Zoek.exe v5.0.0.2 Updated 03-May-2018(Online Version)
---continue---
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c006.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c017.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c019.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c02b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c02d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c03f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c041.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c052.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c054.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c056.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c068.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c07a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c07c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c07e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c08f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c091.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c0a3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c0a5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a20-1af0-9c0b6.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1d3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1d5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1e7.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1e9.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1eb.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1fd.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae1ff.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae201.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae212.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae214.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae216.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae228.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae22a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae22c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae23e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae240.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae242.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae253.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-a54-1004-1ae255.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641af.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641b1.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641c2.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641c4.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641c6.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641d8.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641da.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641dc.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641ee.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641f0.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-1641f2.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-164203.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-164205.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-164207.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-164219.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-16421b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-16421d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-16422f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-aec-2d9c-164231.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457a7d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457a7f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457a91.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457a93.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457a95.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457aa6.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457aa8.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457aba.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457abc.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457abe.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457ad0.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457ad2.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457ae3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457ae5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457ae7.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457af9.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457afb.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457b0d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-ce0-251c-457b0f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-849889df.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-849889e1.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-849889f2.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-849889f4.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a06.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a08.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a1a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a1c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a2d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a3f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a41.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a52.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a54.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a66.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a68.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a7a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a8b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a8d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d8-3184-84988a9f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-14847e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148490.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148492.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484a3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484b5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484b7.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484c9.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484da.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484dc.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484ee.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-1484ff.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148501.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148513.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148525.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148527.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-148538.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-14853a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-14854c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-d9c-27b8-14855e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-953ee.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-953f0.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95402.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95404.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95406.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95417.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95419.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9541b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9542d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9542f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95431.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95442.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95444.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95446.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95458.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9545a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9545c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-9546e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f24-a34-95470.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e644.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e646.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e658.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e65a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e66b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e67d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e68e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e690.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e692.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6a4.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6a6.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6b8.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6ba.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6cb.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6cd.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6cf.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6e1.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6e3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f5c-19c0-11e6f5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446370.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446372.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446383.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446385.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446397.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446399.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463ab.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463ad.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463af.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463df.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463f1.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-4463f3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446405.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446407.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446418.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-44641a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-44641c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-44642e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-f90-29d0-446430.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919816.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919827.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919829.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191983b.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191983d.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191983f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919850.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919852.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919854.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919866.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919868.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191986a.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191987c.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191987e.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-1191988f.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-11919891.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-119198a3.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-119198b5.tmp deleted
C:\Windows\SysNative\config\systemprofile\AppData\Local\tw-fe8-1920-119198c6.tmp deleted
"C:\DumpStack.log.tmp" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software\Avast\datascan.json" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software\Avast\ATT\att_results.dat" not deleted
"C:\Users\syrov\AppData\Local\Avast Software\Avast\datascan.json" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software" not deleted
"C:\Users\syrov\AppData\Local\Avast Software" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software\Avast" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software\Avast\ATT" not deleted
"C:\Users\syrov\AppData\Local\Avast Software\Avast" not deleted
==== Orphaned Tasks deleted from Registry ======================
PostponeDeviceSetupToast_S-1-5-21-2271728202-260664042-4293519309-1001_0 deleted
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
efaidnbmnnnibpcajpcglclefindmkaj - No path found[]
ihcjicgdanjaechkgeegckofjjedodee - No path found[]
HKEY_CURRENT_USER\SOFTWARE\Google\Chrome\Extensions
efaidnbmnnnibpcajpcglclefindmkaj - No path found[]
CodeSandbox - ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdidglkcgdolpoijdckmafdnddjoglia
Malwarebytes Browser Guard - ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee
Edge relevant text changes - ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha
Chrome Media Router - syrov\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://go.microsoft.com/fwlink/p/?LinkId=255141"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} - http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} - http://www.bing.com/search?q={searchTer ... ORM=IESR02
==== Reset Google Chrome ======================
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Guest Profile\Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Guest Profile\Secure Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile\Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile\Secure Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\syrov\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\syrov\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences was reset successfully
C:\Users\syrov\AppData\Local\Microsoft\Edge\User Data\Default\Preferences was reset successfully
C:\Users\syrov\AppData\Local\Microsoft\Edge\User Data\Default\Secure Preferences was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Web Data will be reset at reboot
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal will be reset at reboot
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Guest Profile\Web Data was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Guest Profile\Web Data-journal was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile\Web Data was reset successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile\Web Data-journal was reset successfully
C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Web Data will be reset at reboot
C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully
C:\Users\syrov\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\syrov\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal was reset successfully
C:\Users\syrov\AppData\Local\Microsoft\Edge\User Data\Default\Web Data was reset successfully
C:\Users\syrov\AppData\Local\Microsoft\Edge\User Data\Default\Web Data-journal was reset successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\ASUS\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\ASUS\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\ASUS\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Edge Cache ======================
Edge Cache Emptied Successfully
==== Empty Chrome Cache ======================
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Cache will be emptied at reboot
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Guest Profile\Cache emptied successfully
C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\System Profile\Cache emptied successfully
C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Cache will be emptied at reboot
C:\Users\syrov\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\syrov\AppData\Local\Microsoft\Edge\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=3272 folders=2763 701300685 bytes)
==== Empty Temp Folders ======================
C:\Users\ASUS\AppData\Local\Temp will be emptied at reboot
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\syrov\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\ASUS\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\DumpStack.log.tmp" not deleted
"C:\Users\ASUS\AppData\Local\Avast Software\Avast\datascan.json" not found
"C:\Users\ASUS\AppData\Local\Avast Software\Avast\ATT\att_results.dat" not found
"C:\Users\syrov\AppData\Local\Avast Software\Avast\datascan.json" not found
"C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Web Data" not found
"C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Web Data-journal" not found
"C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Web Data" not found
"C:\Users\ASUS\AppData\Local\Avast Software" not found
"C:\Users\syrov\AppData\Local\Avast Software" not found
"C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Cache\Cache_Data" deleted
"C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Cache\No_Vary_Search" deleted
"C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Cache\Cache_Data" deleted
"C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Cache\No_Vary_Search" deleted
==== EOF on 06.11.2025 at 18:18:48,23 ======================
Prosím o kontrolu logu
Pravidla fóra
Návod na použití programu HijackThis || Návod na vyčištění počítače CCleanerem || FAQ: Antiviry
Návod na použití programu HijackThis || Návod na vyčištění počítače CCleanerem || FAQ: Antiviry
Re: Prosím o kontrolu logu
MB: MSI Z87-G45 Gaming CPU:Intel Core i7-4770K (OC @ 4GHz) [b]Fan: Noctua NH-U12P SE2 RAM:[/b]Kingston HyperX Fury Black 1600 MHz 2x8GB GPU: nVidia Asus GTX 960 Strix (4GB) SSD: Samsung 850 EVO 240GB + 840 EVO Basic 120GB HDD: 2TB WD Red + 1TB Samsung HD103SJ Zdroj: Seasonic M12II-620W Case: FRACTAL Define R4 Black Pearl OS: Win 10 Pro (64-bit)
Re: Prosím o kontrolu logu
ZEMANA ANTIMALWARE LOG:
Informace o kontroly
Název produktu : Zemana AntiMalware
Stav kontroly : Dokončena
Datum kontroly : 06.11.2025 18:26:33
Typ kontroly : Inteligentní kontrola
Čas trvání : 00:00:37
Zkontrolované objekty : 2293
Zjištěné objekty : 0
Vyloučené objekty : 0
Automatické odesílání : Ano
Operační systém : Windows 10 x64
Procesor : 4X Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz
Režim systému BIOS : UEFI
Informace o doméně : WORKGROUP,False,NetSetupWorkgroupName
CUID : 12531B0B0BB6F73944645F
---------------------------------------------------------------------------------------------------------------------------------------
KARANTENA:
Cesta Odhalení Datum
C:\Windows\system32\ClipESUConsumer.exe Trojan/Win32:HighScore.AI!2!81 06.11.2025
-----------------------------------------------------------------------------------------------------------------------------------------
Problém instalace aplikace Zoek nebyl v opomenutí vypnutí AV a firewalu, ale v přejmenování aplikace zoek(1).exe na zoek.exe.
U Zemana AV ve zprávě nic nenašel, ale při zapisování logu resp. txt se na obrazovce objevila červená hláška upozorňující na přítomnost viru,
který jsem přesunul do karantény. Zatím jsem ho nevymazal.
Informace o kontroly
Název produktu : Zemana AntiMalware
Stav kontroly : Dokončena
Datum kontroly : 06.11.2025 18:26:33
Typ kontroly : Inteligentní kontrola
Čas trvání : 00:00:37
Zkontrolované objekty : 2293
Zjištěné objekty : 0
Vyloučené objekty : 0
Automatické odesílání : Ano
Operační systém : Windows 10 x64
Procesor : 4X Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz
Režim systému BIOS : UEFI
Informace o doméně : WORKGROUP,False,NetSetupWorkgroupName
CUID : 12531B0B0BB6F73944645F
---------------------------------------------------------------------------------------------------------------------------------------
KARANTENA:
Cesta Odhalení Datum
C:\Windows\system32\ClipESUConsumer.exe Trojan/Win32:HighScore.AI!2!81 06.11.2025
-----------------------------------------------------------------------------------------------------------------------------------------
Problém instalace aplikace Zoek nebyl v opomenutí vypnutí AV a firewalu, ale v přejmenování aplikace zoek(1).exe na zoek.exe.
U Zemana AV ve zprávě nic nenašel, ale při zapisování logu resp. txt se na obrazovce objevila červená hláška upozorňující na přítomnost viru,
který jsem přesunul do karantény. Zatím jsem ho nevymazal.
MB: MSI Z87-G45 Gaming CPU:Intel Core i7-4770K (OC @ 4GHz) [b]Fan: Noctua NH-U12P SE2 RAM:[/b]Kingston HyperX Fury Black 1600 MHz 2x8GB GPU: nVidia Asus GTX 960 Strix (4GB) SSD: Samsung 850 EVO 240GB + 840 EVO Basic 120GB HDD: 2TB WD Red + 1TB Samsung HD103SJ Zdroj: Seasonic M12II-620W Case: FRACTAL Define R4 Black Pearl OS: Win 10 Pro (64-bit)
Re: Prosím o kontrolu logu
Správně.
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému
Toto otestuj na https://www.virustotal.com/#/home/uploadVirustotal
C:\Windows\system32\ClipESUConsumer.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému
Toto otestuj na https://www.virustotal.com/#/home/uploadVirustotal
C:\Windows\system32\ClipESUConsumer.exe
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Odkaz na virustotal.com:
https://www.virustotal.com/gui/file/721 ... ?nocache=1
Odkaz na virus.org:
https://www.virscan.org/report/72171bdc ... 2f4d539d01
Kromě této diagnostiky jsem z důvodu bezpečnosti změnil a zesílil hesla a nastavil dvouúrovňové nastavení prihlášení emailů.
Jak bych mohl posílit i bezpečnost na vstupu internetu (router), kromě změny hesla a názvu sítě či bezdrátové sítě - Wifi (SID) a
jaký máte názor na možnosti přerušení spojení mezi síťovou kartou a routerem (modemem)? Začel jsem tuto metodu využívat
z důvodu bezpečnosti, ale zbytečně moc kliků.
https://www.virustotal.com/gui/file/721 ... ?nocache=1
Odkaz na virus.org:
https://www.virscan.org/report/72171bdc ... 2f4d539d01
Kromě této diagnostiky jsem z důvodu bezpečnosti změnil a zesílil hesla a nastavil dvouúrovňové nastavení prihlášení emailů.
Jak bych mohl posílit i bezpečnost na vstupu internetu (router), kromě změny hesla a názvu sítě či bezdrátové sítě - Wifi (SID) a
jaký máte názor na možnosti přerušení spojení mezi síťovou kartou a routerem (modemem)? Začel jsem tuto metodu využívat
z důvodu bezpečnosti, ale zbytečně moc kliků.
MB: MSI Z87-G45 Gaming CPU:Intel Core i7-4770K (OC @ 4GHz) [b]Fan: Noctua NH-U12P SE2 RAM:[/b]Kingston HyperX Fury Black 1600 MHz 2x8GB GPU: nVidia Asus GTX 960 Strix (4GB) SSD: Samsung 850 EVO 240GB + 840 EVO Basic 120GB HDD: 2TB WD Red + 1TB Samsung HD103SJ Zdroj: Seasonic M12II-620W Case: FRACTAL Define R4 Black Pearl OS: Win 10 Pro (64-bit)
Re: Prosím o kontrolu logu
Ten soubor můžeš zase vyndat z karantény.
Stačí na pár vteřin vypnout router a pak ho zapnout. Já to takto dělám. Jinak záleží na routeru . Jsou na to i antiviry , tedy myslím na ochranu routeru/modemu. Ale to nepoužívám.
Jsou nějaké problémy?
Pokud ne:
Stáhni si zde DelFix
https://www.bleepingcomputer.com/download/delfix/
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7, 8 a10 musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Forum načítá pomalu asi to bude tou aktualizací a přechodem na jiný server.
Stačí na pár vteřin vypnout router a pak ho zapnout. Já to takto dělám. Jinak záleží na routeru . Jsou na to i antiviry , tedy myslím na ochranu routeru/modemu. Ale to nepoužívám.
Jsou nějaké problémy?
Pokud ne:
Stáhni si zde DelFix
https://www.bleepingcomputer.com/download/delfix/
ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7, 8 a10 musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci
Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Forum načítá pomalu asi to bude tou aktualizací a přechodem na jiný server.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
Vyndal jsem z karantény soubor. Problémy žádné, jen AV Zelman stále diagnostikuje tentýž soubor stejnou hláškou. Budu to brát
jako jeho nadstandard nebo bych to měl dát do vyjímek resp. odinstalovat AV z mého PC.
Snad mohu dát zelenou vlajku.
Díky za ochotu a Tvůj čas.
DELFIX LOG:
# DelFix v1.010 - Logfile created 08/11/2025 at 11:15:59
# Updated 26/04/2015 by Xplode
# Username : ASUS - NB-ASUS-K501UX
# Operating System : Windows 10 Home (64 bits)
~ Removing disinfection tools ...
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\ASUS\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
~ Cleaning system restore ...
Deleted : RP #166 [JRT Pre-Junkware Removal | 11/04/2025 18:27:18]
Deleted : RP #167 [Installed Sophos Virus Removal Tool. | 11/05/2025 18:11:11]
Deleted : RP #168 [zoek.exe restore point | 11/06/2025 16:36:49]
New restore point created !
########## - EOF - ##########
jako jeho nadstandard nebo bych to měl dát do vyjímek resp. odinstalovat AV z mého PC.
Snad mohu dát zelenou vlajku.
Díky za ochotu a Tvůj čas.
DELFIX LOG:
# DelFix v1.010 - Logfile created 08/11/2025 at 11:15:59
# Updated 26/04/2015 by Xplode
# Username : ASUS - NB-ASUS-K501UX
# Operating System : Windows 10 Home (64 bits)
~ Removing disinfection tools ...
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\ASUS\Downloads\TFC.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
~ Cleaning system restore ...
Deleted : RP #166 [JRT Pre-Junkware Removal | 11/04/2025 18:27:18]
Deleted : RP #167 [Installed Sophos Virus Removal Tool. | 11/05/2025 18:11:11]
Deleted : RP #168 [zoek.exe restore point | 11/06/2025 16:36:49]
New restore point created !
########## - EOF - ##########
MB: MSI Z87-G45 Gaming CPU:Intel Core i7-4770K (OC @ 4GHz) [b]Fan: Noctua NH-U12P SE2 RAM:[/b]Kingston HyperX Fury Black 1600 MHz 2x8GB GPU: nVidia Asus GTX 960 Strix (4GB) SSD: Samsung 850 EVO 240GB + 840 EVO Basic 120GB HDD: 2TB WD Red + 1TB Samsung HD103SJ Zdroj: Seasonic M12II-620W Case: FRACTAL Define R4 Black Pearl OS: Win 10 Pro (64-bit)
Re: Prosím o kontrolu logu
Můžeš. A ten soubor dát do vyjímek nebo změnit antivir.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

