The last log you posted is a system scan of the operating system and it's fine, nothing to worry over...
Are you having alerts from your antivirus?
Are you having some sort of Pop Ups?
This browser is no longer supported.
Upgrade to Microsoft Edge to take advantage of the latest features, security updates, and technical support.
I used VirusTotal to scan file SECOH-QAD.dll it out a notice dangerous this ???
| SHA256: | 0398221231cff97e1fdc03d357ac4610afb8f3cdde4c90a9ec4d7823b405699e |
|---|---|
| Tên tập tin: | SECOH-QAD.dll |
| Tỷ lệ phát hiện: | 18 / 54 |
| Ngày phân tích: | 2016-07-22 05:07:40 UTC ( 2 phút trước ) |
43
47
| AVware | Trojan.Win32.Generic!BT | 20160722 |
|---|---|---|
| AegisLab | Nettool.Win64.Rpchook!c | 20160721 |
| Antiy-AVL | RiskWare[NetTool:not-a-virus]/Win64.RPCHook | 20160722 |
| CAT-QuickHeal | NetTool.RPCHook.r4 (Not a Virus) | 20160721 |
| ESET-NOD32 | Win64/HackKMS.D potentially unsafe | 20160722 |
| GData | Win64.Application.Agent.YQQKJO | 20160722 |
| Ikarus | PUA.NetTool.RPCHook | 20160721 |
| Jiangmin | NetTool.RPCHook.k | 20160722 |
| K7AntiVirus | Hacktool ( 000047b11 ) | 20160721 |
| K7GW | Hacktool ( 000047b11 ) | 20160722 |
| Kaspersky | not-a-virus:NetTool.Win64.RPCHook.a | 20160722 |
| McAfee | Generic HTool.b | 20160721 |
| McAfee-GW-Edition | Generic HTool.b | 20160722 |
| NANO-Antivirus | Riskware.Win64.HackKMS.dzkjpw | 20160722 |
| VIPRE | Trojan.Win32.Generic!BT | 20160722 |
| ViRobot | RPCHook.3584[h] | 20160722 |
| Yandex | Riskware.NetTool! | 20160721 |
| nProtect | Trojan/W32.Agent.3584.MQ | 20160721 |
| ALYac | 20160722 | |
| AVG | 20160722 | |
| Ad-Aware | 20160722 | |
| AhnLab-V3 | 20160721 | |
| Alibaba | 20160722 | |
| Arcabit | 20160722 | |
| Avast | 20160722 | |
| Avira (no cloud) | 20160721 | |
| Baidu | 20160721 | |
| BitDefender | 20160722 | |
| Bkav | 20160721 | |
| CMC | 20160715 | |
| ClamAV | 20160722 | |
| Comodo | 20160722 | |
| Cyren | 20160722 | |
| DrWeb | 20160722 | |
| Emsisoft | 20160722 | |
| F-Prot | 20160722 | |
| F-Secure | 20160722 | |
| Fortinet | 20160722 | |
| Kingsoft | 20160722 | |
| Malwarebytes | 20160722 | |
| eScan | 20160722 | |
| Microsoft | 20160722 | |
| Panda | 20160721 | |
| Qihoo-360 | 20160722 | |
| SUPERAntiSpyware | 20160722 | |
| Sophos | 20160722 | |
| Symantec | 20160722 | |
| Tencent | 20160722 | |
| TheHacker | 20160720 | |
| TrendMicro | 20160722 | |
| TrendMicro-HouseCall | 20160722 | |
| VBA32 | 20160721 | |
| Zillya | 20160721 | |
| Zoner | 20160722 |
Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.
The last log you posted is a system scan of the operating system and it's fine, nothing to worry over...
Are you having alerts from your antivirus?
Are you having some sort of Pop Ups?
I did not find in the Program Files
I only found this file:
System (C:) > logs 7/24/2016
"C:\Logs\Application - Copy.evtx"
"C:\Logs\Application.evtx"
"C:\Logs\HardwareEvents - Copy.evtx"
"C:\Logs\HardwareEvents.evtx"
"C:\Logs\Internet Explorer - Copy.evtx"
"C:\Logs\Internet Explorer.evtx"
"C:\Logs\Key Management Service - Copy.evtx"
"C:\Logs\Key Management Service.evtx"
"C:\Logs\Microsoft-Client-Licensing-Platform%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Client-Licensing-Platform%4Admin.evtx"
"C:\Logs\Microsoft-Windows-Application-Experience%4Program-Compatibility-Assistant - Copy.evtx"
"C:\Logs\Microsoft-Windows-Application-Experience%4Program-Compatibility-Assistant.evtx"
"C:\Logs\Microsoft-Windows-ApplicationResourceManagementSystem%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-ApplicationResourceManagementSystem%4Operational.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4EXE and DLL - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4EXE and DLL.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4MSI and Script - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4MSI and Script.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4Packaged app-Deployment - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4Packaged app-Deployment.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4Packaged app-Execution - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppLocker%4Packaged app-Execution.evtx"
"C:\Logs\Microsoft-Windows-AppModel-Runtime%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppModel-Runtime%4Admin.evtx"
"C:\Logs\Microsoft-Windows-AppReadiness%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppReadiness%4Admin.evtx"
"C:\Logs\Microsoft-Windows-AppReadiness%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppReadiness%4Operational.evtx"
"C:\Logs\Microsoft-Windows-AppXDeployment%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppXDeployment%4Operational.evtx"
"C:\Logs\Microsoft-Windows-AppXDeploymentServer%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppXDeploymentServer%4Operational.evtx"
"C:\Logs\Microsoft-Windows-AppXDeploymentServer%4Restricted - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppXDeploymentServer%4Restricted.evtx"
"C:\Logs\Microsoft-Windows-AppxPackaging%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-AppxPackaging%4Operational.evtx"
"C:\Logs\Microsoft-Windows-BackgroundTaskInfrastructure%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-BackgroundTaskInfrastructure%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Bits-Client%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Bits-Client%4Operational.evtx"
"C:\Logs\Microsoft-Windows-CodeIntegrity%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-CodeIntegrity%4Operational.evtx"
"C:\Logs\Microsoft-Windows-CoreSystem-SmsRouter-Events%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-CoreSystem-SmsRouter-Events%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Crypto-DPAPI%4BackUpKeySvc - Copy.evtx"
"C:\Logs\Microsoft-Windows-Crypto-DPAPI%4BackUpKeySvc.evtx"
"C:\Logs\Microsoft-Windows-Crypto-DPAPI%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Crypto-DPAPI%4Operational.evtx"
"C:\Logs\Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-DeviceManagement-Enterprise-Diagnostics-Provider%4Admin.evtx"
"C:\Logs\Microsoft-Windows-DeviceSetupManager%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-DeviceSetupManager%4Admin.evtx"
"C:\Logs\Microsoft-Windows-DeviceSetupManager%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-DeviceSetupManager%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Dhcp-Client%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-Dhcp-Client%4Admin.evtx"
"C:\Logs\Microsoft-Windows-Dhcpv6-Client%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-Dhcpv6-Client%4Admin.evtx"
"C:\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Diagnosis-DPS%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Diagnostics-Performance%4Operational.evtx"
"C:\Logs\Microsoft-Windows-GroupPolicy%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-GroupPolicy%4Operational.evtx"
"C:\Logs\Microsoft-Windows-HotspotAuth%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-HotspotAuth%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Hyper-V-Guest-Drivers%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-Hyper-V-Guest-Drivers%4Admin.evtx"
"C:\Logs\Microsoft-Windows-International%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-International%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Kernel-Boot%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-Boot%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Kernel-EventTracing%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-EventTracing%4Admin.evtx"
"C:\Logs\Microsoft-Windows-Kernel-PnP%4Configuration - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-PnP%4Configuration.evtx"
"C:\Logs\Microsoft-Windows-Kernel-Power%4Thermal-Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-Power%4Thermal-Operational.evtx"
"C:\Logs\Microsoft-Windows-Kernel-ShimEngine%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-ShimEngine%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Kernel-StoreMgr%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-StoreMgr%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Kernel-WHEA%4Errors - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-WHEA%4Errors.evtx"
"C:\Logs\Microsoft-Windows-Kernel-WHEA%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Kernel-WHEA%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Known Folders API Service - Copy.evtx"
"C:\Logs\Microsoft-Windows-Known Folders API Service.evtx"
"C:\Logs\Microsoft-Windows-LiveId%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-LiveId%4Operational.evtx"
"C:\Logs\Microsoft-Windows-MUI%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-MUI%4Admin.evtx"
"C:\Logs\Microsoft-Windows-MUI%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-MUI%4Operational.evtx"
"C:\Logs\Microsoft-Windows-NCSI%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-NCSI%4Operational.evtx"
"C:\Logs\Microsoft-Windows-NetworkProfile%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-NetworkProfile%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Ntfs%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Ntfs%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Ntfs%4WHC - Copy.evtx"
"C:\Logs\Microsoft-Windows-Ntfs%4WHC.evtx"
"C:\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4CompatAfterUpgrade - Copy.evtx"
"C:\Logs\Microsoft-Windows-Program-Compatibility-Assistant%4CompatAfterUpgrade.evtx"
"C:\Logs\Microsoft-Windows-ReadyBoost%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-ReadyBoost%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx"
"C:\Logs\Microsoft-Windows-SettingSync%4Debug - Copy.evtx"
"C:\Logs\Microsoft-Windows-SettingSync%4Debug.evtx"
"C:\Logs\Microsoft-Windows-SettingSync%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-SettingSync%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Shell-Core%4ActionCenter - Copy.evtx"
"C:\Logs\Microsoft-Windows-Shell-Core%4ActionCenter.evtx"
"C:\Logs\Microsoft-Windows-Shell-Core%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Shell-Core%4Operational.evtx"
"C:\Logs\Microsoft-Windows-SmbClient%4Connectivity - Copy.evtx"
"C:\Logs\Microsoft-Windows-SmbClient%4Connectivity.evtx"
"C:\Logs\Microsoft-Windows-SMBClient%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-SMBClient%4Operational.evtx"
"C:\Logs\Microsoft-Windows-SmbClient%4Security - Copy.evtx"
"C:\Logs\Microsoft-Windows-SmbClient%4Security.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Audit - Copy.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Audit.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Connectivity - Copy.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Connectivity.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Operational.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Security - Copy.evtx"
"C:\Logs\Microsoft-Windows-SMBServer%4Security.evtx"
"C:\Logs\Microsoft-Windows-Store%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Store%4Operational.evtx"
"C:\Logs\Microsoft-Windows-TaskScheduler%4Maintenance - Copy.evtx"
"C:\Logs\Microsoft-Windows-TaskScheduler%4Maintenance.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-LocalSessionManager%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-LocalSessionManager%4Admin.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-LocalSessionManager%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-LocalSessionManager%4Operational.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-RemoteConnectionManager%4Admin - Copy.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-RemoteConnectionManager%4Admin.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-RemoteConnectionManager%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-TerminalServices-RemoteConnectionManager%4Operational.evtx"
"C:\Logs\Microsoft-Windows-TWinUI%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-TWinUI%4Operational.evtx"
"C:\Logs\Microsoft-Windows-User Profile Service%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-User Profile Service%4Operational.evtx"
"C:\Logs\Microsoft-Windows-UserPnp%4ActionCenter - Copy.evtx"
"C:\Logs\Microsoft-Windows-UserPnp%4ActionCenter.evtx"
"C:\Logs\Microsoft-Windows-UserPnp%4DeviceInstall - Copy.evtx"
"C:\Logs\Microsoft-Windows-UserPnp%4DeviceInstall.evtx"
"C:\Logs\Microsoft-Windows-VolumeSnapshot-Driver%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-VolumeSnapshot-Driver%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Wcmsvc%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Wcmsvc%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Windows Defender%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Windows Defender%4Operational.evtx"
"C:\Logs\Microsoft-Windows-Windows Defender%4WHC - Copy.evtx"
"C:\Logs\Microsoft-Windows-Windows Defender%4WHC.evtx"
"C:\Logs\Microsoft-Windows-Windows Firewall With Advanced Security%4ConnectionSecurity - Copy.evtx"
"C:\Logs\Microsoft-Windows-Windows Firewall With Advanced Security%4ConnectionSecurity.evtx"
"C:\Logs\Microsoft-Windows-Windows Firewall With Advanced Security%4Firewall - Copy.evtx"
"C:\Logs\Microsoft-Windows-Windows Firewall With Advanced Security%4Firewall.evtx"
"C:\Logs\Microsoft-Windows-WinINet-Config%4ProxyConfigChanged - Copy.evtx"
"C:\Logs\Microsoft-Windows-WinINet-Config%4ProxyConfigChanged.evtx"
"C:\Logs\Microsoft-Windows-Winlogon%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-Winlogon%4Operational.evtx"
"C:\Logs\Microsoft-Windows-WMI-Activity%4Operational - Copy.evtx"
"C:\Logs\Microsoft-Windows-WMI-Activity%4Operational.evtx"
"C:\Logs\Security - Copy.evtx"
"C:\Logs\Security.evtx"
"C:\Logs\Setup - Copy.evtx"
"C:\Logs\Setup.evtx"
"C:\Logs\System - Copy.evtx"
"C:\Logs\System.evtx"
"C:\Logs\Windows PowerShell - Copy.evtx"
"C:\Logs\Windows PowerShell.evtx"
All the above was located on the Eset scan?
As stated before, finding files is expected as some might be found in quarantine folders or in temp files.
IF, Eset was able to start creating a log file it would be found below
C:\Program Files\EsetOnlineScanner\log.txt
I scan the slacking, should not there is logs ESET
I use ESET to scan detected out 8 virus
But it is nearly finished, scanner have stop again
Store reinstall Windows for me on the day 06/14/2016
Why have my files installed on the day 06/14/2016
Program Files 6/14/2016
Program Files (86) 06/14/2016
ProgramData 06/14/2016
Windows 06/14/2016
Now recheck it amended on the day 07.24.2016. why so?
Program Files 07/24/2016
Program File(86) 07/24/2016
ProgramData 07/24/2016
Windows 07/24/2016
This is files what?
Logs 07/24/2016:
I have no idea if Avira Safety gadgets could of had any influence with the scanner stopping.
Can you recall if the tool had found anything?
Since it did run for a time let's see if it had produced a log
See if you can find the log from ESET
C:\Program Files\EsetOnlineScanner\log.txt