES\Downloads\invoice_22000065.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034534 _____ C:\Users\LADES\Downloads\invoice_22000058.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034490 _____ C:\Users\LADES\Downloads\invoice_22000063.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034600 _____ C:\Users\LADES\Downloads\invoice_22000059.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034531 _____ C:\Users\LADES\Downloads\invoice_22000050.pdf
2022-01-25 20:36 - 2022-01-25 20:36 - 000034625 _____ C:\Users\LADES\Downloads\invoice_22000048.pdf
2022-01-25 20:34 - 2022-01-25 20:34 - 000034434 _____ C:\Users\LADES\Downloads\invoice_22000046.pdf
2022-01-25 20:33 - 2022-01-25 20:33 - 000034561 _____ C:\Users\LADES\Downloads\invoice_22000062.pdf
2022-01-25 20:32 - 2022-01-25 20:32 - 000034432 _____ C:\Users\LADES\Downloads\invoice_22000033.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034571 _____ C:\Users\LADES\Downloads\invoice_22000036.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034515 _____ C:\Users\LADES\Downloads\invoice_22000042.pdf
2022-01-25 20:25 - 2022-01-25 20:25 - 000010595 _____ C:\Users\LADES\Downloads\511033371.csv
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 20:16 - 2022-01-25 20:16 - 000014796 _____ C:\Users\LADES\Downloads\OBJEDNÁVKA P. ŠKUNDA 27.12.- REZERVACE .xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-24 12:46 - 2022-01-24 12:46 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321 (1).exe
2022-01-24 12:43 - 2022-01-24 12:43 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321.exe
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:15 - 2022-01-22 18:15 - 000075980 ____N C:\Users\LADES\Desktop\Platba_2201315219_20220114.PDF
2022-01-22 18:15 - 2022-01-22 18:15 - 000052665 _____ C:\Users\LADES\Downloads\CEZ_doklady.zip
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-21 16:18 - 2022-01-21 16:18 - 000083322 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX4507_20220120.pdf
2022-01-21 14:03 - 2022-01-21 14:03 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060.pdf
2022-01-20 15:11 - 2022-01-20 15:11 - 000034686 _____ C:\Users\LADES\Downloads\invoice_22000051.pdf
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-19 16:47 - 2022-01-19 16:47 - 000085355 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX3825_20220117.pdf
2022-01-19 15:43 - 2022-01-19 15:44 - 000034713 _____ C:\Users\LADES\Downloads\invoice_22000038.pdf
2022-01-19 15:35 - 2022-01-19 15:35 - 000035307 _____ C:\Users\LADES\Downloads\invoice_22000044.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 22:06 - 2022-01-16 22:06 - 000066037 _____ C:\Users\LADES\Downloads\ShipmentLabel_D20220116T220633.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 19:37 - 2022-01-11 19:37 - 000008448 _____ C:\Users\LADES\Desktop\Doobjednávka DJ.xlsx
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-07 10:23 - 2022-01-07 10:23 - 000009601 _____ C:\Users\LADES\Desktop\Doobjednávka Flora Jaro 2022.xlsx
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-04 19:02 - 000009647 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-04 08:45 - 000009750 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 14:55 - 003946998 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 15:33 - 2018-10-22 20:39 - 000025600 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 15:31 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 15:21 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 15:09 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 14:33 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-29 08:51 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-26 20:35 - 2021-09-26 19:50 - 000009923 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-23 16:32 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-23 16:31 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-23 16:31 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-23 16:31 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-23 16:30 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
==================== Files in the root of some directories ========
2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 15:35:40)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Seznam Software (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\SeznamInstall) (Version: - Seznam.cz)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
==================== Loaded Modules (Whitelisted) =============
2014-09-08 12:38 - 2014-09-08 12:38 - 000051200 _____ () [File not signed] C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
23-01-2022 16:48:35 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
System errors:
=============
Error: (01/28/2022 08:32:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/27/2022 02:31:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/26/2022 08:03:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Presentation Foundation Font Cache 3.0.0.0 bylo dosaženo časového limitu (30000 ms).
Error: (01/24/2022 03:15:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/24/2022 01:54:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/24/2022 12:40:05 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-H71FTDD)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
CodeIntegrity:
===============
Date: 2022-01-29 13:03:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\setup\uat_2956.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2022-01-29 11:10:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\x86\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 51%
Total physical RAM: 8054.89 MB
Available physical RAM: 3870.32 MB
Total Virtual: 9334.89 MB
Available Virtual: 4140.49 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.93 GB) (Free:79.36 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)
==================== End of Addition.txt =======================
už nějak čas mi extra pomalu jede pc a to nemluvím o rychlosti netu, kdy načtení stránky trvá šíleně dlouho nebo se dokonce úplně zastaví a za chvíli se zase rozjede.
Logy přikládám, děkuji za případnou pomoc.
Kal
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 15:29:27)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <5>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <18>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2111.12605.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] (Seznam.cz, a.s. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\LADES\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [109808 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520 2015-05-14] (ASUSTeK Computer Inc. -> ) [File not signed]
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223
Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]
FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-04-07]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 15:15 - 2022-01-29 15:15 - 000000165 ____H C:\Users\LADES\Desktop\~$Kůže Itálie.xlsx
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-27 18:12 - 2022-01-27 18:12 - 000034468 _____ C:\Users\LADES\Downloads\invoice_22000075.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034574 _____ C:\Users\LADES\Downloads\invoice_22000076.pdf
2022-01-27 18:11 - 2022-01-27 18:11 - 000034532 _____ C:\Users\LADES\Downloads\invoice_22000074.pdf
2022-01-27 18:09 - 2022-01-27 18:09 - 000034879 _____ C:\Users\LADES\Downloads\invoice_22000095.pdf
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-26 18:53 - 2022-01-26 18:53 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060 (1).pdf
2022-01-26 18:45 - 2022-01-26 18:45 - 000034530 _____ C:\Users\LADES\Downloads\invoice_22000069.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035415 _____ C:\Users\LADES\Downloads\invoice_22000087 (1).pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035316 _____ C:\Users\LADES\Downloads\invoice_22000085.pdf
2022-01-26 18:33 - 2022-01-26 18:33 - 000035240 _____ C:\Users\LADES\Downloads\invoice_22000080.pdf
2022-01-26 10:22 - 2022-01-26 10:22 - 000000249 _____ C:\Users\LADES\Downloads\orders-22000085.csv
2022-01-26 10:21 - 2022-01-26 10:21 - 000034570 _____ C:\Users\LADES\Downloads\invoice_22000081.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034618 _____ C:\Users\LADES\Downloads\invoice_22000061.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034526 _____ C:\Users\LADES\Downloads\invoice_22000064.pdf
2022-01-25 20:40 - 2022-01-25 20:40 - 000034423 _____ C:\Users\LADES\Downloads\invoice_22000065.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034534 _____ C:\Users\LADES\Downloads\invoice_22000058.pdf
2022-01-25 20:39 - 2022-01-25 20:39 - 000034490 _____ C:\Users\LADES\Downloads\invoice_22000063.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034600 _____ C:\Users\LADES\Downloads\invoice_22000059.pdf
2022-01-25 20:38 - 2022-01-25 20:38 - 000034531 _____ C:\Users\LADES\Downloads\invoice_22000050.pdf
2022-01-25 20:36 - 2022-01-25 20:36 - 000034625 _____ C:\Users\LADES\Downloads\invoice_22000048.pdf
2022-01-25 20:34 - 2022-01-25 20:34 - 000034434 _____ C:\Users\LADES\Downloads\invoice_22000046.pdf
2022-01-25 20:33 - 2022-01-25 20:33 - 000034561 _____ C:\Users\LADES\Downloads\invoice_22000062.pdf
2022-01-25 20:32 - 2022-01-25 20:32 - 000034432 _____ C:\Users\LADES\Downloads\invoice_22000033.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034571 _____ C:\Users\LADES\Downloads\invoice_22000036.pdf
2022-01-25 20:31 - 2022-01-25 20:31 - 000034515 _____ C:\Users\LADES\Downloads\invoice_22000042.pdf
2022-01-25 20:25 - 2022-01-25 20:25 - 000010595 _____ C:\Users\LADES\Downloads\511033371.csv
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 20:16 - 2022-01-25 20:16 - 000014796 _____ C:\Users\LADES\Downloads\OBJEDNÁVKA P. ŠKUNDA 27.12.- REZERVACE .xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-24 12:46 - 2022-01-24 12:46 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321 (1).exe
2022-01-24 12:43 - 2022-01-24 12:43 - 002254024 _____ (Oracle Corporation) C:\Users\LADES\Downloads\JavaSetup8u321.exe
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:15 - 2022-01-22 18:15 - 000075980 ____N C:\Users\LADES\Desktop\Platba_2201315219_20220114.PDF
2022-01-22 18:15 - 2022-01-22 18:15 - 000052665 _____ C:\Users\LADES\Downloads\CEZ_doklady.zip
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-21 16:18 - 2022-01-21 16:18 - 000083322 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX4507_20220120.pdf
2022-01-21 14:03 - 2022-01-21 14:03 - 000034488 _____ C:\Users\LADES\Downloads\invoice_22000060.pdf
2022-01-20 15:11 - 2022-01-20 15:11 - 000034686 _____ C:\Users\LADES\Downloads\invoice_22000051.pdf
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-19 16:47 - 2022-01-19 16:47 - 000085355 _____ C:\Users\LADES\Downloads\Vypis_531533XXXXXX3825_20220117.pdf
2022-01-19 15:43 - 2022-01-19 15:44 - 000034713 _____ C:\Users\LADES\Downloads\invoice_22000038.pdf
2022-01-19 15:35 - 2022-01-19 15:35 - 000035307 _____ C:\Users\LADES\Downloads\invoice_22000044.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 22:06 - 2022-01-16 22:06 - 000066037 _____ C:\Users\LADES\Downloads\ShipmentLabel_D20220116T220633.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 19:37 - 2022-01-11 19:37 - 000008448 _____ C:\Users\LADES\Desktop\Doobjednávka DJ.xlsx
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-07 10:23 - 2022-01-07 10:23 - 000009601 _____ C:\Users\LADES\Desktop\Doobjednávka Flora Jaro 2022.xlsx
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-04 19:02 - 000009647 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-04 08:45 - 000009750 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 14:55 - 003946998 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 15:33 - 2018-10-22 20:39 - 000025600 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 15:31 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 15:21 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 15:09 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 14:33 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-29 08:51 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-26 20:35 - 2021-09-26 19:50 - 000009923 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-23 16:32 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-23 16:31 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-23 16:31 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-23 16:31 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-23 16:30 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
==================== Files in the root of some directories ========
2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 15:35:40)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Seznam Software (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\SeznamInstall) (Version: - Seznam.cz)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
==================== Loaded Modules (Whitelisted) =============
2014-09-08 12:38 - 2014-09-08 12:38 - 000051200 _____ () [File not signed] C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "seznam-listicka-distribuce"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "cz.seznam.software.szndesktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
23-01-2022 16:48:35 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
System errors:
=============
Error: (01/28/2022 08:32:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/27/2022 02:31:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/26/2022 08:03:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (01/25/2022 07:20:46 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Windows Presentation Foundation Font Cache 3.0.0.0 bylo dosaženo časového limitu (30000 ms).
Error: (01/24/2022 03:15:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x8024200b): HP - USB - 12/10/2018 12:00:00 AM - 49.0.4411.18331.
Error: (01/24/2022 01:54:21 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/24/2022 12:40:05 PM) (Source: DCOM) (EventID: 10000) (User: DESKTOP-H71FTDD)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
CodeIntegrity:
===============
Date: 2022-01-29 13:03:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\AVAST Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\setup\uat_2956.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-01-29 13:03:06
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
Date: 2022-01-29 11:10:49
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\x86\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 51%
Total physical RAM: 8054.89 MB
Available physical RAM: 3870.32 MB
Total Virtual: 9334.89 MB
Available Virtual: 4140.49 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.93 GB) (Free:79.36 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)
==================== End of Addition.txt =======================
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
Zde logy:
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:24
# OS: Windows 10 Pro
# Scanned: 32022
# Detected: 20
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
PUP.Optional.AdvancedSystemCare C:\ProgramData\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.Seznam.cz C:\Program Files (x86)\Seznam.cz
PUP.Optional.Seznam.cz C:\Users\LADES\AppData\Roaming\Seznam.cz
***** [ Files ] *****
PUP.Optional.Legacy C:\END
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
PUP.Optional.Legacy HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Legacy HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
PUP.Optional.Seznam.cz HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
PUP.Optional.Seznam.cz HKCU\Software\Seznam.cz
PUP.Optional.Seznam.cz HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
PUP.Optional.Seznam.cz HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.ASUSProductRegistration Folder C:\Program Files (x86)\ASUS\APRP
Preinstalled.ASUSProductRegistration Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:10
# OS: Windows 10 Pro
# Cleaned: 18
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
Deleted C:\Program Files (x86)\Seznam.cz
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\Seznam.cz
***** [ Files ] *****
Deleted C:\END
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
Deleted HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
Deleted HKCU\Software\Seznam.cz
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce
***** [ Chromium (and derivatives) ] *****
Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [3262 octets] - [29/01/2022 17:08:34]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:24
# OS: Windows 10 Pro
# Scanned: 32022
# Detected: 20
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
PUP.Optional.AdvancedSystemCare C:\ProgramData\IObit\Advanced SystemCare
PUP.Optional.AdvancedSystemCare C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
PUP.Optional.Seznam.cz C:\Program Files (x86)\Seznam.cz
PUP.Optional.Seznam.cz C:\Users\LADES\AppData\Roaming\Seznam.cz
***** [ Files ] *****
PUP.Optional.Legacy C:\END
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
PUP.Optional.Legacy HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Legacy HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
PUP.Optional.Seznam.cz HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
PUP.Optional.Seznam.cz HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
PUP.Optional.Seznam.cz HKCU\Software\Seznam.cz
PUP.Optional.Seznam.cz HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
PUP.Optional.Seznam.cz HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce
***** [ Chromium (and derivatives) ] *****
PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
PUP.Optional.Seznam.cz Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.ASUSProductRegistration Folder C:\Program Files (x86)\ASUS\APRP
Preinstalled.ASUSProductRegistration Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.3.1.0
# -------------------------------
# Build: 11-18-2021
# Database: 2021-12-02.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 01-29-2022
# Duration: 00:00:10
# OS: Windows 10 Pro
# Cleaned: 18
# Failed: 0
***** [ Services ] *****
No malicious services cleaned.
***** [ Folders ] *****
Deleted C:\Program Files (x86)\Seznam.cz
Deleted C:\ProgramData\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\IObit\Advanced SystemCare
Deleted C:\Users\LADES\AppData\Roaming\Seznam.cz
***** [ Files ] *****
Deleted C:\END
***** [ DLL ] *****
No malicious DLLs cleaned.
***** [ WMI ] *****
No malicious WMI cleaned.
***** [ Shortcuts ] *****
No malicious shortcuts cleaned.
***** [ Tasks ] *****
No malicious tasks cleaned.
***** [ Registry ] *****
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SeznamInstall
Deleted HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
Deleted HKCU\Software\Seznam.cz
Deleted HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\utilman.exe
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce
***** [ Chromium (and derivatives) ] *****
Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Email - bgjpfhpjcgdppjbgnpnjllokbmcdllig
Deleted Seznam doplněk - Esko - olfeabkoenfaoljndfecamgilllcpiak
***** [ Chromium URLs ] *****
No malicious Chromium URLs cleaned.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries cleaned.
***** [ Firefox URLs ] *****
No malicious Firefox URLs cleaned.
***** [ Hosts File Entries ] *****
No malicious hosts file entries cleaned.
***** [ Preinstalled Software ] *****
No Preinstalled Software cleaned.
*************************
[+] Delete Tracing Keys
[+] Reset Winsock
*************************
AdwCleaner[S00].txt - [3262 octets] - [29/01/2022 17:08:34]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
OK. Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
Zde nové logy:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 17:54:42)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <24>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223
Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]
FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 17:54 - 2022-01-29 17:56 - 000023447 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 17:37 - 2022-01-29 17:38 - 000000000 __RHD C:\WINDOWS\KMSAutoS
2022-01-29 17:06 - 2022-01-29 17:06 - 008540344 _____ (Malwarebytes) C:\Users\LADES\Downloads\adwcleaner_8.3.1.exe
2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-29 17:43 - 000009829 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-29 17:43 - 000009939 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 17:07 - 003947029 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 17:55 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 17:52 - 2021-08-18 19:11 - 000010630 _____ C:\Users\LADES\Desktop\Kůže Itálie.xlsx
2022-01-29 17:39 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 17:34 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 17:31 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-29 17:30 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-29 17:29 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-29 17:29 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-29 17:29 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-29 17:28 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-29 17:14 - 2017-06-14 17:21 - 000000000 ____D C:\Program Files (x86)\ASUS
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\Users\LADES\AppData\Roaming\IObit
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\ProgramData\IObit
2022-01-29 17:09 - 2018-10-22 21:18 - 000000000 ____D C:\AdwCleaner
2022-01-29 17:02 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 16:02 - 2021-09-26 19:50 - 000009915 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
==================== Files in the root of some directories ========
2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 17:57:19)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
23-01-2022 16:48:35 Naplánovaný kontrolní bod
29-01-2022 17:12:12 AdwCleaner_BeforeCleaning_29/01/2022_17:12:11
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
System errors:
=============
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Monitor Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Content Protection HECI Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba HP Print Scan Doctor Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) HD Graphics Control Panel Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AdobeUpdateService byla neočekávaně ukončena. Tento stav nastal již 1krát.
CodeIntegrity:
===============
Date: 2022-01-29 17:36:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-01-29 17:31:50
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 61%
Total physical RAM: 8054.89 MB
Available physical RAM: 3129.64 MB
Total Virtual: 9334.89 MB
Available Virtual: 4589.62 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.93 GB) (Free:78.69 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)
==================== End of Addition.txt =======================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-01-2022
Ran by LADES (administrator) on DESKTOP-H71FTDD (29-01-2022 17:54:42)
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Platform: Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <24>
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [157464 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation)
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4110568 2021-07-21] (Valve -> Valve Corporation)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [114017640 2021-08-10] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35320448 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33264096 2021-08-07] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\MountPoints2: {170bb6ad-76bb-11e7-bffa-2c4d544f500d} - "E:\WD SmartWare.exe" autoplay=true
HKLM\...\Windows x64\Print Processors\sht12cPC: C:\Windows\System32\spool\prtprocs\x64\sht12cpc.dll [82408 2019-07-21] (联想图像(天津)科技有限公司 -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sht12c Langmon: C:\WINDOWS\system32\sht12clm.dll [61416 2019-07-21] (联想图像(天津)科技有限公司 -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\97.0.4692.99\Installer\chrmstp.exe [2022-01-21] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\88.0.7980.150\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
Startup: C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk [2017-06-14]
ShortcutTarget: Výřezy obrazovky a spuštění aplikace OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07FADDA3-54B3-46A9-A922-C1DCFB182B89} - System32\Tasks\CCleanerSkipUAC - LADES => C:\Program Files\CCleaner\CCleaner.exe [29453952 2022-01-25] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1E8C4F06-4685-4455-9A4D-FA063F5926C7} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {2BD69EFF-BB10-4EAE-B248-76A8C587E33D} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {6048E0AA-410E-4F73-972B-DA25D71224B2} - System32\Tasks\KMSAuto => C:\WINDOWS\KMSAuto.exe [6166528 2016-06-21] (Ratiborus, MSFree Inc.) [File not signed]
Task: {7325A93B-1700-4BCF-90C7-5CE3F0F82155} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {7DE61AB7-D0AF-4662-B040-F4B5E7485D91} - System32\Tasks\EPM Preload => C:\Program Files (x86)\HP\Easy Printer Manager\EPM2DotNetHandler.exe [1339976 2019-01-21] (HP Inc. -> )
Task: {93893443-66DE-45E4-B718-7CE7BB29FCD0} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {AA886BB3-9854-40C5-8AA0-08AE178B3E59} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4969240 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {ADC99467-2799-4A62-BB62-5254C7149705} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-01-25] (Piriform Software Ltd -> Piriform)
Task: {B257AAB2-C5CB-45E4-A000-E9BA22B03A52} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E2BB1CE9-0008-423E-989E-7EF5A657FBAE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.200.55.222 81.200.55.223
Tcpip\..\Interfaces\{48793129-1d2e-4bc0-a7d1-86aa33b79fb1}: [DhcpNameServer] 81.200.55.222 81.200.55.223
Edge:
=======
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\LADES\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-29]
FireFox:
========
FF DefaultProfile: q2amntan.default
FF ProfilePath: C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default [2022-01-29]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-09] (Google Inc -> Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default [2022-01-29]
CHR Notifications: Default -> hxxps://adwords.google.com; hxxps://app.expan.do; hxxps://app.zonky.cz; hxxps://aukro.cz; hxxps://blog.seznam.cz; hxxps://business.facebook.com; hxxps://fastshare.cz; hxxps://fingood.cz; hxxps://kfc.cz; hxxps://levnocestovanicz.os.tc; hxxps://makesomethird3.com; hxxps://meet.google.com; hxxps://message-alert.info; hxxps://mylust.com; hxxps://notify.rocks; hxxps://porn555.com; hxxps://throatnose.ru; hxxps://torpeda.os.tc; hxxps://web.skype.com; hxxps://www.analdin.com; hxxps://www.csob.cz; hxxps://www.danielnytra.cz; hxxps://www.dobre-knihy.cz; hxxps://www.emimino.cz; hxxps://www.esky.cz; hxxps://www.facebook.com; hxxps://www.fyzioklinika.cz; hxxps://www.heureka.cz; hxxps://www.hudy.cz; hxxps://www.ifortuna.cz; hxxps://www.instagram.com; hxxps://www.jaknaletenky.cz; hxxps://www.kosik.cz; hxxps://www.kupi.cz; hxxps://www.lekarna.cz; hxxps://www.lgshop.cz; hxxps://www.megaknihy.cz; hxxps://www.milujemefotografii.cz; hxxps://www.oazakabelek.cz; hxxps://www.podnikatel.cz; hxxps://www.prodejhned.cz; hxxps://www.puritas.cz; hxxps://www.slevomat.cz; hxxps://www.tipli.cz; hxxps://www.vouchercloud.cz; hxxps://www.voyeurpissing.com; hxxps://www.xozilla.com; hxxps://www.youtube.com; hxxps://www1.news-back.com
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-25]
CHR Extension: (FoE - Helper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkagcmloachflbbkfmfiggipaelfamdf [2021-12-14]
CHR Extension: (Seznam doplněk - Esko-) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blmojkbhnkkphngknkmgccmlenfaelkd [2019-10-09]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-06-14]
CHR Extension: (Foxtrick) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2017-07-22]
CHR Extension: (Tipli do prohlížeče) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2021-05-03]
CHR Extension: (Web for Instagram plus DM) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\dgkhjjcoidmkfegigfdedmafpfemccpk [2019-11-29]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-20]
CHR Extension: (FormApps Extension) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2019-03-24]
CHR Extension: (Video DownloadHelper) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-07-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Avast AntiTrack Premium) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2021-09-22]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-01-29]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-01-29]
CHR Extension: (Prezentace) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-15]
CHR Extension: (Dokumenty) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-15]
CHR Extension: (Disk Google) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-15]
CHR Extension: (Seznam doplněk - Email) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-08-15]
CHR Extension: (YouTube) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-15]
CHR Extension: (Tabulky) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-08-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-15]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-08-15]
CHR Extension: (Gmail) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-15]
CHR Extension: (Chrome Media Router) - C:\Users\LADES\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-08-15]
CHR Profile: C:\Users\LADES\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-29]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [blmojkbhnkkphngknkmgccmlenfaelkd]
CHR HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-02-16] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8480848 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [452888 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288392 2021-03-24] (HP Inc. -> HP Inc.)
S3 MonS3Service; C:\Program Files (x86)\Common Files\Solitea\MonS3Service.exe [1694992 2020-11-17] (Solitea, a.s. -> Solitea Česká republika, a.s.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-21] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [26880 2015-11-12] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S1 netfilter2; system32\drivers\netfilter2.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 17:54 - 2022-01-29 17:56 - 000023447 _____ C:\Users\LADES\Downloads\FRST.txt
2022-01-29 17:37 - 2022-01-29 17:38 - 000000000 __RHD C:\WINDOWS\KMSAutoS
2022-01-29 17:06 - 2022-01-29 17:06 - 008540344 _____ (Malwarebytes) C:\Users\LADES\Downloads\adwcleaner_8.3.1.exe
2022-01-29 15:26 - 2022-01-29 15:26 - 002311680 _____ (Farbar) C:\Users\LADES\Downloads\FRST64.exe
2022-01-29 11:17 - 2022-01-29 11:17 - 000006463 _____ C:\Users\LADES\Downloads\DSLDP2-7104025357-20220129-111644-1625609766-potvrzeni.p7s
2022-01-26 20:06 - 2022-01-26 20:06 - 000008891 _____ C:\Users\LADES\Desktop\Klimešová elektřina.xlsx
2022-01-25 20:23 - 2022-01-25 20:23 - 000012578 _____ C:\Users\LADES\Desktop\OBJEDNÁVKA P. ŠKUNDA 25.01.- REZERVACE.xlsx
2022-01-25 08:08 - 2022-01-25 08:08 - 000004365 _____ C:\Users\LADES\Downloads\DPHKH1-7104025357-20220125-080505-1088803510-potvrzeni.p7s
2022-01-22 18:55 - 2022-01-22 18:55 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (2).xlsx
2022-01-22 18:27 - 2022-01-28 19:36 - 000023404 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2021.xlsx
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2140073372.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000215796 _____ C:\Users\LADES\Desktop\fa 1.PDF
2022-01-22 18:13 - 2022-01-22 18:13 - 000149314 _____ C:\Users\LADES\Desktop\Fa 2.PDF
2022-01-22 18:10 - 2022-01-22 18:10 - 000149314 _____ C:\Users\LADES\Downloads\Faktura_0012441492_4655366000_2144151759.PDF
2022-01-22 17:56 - 2022-01-22 17:56 - 000005083 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.p7s
2022-01-22 17:56 - 2022-01-22 17:56 - 000003562 _____ C:\Users\LADES\Downloads\DSLDP2-6904055345-20220122-175535-555706014-potvrzeni.pdf
2022-01-22 17:44 - 2022-01-22 17:44 - 000006622 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.p7s
2022-01-22 17:44 - 2022-01-22 17:44 - 000003556 _____ C:\Users\LADES\Downloads\DPHDP3-6904055345-20220122-174407-555705792-potvrzeni.pdf
2022-01-22 17:42 - 2022-01-22 17:42 - 000005070 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.p7s
2022-01-22 17:42 - 2022-01-22 17:42 - 000003557 _____ C:\Users\LADES\Downloads\DPHKH1-6904055345-20220122-174158-555705775-potvrzeni.pdf
2022-01-22 14:49 - 2022-01-22 14:49 - 000004989 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.p7s
2022-01-22 14:49 - 2022-01-22 14:49 - 000003577 _____ C:\Users\LADES\Downloads\DSLDP2-0006752110-20220122-144822-20907997-potvrzeni.pdf
2022-01-21 16:52 - 2022-01-21 16:52 - 000018294 _____ C:\Users\LADES\Downloads\seznam objednaného zboží.xlsx
2022-01-19 20:22 - 2022-01-19 20:22 - 000006648 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.p7s
2022-01-19 20:22 - 2022-01-19 20:22 - 000003572 _____ C:\Users\LADES\Downloads\DPHDP3-0006752110-20220119-202231-1088689644-potvrzeni.pdf
2022-01-19 20:18 - 2022-01-19 20:18 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.p7s
2022-01-19 20:18 - 2022-01-19 20:18 - 000003556 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-201801-1088689617-potvrzeni.pdf
2022-01-19 20:08 - 2022-01-19 20:08 - 000004768 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.p7s
2022-01-19 20:08 - 2022-01-19 20:08 - 000003555 _____ C:\Users\LADES\Downloads\DPHKH1-0006752110-20220119-200745-1088689543-potvrzeni.pdf
2022-01-17 20:06 - 2022-01-17 20:06 - 000062562 _____ C:\Users\LADES\Downloads\FA221918676.pdf
2022-01-17 16:05 - 2022-01-17 16:05 - 000489624 _____ C:\Users\LADES\Downloads\priloha_989393345_0_Vyzva_k_uhrade_zaboru.pdf
2022-01-16 21:13 - 2022-01-16 21:13 - 000005866 _____ C:\Users\LADES\Downloads\DPHDP3-7506015121-20220116-211324-1088653994-potvrzeni.p7s
2022-01-16 20:47 - 2022-01-16 20:47 - 000004314 _____ C:\Users\LADES\Downloads\DPHKH1-7506015121-20220116-204715-1088653901-potvrzeni.p7s
2022-01-16 12:26 - 2022-01-16 12:26 - 000005663 _____ C:\Users\LADES\Downloads\DSLDP2-7506015121-20220116-122548-555616502-potvrzeni.p7s
2022-01-15 22:43 - 2022-01-16 10:02 - 000010484 _____ C:\Users\LADES\Desktop\Zbroja.xlsx
2022-01-15 16:20 - 2022-01-15 16:20 - 000006367 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.p7s
2022-01-15 16:20 - 2022-01-15 16:20 - 000003565 _____ C:\Users\LADES\Downloads\DPHDP3-7708015337-20220115-161935-1625361140-potvrzeni.pdf
2022-01-15 16:14 - 2022-01-15 16:14 - 000004825 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.p7s
2022-01-15 16:14 - 2022-01-15 16:14 - 000003561 _____ C:\Users\LADES\Downloads\DPHKH1-7708015337-20220115-161332-1625361115-potvrzeni.pdf
2022-01-14 19:25 - 2022-01-14 19:25 - 000029059 _____ C:\Users\LADES\Downloads\4045978573.pdf
2022-01-12 16:37 - 2022-01-12 16:37 - 000533352 _____ C:\Users\LADES\Downloads\priloha_987999938_0_OS_OPK_ZUK_-_03-01-11_-_zabory_-_skladka.pdf
2022-01-11 14:55 - 2022-01-11 14:55 - 000475602 _____ C:\Users\LADES\Downloads\511000262.pdf
2022-01-09 22:29 - 2022-01-09 22:29 - 000125492 _____ C:\Users\LADES\Downloads\AD200_OckovaciCertifikat.zip
2022-01-08 20:58 - 2022-01-08 20:58 - 000005733 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.p7s
2022-01-08 20:58 - 2022-01-08 20:58 - 000003564 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220108-205712-1625330787-potvrzeni.pdf
2022-01-06 17:53 - 2022-01-06 17:53 - 000010338 _____ C:\Users\LADES\Desktop\Objednávka DUP_9.xlsx
2022-01-05 14:34 - 2022-01-05 14:34 - 000016096 _____ C:\Users\LADES\Downloads\priloha_984377861_0_SZ_informace_dorucovani_PDZ_fikci.pdf
2022-01-04 21:33 - 2022-01-04 21:33 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201 (1).pdf
2022-01-04 19:02 - 2022-01-29 17:43 - 000009829 _____ C:\Users\LADES\Desktop\Objednávka Flora Jaro 2022.xlsx
2022-01-04 16:30 - 2022-01-04 16:30 - 000002250 _____ C:\Users\LADES\Downloads\2021-12-02_F00994265982.csv
2022-01-04 16:29 - 2022-01-04 16:29 - 000002353 _____ C:\Users\LADES\Downloads\2022-01-03_F00994213543.csv
2022-01-04 09:30 - 2022-01-04 09:30 - 000005696 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.p7s
2022-01-04 09:30 - 2022-01-04 09:30 - 000003566 _____ C:\Users\LADES\Downloads\DSLDP2-7708015337-20220104-093002-555568772-potvrzeni.pdf
2022-01-03 20:40 - 2022-01-29 17:43 - 000009939 _____ C:\Users\LADES\Desktop\Objednávka DJ Jaro 2022.xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000023595 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:40 - 2022-01-03 18:40 - 000000165 ____H C:\Users\LADES\Downloads\~$Voda vyúčtování 2020 (1).xlsx
2022-01-03 18:23 - 2022-01-03 18:23 - 000000165 ____H C:\Users\LADES\Desktop\~$Dluhy.xlsx
2022-01-03 15:03 - 2022-01-03 15:03 - 000000165 ____H C:\Users\LADES\Desktop\~$Kabelky sklad od 1.1.2022.xlsx
2022-01-02 09:30 - 2022-01-29 17:07 - 003947029 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2022.xlsx
2021-12-31 13:17 - 2021-12-31 13:17 - 000044472 _____ C:\Users\LADES\Downloads\Výpis za rok 2020 účet 5841338201.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-29 17:55 - 2018-10-22 20:39 - 000000000 ____D C:\FRST
2022-01-29 17:52 - 2021-08-18 19:11 - 000010630 _____ C:\Users\LADES\Desktop\Kůže Itálie.xlsx
2022-01-29 17:39 - 2017-12-24 08:50 - 000000000 ____D C:\Program Files\CCleaner
2022-01-29 17:34 - 2017-06-14 17:22 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-29 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-29 17:31 - 2017-06-14 16:06 - 000000000 __SHD C:\Users\LADES\IntelGraphicsProfiles
2022-01-29 17:30 - 2017-08-16 20:06 - 000000000 ____D C:\ProgramData\AVAST Software
2022-01-29 17:29 - 2020-09-13 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-29 17:29 - 2020-09-13 10:19 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-29 17:29 - 2017-06-14 16:04 - 000000000 ____D C:\Intel
2022-01-29 17:28 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2022-01-29 17:14 - 2017-06-14 17:21 - 000000000 ____D C:\Program Files (x86)\ASUS
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\Users\LADES\AppData\Roaming\IObit
2022-01-29 17:09 - 2021-08-07 20:36 - 000000000 ____D C:\ProgramData\IObit
2022-01-29 17:09 - 2018-10-22 21:18 - 000000000 ____D C:\AdwCleaner
2022-01-29 17:02 - 2020-09-13 10:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-29 16:02 - 2021-09-26 19:50 - 000009915 _____ C:\Users\LADES\Desktop\Doktoři.xlsx
2022-01-29 15:15 - 2021-05-20 20:06 - 000000000 ____D C:\UCTO2021
2022-01-29 15:13 - 2021-12-11 22:20 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2021-04-02 19:04 - 000002716 _____ C:\WINDOWS\system32\Tasks\EPM Preload
2022-01-29 15:13 - 2020-09-13 11:01 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-29 15:13 - 2020-09-13 11:01 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-29 15:13 - 2020-09-13 11:01 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003226 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2022-01-29 15:13 - 2020-09-13 11:01 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-29 15:13 - 2020-09-13 11:01 - 000003034 _____ C:\WINDOWS\system32\Tasks\KMSAuto
2022-01-29 15:13 - 2020-09-13 11:01 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2022-01-29 15:13 - 2020-09-13 11:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-839088111-3762052009-2349125738-1001
2022-01-29 15:13 - 2020-09-13 11:01 - 000002772 _____ C:\WINDOWS\system32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-H71FTDD-LADES
2022-01-29 15:13 - 2020-09-13 11:01 - 000002612 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2022-01-29 15:13 - 2020-09-13 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-01-29 15:09 - 2021-08-19 04:57 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - LADES
2022-01-29 11:26 - 2020-11-25 21:16 - 000256917 _____ C:\Users\LADES\Desktop\Účet.xlsx
2022-01-29 10:33 - 2021-05-06 16:15 - 000009699 _____ C:\Users\LADES\Desktop\Martin půjčky.xlsx
2022-01-29 09:26 - 2018-04-05 05:00 - 000000000 ____D C:\Users\LADES\AppData\Local\AVAST Software
2022-01-29 09:00 - 2019-10-07 17:45 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2022-01-29 08:57 - 2017-06-14 19:12 - 000000000 ____D C:\Users\LADES\AppData\Local\Adobe
2022-01-29 08:56 - 2020-09-13 11:01 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-28 18:13 - 2021-06-26 14:19 - 000023581 _____ C:\Users\LADES\Downloads\Voda vyúčtování 2020.xlsx
2022-01-27 18:22 - 2021-10-26 18:00 - 000021273 _____ C:\Users\LADES\Desktop\Činnosti.xlsx
2022-01-27 14:35 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-01-27 14:34 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-01-24 14:59 - 2021-06-27 10:19 - 000039424 _____ C:\Users\LADES\Desktop\Sokolská nájemníci.xls
2022-01-24 14:35 - 2021-12-17 18:21 - 003868467 _____ C:\Users\LADES\Desktop\Kabelky sklad od 1.1.2021.xlsx
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-01-24 12:50 - 2017-06-14 19:18 - 000000000 ____D C:\Program Files (x86)\Java
2022-01-24 12:47 - 2017-06-14 19:18 - 000165600 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2022-01-22 19:34 - 2020-09-12 12:13 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-01-22 19:34 - 2020-09-12 12:13 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-01-21 16:32 - 2019-06-16 21:01 - 000011257 _____ C:\Users\LADES\Desktop\Dluhy.xlsx
2022-01-21 08:00 - 2017-06-14 17:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-01-21 08:00 - 2017-06-14 17:22 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-01-20 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2022-01-19 18:46 - 2020-09-13 10:27 - 000002377 _____ C:\Users\LADES\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-01-19 10:07 - 2020-11-17 21:51 - 000000000 ____D C:\Users\LADES\Desktop\Nahodit
2022-01-19 09:36 - 2021-06-03 21:21 - 000012091 _____ C:\Users\LADES\Desktop\Investice.xlsx
2022-01-17 15:52 - 2018-08-25 22:55 - 000000000 ____D C:\Users\LADES\AppData\Local\D3DSCache
2022-01-16 13:51 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-16 13:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2022-01-15 22:43 - 2017-06-14 17:10 - 000000000 ____D C:\Users\LADES\Desktop\Kabelky
2022-01-14 09:27 - 2018-02-22 20:13 - 000000000 ____D C:\Users\LADES\AppData\Roaming\PhotoScape
2022-01-14 09:26 - 2017-06-15 15:38 - 000000000 ____D C:\Users\LADES\AppData\Local\CrashDumps
2022-01-12 07:33 - 2017-06-15 18:46 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-12 07:28 - 2017-06-15 18:46 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 21:00 - 2021-08-07 11:52 - 000000000 ____D C:\WINDOWS\Minidump
2022-01-08 20:04 - 2020-02-08 21:46 - 000321146 _____ C:\Users\LADES\Desktop\Platby karta 2019_2020.xlsx
2022-01-08 11:27 - 2021-09-10 22:12 - 000010539 _____ C:\Users\LADES\Desktop\Marta Ponti vyprodané modely.xlsx
2022-01-07 17:07 - 2021-12-29 16:09 - 000000000 ____D C:\Users\LADES\Desktop\DJ
2022-01-04 16:18 - 2021-09-03 18:25 - 000010660 _____ C:\Users\LADES\Desktop\Komise prosinec.xlsx
2022-01-03 21:20 - 2020-09-13 10:27 - 000000000 ____D C:\Users\LADES
2022-01-03 19:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
==================== Files in the root of some directories ========
2018-09-28 07:54 - 2018-09-28 07:54 - 000000000 _____ () C:\Users\LADES\AppData\Local\oobelibMkey.log
2020-02-08 13:17 - 2020-02-08 13:17 - 000000861 _____ () C:\Users\LADES\AppData\Local\recently-used.xbel
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 17:57:19)
Running from C:\Users\LADES\Downloads
Microsoft Windows 10 Pro Version 2004 19041.1415 (X64) (2020-09-13 10:02:07)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-839088111-3762052009-2349125738-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-839088111-3762052009-2349125738-503 - Limited - Disabled)
Guest (S-1-5-21-839088111-3762052009-2349125738-501 - Limited - Disabled)
LADES (S-1-5-21-839088111-3762052009-2349125738-1001 - Administrator - Enabled) => C:\Users\LADES
WDAGUtilityAccount (S-1-5-21-839088111-3762052009-2349125738-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 7.6.0.52 - Adobe Inc.)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Broken Sword - The Shadow of the Templars (HKLM-x32\...\Broken Sword - The Shadow of the Templars_is1) (Version: - GOG.com)
CCleaner (HKLM\...\CCleaner) (Version: 5.89 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Doplněk pro vytváření PDF dokumentů z Účta (HKLM-x32\...\Doplněk pro vytváření PDF dokumentů z Účta_is1) (Version: - )
Ekonomický systém Money S3 (HKLM-x32\...\Money S3) (Version: 20.501 (20200609_09) - Solitea Česká republika, a.s.)
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 97.0.4692.99 - Google LLC)
HP Color Laser 150 (HKLM-x32\...\HP Color Laser 150) (Version: 1.14 (01.11.2019) - HP Inc.)
HP Easy Printer Manager (HKLM-x32\...\HP Easy Printer Manager) (Version: 2.0.1.48 - HP Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Java 8 Update 321 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180321F0}) (Version: 8.0.3210.7 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{88EC8D4A-54AB-4A7F-BDE9-4AD906D9D11F}) (Version: 3.2.2110.14001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 97.0.1072.69 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\OneDriveSetup.exe) (Version: 22.002.0103.0004 - Microsoft Corporation)
Microsoft SQL Server Compact 4.0 x64 ENU (HKLM\...\{8424B163-D1E0-48B7-88A2-C7A61767B3D7}) (Version: 4.0.8482.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x64 8.0.61000 (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable - x86 8.0.61001 (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{a2199617-3609-410f-a8e8-e8806c73545b}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{f0080ca2-80ae-4958-b6eb-e8fa916d744a}) (Version: 11.0.61030.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{49e969a1-2990-464d-92b5-25f6f34573c6}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{d2c8df0e-f15d-4426-9e51-f13f329f9cb4}) (Version: 12.0.40664.0 - Корпорация Майкрософт)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 90.0.2 (x64 cs)) (Version: 90.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0.3 - Mozilla)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PhotoScape (HKLM-x32\...\PhotoScape) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9.141.255 - Google, Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.10.714.2016 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Riot - Radical Image Optimization Tool (HKLM-x32\...\Riot) (Version: - )
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
ScummVM 2.0.0 (HKLM-x32\...\ScummVM_is1) (Version: 2.0.0 - The ScummVM Team)
Skype verze 8.75 (HKLM-x32\...\Skype_is1) (Version: 8.75 - Skype Technologies S.A.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TomTom MyDrive Connect 4.2.5.3770 (HKLM-x32\...\MyDriveConnect) (Version: 4.2.5.3770 - TomTom)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{32DC821E-4A7D-4878-BEE8-337FA153D7F2}) (Version: 2.63.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{F49D6A65-1AB6-4728-9FDA-DB5BAB631CF6}) (Version: 1.23.0.0 - Microsoft Corporation) Hidden
VdhCoApp 1.4.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - Intel Corporation Inc.)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1-2) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
WinRAR 6.02 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.02.0 - win.rar GmbH)
Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1808.3.0_x64__8wekyb3d8bbwe [2020-09-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-16] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-839088111-3762052009-2349125738-1001_Classes\CLSID\{6BE99E87-B6FB-4CC3-AE69-DFCF33303D55} -> [Tiskové exporty z Money S3] => C:\Users\Public\Documents\Solitea\Money S3\PRINT\ [0000-00-00 00:00]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_2cec8fd58a80e6ea\igfxDTCM.dll [2020-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2021-12-21] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2021-06-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2016 DOSBOX.LNK -> C:\UCTO2016\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\ÚČTO 2017 DOSBOX.LNK -> C:\UCTO2017\U8.BAT ()
Shortcut: C:\Users\LADES\Desktop\účto 2018 vDos+.lnk -> C:\UCTO2018\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2019 vDos+.lnk -> C:\UCTO2019\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2020 vDos+.lnk -> C:\UCTO2020\U64v.bat ()
Shortcut: C:\Users\LADES\Desktop\účto 2021 vDos+.lnk -> C:\UCTO2021\U64v.bat ()
ShortcutWithArgument: C:\Users\LADES\Desktop\Ladislav - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
==================== Loaded Modules (Whitelisted) =============
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {0EAF674F-829D-4130-88DD-33BE797D8D58} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {1C87E7FB-79F0-4246-B8A4-D5B505A89F28} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {25643582-0677-43AF-8513-040054836006} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4801A52B-910F-4793-B3F8-9387C225249C} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {4E163DEF-4425-4BCE-BF00-E8E8B53DFFD9} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {67D26D10-436F-42C6-8FCE-A7611F127773} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {7B17624C-1044-44C5-88D5-1A528C3FD986} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {872636D7-EC42-4071-BC94-0A008014F9FD} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> {AAABC4EE-0CEB-4E66-9D0C-F95614C0BC54} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_321\bin\jp2ssv.dll [2022-01-24] (Oracle America, Inc. -> Oracle Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\fbcdn.net -> hxxp://fbcdn.net
IE trusted site: HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\recaptcha.net -> hxxp://recaptcha.net
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2015-10-30 08:24 - 2019-01-04 15:58 - 000000825 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\LADES\Desktop\42561-spongebob-squarepants-running-1680x1050-cartoon-wallpaper (1).jpg
DNS Servers: 81.200.55.222 - 81.200.55.223
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "Skype for Desktop"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_699A87CE66F4BD7D66556249CE71024C"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{74EB3838-D241-4890-83EA-C5A5BBA89E87}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{18F95B44-EBB2-4D47-AC00-A8923567E657}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{52D40176-971C-46D3-B5B1-801C5346394F}] => (Allow) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe (TomTom International BV -> TomTom)
FirewallRules: [{D8130681-798B-4287-9917-5B9AED0F6064}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{66774AB8-6A73-46D6-8972-6E7DE57E6562}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{793FFEFE-645A-498C-B6E0-C015794A0763}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E2D23ECA-1CA0-4BBB-AA9A-D845020B98E0}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{20633CE6-1BCE-4F01-8D1E-748CA7C6FAD9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{3C878BF6-EF69-44D9-A5F2-5FB9F6FACAC9}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{72B1DB7F-0E08-4CF1-8256-1C3F4A5DA1D1}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [UDP Query User{22A0D66F-6437-4619-91EC-710DAA672F37}C:\program files\avast software\avast\avastui.exe] => (Block) C:\program files\avast software\avast\avastui.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E36A1664-BB63-433C-AC52-6BC47F0FE5EE}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Inc. -> HP)
FirewallRules: [{32BF5322-9C64-4482-82D0-59D035A94507}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\OrderSupplies.exe (HP Inc. -> HP)
FirewallRules: [{EB27D7D7-4501-4B38-8D3F-4F6DE829D5B8}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2AlertList.exe (HP Inc. -> HP)
FirewallRules: [{B3E0FE92-191F-4632-9809-E680CF189577}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\EPM2Migrator.exe (HP Inc. -> )
FirewallRules: [{8ECE5857-36F0-4693-B4C6-306746D318A6}] => (Allow) C:\Program Files (x86)\HP\Easy Printer Manager\CDArecovery.exe (HP Inc. -> )
FirewallRules: [{EF411DF8-A54E-4B2F-ACAE-83AFBDE8F6D8}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{8008E4D0-06AC-4B71-8FDE-361961729654}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{1476249A-EF3C-47F9-9B9C-2849190FAC71}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4E7C4161-3AE4-4A81-80A1-2F3FFB0EB677}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{40F98910-5689-4C8C-8CE8-E2E7EB3F4EFE}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C74370D5-4648-4395-9B3B-7FA7186630C2}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7B883471-B1FD-43C3-9ADC-8AB43126F0C6}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5C06BC9C-244F-49B4-9AE5-60E1FFAF7BF5}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{493456E8-6E0B-43FF-B2F8-44E8BE603BA9}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{545FB9DF-D091-451B-93B2-5F980616D79D}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{6C7CB0C6-B150-4D12-A850-B1E3D4856BEE}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{FDDB1BF7-CC52-43EA-AFFA-626807C844DF}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{5CD20A6A-3427-4FEF-8CB4-9D3CB6E7A973}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83B83A54-B502-45AC-8755-28D119FA3F89}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{20DB357B-29FA-4939-ABB1-C340ACD2DD04}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{84BDA50E-2629-48B5-9395-EF1A5A6E252D}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A09F1306-F320-4DB7-8D9F-07BF29B704A5}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F80F1559-6FF3-4010-9A6D-F1D56CEC8776}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.79.95.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E0243838-4CDF-4BB9-9D3C-C33AE19C2C6E}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{83862BEE-A572-41CD-8CB2-64408C6C7E42}] => (Block) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{33A92308-320F-44D4-A3B0-01EF07FD1549}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
23-01-2022 16:48:35 Naplánovaný kontrolní bod
29-01-2022 17:12:12 AdwCleaner_BeforeCleaning_29/01/2022_17:12:11
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2022 07:06:43 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na (C:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 07:02:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:56:46 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:37:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 06:32:18 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:35:39 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:30:23 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
Error: (01/24/2022 04:01:38 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
System errors:
=============
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Monitor Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Genuine Software Integrity Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Content Protection HECI Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba HP Print Scan Doctor Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) HD Graphics Control Panel Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.
Error: (01/29/2022 05:39:41 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AdobeUpdateService byla neočekávaně ukončena. Tento stav nastal již 1krát.
CodeIntegrity:
===============
Date: 2022-01-29 17:36:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.
Date: 2022-01-29 17:31:50
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVAST Software\Avast\aswAMSI.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0304 11/13/2016
Motherboard: ASUSTeK COMPUTER INC. PRIME B250-PRO
Processor: Intel(R) Core(TM) i5-7400 CPU @ 3.00GHz
Percentage of memory in use: 61%
Total physical RAM: 8054.89 MB
Available physical RAM: 3129.64 MB
Total Virtual: 9334.89 MB
Available Virtual: 4589.62 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:231.93 GB) (Free:78.69 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
\\?\Volume{8848e39c-0000-0000-0000-101b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.04 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 8848E39C)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=472 MB) - (Type=27)
==================== End of Addition.txt =======================
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Otevřte poznámkový blok a zkopírujte do něj:
Uložte do C:\Users\LADES\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Tasks\KMSAuto
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
Fix result of Farbar Recovery Scan Tool (x64) Version: 26-01-2022
Ran by LADES (29-01-2022 20:01:25) Run:1
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Boot Mode: Normal
==============================================
fixlist content:
*****************
CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Tasks\KMSAuto
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION => restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"Edge Notifications:" => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.1 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.8 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.11 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.12 => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\WINDOWS\system32\Tasks\KMSAuto => moved successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
C:\ProgramData\TEMP => ":6B27E200" ADS removed successfully
=========== EmptyTemp: ==========
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18057340 B
Java, Flash, Steam htmlcache => 59799199 B
Windows/system/drivers => 10349262 B
Edge => 0 B
Chrome => 377234182 B
Firefox => 11262684 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3994 B
NetworkService => 3994 B
LADES => 16728322 B
RecycleBin => 70771 B
EmptyTemp: => 471.9 MB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-01-2022 20:12:28)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:12:28 ====
Ran by LADES (29-01-2022 20:01:25) Run:1
Running from C:\Users\LADES\Downloads
Loaded Profiles: LADES
Boot Mode: Normal
==============================================
fixlist content:
*****************
CloseProcesses:
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {9F985188-9725-4D01-B666-C0658E4E1573} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {A1A6F88B-1184-4391-9EF3-A74D12015E35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2017-06-14] (Google Inc -> Google Inc.)
Task: {5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Notifications: HKU\S-1-5-21-839088111-3762052009-2349125738-1001 -> hxxps://www.facebook.com
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
FF Plugin-x32: @videolan.org/vlc,version=2.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [No File]
C:\DumpStack.log.tmp
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
C:\WINDOWS\system32\Tasks\KMSAuto
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\TEMP:6B27E200 [125]
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== ATTENTION => restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKU\S-1-5-21-839088111-3762052009-2349125738-1001\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9F985188-9725-4D01-B666-C0658E4E1573}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A1A6F88B-1184-4391-9EF3-A74D12015E35}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5F4B3999-A3D3-4FED-BBC2-9FD620F3A8BD}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
"Edge Notifications:" => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.1 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.2.8 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.11 => removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=3.0.12 => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
C:\WINDOWS\system32\Tasks\KMSAuto => moved successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
C:\ProgramData\TEMP => ":6B27E200" ADS removed successfully
=========== EmptyTemp: ==========
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18057340 B
Java, Flash, Steam htmlcache => 59799199 B
Windows/system/drivers => 10349262 B
Edge => 0 B
Chrome => 377234182 B
Firefox => 11262684 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3994 B
NetworkService => 3994 B
LADES => 16728322 B
RecycleBin => 70771 B
EmptyTemp: => 471.9 MB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-01-2022 20:12:28)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:12:28 ====
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
PC je teď rozhodně pružnější, i internet, ale stále to má do dokonalosti značný kus cesty 

- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Zkuste ještě defragmenrovat disk.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
To už jsem provedl několikrát a efekt bohužel žádný ...
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Můžeme ještě vyčistit prohlížeče. Spusťte postupně tyto utility:
1. Stahnete Zoek.exe https://www.edisk.cz/stahni/21334/zoek.rar_1.3MB.html/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
1. Stahnete Zoek.exe https://www.edisk.cz/stahni/21334/zoek.rar_1.3MB.html/ a ulozte jej na plochu
Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
Do okna vlozte skript nize
autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;
Nasledne kliknete na Run Script
PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem.
a
2. Junkware removal tool: https://www.stahuj.cz/utility_a_ostatni ... oval-tool/
•Ulozte nejlepe na plochu
•Po spusteni se zobrazi licencni podminky, stisknete libovolnou klavesu
•Probehne vytvoreni zalohy a nasledne prohledavani
•Probehne skenovani a pak se objevi log, pripadne bude ulozen v c:\JRT jako JRT.txt, ten sem vlozte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
Zatím se nic nedaří získat volný slot na stažení prográmku Zoek ....
- Rudy
- Site Admin
- Příspěvky: 119390
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Extra pomalé pc a internet
Tak zkuste JRT a pak se pokuste stáhnout Zoek. Pokud se to nepodaří, stáhněte odtud: https://uloz.to/tamhle/Ql0nncy32Csn#!ZG ... udZGx1Mt== .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Extra pomalé pc a internet
Log Zoek 1
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by LADES on 01.02.2022 at 20:15:35,33.
Microsoft Windows 10 Pro 10.0.19041 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\LADES\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
01.02.2022 20:19:22 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\VideoLAN deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\KASTNER software deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow deleted successfully
C:\Users\LADES\AppData\Local\Blizzard deleted successfully
C:\Users\LADES\AppData\Local\CrashDumps deleted successfully
C:\Users\LADES\AppData\Local\DBG deleted successfully
C:\Users\LADES\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
=== Deleting Services ============
==== FireFox Fix ======================
Deleted from C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:
Added to C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\VideoLAN not found
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} not found
C:\found.000 deleted
C:\PROGRA~3\ProductData deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\LADES\AppData\Local\oobelibMkey.log deleted
C:\Users\LADES\AppData\Local\cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM21FAD.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24EA0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM286F.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29094.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2ABBE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2D0BA.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2EC27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2F903.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-1394-2358-138682.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd2ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaecb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3523.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3534.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3536.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e354a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3560.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3571.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3573.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3575.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3587.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3599.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432537.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4326b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43274e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43276f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432793.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43280a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43281c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c6e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c721.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c752.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c85a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c86b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c908.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e586b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e59aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5a29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5c7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5fbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e600f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e60ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b243.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b245.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b257.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16101f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161033.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161047.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161049.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16104b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161076.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161087.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161089.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16109f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-1610a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ac0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ae1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617c20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1351bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1363d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-136efd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137335.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb579.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb57b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb58d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb60a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb66a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb708.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb71a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb73b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb76c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb78d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eec7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eed1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eef8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef5e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef619.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef65a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef66c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef69c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef710.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef785.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef797.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef799.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242edb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242efe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf062.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf6cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf877.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf8f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf9d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfa42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfcc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfd53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0024.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d00d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0180.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d01ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d026e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d02ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d038b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d061e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d08b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0a48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117412.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117414.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117427.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117429.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11742b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11743d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11745e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117472.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117493.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117495.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117497.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bce6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcfb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bd0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c078a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0865.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0876.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0888.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c089a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c090f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0971.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c09c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f109.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f11f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f123.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f138.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f13a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f150.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a1b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a3d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a453a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a4cfc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a52bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5935.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5ef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6484.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6aa0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a712a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7e0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8341.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8883.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a93f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a9923.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa59a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286ada.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286bea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286c2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286da9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286dcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286eee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f800.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f814.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f837.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f84a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f870.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f872.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f885.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f887.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f889.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d792.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d81e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d833.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474829.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47484a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47485c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47486d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47487f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474906.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47494a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47498b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fca0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fce4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685598.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68560d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68564e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68566f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685715.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685717.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685729.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68574e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68576f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df76e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df7be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df86c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df8cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df91c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df98b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df9eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfa5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfaca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfcf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfd93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfeb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dff21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dffc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169592.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169594.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd061.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd083.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd21f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd25f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd34e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd35f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd3ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd43e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd450.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cdd89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cddaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cde1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a526.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a538.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a54a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a56f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a61f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a77d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f701.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f712.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f714.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f716.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f740.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f742.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f744.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f755.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f757.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f759.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacfd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dad3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadcf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dade0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daee0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22bffaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c001e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c005f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c01f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0297.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c030d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c031e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c036e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c04a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0509.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0549.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c058a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ed8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145eea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d209.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d220.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aa5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ab7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ac9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8afb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7479.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d748a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7629.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d764a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d766b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d768c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d770f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d775f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7407.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7459.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b746b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b752e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b754f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7622.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7644.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7675.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7696.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7738.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70b9ad4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba19d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba4ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70baa1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bade7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb3b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bc05c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bca8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd5de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd813.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdc6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdedd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be23c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be8a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70beca1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bef23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156215.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156255.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1562d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156326.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156367.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156388.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1563e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156469.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15650d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15653e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161e1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161f7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162058.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162106.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162175.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1621b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162225.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162308.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162319.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1623b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162496.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd471c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd472d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd474f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4774.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd479f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ba14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bac1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bbd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c545.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ca1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cbca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cc87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113880.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113893.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113905.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113928.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11392a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11394b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11395d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11397e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fb26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fcc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fdcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25ff93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2601a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2603dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26045c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26048d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26050c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2605aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260697.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26097b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260ae4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aeaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91af03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b08c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b514.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b787.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b7a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf221.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf2af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf36d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf46d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf6b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf943.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfb49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfbd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfca9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfce9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfd78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfdc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac6769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac7b8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac8fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac968d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9aca601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acb1bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc0ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc7b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd16e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd19f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bba1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bc15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bda3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14becd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11600d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11604d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11609d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1160be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11610f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116141.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116172.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116194.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11620b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116374.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116396.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1163e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14370a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14372b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143764.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14377a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d00f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d023.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d025.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d027.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d039.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d050.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d052.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d066.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d068.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d06a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d080.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d082.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3e71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3faf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d403e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d407e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d40af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d416d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d422a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d43b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d44ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d47fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5155.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d536a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5457.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5488.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d54d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5557.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d55b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625de4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625ed2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625f51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626022.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626044.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626055.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626067.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62628c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62679f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-627f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-628feb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62905b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6290f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6291c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d234.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d248.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d26f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d273.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d285.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d287.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d28b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d302.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978b65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978cad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978ccf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978d00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4944.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4987.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4aa3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ac4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ae5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4af7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4b28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4bc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3dff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719de2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb2fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb320.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb381.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb458.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb54d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb55e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e420.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e422.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e433.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e445.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-409fff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a020.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a140.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a161.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a203.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a224.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a286.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a32e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a340.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426785c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426788d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426789f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426791a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426792c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267951.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267963.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267974.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217126.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217159.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21716a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21719b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217210.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217241.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21730b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21733c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21735d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9aa4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9ac5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9af6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9bbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9dc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048756.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404877b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048802.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048804.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31709f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31710d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125ee9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126004.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126139.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12617a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12618b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12619d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12624b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1262ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1264cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181801.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181803.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181815.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181817.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181819.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18181b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181844.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181856.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181858.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0447.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0468.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a04ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a050a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a051c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a057c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a060e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0620.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0631.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0653.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0674.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0676.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0688.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-1869fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ab9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186afa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50dff8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e085.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e2b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e331.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e333.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e345.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e385.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e3a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdac8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f007.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f042.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f171.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f192.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f206.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f237.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f258.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f2ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3960.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3962.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3964.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3968.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f396a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3991.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3993.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3995.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145105.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145132.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145149.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14515b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14516d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0808.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c080a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0834.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0838.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348091.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348093.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348095.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349d79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349daa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349eaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ee3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349f14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da99f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daa03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daaff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dabb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dace8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dad67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204cda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204ceb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204db7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204de8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c971a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c973f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9751.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9753.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9765.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c978a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97e0.tmp deleted
Zoek.exe v5.0.0.0 Updated 04-May-2015
Tool run by LADES on 01.02.2022 at 20:15:35,33.
Microsoft Windows 10 Pro 10.0.19041 x64
Running in: Normal Mode No Internet Access Detected
Launched: C:\Users\LADES\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
01.02.2022 20:19:22 Zoek.exe System Restore Point Created Successfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\PROGRA~2\VideoLAN deleted successfully
C:\PROGRA~3\Comms deleted successfully
C:\PROGRA~3\KASTNER software deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\LocalLow deleted successfully
C:\Users\LADES\AppData\Local\Blizzard deleted successfully
C:\Users\LADES\AppData\Local\CrashDumps deleted successfully
C:\Users\LADES\AppData\Local\DBG deleted successfully
C:\Users\LADES\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\DBG deleted successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Packages deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
=== Deleting Services ============
==== FireFox Fix ======================
Deleted from C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:
Added to C:\Users\LADES\AppData\Roaming\Mozilla\Firefox\Profiles\q2amntan.default\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Deleting Files \ Folders ======================
C:\PROGRA~2\VideoLAN not found
C:\PROGRA~3\{2C200689-8CE4-747C-82C2-ED61697123EE} not found
C:\found.000 deleted
C:\PROGRA~3\ProductData deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\LADES\AppData\Local\oobelibMkey.log deleted
C:\Users\LADES\AppData\Local\cache deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM21FAD.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM24EA0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM286F.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM29094.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2ABBE.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2D0BA.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2EC27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\CM2F903.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tpm-1394-2358-138682.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd2ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae0a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae30.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae34.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aae96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1044-231c-5aaecb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3523.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3534.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3536.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e354a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e355e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3560.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3571.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3573.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3575.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3587.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e3599.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-10f4-1f28-e35e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4324e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432537.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4326b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43274e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43276f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432793.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327d5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-4327f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43280a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43281c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-43282f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-119c-2498-432874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c6e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c721.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c752.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c7e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c85a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c86b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c87f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c8e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11f0-948-57c908.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e586b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e58ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e59aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5a29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5c7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5d65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5f7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e5fbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e600f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-11fc-249c-8e60ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b243.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b245.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b257.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b26e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b294.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1240-106c-49b2d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16101f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161033.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161047.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161049.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16104b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16105e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161076.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161087.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-161089.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16108d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-16109f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1270-684-1610a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617aae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ac0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617ae1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617b9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617bff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1300-2254-617c20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1351bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-1363d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-136efd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137335.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1394-2358-137e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb579.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb57b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb58d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5ae.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb5f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb60a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb66a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb708.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb71a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb73b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb76c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb78d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1488-1484-fb7ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eec7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eed1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-eef8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef5e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef619.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef65a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef66c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef69c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef6ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef710.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef783.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef785.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef797.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef799.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14cc-2494-ef7db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242e9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242edb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242efe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-16d8-25b4-242f12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf062.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf6cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf877.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf8f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cf9d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfa42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfcc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2cfd53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0024.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d00d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0180.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d01ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d026e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d02ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d038b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d061e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d08b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1714-a8c-2d0a48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117412.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117414.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117427.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117429.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11742b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11743d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-11745e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117472.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117493.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117495.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-117497.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1894-1e9c-1174d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bce6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bcfb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24bd0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-190c-1984-24be81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cdd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2cf3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2d0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1990-2ca8-1a2e96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c078a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c07ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0853.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0865.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0876.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0888.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c089a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c08ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c090f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c0971.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-19ac-7d4-11c09c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f0f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f109.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f11f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f123.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f138.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f13a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f14e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1ac-20c0-12f150.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a1b57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a3d39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a453a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a4cfc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a52bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5935.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a5ef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6484.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a6aa0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a712a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a7e0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8341.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8883.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a8e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a93f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1a9923.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b20-2a40-1aa59a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286ada.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286b5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286bea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286c2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d55.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286d88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286da9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286dcb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286eee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b48-2920-286f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f7ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f800.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f814.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f825.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f837.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f848.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f84a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f85e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f870.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f872.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f874.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f885.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f887.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f889.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1b68-2200-10f8ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d792.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7e5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d7fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d81e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1bc4-2928-69d833.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474829.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47484a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47485c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47486d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47487f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4748f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474906.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474929.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47494a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-47498b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-4749ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c40-13a8-474a31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc77.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fc8e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fca0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fcd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1c70-4a4-41fce4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685548.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685598.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6855fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68560d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68564e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68566f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-6856f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685715.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685717.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-685729.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68572d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68574e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1cfc-22d0-68576f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df76e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df7be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df86c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df8cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df91c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df98b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-df9eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfa5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfaca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfc56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfcf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfd93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfe43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dfeb2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dff21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1d84-25e8-dffc0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-16957e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169592.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-169594.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1f94-734-1695ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3ccf52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd061.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd083.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd121.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd21f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd25f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd34e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd35f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd3ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd43e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cd450.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cdd89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cddaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-17d8-3cde1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a526.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a538.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a54a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a55d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a56f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a5fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a61f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a6dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a73c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1fd4-1ec4-38a77d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f6ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f701.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f712.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f714.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f716.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f72e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f740.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f742.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f744.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f755.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f757.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2090-1978-47f759.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-1449fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a04.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144a93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20cc-2774-144ab6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dac6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dacfd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dad3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dadcf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-dade0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daee0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20dc-5e8-daf8c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22bffaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c001e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c005f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c01f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0247.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0297.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c02fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c030d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c031e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c036e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c04a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0509.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0549.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c058a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c0760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-20e0-1694-22c07b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faebd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faed3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faee8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faeea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faefe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf02.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2178-2720-1faf27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e2a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e3d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145e94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ea7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145ed8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2244-1bf0-145eea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d1f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d209.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d20f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d220.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2264-2604-18d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca66.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2308-1c9c-46ca91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8a94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aa5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ab7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8ac9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8aea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8afb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2314-1140-2f8b84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d73e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7479.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d748a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d74fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7629.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d764a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d766b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d768c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d76de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d770f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d775f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d7781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77d1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2340-2780-d77e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7407.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7459.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b746b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b74fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b752e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b754f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75bf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b75e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7622.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7644.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7675.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7696.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b76f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-235c-2bac-21b7738.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70b9ad4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba19d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70ba4ea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70baa1d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bade7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb3b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bb917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bc05c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bca8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd000.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd5de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bd813.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdc6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bdedd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be0f2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be23c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70be8a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70beca1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2384-14f4-70bef23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156142.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1561e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156215.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156255.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156296.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1562d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156326.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156367.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156388.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1563e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156419.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-156469.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-1564dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15650d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-238c-1eb4-15653e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161d50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161e1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161eed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-161f7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162058.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162106.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162175.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1621b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162225.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1622e7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162308.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162319.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-1623b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-23c0-2bbc-162496.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd471c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd472d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd474f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4760.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4774.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd4778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd478e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd479f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c0-d0c-3cd47fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ba14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bac1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bb52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bbd3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bc75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28bca6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c10d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28c545.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28ca1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb16.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cb89.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cbca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24c8-15d0-28cc87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113880.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113891.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113893.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138bc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-1138f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113905.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113917.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-113928.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11392a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11394b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11395d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-24d0-2aa8-11397e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f7b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25f921.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fb26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fcc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25fdcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-25ff93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2601a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2603dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26045c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26048d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26050c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-2605aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260697.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260773.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260812.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-26097b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260ae4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-250c-166c-260b73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447b96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447ba9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bbf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2530-23f4-447bee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ad96.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91adf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae4c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91ae9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aeaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91aec3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91af03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b08c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b292.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b514.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b787.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2570-2550-91b7a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b33.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b46.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177b83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177ba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bb8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-25ac-23d4-177bba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf1e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf221.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf2af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf36d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3cd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf3de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf46d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf6b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bf943.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfb49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfbd8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfc68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfca9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfce9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfd78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfdc8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-26bc-14f0-3bfe78.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac6769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac7b8f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac8fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9ac968d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9aca601.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acb1bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc0ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acc7b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd16e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-275c-2854-9acd19f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bb80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bba1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbb3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bbf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bc15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bd73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bda3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdd6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bdf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be4a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14be7b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14bebb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2768-25b4-14becd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11600d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11604d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11609d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1160be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11610f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116141.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116172.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116194.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1161f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-11620b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116374.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-116396.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1163e6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-27e4-1a40-1164f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14370a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14372b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14373f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143750.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143762.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143764.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143776.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14377a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-14378f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-143791.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2828-2af8-1437bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d00f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d011.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d023.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d025.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d027.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d039.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d050.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d052.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d066.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d068.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d06a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d07e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d080.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2840-2778-45d082.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3e71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3f9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d3faf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d403e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d407e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d40af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d416d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d422a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d43b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d44ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d47fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5155.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d536a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5457.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5488.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d54d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d5557.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-28dc-1f38-1d55b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cc7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625cf8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625de4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625ed2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625f51.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-625fd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626022.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626044.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626055.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-626067.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62628c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62679f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-627f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-628feb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-62905b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6290f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-290c-2b80-6291c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511e7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511ef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f13.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511f94.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29b0-1ffc-511fc5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d222.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d234.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d248.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d259.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d25d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d26f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d271.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d273.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d285.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d287.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d28b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d29e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d2e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-29f8-26bc-17d302.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978b65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bb5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978bf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978c9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978cad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978ccf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a00-2aa0-5978d00.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4944.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4987.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f49fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a1e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4a72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4aa3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ac4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4ae5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4af7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4b28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4bc6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a70-2188-1f4c47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3dff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e20.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e22.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e47.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e84.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e88.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3e9c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ead.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2aec-268c-9b3ebf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c69.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719c8a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719cdc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719de2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2b4c-27d8-719e7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb2fe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb320.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb381.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb406.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb428.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb458.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb4fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb54d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb55e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2ba4-1604-1bb5b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3c9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3e1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e3f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e408.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e40e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e420.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e422.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e433.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2bf4-2bec-11e445.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-409fff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a020.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0af.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a0d0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a140.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a161.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a182.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a1e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a203.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a224.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a246.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a286.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a2fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a32e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2c5c-2344-40a340.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426785c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426788d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426789f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42678e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426791a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426792c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-426793f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267951.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267963.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267974.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-4267986.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2d9c-193c-42679a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564dde4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564ddf9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de0f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de25.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de36.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de38.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de3c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e10-215c-564de54.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217126.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217159.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21716a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21719b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2171e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217210.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217241.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-217272.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-2172f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21730b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21733c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2e40-bf0-21735d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9a83.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9aa4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9ac5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9af6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b27.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b48.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9b8b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9bbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9c9e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9dc9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-30b8-23d8-11db9e9a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048756.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048769.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404877b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-404878f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-40487f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048802.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048804.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-34f8-1b6c-4048806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31708e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31709f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170a1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170e4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170f8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-3170fc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-410-73c-31710d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125d60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-125ee9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126004.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126035.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1260f7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-126139.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12617a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12618b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12619d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-12624b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1262ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4a4-20f8-1264cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-1817ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181801.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181803.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181815.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181817.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181819.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18181b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-18182f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181831.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181842.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181844.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181856.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-4f0-4f4-181858.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0416.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0447.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0468.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0489.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a04ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a050a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a051c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a057c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a05ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a060e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0620.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0631.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0653.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0674.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0676.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a0688.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06b8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-570-2478-1a06ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-1869fd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a4e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a50.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a63.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a86.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186a98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ab9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186afa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186b81.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186ba2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bc3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bd5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-574-1650-186bf6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50dff8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e03d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e04e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e060.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e072.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e074.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e085.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0c6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e0eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e2b2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e331.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e333.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e345.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e385.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5ac-14bc-50e3a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdac8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdb6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbcc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdbff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc12.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc24.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc26.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc28.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc39.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc3b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc4f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc61.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-628-364-27cdc72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f007.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f01f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f031.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f042.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f054.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f056.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f171.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f192.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1d3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f1f4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f206.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f237.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f258.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f289.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f2ba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-648-2f64-32f348.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f393f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3960.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3962.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3964.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3966.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3968.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f396a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f398f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3991.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3993.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3995.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f3997.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39a9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-78c-2af0-45f39ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-1450f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145105.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145107.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145118.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14511e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145130.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145132.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145134.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145136.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145147.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-145149.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14515b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-828-1a94-14516d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07c7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07d9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07ef.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c07f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0806.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0808.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c080a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c081e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0820.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0822.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0834.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0836.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-850-236c-1c0838.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-34807f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348091.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348093.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-348095.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480aa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ac.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480be.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480c4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480eb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-890-9b8-3480ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349d79.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349daa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dbd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349dfe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e62.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e73.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349e87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349eaa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ebe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ecf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ed1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349ee3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-89c-28bc-349f14.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da99f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35da9d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daa03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daaff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab11.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab32.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab53.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab65.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dab67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daba7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dabb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dac59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dace8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35dad67.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daea1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8b0-2af4-35daf90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf01.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf03.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf15.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf17.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf29.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf2f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf40.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf42.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf44.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf58.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-8c8-18cc-751cf71.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204cda.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204ceb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d1c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d3f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d41.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d43.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d57.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d59.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d5b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d6f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d90.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204d92.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204da5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204db7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-918-d70-204de8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9718.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c971a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c972e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c973f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9751.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9753.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9765.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9767.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c9778.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c978a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97ce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-958-2e4-36c97e0.tmp deleted