Prosím o kontrolu logu, díky Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 01:52

2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7ba70ccae9101788a2c4d3655b6dbf81x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7ba70ccae9101788a2c4d3655b6dbf81x000.xml: 172 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 92824ac927175755c7cf6aa02cc92dcdx000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 92824ac927175755c7cf6aa02cc92dcdx000.xml: 172 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 14ccbeae0df961e4e5333803ba492ff8x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 14ccbeae0df961e4e5333803ba492ff8x000.xml: 250 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4c411ec6f5578da4f9cd323e2645edd7x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4c411ec6f5578da4f9cd323e2645edd7x000.xml: 172 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b675c10d17b513717eec3bf4fd5ba3b3x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b675c10d17b513717eec3bf4fd5ba3b3x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c739a3c049b19cd3231e2b10d675a1e9x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c739a3c049b19cd3231e2b10d675a1e9x000.xml: 172 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a04db5544f40fd3a1c475ec414ea22cdx000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a04db5544f40fd3a1c475ec414ea22cdx000.xml: 141 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1f837238abc8d053bb606087ad8903aax000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1f837238abc8d053bb606087ad8903aax000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 231bbd44a53950c873bbd9d6370e6f3ex000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 231bbd44a53950c873bbd9d6370e6f3ex000.xml: 140 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: afe782a7ab30672e7a0f3ead2c4a7f95x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: afe782a7ab30672e7a0f3ead2c4a7f95x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: fd2020e17b747ca07329b2f30c765a72x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: fd2020e17b747ca07329b2f30c765a72x000.xml: 157 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0bfa4471260584cd02f4f27e6ee4088ax000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0bfa4471260584cd02f4f27e6ee4088ax000.xml: 140 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d9b0999ef54f6823e2ebf1b9c9bdd17ax000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d9b0999ef54f6823e2ebf1b9c9bdd17ax000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 243e3a5506aa51d4140274c58b47a0d6x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 243e3a5506aa51d4140274c58b47a0d6x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 47cc271b6e3cf59602f55fe6f5a1dd68x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 47cc271b6e3cf59602f55fe6f5a1dd68x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8a8dc21e1283489001efba9766367124x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8a8dc21e1283489001efba9766367124x000.xml: 141 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 356d9112788f27237aca9e25ff6daec2x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 356d9112788f27237aca9e25ff6daec2x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a09aa12740eb3be2197fcb8d2f356de2x000.xml: 335 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a09aa12740eb3be2197fcb8d2f356de2x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: bf78098e537342ca31847d9251a98d08x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: bf78098e537342ca31847d9251a98d08x000.xml: 141 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 03605232aa9bab92d0db70e5575d2531x000.xml: 336 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 03605232aa9bab92d0db70e5575d2531x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d75810847464916233f6fe208837dc95x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d75810847464916233f6fe208837dc95x000.xml: 172 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4d242b9dda4d709a5ee7e48f4fbad368x000.xml: 336 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4d242b9dda4d709a5ee7e48f4fbad368x000.xml: 125 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 88fd9d988deacb05aaa31723b8e4f4dbx000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 88fd9d988deacb05aaa31723b8e4f4dbx000.xml: 141 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c0a8305efa0deb54d806b4329aaa0453x000.xml: 336 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c0a8305efa0deb54d806b4329aaa0453x000.xml: 171 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e72f466cfb0eb4779f34451d29984968x000.xml: 877 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e72f466cfb0eb4779f34451d29984968x000.xml: 157 ms
2020-08-29 21:38:21.594 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 866fb7449cd65f27009ddbf4e504e661x000.xml: 336 bytes
2020-08-29 21:38:21.594 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 866fb7449cd65f27009ddbf4e504e661x000.xml: 140 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 63508f0b16a6f41ba833921b8f7e8342x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 63508f0b16a6f41ba833921b8f7e8342x000.xml: 125 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 93b136be6e9cbdda2ac745cc080a783bx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 93b136be6e9cbdda2ac745cc080a783bx000.xml: 203 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 59d3736298f43fd7097a483ce21ba3e5x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 59d3736298f43fd7097a483ce21ba3e5x000.xml: 110 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 12af79666e232a8d34aaafff33842a4cx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 12af79666e232a8d34aaafff33842a4cx000.xml: 110 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: de52f509e04720a0b39985ac656e055ex000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: de52f509e04720a0b39985ac656e055ex000.xml: 110 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b7ccc6f8cc5785ce69581556f20b645bx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b7ccc6f8cc5785ce69581556f20b645bx000.xml: 140 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: dc26bfa3da5b100e221d56846e249b72x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: dc26bfa3da5b100e221d56846e249b72x000.xml: 141 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b6f5b1e08590629e9716cb2ba2997c78x000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b6f5b1e08590629e9716cb2ba2997c78x000.xml: 172 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1ac04041e813a4656f7d1e5b3f6b4322x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1ac04041e813a4656f7d1e5b3f6b4322x000.xml: 187 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b6f196e9406f15e4326262dc80d4402bx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b6f196e9406f15e4326262dc80d4402bx000.xml: 141 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e3768149700818137cb2c7155c89237cx000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e3768149700818137cb2c7155c89237cx000.xml: 141 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 392ed9fe8580d71576bf801e064d0b2bx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 392ed9fe8580d71576bf801e064d0b2bx000.xml: 125 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 5ccad197bc706493a853fb018cff42b8x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 5ccad197bc706493a853fb018cff42b8x000.xml: 156 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f9af3a4705092782fd6f83a88f35a388x000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f9af3a4705092782fd6f83a88f35a388x000.xml: 141 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e066c4ffd3528e58ce5c49e4156f9d2bx000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e066c4ffd3528e58ce5c49e4156f9d2bx000.xml: 125 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 2a780c3ea0ff4f3f0fdf6540f9cdda86x000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 2a780c3ea0ff4f3f0fdf6540f9cdda86x000.xml: 140 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 19f21a571fec88daaca4911f84a206bcx000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 19f21a571fec88daaca4911f84a206bcx000.xml: 141 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 8144f6e80bb2a7af79b0013b5048d87bx000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 8144f6e80bb2a7af79b0013b5048d87bx000.xml: 140 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f0d680a9ad70f65e05c0a1707c7367c0x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f0d680a9ad70f65e05c0a1707c7367c0x000.xml: 204 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7d69ea6f6435486064d2e36703d67fc7x000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7d69ea6f6435486064d2e36703d67fc7x000.xml: 265 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 3d292a1e350fa35261a3d7d7e6306881x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 3d292a1e350fa35261a3d7d7e6306881x000.xml: 203 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: d716254b56ee1fb62ce60b4fb85a55aex000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: d716254b56ee1fb62ce60b4fb85a55aex000.xml: 422 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0b66f0fd8be9c74165eb4b831e7c0895x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0b66f0fd8be9c74165eb4b831e7c0895x000.xml: 140 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7d3f6037dafc8c57fa380d05d47ceb02x000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7d3f6037dafc8c57fa380d05d47ceb02x000.xml: 125 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9d0ee3e1ae79321d215abcb96398a798x000.xml: 877 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9d0ee3e1ae79321d215abcb96398a798x000.xml: 188 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 083c3f9a041bce8e959556f6d1a3ab6ax000.xml: 336 bytes
2020-08-29 21:38:21.595 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 083c3f9a041bce8e959556f6d1a3ab6ax000.xml: 125 ms
2020-08-29 21:38:21.595 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f1e9e97826aa378971273203b449b255x000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f1e9e97826aa378971273203b449b255x000.xml: 125 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4173746d8e0d60f6950d8d9a161bdcbbx000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4173746d8e0d60f6950d8d9a161bdcbbx000.xml: 156 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 793419c888d57b9dcfddd49151e52a7ex000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 793419c888d57b9dcfddd49151e52a7ex000.xml: 140 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: eb04a1b50b1cd27df3a5c011fab5f5bdx000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: eb04a1b50b1cd27df3a5c011fab5f5bdx000.xml: 188 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e70a1213279462e17c65b93bca0f5d3ax000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e70a1213279462e17c65b93bca0f5d3ax000.xml: 187 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: dc3f07c436890301c31c9c9c0449cfe3x000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: dc3f07c436890301c31c9c9c0449cfe3x000.xml: 219 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 0e9ba9b063b19937ddada6d417e18bddx000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 0e9ba9b063b19937ddada6d417e18bddx000.xml: 156 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: e43500bf6204189c3814151f2097f17ex000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: e43500bf6204189c3814151f2097f17ex000.xml: 235 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 9b3a8c9abea95ba1ecdb3d1ce552c4fdx000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 9b3a8c9abea95ba1ecdb3d1ce552c4fdx000.xml: 156 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 4bd2772fba6dcc80dbc9ac993642f6c0x000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 4bd2772fba6dcc80dbc9ac993642f6c0x000.xml: 234 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 45a30d69eb10d8d214a055c512a4ba07x000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 45a30d69eb10d8d214a055c512a4ba07x000.xml: 125 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 247010618e792e6d4bf9f31f5f947f2ax000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 247010618e792e6d4bf9f31f5f947f2ax000.xml: 110 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 7cfdf838eb0aa6c82d1ab11ded594c50x000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 7cfdf838eb0aa6c82d1ab11ded594c50x000.xml: 125 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: c3db5b27adcb4c33bbd7b2fbcf709041x000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: c3db5b27adcb4c33bbd7b2fbcf709041x000.xml: 109 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: cb190c65149cf627f86b6452f8887035x000.xml: 877 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: cb190c65149cf627f86b6452f8887035x000.xml: 140 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: fd85f0042c91303c00f31f515832ed3bx000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: fd85f0042c91303c00f31f515832ed3bx000.xml: 109 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 1fffd10679e6c2881dcf1d98e37722fdx000.xml: 1027 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 1fffd10679e6c2881dcf1d98e37722fdx000.xml: 157 ms
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 3b5149d9559a46f0cbb9cda745411be6x000.xml: 336 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 3b5149d9559a46f0cbb9cda745411be6x000.xml: 140 ms
2020-08-29 21:38:21.596 Update progress: [I49502] sdds.data0910.xml: found supplement IDE577 LATEST path= baseVersion= [included from product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=]
2020-08-29 21:38:21.596 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE577 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE577 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I49502] sdds.data0910.xml: found supplement IDE578 LATEST path= baseVersion= [included from product IDE577 LATEST path=]
2020-08-29 21:38:21.596 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE578 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE578 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I49502] sdds.data0910.xml: found supplement IDE579 LATEST path= baseVersion= [included from product IDE578 LATEST path=]
2020-08-29 21:38:21.596 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE579 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE579 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I49502] sdds.data0910.xml: found supplement IDE580 LATEST path= baseVersion= [included from product IDE579 LATEST path=]
2020-08-29 21:38:21.596 Update progress: [I95020] sdds.data0910.xml: looking for packages included from product IDE580 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I22529] sdds.data0910.xml: looking for supplements included from product IDE580 LATEST path=
2020-08-29 21:38:21.596 Update progress: [I19463] Syncing product C1A903B2-E63E-483b-982D-04BB9C457C60 RECOMMENDED path=
2020-08-29 21:38:21.596 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 66576692d59fc6bca90a40009920c658x000.xml: 57194 bytes
2020-08-29 21:38:21.596 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 66576692d59fc6bca90a40009920c658x000.xml: 422 ms
2020-08-29 21:38:21.596 Update progress: [I19463] Product download size 172271185 bytes
2020-08-29 21:38:55.548 Update progress: [I19463] Syncing product IDE577 LATEST path=
2020-08-29 21:38:55.548 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: de685a791066b4c3c2aad0c0f5ee0a97x000.xml: 41318 bytes
2020-08-29 21:38:55.548 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: de685a791066b4c3c2aad0c0f5ee0a97x000.xml: 203 ms
2020-08-29 21:38:55.548 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: b68d3f2229296bfc4486a96b055399dax000.xml: 398 bytes
2020-08-29 21:38:55.548 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: b68d3f2229296bfc4486a96b055399dax000.xml: 125 ms
2020-08-29 21:38:55.548 Update progress: [I19463] Product download size 2071411 bytes
2020-08-29 21:39:56.859 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: aaac1a45ca95c829f704fa0e79c75c7bx000.xml: 11221 bytes
2020-08-29 21:39:56.859 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: aaac1a45ca95c829f704fa0e79c75c7bx000.xml: 141 ms
2020-08-29 21:39:57.126 Update progress: [I19463] Syncing product IDE578 LATEST path=
2020-08-29 21:39:57.126 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: 53ede96593c6fe9b57cb2f2fb6037c70x000.xml: 34159 bytes
2020-08-29 21:39:57.126 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: 53ede96593c6fe9b57cb2f2fb6037c70x000.xml: 234 ms
2020-08-29 21:39:57.126 Update progress: [I19463] Product download size 2069154 bytes
2020-08-29 21:40:43.725 Update progress: [I19463] Syncing product IDE579 LATEST path=
2020-08-29 21:40:43.725 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: a0f35d24aca2033823dbac6a53c9b959x000.xml: 16300 bytes
2020-08-29 21:40:43.725 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: a0f35d24aca2033823dbac6a53c9b959x000.xml: 172 ms
2020-08-29 21:40:43.725 Update progress: [I19463] Product download size 1313330 bytes
2020-08-29 21:41:03.219 Update progress: [I19463] Syncing product IDE580 LATEST path=
2020-08-29 21:41:03.219 Update progress: [V52614] SU::LoggingAdvisor::start_file [metadata] Syncing: f430c089bf466bb070b959d79391e4c2x000.xml: 124 bytes
2020-08-29 21:41:03.219 Update progress: [V52615] SU::LoggingAdvisor::end_file [metadata] Success: f430c089bf466bb070b959d79391e4c2x000.xml: 172 ms
2020-08-29 21:41:03.265 Installing updates...
2020-08-29 21:41:03.869 Error level 1
2020-08-29 21:41:08.700 Update successful
2020-08-29 21:41:20.669 Option all = no
2020-08-29 21:41:20.669 Option recurse = yes
2020-08-29 21:41:20.669 Option archive = no
2020-08-29 21:41:20.669 Option service = yes
2020-08-29 21:41:20.669 Option confirm = yes
2020-08-29 21:41:20.669 Option sxl = yes
2020-08-29 21:41:20.670 Option max-data-age = 35
2020-08-29 21:41:20.671 Option vdl-logging = yes
2020-08-29 21:41:20.676 Customer ID: 094260ca9b3af99f9d4a3909fc47a743
2020-08-29 21:41:20.676 Machine ID: 1b8ad5fdb13148fa9eac96eb81748d7c
2020-08-29 21:41:20.707 Component SVRTcli.exe version 2.7.0
2020-08-29 21:41:20.707 Component control.dll version 2.7.0
2020-08-29 21:41:20.707 Component SVRTservice.exe version 2.7.0
2020-08-29 21:41:20.707 Component engine\osdp.dll version 1.44.1.2490
2020-08-29 21:41:20.707 Component engine\veex.dll version 3.79.0.2490
2020-08-29 21:41:20.707 Component engine\savi.dll version 9.0.20.2490
2020-08-29 21:41:20.731 Component rkdisk.dll version 1.5.33.1
2020-08-29 21:41:20.731 Version info: Product version 2.7.0
2020-08-29 21:41:20.731 Version info: Detection engine 3.79.0
2020-08-29 21:41:20.731 Version info: Detection data 5.76
2020-08-29 21:41:20.731 Version info: Build date 23.06.2020
2020-08-29 21:41:20.731 Version info: Data files added 368
2020-08-29 21:41:20.731 Version info: Last successful update 29.08.2020 23:41:08

2020-08-29 22:56:40.606 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files (x86)\BetterHash\Cores\claymore-dual\cuda10\EthDcrMiner64.exe
2020-08-29 22:56:45.433 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files (x86)\BetterHash\Cores\claymore-dual\EthDcrMiner64.exe
2020-08-29 22:56:45.433 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{3D2436F3-81C6-427F-BD99-085CDFD051E5}
2020-08-29 22:56:45.433 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{4F0EC444-D5CC-4413-A750-37D5E54CE275}
2020-08-29 22:56:45.433 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{3D2436F3-81C6-427F-BD99-085CDFD051E5}
2020-08-29 22:56:45.433 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{4F0EC444-D5CC-4413-A750-37D5E54CE275}
2020-08-29 22:56:50.287 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files (x86)\BetterHash\Cores\claymore-dual-etc\cuda10\EthDcrMiner64Etc.exe
2020-08-29 22:56:55.053 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files (x86)\BetterHash\Cores\claymore-dual-etc\EthDcrMiner64Etc.exe
2020-08-29 22:56:55.053 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{3A01136B-713C-4FB9-B848-F95524C4EADE}
2020-08-29 22:56:55.053 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{2791A267-3B92-436D-99FC-81EE8F0305AD}
2020-08-29 22:56:55.053 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{3A01136B-713C-4FB9-B848-F95524C4EADE}
2020-08-29 22:56:55.053 >>> Virus 'Mal/VMProtBad-A' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{2791A267-3B92-436D-99FC-81EE8F0305AD}
2020-08-29 22:57:00.094 >>> Virus 'Mal/VMProtBad-A' found in file C:\Program Files (x86)\BetterHash\Cores\claymore-xmr\NsGpuCNMiner.exe
2020-08-29 22:57:06.407 >>> Virus 'Troj/Miner-LX' found in file C:\Program Files (x86)\BetterHash\Cores\ewbf\miner.exe
2020-08-29 22:57:06.407 >>> Virus 'Troj/Miner-LX' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8FD7C2C1-2E26-414C-BE9B-0E9E4A406F86}
2020-08-29 22:57:06.407 >>> Virus 'Troj/Miner-LX' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{E224EEDE-AD45-408A-8C67-9728D8181DA2}
2020-08-29 22:57:06.407 >>> Virus 'Troj/Miner-LX' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{8FD7C2C1-2E26-414C-BE9B-0E9E4A406F86}
2020-08-29 22:57:06.408 >>> Virus 'Troj/Miner-LX' found in file HKLM\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\{E224EEDE-AD45-408A-8C67-9728D8181DA2}
2020-08-29 22:57:11.157 >>> Virus 'Mal/Generic-S' found in file C:\Program Files (x86)\BetterHash\Cores\ewbf-zhash\miner-zh.exe
2020-08-29 23:01:28.843 Could not open C:\swapfile.sys
2020-08-29 23:02:03.766 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\GameBarElevatedFT_Alias.exe
2020-08-29 23:02:03.771 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python.exe
2020-08-29 23:02:03.771 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Microsoft.DesktopAppInstaller_8wekyb3d8bbwe\python3.exe
2020-08-29 23:02:03.775 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Microsoft.GamingApp_8wekyb3d8bbwe\XboxPcApp.exe
2020-08-29 23:02:03.779 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
2020-08-29 23:02:03.783 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Microsoft.XboxGamingOverlay_8wekyb3d8bbwe\GameBarElevatedFT_Alias.exe
2020-08-29 23:02:03.784 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\MicrosoftEdge.exe
2020-08-29 23:02:03.785 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\python.exe
2020-08-29 23:02:03.785 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\python3.exe
2020-08-29 23:02:03.786 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\Spotify.exe
2020-08-29 23:02:03.790 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\SpotifyAB.SpotifyMusic_zpdnekdrzrea0\Spotify.exe
2020-08-29 23:02:03.790 Could not open C:\Users\Donno\AppData\Local\Microsoft\WindowsApps\XboxPcApp.exe
2020-08-29 23:03:44.731 Could not open C:\Users\Donno\AppData\Roaming\Opera Software\Opera GX Stable\Current Session
2020-08-29 23:03:44.731 Could not open C:\Users\Donno\AppData\Roaming\Opera Software\Opera GX Stable\Current Tabs
2020-08-29 23:05:55.098 Could not open C:\Windows\System32\config\BBI
2020-08-29 23:22:46.146 Could not open LOGICAL:0003:00000000
2020-08-29 23:22:46.159 Could not open D:\
2020-08-29 23:27:23.428 Could not open E:\pagefile.sys
2020-08-29 23:39:53.745 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Athena\Binaries\UWP64\SoTGame.exe
2020-08-29 23:39:54.575 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\cpprest140_uwp_2_9.dll
2020-08-29 23:39:54.671 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\CoherentGTCore.dll
2020-08-29 23:39:54.673 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\CoherentGTJS.dll
2020-08-29 23:39:54.674 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\coherenticuin.dll
2020-08-29 23:39:54.675 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\coherenticuuc.dll
2020-08-29 23:39:54.677 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\CoherentUIGT.dll
2020-08-29 23:39:54.678 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\icudtcoherent53.dll
2020-08-29 23:39:54.679 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\RenoirCore.UWP.dll
2020-08-29 23:39:54.681 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\CoherentUIGT\UWP64\Release\WTF.dll
2020-08-29 23:39:54.726 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\PhysX\UWP64\VS2017\PhysX3Common_x64.dll
2020-08-29 23:39:54.728 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\PhysX\UWP64\VS2017\PhysX3Cooking_x64.dll
2020-08-29 23:39:54.729 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\PhysX\UWP64\VS2017\PhysX3_x64.dll
2020-08-29 23:39:54.730 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\PhysX\UWP64\VS2017\PxFoundation_x64.dll
2020-08-29 23:39:54.732 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Binaries\ThirdParty\PhysX\UWP64\VS2017\PxPvdSDK_x64.dll
2020-08-29 23:39:54.802 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Source\ThirdParty\AMD\AGS_5_2_0\lib\amd_ags_uwp_x64.dll
2020-08-29 23:39:54.924 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Source\ThirdParty\PlayfabParty\Party\UWP\1.4.8\lib\uwp64\release\Party.dll
2020-08-29 23:39:55.035 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Engine\Source\ThirdParty\PlayfabParty\PartyXboxLive\UWP\1.2.5\lib\uwp64\release\PartyXboxLive.dll
2020-08-29 23:39:55.039 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\EraAdapter.dll
2020-08-29 23:39:55.180 Could not open E:\WindowsApps\Microsoft.SeaofThieves_2.94.8070.2_x64__8wekyb3d8bbwe\Microsoft.Xbox.Services.dll
2020-08-29 23:39:55.274 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\amd_ags_uwp_x64.dll
2020-08-29 23:39:55.287 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\bink2winrt_x64.uni10.dll
2020-08-29 23:39:55.289 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\commonEventLoggingLibrary_release.dll
2020-08-29 23:39:55.290 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\commonEventLoggingLibrary_release_UWPx64_2015.dll
2020-08-29 23:39:55.291 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\cpprest140_uwp_2_9.dll
2020-08-29 23:39:55.292 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Fanatec.Devices.dll
2020-08-29 23:39:55.294 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\ForzaHorizon4.exe
2020-08-29 23:39:55.295 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\GameChat2.dll
2020-08-29 23:39:55.296 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\GameControllerInfo.dll
2020-08-29 23:39:58.243 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Media\ControllerFFB.ini
2020-08-29 23:39:58.245 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Media\ControllerRec.ini
2020-08-29 23:39:58.924 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Media\Physics\PhysicsSettings.ini
2020-08-29 23:39:59.091 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Media\sfsdata
2020-08-29 23:40:03.812 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Microsoft.Xbox.Input.AdvancedGipWheel.dll
2020-08-29 23:40:03.813 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\Microsoft.Xbox.Services.dll
2020-08-29 23:40:03.824 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\TargetHardwareProfiler.dll
2020-08-29 23:40:03.828 Could not open E:\WindowsApps\Microsoft.SunriseBaseGame_1.432.823.2_x64__8wekyb3d8bbwe\xrnm.dll
2020-08-29 23:40:03.972 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\EraAdapter\UWP64\EraAdapter.dll
2020-08-29 23:40:04.040 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\ApexFramework_x64.dll
2020-08-29 23:40:04.041 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\APEX_Clothing_x64.dll
2020-08-29 23:40:04.043 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\APEX_Destructible_x64.dll
2020-08-29 23:40:04.044 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\APEX_Legacy_x64.dll
2020-08-29 23:40:04.045 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\PhysX3Common_x64.dll
2020-08-29 23:40:04.047 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\PhysX3Cooking_x64.dll
2020-08-29 23:40:04.048 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\PhysX3_x64.dll
2020-08-29 23:40:04.049 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\PhysX\PhysX-3.4\UWP64\VS2015\PxFoundation_x64.dll
2020-08-29 23:40:04.117 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\XSAPI\1608\UWP64\Microsoft.Xbox.ChatAudio.dll
2020-08-29 23:40:04.118 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\XSAPI\1608\UWP64\Microsoft.Xbox.GameChat.dll
2020-08-29 23:40:04.120 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Binaries\ThirdParty\XSAPI\1608\UWP64\Microsoft.Xbox.Services.dll
2020-08-29 23:40:04.160 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseCompat.ini
2020-08-29 23:40:04.161 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseDeviceProfiles.ini
2020-08-29 23:40:04.162 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseEditor.ini
2020-08-29 23:40:04.163 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseEditorGameAgnostic.ini
2020-08-29 23:40:04.165 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseEditorKeyBindings.ini
2020-08-29 23:40:04.167 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseEditorUserSettings.ini
2020-08-29 23:40:04.168 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseEngine.ini
2020-08-29 23:40:04.170 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseGame.ini
2020-08-29 23:40:04.171 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseInput.ini
2020-08-29 23:40:04.173 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseInternalGame.ini
2020-08-29 23:40:04.174 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseLightmass.ini
2020-08-29 23:40:04.175 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\BaseScalability.ini
2020-08-29 23:40:04.177 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\ConsoleVariables.ini
2020-08-29 23:40:04.212 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\Editor.ini
2020-08-29 23:40:04.213 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\EditorTutorials.ini
2020-08-29 23:40:04.225 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\Engine.ini
2020-08-29 23:40:04.226 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\PortableObjectExport.ini
2020-08-29 23:40:04.228 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\PortableObjectImport.ini
2020-08-29 23:40:04.229 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\PropertyNames.ini
2020-08-29 23:40:04.231 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\RegenerateEditor.ini
2020-08-29 23:40:04.232 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\RegenerateEditorTutorials.ini
2020-08-29 23:40:04.233 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\RegenerateEngine.ini
2020-08-29 23:40:04.235 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\RepairData.ini
2020-08-29 23:40:04.236 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\ResourceFileGen.ini
2020-08-29 23:40:04.237 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\ToolTips.ini
2020-08-29 23:40:04.238 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Localization\WordCount.ini
2020-08-29 23:40:04.249 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\UWP\UWPEngine.ini
2020-08-29 23:40:04.260 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\Engine\Config\Windows\WindowsEngine.ini
2020-08-29 23:40:08.146 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\AppX\ShooterGame\Binaries\UWP64\ShooterGame.exe
2020-08-29 23:40:08.148 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\cpprest140_uwp_2_8.dll
2020-08-29 23:40:08.149 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\libogg_64.dll
2020-08-29 23:40:08.151 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\libvorbisfile_64.dll
2020-08-29 23:40:08.152 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\libvorbis_64.dll
2020-08-29 23:40:08.153 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Binaries\UWP64\ShooterGame.exe
2020-08-29 23:40:08.177 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultDeviceProfiles.ini
2020-08-29 23:40:08.179 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultEditor.ini
2020-08-29 23:40:08.180 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultEditorUserSettings.ini
2020-08-29 23:40:08.181 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultEngine.ini
2020-08-29 23:40:08.183 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultGame.ini
2020-08-29 23:40:08.184 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultGameUserSettings.ini
2020-08-29 23:40:08.186 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\DefaultInput.ini
2020-08-29 23:40:08.198 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\Localization\ShooterGame.ini
2020-08-29 23:40:08.233 Could not open E:\WindowsApps\StudioWildcard.4558480580BB9_1.80.801.2_x64__1w2mm55455e38\ShooterGame\Config\UWP\UWPEngine.ini
2020-08-29 23:41:19.684 The following items will be cleaned up:
2020-08-29 23:41:19.684 Mal/VMProtBad-A
2020-08-29 23:41:19.684 Troj/Miner-LX
2020-08-29 23:41:19.684 Mal/Generic-S
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Reklama
Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 02:13

RogueKiller Anti-Malware V14.7.0.0 (x64) [Aug 24 2020] (Free) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19041) 64 bits
Started in : Normal mode
User : Donno [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20200828_093149, Driver : Loaded
Mode : Standard Scan, Scan -- Date : 2020/08/30 02:03:23 (Duration : 00:07:01)
Switches : -minimize

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[PUP.CryptoTab (Potentially Malicious)] CryptoTabCrashHandler64.exe (7340) -- (CRYPTOCOMPANY OÜ) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\CryptoTabCrashHandler64.exe -> Found
[PUP.CryptoTab (Potentially Malicious)] CryptoTabCrashHandler.exe (7448) -- (CRYPTOCOMPANY OÜ) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\CryptoTabCrashHandler.exe -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[PUP.CryptoTab (Potentially Malicious)] cryptobrowserm (0) -- (CRYPTOCOMPANY OÜ) "C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe" /medsvc -> Found
[PUP.CryptoTab (Potentially Malicious)] cryptobrowser (0) -- (CRYPTOCOMPANY OÜ) "C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe" /svc -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[PUP.CryptoTab (Potentially Malicious)] (CRYPTOCOMPANY OÜ) \CryptoTabUpdateTaskMachineCore -- C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe [/c] -> Found
[PUP.CryptoTab (Potentially Malicious)] (CRYPTOCOMPANY OÜ) \CryptoTabUpdateTaskMachineUA -- C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe [/ua /installsource scheduler] -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
>>>>>> O101 - Clsid
[PUP.CryptoTab (Potentially Malicious)] (X64) HKEY_CLASSES_ROOT\CLSID\{27F88A2E-6B92-4465-BBA7-CB5AAE3A49D6} -- (CRYPTOCOMPANY OÜ) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\psmachine_64.dll -> Found
[PUP.CryptoTab (Potentially Malicious)] (X64) HKEY_CLASSES_ROOT\CLSID\{873EEE32-742C-4A6A-A069-A223A12B849F} -- (CRYPTOCOMPANY OÜ) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\psmachine_64.dll -> Found
>>>>>> XX - Software
[PUP.CryptoTab (Potentially Malicious)] (X86) HKEY_LOCAL_MACHINE\Software\CryptoCompany -- N/A -> Found
[PUP.CryptoTab (Potentially Malicious)] (X64) HKEY_USERS\S-1-5-21-4085979903-1647112398-1710435287-1001\Software\CryptoCompany -- N/A -> Found
[PUP.InnovativeSolutions (Potentially Malicious)] (X64) HKEY_USERS\S-1-5-21-4085979903-1647112398-1710435287-1001\Software\Innovative Solutions -- N/A -> Found
>>>>>> O4 - Run
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_USERS\S-1-5-21-4085979903-1647112398-1710435287-1001\Software\Microsoft\Windows\CurrentVersion\Run|PreMiD -- "C:\Users\Donno\AppData\Roaming\PreMiD\PreMiD.exe" --hidden -> Found
>>>>>> O23 - Services
[PUP.CryptoTab (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cryptobrowserm -- (CRYPTOCOMPANY OÜ) "C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe" -> Found
[PUP.CryptoTab (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\cryptobrowser -- (CRYPTOCOMPANY OÜ) "C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe" -> Found
>>>>>> O87 - Firewall
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{C315EF22-9425-4FE8-A1F6-FA5112F0980A} -- v2.30|Action=Block|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe|Name=premid.exe|Desc=premid.exe| -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{F8D6AC99-6287-4236-85B3-0A2BFAEFC959}C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe|Name=premid.exe|Desc=premid.exe|Defer=User| (C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{06795A92-30BA-4ACE-A270-FBE8ECADE45C} -- v2.30|Action=Block|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe|Name=premid.exe|Desc=premid.exe| -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{C6D19894-426F-464C-9A7D-D170B3EBE0B3}C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe|Name=premid.exe|Desc=premid.exe|Defer=User| (C:\users\donno\appdata\local\temp\rar$exa3612.43069\premid.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{C228F3E5-9879-43C6-9D4D-9C761F4BB240}C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Public|App=C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe|Name=Raid: Shadow Legends|Desc=Raid: Shadow Legends|Defer=User| (C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{F79DDDED-A633-4D80-945E-629214716B43}C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Public|App=C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe|Name=Raid: Shadow Legends|Desc=Raid: Shadow Legends|Defer=User| (C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\219\raid.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{0CE74ECA-176B-4CD8-89B2-8C4425D8A2B8}C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe|Name=phoenixminer.exe|Desc=phoenixminer.exe|Defer=User| (C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{09E94502-D37F-4DB2-AE10-E309BDAF464F}C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe|Name=phoenixminer.exe|Desc=phoenixminer.exe|Defer=User| (C:\users\donno\appdata\roaming\salad\plugin-bin\phoenixminer-5.0e\phoenixminer.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{061C41A9-AEEC-4C27-8C41-EAABD1066A7B} -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\donno\appdata\roaming\premid\premid.exe|Name=premid.exe|Desc=premid.exe|Defer=User| (C:\users\donno\appdata\roaming\premid\premid.exe) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|{0549DF1C-B7F5-4850-9519-A95DEF436093} -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\donno\appdata\roaming\premid\premid.exe|Name=premid.exe|Desc=premid.exe|Defer=User| (C:\users\donno\appdata\roaming\premid\premid.exe) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|UDP Query User{5DA4BC6E-AE41-4413-A339-10BAACA7D8FF}C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=17|Profile=Private|App=C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe|Name=Raid: Shadow Legends|Desc=Raid: Shadow Legends|Defer=User| (C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe) (missing) -> Found
[Suspicious.Path (Potentially Malicious)] (X64) HKEY_LOCAL_MACHINE\System\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules|TCP Query User{B2235AC8-140A-45EE-B294-A690F94DBAE5}C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe -- v2.10|Action=Allow|Active=TRUE|Dir=In|Protocol=6|Profile=Private|App=C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe|Name=Raid: Shadow Legends|Desc=Raid: Shadow Legends|Defer=User| (C:\users\donno\appdata\local\plarium\plariumplay\standaloneapps\raid\218\raid.exe) (missing) -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
[PUP.CryptoTab (Potentially Malicious)] (folder) CryptoCompany -- C:\Users\Donno\AppData\Local\CryptoCompany -> Found
[BitMiner.Gen0 (Malicious)] (file) xmrig-nvidia.exe -- C:\Program Files (x86)\BetterHash\Cores\xmrig-nvidia\xmrig-nvidia.exe -> Found
[PUP.CryptoTab (Potentially Malicious)] (folder) CryptoCompany -- C:\Program Files (x86)\CryptoCompany -> Found

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod jaro3 » 30 srp 2020 16:10

Zavři všechny programy a prohlížeče. Deaktivuj antivir a firewall.
Prosím, odpoj všechny USB (kromě myši s klávesnice) nebo externí disky z počítače před spuštěním tohoto programu.
Spusť znovu RogueKiller ( Pro Windows Vista nebo Windows 7, klepni pravým a vyber "Spustit jako správce", ve Windows XP poklepej ke spuštění).
- klikni na „Start Scan“. V novém okně nic neměň a klikni dole na „Start Scan“,
po jeho skončení - vše zatrhni (dej zatržítka vlevo od nálezů , do bílých políček)
- pak klikni na "Remove Selected"
- Počkej, dokud Status box nezobrazí " Removal finished, please review result "
- Klikni na "Open report " a pak na " Open TXT“ a zkopíruj ten log a vlož obsah té zprávy prosím sem. Log je možno nalézt v C:\ProgramData\RogueKiller\Logs - Zavři RogueKiller.

Vypni antivir i firewall.
Stáhni Zoek.exe
http://download.bleepingcomputer.com/smeenk/zoek.exe

Zavři všechny ostatní programy , okna i prohlížeče.
Spusť Zoek.exe ( u win vista , win7, 8 klikni na něj pravým a vyber : „Spustit jako správce“
-pozor , náběh programu může trvat déle.
Do okna programu vlož skript níže:

Kód: Vybrat vše

autoclean;
resethosts;
emptyclsid;
IEdefaults;
FFdefaults;
CHRdefaults;
emptyIEcache;
emptyFFcache;
emptyCHRcache;
emptyalltemp;
emptyflash;
emptyjava;
emptyrecycle.bin;

klikni na Run Script
Program provede sken , opravu, sken i oprava může trvat i více minut ,je třeba posečkat do konce. Do okna neklikej!
Program nabídne restart , potvrď .
Po restartu se může nějaký čas ukázat pouze černá plocha , to je normální. Je třeba počkat až se vytvoří log. Ten si můžeš uložit třeba do dokumentů , jinak se sám ukládá do:
C:\zoek-results.log Zkopíruj sem celý obsah toho logu.
Pokud budou problémy , spusť zoek v nouz. režimu.


Stáhni si Zemana AntiMalware Free z tohoto odkazu:
https://www.zemana.com/Download/AntiMal ... .Setup.exe
a ulož si ho na plochu.
Poklepej na tento soubor na ploše a postupuj podle pokynů k instalaci programu.
Přijmi licenci k používání programu EULA , pokud se nabídne.
Pokud je k dispozici aktualizace programu , klepni na tlačítko „Update now“ ( aktualizovat nyní).
Můžeš si zatrhnout i vytvoření bodu obnovy:
Klikni na ozubené kolečko , poté na „Skenování“ a zatrhni „vytvářet body obnovy“.
Vrať se zpět ( klikni na domeček).
Zavři všechny otevřené soubory, složky a prohlížeče
Neměň žádné nastavení. Klikni na „Skenovat“.
Po skenu lze vidět , zda jsou nějaké nákazy. Klikni na „Další“. Nákazy budou přemístěny do karantény.
Když je skenování dokončeno, objeví se tisková zpráva , zkopíruj sem celý obsah té zprávy.
Jinak můžeš zprávy vidět , když klikneš vpravo nahoře na „ zprávy“.


Vlož nový log z HJT + informuj o problémech
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 16:58

RogueKiller Anti-Malware V14.7.0.0 (x64) [Aug 24 2020] (Free) by Adlice Software
mail : https://adlice.com/contact/
Website : https://adlice.com/download/roguekiller/
Operating System : Windows 10 (10.0.19041) 64 bits
Started in : Normal mode
User : Donno [Administrator]
Started from : C:\Program Files\RogueKiller\RogueKiller64.exe
Signatures : 20200828_093149, Driver : Loaded
Mode : Standard Scan, Scan -- Date : 2020/08/30 16:50:50 (Duration : 00:07:03)

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Processes ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Process Modules ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Services ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Tasks ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Registry ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ WMI ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Hosts File ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Files ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Web browsers ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤

¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤ Antirootkit : 0 (Driver: Loaded) ¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤¤
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 17:25

Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
Tool run by Donno on 30.08.2020 at 16:59:48,69.
Microsoft Windows 10 Pro 10.0.19041 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Donno\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

30.08.2020 17:01:10 Zoek.exe System Restore Point Created Successfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

# localhost name resolution is handled within DNS itself.
127.0.0.1 localhost
::1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\AGEIA Technologies deleted successfully
C:\PROGRA~2\LDPlayer deleted successfully
C:\Program Files\ldplayerbox deleted successfully
C:\PROGRA~3\SoftwareDistribution deleted successfully
C:\PROGRA~3\ssh deleted successfully
C:\Users\Donno\AppData\Roaming\BetterHash deleted successfully
C:\Users\Donno\AppData\Local\DBG deleted successfully
C:\Users\Donno\AppData\Local\ESET deleted successfully
C:\Users\Donno\AppData\Local\Kao - Round 2 deleted successfully
C:\Users\Donno\AppData\Local\PackageStaging deleted successfully
C:\Users\Donno\AppData\Local\PeerDistRepub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistPub deleted successfully
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\PeerDistRepub deleted successfully

==== Deleting CLSID Registry Keys ======================


==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== FireFox Fix ======================

Deleted from C:\Users\Donno\AppData\Roaming\Mozilla\Firefox\Profiles\ss8t47sd.default-release\prefs.js:

Added to C:\Users\Donno\AppData\Roaming\Mozilla\Firefox\Profiles\ss8t47sd.default-release\prefs.js:
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

ProfilePath: C:\Users\Donno\AppData\Roaming\Mozilla\Firefox\Profiles\ss8t47sd.default-release

user.js not found
---- Lines searchengine removed from prefs.js ----
user_pref("browser.pageActions.persistedActions", "{\"version\":1,\"ids\":[\"bookmark\",\"pinTab\",\"bookmarkSeparator\",\"copyURL\",\"emailLink\",\"a
---- FireFox user.js and prefs.js backups ----

prefs__1715_.backup

==== Deleting Files \ Folders ======================

C:\PROGRA~2\AGEIA Technologies not found
C:\PROGRA~2\LDPlayer not found
C:\Users\Donno\AppData\Roaming\.tlauncher deleted
C:\Users\Donno\AppData\Roaming\BetterDiscord deleted
C:\Users\Donno\AppData\Roaming\Cudo Miner deleted
C:\Users\Donno\AppData\Roaming\discord deleted
C:\Users\Donno\AppData\Roaming\Medal deleted
C:\Users\Donno\AppData\Roaming\NZXT CAM deleted
C:\Users\Donno\AppData\Roaming\PreMiD deleted
C:\Users\Donno\AppData\Roaming\slobs-client deleted
C:\Users\Donno\.android deleted
C:\PROGRA~2\Skillbrains deleted
C:\PROGRA~2\TranslucentTB deleted
C:\Users\Donno\AppData\Roaming\tqj_1N1I1F1S1T1I0M1F1Q2Y1I1P1B0C1F1Q1P.txt deleted
C:\Users\Donno\AppData\Roaming\TranslucentTB deleted
C:\PROGRA~3\Package Cache deleted
C:\Users\Donno\AppData\Local\oobelibMkey.log deleted
C:\Users\Donno\AppData\Local\PlariumPlay.log deleted
C:\Users\Donno\AppData\Local\updater.log deleted
C:\Users\Donno\AppData\Local\cache deleted
C:\Users\Donno\AppData\Local\CrashRpt deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c064.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c066.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c077.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c079.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c08b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c08d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c09e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0a0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0b4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0b6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0cc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0dd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0df.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0f1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-126c-f28-9c0f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1122b5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1122d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1122e8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1122fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11231b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11232d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11234e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-112360.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-112371.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-112393.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1123a4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1123c5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1123d7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1123e9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-1123fa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11241c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11242d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-11244e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-13b8-3d18-112460.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de10.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de21.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de23.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de37.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de49.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de4b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de5c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de5e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de60.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de72.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de74.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de85.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de99.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de9b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141de9d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141deaf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-14c8-2c08-141deb1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565484.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565495.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5654b7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5654c8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5654da.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5654ec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-56550d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-56551e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565530.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565551.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565563.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565575.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565586.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-565598.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5655b9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5655cb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5655dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-5655ee.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-1a00-2790-56560f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c61bb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c61dc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c61ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c626c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c627e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c629f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c62c1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c62d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c62f3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c6315.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c6336.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c6338.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c6369.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c637a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c639c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c63ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c63cf.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c63ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2568-2d3c-c6430.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-4438f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443926.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443937.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443958.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-44396a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-44397c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-44398d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-44399f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-4439b1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-4439d2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-4439e3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-4439f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a09.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a1a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a3e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-2a7c-3ad4-443a80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006cb0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006cd1.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006ce3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006cf4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006d35.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006d75.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006d87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006d98.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006daa.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006dbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006dcd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006def.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e1f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e31.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e52.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e64.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e76.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006e87.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3590-1650-5006ea8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272673.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272685.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272687.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2726a8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2726ca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2726db.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2726ed.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-27273d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-27276e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-27277f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272781.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2727a3.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2727d4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2727f5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272816.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272847.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-272849.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-27286a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3754-2c8c-2728ab.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c45.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c56.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c68.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c7c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c7e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c80.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41c93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ca5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ca7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41cb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41cbb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ccc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41cce.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ce0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ce2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41ce4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-37c-77c-1a41cf5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5cae5f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5cae70.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5cae82.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5cae93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caea5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caeb7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caeb9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caeca.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caedc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caede.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caef0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caef2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caef4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf05.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf07.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf19.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf1b.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf2c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-3910-189c-5caf2e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f6a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f6c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f7d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f7f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f91.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f93.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9f95.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fa7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fa9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fba.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fbc.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fbe.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fd0.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fe5.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9fe7.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9ff9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5a8-2564-cc9ffb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfd2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfd4.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfe6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfe8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfea.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfec.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cffd.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3cfff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d001.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d013.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d015.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d017.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d019.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d02a.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d02c.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d02e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d030.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d042.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-5e0-5e4-3d044.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e1d6.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e1d8.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e1f9.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e1fb.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e20d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e22e.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e26f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e280.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e2a2.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e321.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e380.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e45d.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e4ad.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e4de.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e51f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e54f.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e580.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e5ff.tmp deleted
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\tw-900-25d0-9e621.tmp deleted
C:\Users\Donno\AppData\LocalLow\Unity deleted
"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not deleted

==== Orphaned Tasks deleted from Registry ======================

BitTorrent Web_1 deleted
BitTorrent_1 deleted

==== Firefox Start and Search pages ======================

ProfilePath: C:\Users\Donno\AppData\Roaming\Mozilla\Firefox\Profiles\ss8t47sd.default-release
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");

==== Firefox Extensions ======================

==== Firefox Plugins ======================

Profilepath: C:\Users\Donno\AppData\Roaming\Mozilla\Firefox\Profiles\ss8t47sd.default-release
- C:\Program Files x86\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll - [?]
- C:\Program Files x86\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll - [?]
C13BA06BB1A3725E380DE6A285AC602D - C:\Program Files\VideoLAN\VLC\npvlc.dll - VLC Web Plugin
- C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll - [?]
- C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npdeployJava1.dll - [?]


==== Chromium Look ======================

Cleanbrowser - Donno\AppData\Local\CryptoTab Browser\User Data\Default\Extensions\cdceffomlakcmodkiilmcbpkcpmbgoem
Material Dark - Donno\AppData\Local\CryptoTab Browser\User Data\Default\Extensions\npadhaijchjemiifipabpmeebeelbmpd
Chrome Media Router - Donno\AppData\Local\CryptoTab Browser\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Chrome Media Router - Donno\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
Chrome Media Router - Donno\AppData\Local\Vivaldi\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP"

==== All HKLM and HKCU SearchScopes ======================

HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IESR02

==== Reset Google Chrome ======================

C:\Users\Donno\AppData\Local\CryptoTab Browser\User Data\Default\Preferences was reset successfully
C:\Users\Donno\AppData\Local\CryptoTab Browser\User Data\Default\Secure Preferences was reset successfully
C:\Users\Donno\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Donno\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\Donno\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\Donno\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\Donno\AppData\Local\Vivaldi\User Data\Default\Preferences was reset successfully
C:\Users\Donno\AppData\Local\Vivaldi\User Data\Default\Secure Preferences was reset successfully
C:\Users\Donno\AppData\Local\Antenna\User Data\Default\Web Data was reset successfully
C:\Users\Donno\AppData\Local\Antenna\User Data\Default\Web Data-journal was reset successfully
C:\Users\Donno\AppData\Local\CryptoTab Browser\User Data\Default\Web Data was reset successfully
C:\Users\Donno\AppData\Local\CryptoTab Browser\User Data\Default\Web Data-journal was reset successfully
C:\Users\Donno\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Donno\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\Donno\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully
C:\Users\Donno\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully
C:\Users\Donno\AppData\Local\Vivaldi\User Data\Default\Web Data was reset successfully
C:\Users\Donno\AppData\Local\Vivaldi\User Data\Default\Web Data-journal was reset successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Donno\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Donno\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Cache found

==== Empty Edge Cache ======================

Edge Cache Emptied Successfully

==== Empty Chrome Cache ======================

C:\Users\Donno\AppData\Local\CryptoTab Browser\User Data\Default\Cache emptied successfully
C:\Users\Donno\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\Donno\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully
C:\Users\Donno\AppData\Local\Vivaldi\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

No Flash Cache Found

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=3975 folders=737 3861518563 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Donno\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\Donno\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\oobelibMkey.log" not deleted

==== EOF on 30.08.2020 at 17:23:13,03 ======================
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 17:32

Informace o kontroly
Název produktu    :  Zemana AntiMalware
Stav kontroly    :  Dokončena
Datum kontroly    :  30.08.2020 17:31:05
Typ kontroly    :  Inteligentní kontrola
Čas trvání    :  00:00:11
Zkontrolované objekty    :  1908
Zjištěné objekty    :  0
Vyloučené objekty    :  0
Automatické odesílání    :  Ano
Operační systém    :  Windows 10 x64
Procesor    :  16X AMD Ryzen 7 2700 Eight-Core Processor
Režim systému BIOS    :  UEFI
Informace o doméně    :  WORKGROUP,False,NetSetupWorkgroupName
CUID    :  127A4B08C210BBAD5C43F7
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 30 srp 2020 17:34

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:33:49, on 30.08.2020
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.19041.0001)
Boot mode: Normal

Running processes:
C:\WINDOWS\SysWOW64\muachost.exe
C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
C:\Program Files (x86)\MSI\One Dragon Center\True Color\MSI.True Color.exe
C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe
C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControlEngine.exe
C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe
C:\Program Files (x86)\TrucksBook Client\TB Client.exe
C:\Users\Donno\Downloads\hijackthis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://go.microsoft.com/fwlink/p/?Link ... id=UE01DHP
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [Lightshot] C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe
O4 - HKLM\..\Run: [CryptoTab Browser] C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKCU\..\Run: [Discord] C:\Users\Donno\AppData\Local\Discord\app-0.0.307\Discord.exe
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKCU\..\Run: [TB Client] C:\Program Files (x86)\TrucksBook Client\TB Client.exe -h
O4 - HKCU\..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe -overwolfsilent
O4 - HKCU\..\Run: [GogGalaxy] C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe /launchViaAutoStart
O4 - HKCU\..\Run: [AMDDVR] "C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe"
O4 - HKCU\..\Run: [WhatPulse] "C:\Program Files (x86)\WhatPulse2\whatpulse.exe"
O4 - HKCU\..\Run: [SIMDashboardServer] C:\Program Files (x86)\SIMDashboardServer\SIMDashboardServer.exe
O4 - HKCU\..\Run: [Medal] "C:\Users\Donno\AppData\Local\Medal\update.exe" --processStart "Medal.exe"
O4 - HKCU\..\Run: [NetLimiter] "C:\Program Files\Locktime Software\NetLimiter 4\nlclientapp.exe" /minimized
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Automatické vypnutí počítače.lnk = ?
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: AdobeUpdateService - Adobe Inc. - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD Crash Defender Service - Unknown owner - C:\WINDOWS\system32\amdfendrsr.exe (file missing)
O23 - Service: AMD External Events Utility - AMD - C:\WINDOWS\System32\DriverStore\FileRepository\u0358081.inf_amd64_a86be533e3770962\B357961\atiesrxx.exe
O23 - Service: AMD User Experience Program Launcher (AUEPLauncher) - AMD - C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPLauncher.exe
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100 (CredentialEnrollmentManagerUserSvc) - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: CredentialEnrollmentManagerUserSvc_73bf3 - Unknown owner - C:\WINDOWS\system32\CredentialEnrollmentManager.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DeveloperToolsSvc.exe,-100 (DeveloperToolsService) - Unknown owner - C:\WINDOWS\System32\DeveloperToolsSvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\85.0.4183.83\elevation_service.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google LLC - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LightKeeperService - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\LightKeeperService.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: MSI Central Service (MSI_Central_Service) - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe
O23 - Service: MSI_Companion_Service - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\One Dragon Center\Game_Summary\MSI_Companion_Service.exe
O23 - Service: Mystic_Light_Service - Micro-Star Int'l Co., Ltd. - C:\Program Files (x86)\MSI\One Dragon Center\Mystic_Light\Mystic_Light_Service.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NetLimiter 4 Service (nlsvc) - Locktime Software - C:\Program Files\Locktime Software\NetLimiter 4\NLSvc.exe
O23 - Service: Overwolf Updater Windows SCM (OverwolfUpdater) - Overwolf LTD - C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: RogueKiller RTP (rkrtservice) - Unknown owner - C:\Program Files\RogueKiller\RogueKillerSvc.exe
O23 - Service: Rockstar Game Library Service (Rockstar Service) - Rockstar Games - C:\Program Files\Rockstar Games\Launcher\RockstarService.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Riverbed Technology, Inc. - C:\Program Files (x86)\WinPcap\rpcapd.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: Realtek Audio Universal Service (RtkAudioUniversalService) - Unknown owner - C:\WINDOWS\System32\RtkAudUService64.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: OpenSSH SSH Server (sshd) - Unknown owner - C:\WINDOWS\System32\OpenSSH\sshd.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: Uncheater for BattleGrounds_GL (ucldr_battlegrounds_gl) - Wellbia.com Co., Ltd. - C:\Program Files\Common Files\Uncheater\ucldr_battlegrounds_gl.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: VoiceControlService - Micro-Star INT'L CO., LTD. - C:\Program Files (x86)\MSI\One Dragon Center\VoiceControl\VoiceControl_Service.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 11765 bytes
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod jaro3 » 30 srp 2020 18:15

Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod

Kód: Vybrat vše

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: ::1 localhost


Co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 31 srp 2020 02:47

Hotovo, problémy s kontrolou žádný a zdá se mi že už všechno frčí v poho. Na závěr jsem spustil kontrolu v Malwarebytes a našlo mi to tuto:

Malwarebytes
www.malwarebytes.com

-Podrobnosti logovacího souboru-
Datum skenování: 31.08.20
Čas skenování: 2:40
Logovací soubor: 96511ba8-eb22-11ea-bbaf-00d8612f03b9.json

-Informace o softwaru-
Verze: 4.2.0.82
Verze komponentů: 1.0.1025
Aktualizovat verzi balíku komponent: 1.0.29239
Licence: Zkušební

-Systémová informace-
OS: Windows 10 (Build 19041.450)
CPU: x64
Systém souborů: NTFS
Uživatel: System

-Shrnutí skenování-
Typ skenování: Skenování hrozeb (Threat Scan)
Spuštění skenování: Plánovač
Výsledek: Dokončeno
Skenované objekty: 313857
Zjištěné hrozby: 2
Hrozby umístěné do karantény: 0
Uplynulý čas: 4 min, 20 sek

-Možnosti skenování-
Paměť: Povoleno
Start: Povoleno
Systém souborů: Povoleno
Archivy: Povoleno
Rootkity: Zakázáno
Heuristika: Povoleno
Potenciálně nežádoucí program: Detekovat
Potenciálně nežádoucí modifikace: Detekovat

-Podrobnosti skenování-
Proces: 0
(Nebyly zjištěny žádné škodlivé položky)

Modul: 0
(Nebyly zjištěny žádné škodlivé položky)

Klíč registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Hodnota v registru: 0
(Nebyly zjištěny žádné škodlivé položky)

Data registrů: 0
(Nebyly zjištěny žádné škodlivé položky)

Datové proudy: 0
(Nebyly zjištěny žádné škodlivé položky)

Adresář: 0
(Nebyly zjištěny žádné škodlivé položky)

Soubor: 2
RiskWare.BitCoinMiner, C:\PROGRAMDATA\ROGUEKILLER\QUARANTINE\5CF1D5B51DB7A421.VIR, Žádná uživatelská akce, 874, 677864, 1.0.29239, , ame, , CFACC9D68296F9162AEA037F9AD709C0, 3C775C937868F2337D4E6EAC3C59331E8C846492BE1AF2DD1364DF3EB9BBBF9A
Malware.AI.3691863201, C:\USERS\DONNO\DESKTOP\ZOEK.EXE, Žádná uživatelská akce, 1000000, 0, 1.0.29239, 4EEA4435C23F6067DC0D5CA1, dds, 00875255, 294DBD73A55AF616B18771026B499B53, CDF21E47A065A699769D6CEB95474249270B4700547AB86369A311BB69A93DEC

Fyzický sektor: 0
(Nebyly zjištěny žádné škodlivé položky)

WMI: 0
(Nebyly zjištěny žádné škodlivé položky)


(end)

Nejsem si teď jistej či to tak má bejt a stačí jen smazat a nebo je něco špatně.
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43060
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod jaro3 » 31 srp 2020 17:04

Není nic špatně , našel dvě nákazy.

. spusť znovu Malwarebytes' Anti-Malware a dej Skenovat nyní
- po proběhnutí programu se ti objeví hláška tak klikni na „Vše do karantény(smazat vybrané)“ a na „Exportovat záznam“ a vyber „textový soubor“ , soubor nějak pojmenuj a někam ho ulož. Zkopíruj se celý obsah toho logu.

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Donator_HD
Level 2
Level 2
Příspěvky: 191
Registrován: říjen 18
Bydliště: Karlovarský Kraj
Pohlaví: Muž
Stav:
Offline

Re: Prosím o kontrolu logu, díky

Příspěvekod Donator_HD » 31 srp 2020 17:41

Jj, už jsem to včera udělal, díky za nervy a pomoc.
CPU: AMD Ryzen 7 2700,RAM: HyperX Furry Black Series 2X8GB 2666MHz,GPU: SAPPHIRE Radeon RX 470 8GB Nitro+,MB: MSI TOMAHAWK B450 MAX,PSU: EVGA 650 GQ


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 6 hostů