
==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [117472 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [17988216 2017-08-18] (Logitech Inc -> Logitech Inc.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7560296 2011-12-12] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [561056 2018-08-16] (Acronis International GmbH -> )
HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Open Source Developer, Robin Krom -> Greenshot)
HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2012-08-20] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
HKLM-x32\...\Run: [AcronisTibMounterMonitor] => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe [425864 2018-08-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
HKLM-x32\...\Run: [TrueImageMonitor.exe] => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [4231216 2018-08-16] (Acronis International GmbH -> )
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.) [File not signed]
HKU\S-1-5-21-1053401254-3134794029-3190599243-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation)
HKU\S-1-5-21-1053401254-3134794029-3190599243-1000\...\Run: [Discord] => C:\Users\Michal\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-1053401254-3134794029-3190599243-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33169992 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5300 series: C:\Windows\system32\CNMLMAT.DLL [385024 2012-03-14] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5300 series XPS: C:\Windows\system32\CNMXLMAT.DLL [385536 2011-04-13] (CANON INC.) [File not signed]
HKLM\...\Print\Monitors\Canon BJNP Port: C:\Windows\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\89.1.9140.128\Installer\chrmstp.exe [2021-04-20] (Avast Software s.r.o. -> AVAST Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\90.0.4430.93\Installer\chrmstp.exe [2021-04-26] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\86.1.6960.198\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> 
Startup: C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-11-21]
ShortcutTarget: Twitch.lnk -> C:\Users\Michal\AppData\Roaming\Twitch\Bin\Twitch.exe (Twitch Interactive, Inc. -> Twitch Interactive, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKU\S-1-5-21-1053401254-3134794029-3190599243-1000\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00A90472-5912-4BAF-A394-3B505D865C1B} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {00F659D6-175B-486C-A597-56EA39251283} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {01438559-9356-44EC-B19A-EFAEBD0DDEC8} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141192 2021-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {02E99C0C-3FC9-41F0-B491-70732CAB7246} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5255600 2021-04-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {061C58DF-445C-4FDB-B5A9-533564A38271} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {064C71E9-5A57-4079-B405-A71F18BC910F} - System32\Tasks\{2932C2F3-63F6-4991-91B4-486D5A8A5E86} => C:\Windows\system32\pcalua.exe -a C:\Users\Michal\Downloads\dotnetfx35setup(2).exe -d C:\Users\Michal\Downloads
Task: {0A55D511-27C9-4E08-A8C2-BBF20E2C2ED2} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68280 2019-11-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {0FB85692-6733-488D-A3DB-B1C63E06FED4} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {124CE8A0-0810-45DB-9528-A92FF0AAD85C} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {1C6B1A01-5971-4013-A20C-3E28FAB22979} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4686560 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
Task: {22E1F1B4-B2C8-4D88-B531-6D68D9F2FCE3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {252C78DF-D54A-4587-935E-DECDE7672CD8} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe
Task: {2EF29CD4-BB1E-4807-AC37-D67E3A6B989B} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {33E9A412-2F42-47ED-BCF7-EEAA9D13CC2F} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1053401254-3134794029-3190599243-1000UA => C:\Users\Michal\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {365A54CA-BB28-4A93-842D-58C74498B900} - System32\Tasks\CreateChoiceProcessTask => C:\Windows\System32\browserchoice.exe
Task: {38F8F30E-D1DB-4BC5-AF30-8EC3A359A03D} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {3DB3DB72-11B8-4D36-BA86-2926AC66684F} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
Task: {45A20F34-A121-4E34-A2B8-95AE2345A8B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc -> Google Inc.)
Task: {47BD0EFA-E415-4446-A033-DBF7994002AA} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {48AF29A2-F480-4245-BC8B-84C18C214A42} - System32\Tasks\AMHelper => C:\Program Files (x86)\Zemana\AntiMalware\AntiMalware.exe [682008 2021-03-30] (Zemana D.O.O. Sarajevo -> Zemana Ltd.)
Task: {4B7E22FE-B269-49F1-8BDD-A6EA91368D66} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-03-18] (Piriform Software Ltd -> Piriform)
Task: {4BEE9E36-DE50-4F12-9212-8831C28C3F49} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4C254901-5ECD-4BE2-86F0-09134D2A81E3} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4FE6F5BB-6E97-4469-97DC-F0D405DFD3A4} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {4FFEB495-3ACA-4BA1-AA12-F14B51CB5D8D} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5DFB566F-FA2D-4CA2-8C0D-DDF2887B9F7A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141192 2021-04-26] (Microsoft Corporation -> Microsoft Corporation)
Task: {604FB1F8-E1E9-4C6B-BBF8-67B4B5720114} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1053401254-3134794029-3190599243-1000Core => C:\Users\Michal\AppData\Local\Google\Update\GoogleUpdate.exe [144200 2015-08-27] (Google Inc -> Google Inc.)
Task: {6054D14E-FBE6-44A8-B02F-06DAA162BAB5} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {647A46B7-3617-48B1-B297-B5E6E6E8B808} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5255600 2021-04-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {66170810-998F-45BD-87F1-8612F0358C4C} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {66D068E0-A397-4DED-8E41-10083FB54A9A} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61112 2019-11-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {694374D7-4AFE-41EE-B420-84658331B2DF} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248800 2021-04-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {6E9D85AE-3E5B-4A3C-A276-BBA1886713B5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [27616328 2021-03-18] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6F00DD64-516B-40AC-A0C6-B818C23BE4F6} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {7590E87C-DD0C-4B8E-BAEC-5AC17C2BD498} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {83CA11A8-4625-4058-97EE-DD1D265E0A80} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [1791712 2021-03-03] (Avast Software s.r.o. -> Avast Software)
Task: {8583F0D8-7EDB-4ECC-BF15-99DAC0F71DDB} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {860542D5-4C0B-4E22-AFEB-8B0849FE4590} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe
Task: {88F83EA7-9A3D-462A-B91A-7FD133570925} - System32\Tasks\{955D1A76-6D23-4C70-8676-11D007D7F95A} => C:\Windows\system32\pcalua.exe -a D:\Data\Download\undelete_plus_setup.exe -d D:\Data\Download
Task: {8B12DB58-1A67-40BD-8213-3D44FCAF032F} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\BIN64\InstallManagerApp.exe [468992 2019-11-27] (Advanced Micro Devices, Inc.) [File not signed]
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\AMD ThankingURL" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\AMDLinkUpdate" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\ModifyLinkUpdate" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\OInstall" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task-S-1-5-21-1053401254-3134794029-3190599243-1000" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\StartCN" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\StartDVR" /ENABLE
Task: {8C59DECA-3DD6-4698-A10F-3245666F9701} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {96F8FF91-BB71-4F10-B493-FD10DB2363C4} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {972E505A-54B8-4274-A81A-D3D08EEFB53E} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A1AE6B69-AE72-4AD8-9573-A67836637F02} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {A3E5D8CB-BB58-4468-A645-62EC1F654920} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2256960 2021-04-14] (Avast Software s.r.o. -> AVAST Software)
Task: {A83113FB-616C-479E-8E6D-157C69B72F1E} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {AA352CE6-C454-416D-B7EF-DAD9C818007F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {B00AA387-AC44-49E0-9F89-63455564D9F5} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B356405F-9CB1-451D-8572-826C66484435} - System32\Tasks\ASUS\ASUS AI Suite II Execute => C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe [2935424 2012-03-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {B67D3098-3ED3-4ED8-8020-FFFB788F14C5} - System32\Tasks\OInstall => C:\WINDOWS\OInstall.exe [11995824 2016-12-06] (WZTeam -> ) [File not signed]
Task: {C40CE398-B409-4093-B6E0-830769CA3C06} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {C4209608-D096-4E7F-B7B3-249E4C7623BB} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [468992 2019-11-27] (Advanced Micro Devices, Inc.) [File not signed]
Task: {CAB0615A-78D3-48EA-B6FE-CC69D0176A26} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {D647DABE-D5EC-4B14-B080-70247055F7BC} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe
Task: {D68584F5-C4B7-4644-9634-ED672D3044F9} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {E5AC3144-2592-4E40-8287-F770203B1933} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-02] (Google Inc -> Google Inc.)
Task: {E8A59247-5479-481C-820F-BF07CFF94A43} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {EDDD2005-2AF1-441E-8B49-C636438BA65A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23248800 2021-04-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {F076E15E-EF98-4913-B9FB-72EB232B27EF} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe [891576 2019-11-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {F1DC5E98-DE41-4A70-9325-D0E3DFC9E9BC} - System32\Tasks\{2D5FE1B7-B892-4B3D-B214-98184F1CFF39} => C:\Windows\system32\pcalua.exe -a C:\Users\Michal\Downloads\dotnetfx35setup(1).exe -d C:\Users\Michal\Downloads
Task: {F956CC68-4803-49DF-8A0E-EAA6574B4A90} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2256960 2021-04-14] (Avast Software s.r.o. -> AVAST Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{FA5E7EFC-E9FC-40A2-888D-0274B642A5DD}: [DhcpNameServer] 192.168.1.1

Edge: 
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Michal\AppData\Local\Microsoft\Edge\User Data\Default [2021-04-27]

FireFox:
========
FF DefaultProfile: 6xj146g6.default-1355323692959
FF ProfilePath: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959 [2021-03-30]
FF Homepage: Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959 -> hxxp://www.seznam.cz/
FF Extension: (20-20 3D Viewer - IKEA) - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\Extensions\2020Player_IKEA@2020Technologies.com [2014-05-01] [Legacy] [not signed]
FF Extension: (FireFTP) - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2016-08-03] [Legacy]
FF Extension: (Adblock Plus) - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-05-16] [Legacy]
FF Extension: (Seznam lištička) - C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2020-02-22] [Legacy]
FF SearchPlugin: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\searchplugins\firmycz.xml [2012-12-12]
FF SearchPlugin: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\searchplugins\mapycz.xml [2012-12-12]
FF SearchPlugin: C:\Users\Michal\AppData\Roaming\Mozilla\Firefox\Profiles\6xj146g6.default-1355323692959\searchplugins\zbocz.xml [2012-12-12]
FF Plugin: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-09-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-09-04] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @raidcall.en/RCplugin -> C:\Users\Michal\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-03-10] (Raidcall) [File not signed]
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-27] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-10-27] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-12-09] (VideoLAN) [File not signed]
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-12-09] (VideoLAN) [File not signed]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-04-21] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1053401254-3134794029-3190599243-1000: @talk.google.com/GoogleTalkPlugin -> C:\Users\Michal\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-12-08] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1053401254-3134794029-3190599243-1000: @talk.google.com/O1DPlugin -> C:\Users\Michal\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-12-08] (Google Inc -> Google)
FF Plugin HKU\S-1-5-21-1053401254-3134794029-3190599243-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Michal\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1053401254-3134794029-3190599243-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Michal\AppData\Local\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-29] (Google Inc -> Google Inc.)
FF Plugin HKU\S-1-5-21-1053401254-3134794029-3190599243-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Michal\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2013-08-27] (Unity Technologies ApS -> Unity Technologies ApS)
FF Plugin ProgramFiles/Appdata: C:\Users\Michal\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-12-17]
FF Plugin ProgramFiles/Appdata: C:\Users\Michal\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-12-17]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\all-gemius.js [2014-12-17]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default [2021-04-27]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://mail.google.com; hxxps://messages.android.com; hxxps://online.rb.cz; hxxps://ytmp3.cc
CHR HomePage: Default -> hxxps://www.seznam.cz/?clid=22668
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Extension: (Překladač Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-03-20]
CHR Extension: (BetterTTV) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2021-04-27]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-04-20]
CHR Extension: (WOT: Web of Trust, hodnocení webů) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhmmomiinigofkjcapegjjndpbikblnp [2021-03-17]
CHR Extension: (uBlock Origin) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-03-28]
CHR Extension: (Clear Cache) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\cppjkneekbjaeellbfkmgnhonkkjfpdn [2019-03-15]
CHR Extension: (Adobe Acrobat) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-17]
CHR Extension: (HTTPS Everywhere) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2021-04-19]
CHR Extension: (Google Kalendář) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2021-01-09]
CHR Extension: (Disconnect) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeoacafpbcihiomhlakheieifhpjdfeo [2020-10-07]
CHR Extension: (Cisco Webex Extension) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlhmfgmfgeifomenelglieieghnjghma [2021-03-29]
CHR Extension: (Kontrola e-mailu Google) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2014-12-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-31]
CHR Extension: (Downloads Button) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\okhmlccmamkchmcmdmimiphohjhlpmgb [2021-04-27]
CHR Extension: (Evernote Web Clipper) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2020-12-09]
CHR Extension: (Chrome Media Router) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-27]
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-07-13]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1185160 2018-08-16] (Acronis International GmbH -> )
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe [920736 2012-09-11] (ASUSTeK Computer Inc. -> )
R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe [951936 2012-09-11] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-09-11] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7888408 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [623216 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [353504 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-10-27] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\89.1.9140.128\elevation_service.exe [1504864 2021-04-14] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56920 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [File not signed]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8788392 2021-04-09] (Microsoft Corporation -> Microsoft Corporation)
S3 DAUpdaterSvc; D:\Games\SteamLibrary\steamapps\common\Dragon Age Ultimate Edition\bin_ship\DAUpdaterSvc.Service.exe [25832 2014-06-29] (BioWare -> BioWare)
S4 HiPatchService; D:\Games\Smite\HiPatchService.exe [9216 2013-10-25] (Hi-Rez Studios) [File not signed]
S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [225400 2017-08-18] (Logitech Inc -> Logitech Inc.)
S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2018-08-16] (Acronis International GmbH -> Acronis International GmbH)
S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1737648 2018-08-16] (Acronis International GmbH -> )
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1903472 2015-01-05] (Electronic Arts, Inc. -> Electronic Arts)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1631360 2020-12-02] (Rockstar Games, Inc. -> Rockstar Games)
S4 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155520 2015-06-10] (Sony Mobile Communications AB -> Avanquest Software) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12001112 2019-08-29] (TeamViewer GmbH -> TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.237\WsAppService.exe [495720 2018-07-04] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2012-04-19] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2021-04-26] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-09-11] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35680 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [208552 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [365520 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250328 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99288 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16832 2021-01-09] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41304 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [177872 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [524416 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107808 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83368 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850120 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [466696 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [216376 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326976 2021-04-09] (Avast Software s.r.o. -> AVAST Software)
R0 file_tracker; C:\WINDOWS\System32\DRIVERS\file_tracker.sys [379664 2018-09-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech)
R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2017-08-18] (Logitech Inc -> Logitech Inc.)
S3 LGSHidFilt; C:\WINDOWS\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech -> Logitech Inc.)
R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
R0 tib; C:\WINDOWS\System32\DRIVERS\tib.sys [1310552 2018-09-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R2 tib_mounter; C:\WINDOWS\System32\DRIVERS\tib_mounter.sys [213336 2018-09-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R2 virtual_file; C:\WINDOWS\System32\DRIVERS\virtual_file.sys [331976 2018-09-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R0 volume_tracker; C:\WINDOWS\System32\DRIVERS\volume_tracker.sys [243472 2018-09-16] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-27 23:38 - 2021-04-27 23:39 - 000037440 _____ C:\Users\Michal\Desktop\FRST.txt
2021-04-27 23:30 - 2021-04-27 23:38 - 000000000 ____D C:\FRST
2021-04-27 23:30 - 2021-04-27 23:30 - 002298368 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2021-04-26 01:37 - 2021-04-26 01:37 - 000188308 _____ C:\Users\Michal\Documents\Sklep regaly.skp
2021-04-26 01:34 - 2021-04-26 01:34 - 000036936 _____ C:\Users\Michal\Downloads\stažený soubor (2).html
2021-04-26 01:33 - 2021-04-27 23:39 - 000166948 _____ C:\WINDOWS\ZAM.krnl.trace
2021-04-26 01:33 - 2021-04-26 08:21 - 000000000 ____D C:\Users\Michal\AppData\Local\AMSDK
2021-04-26 01:33 - 2021-04-26 01:33 - 013922376 _____ (Zemana Ltd. ) C:\Users\Michal\Downloads\AntiMalware_Setup.exe
2021-04-26 01:33 - 2021-04-26 01:33 - 000232792 _____ (Copyright 2018.) C:\WINDOWS\system32\Drivers\amsdk.sys
2021-04-26 01:33 - 2021-04-26 01:33 - 000003546 _____ C:\WINDOWS\system32\Tasks\AMHelper
2021-04-26 01:33 - 2021-04-26 01:33 - 000001333 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2021-04-26 01:33 - 2021-04-26 01:33 - 000000000 ____D C:\Users\Michal\AppData\Local\Zemana
2021-04-26 01:33 - 2021-04-26 01:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2021-04-26 01:33 - 2021-04-26 01:33 - 000000000 ____D C:\Program Files (x86)\Zemana
2021-04-26 01:32 - 2021-04-26 01:32 - 000048925 _____ C:\Users\Michal\Downloads\stažený soubor.html
2021-04-26 01:32 - 2021-04-26 01:32 - 000048925 _____ C:\Users\Michal\Downloads\stažený soubor (1).html
2021-04-19 09:12 - 2021-04-19 09:12 - 000059185 _____ C:\Users\Michal\Downloads\9761259584-zadost-prijeti-20210419.pdf
2021-04-19 09:07 - 2021-04-19 09:07 - 000213398 _____ C:\Users\Michal\Downloads\potvrzeni_opravnene_osoby_souhlas_s_ohlasenim_zmeny_mista_trvaleho_pobytu.pdf
2021-04-19 08:56 - 2021-04-19 08:56 - 000138768 _____ C:\Users\Michal\Downloads\souhlas_opravnene_osoby_s_prihlasenim_k_tp1.pdf
2021-04-19 03:07 - 2021-04-19 03:07 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-04-19 03:07 - 2021-04-19 03:07 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-04-19 03:07 - 2021-04-19 03:07 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-04-10 20:31 - 2021-04-10 20:31 - 000000000 ____D C:\Users\Michal\Games
2021-04-10 20:30 - 2021-04-10 20:30 - 000000000 ____D C:\Program Files (x86)\AOE URL Helper
2021-04-09 18:07 - 2021-04-09 18:07 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-04-09 18:07 - 2021-04-09 18:07 - 000216376 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-04-06 22:52 - 2020-03-12 08:17 - 007245824 _____ C:\Users\Michal\Downloads\RT-N12D1_3.0.0.4_380_8292-ge6e0d75d7df.trx
2021-04-05 00:06 - 2021-04-05 00:06 - 000001080 _____ C:\Users\Michal\Desktop\SpeedFan.lnk
2021-04-05 00:06 - 2021-04-05 00:06 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo
2021-04-05 00:06 - 2021-04-05 00:06 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan
2021-04-05 00:06 - 2021-04-05 00:06 - 000000000 ____D C:\Program Files (x86)\SpeedFan
2021-03-29 12:12 - 2021-03-29 12:12 - 000000000 ____D C:\Users\Michal\Desktop\CC24 Capacity

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-04-27 23:37 - 2019-08-15 15:45 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Discord
2021-04-27 23:32 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-04-27 23:20 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-04-27 23:12 - 2020-05-30 18:16 - 000000000 ____D C:\Google disc
2021-04-27 23:11 - 2021-01-01 00:40 - 000000000 ____D C:\Users\Michal\AppData\Local\D3DSCache
2021-04-27 23:09 - 2019-09-21 22:53 - 000000000 ____D C:\ProgramData\Packages
2021-04-27 23:09 - 2019-09-21 21:41 - 000000000 ____D C:\Users\Michal\AppData\Local\Packages
2021-04-27 23:08 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-04-27 23:08 - 2019-09-21 22:55 - 000000000 ____D C:\Users\Michal\AppData\Local\PlaceholderTileLogoFolder
2021-04-27 23:04 - 2020-08-16 19:01 - 001841824 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-04-27 23:04 - 2019-12-07 16:41 - 000750852 _____ C:\WINDOWS\system32\perfh005.dat
2021-04-27 23:04 - 2019-12-07 16:41 - 000162426 _____ C:\WINDOWS\system32\perfc005.dat
2021-04-27 23:04 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-04-27 23:00 - 2012-12-11 04:44 - 000000000 ____D C:\ProgramData\AVAST Software
2021-04-27 22:59 - 2018-05-03 18:49 - 000000000 ____D C:\Program Files\CCleaner
2021-04-27 22:57 - 2020-12-28 19:20 - 000003100 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2021-04-27 22:57 - 2020-08-16 18:59 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-04-27 22:57 - 2020-08-16 18:49 - 000008192 ___SH C:\DumpStack.log.tmp
2021-04-27 22:57 - 2019-09-15 12:16 - 000000000 ____D C:\Users\Michal\AppData\Roaming\Twitch
2021-04-27 22:57 - 2019-08-29 21:15 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-04-27 22:57 - 2019-08-15 15:45 - 000000000 ____D C:\Users\Michal\AppData\Local\Discord
2021-04-27 22:57 - 2018-05-07 16:24 - 000000000 ___RD C:\Users\Michal\OneDrive
2021-04-27 22:57 - 2014-12-26 13:42 - 000000000 ____D C:\ProgramData\LogiShrd
2021-04-27 22:57 - 2012-12-13 18:02 - 000000000 ____D C:\Program Files (x86)\Steam
2021-04-27 00:53 - 2020-12-28 09:45 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-04-27 00:53 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-04-26 23:48 - 2020-08-16 18:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-04-26 23:19 - 2018-04-07 18:48 - 000000000 ____D C:\Users\Michal\AppData\Local\AVAST Software
2021-04-26 22:54 - 2018-05-07 16:22 - 000000000 ____D C:\Program Files\Microsoft Office
2021-04-26 22:53 - 2020-08-16 18:59 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-04-26 22:53 - 2020-08-16 18:59 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-04-26 22:53 - 2013-03-01 11:15 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-04-26 22:53 - 2013-03-01 11:15 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-04-26 11:24 - 2021-01-01 00:40 - 000002626 _____ C:\WINDOWS\system32\Tasks\AMD ThankingURL
2021-04-26 11:24 - 2020-12-28 19:20 - 000002388 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2021-04-26 11:24 - 2020-12-28 19:20 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
2021-04-26 11:24 - 2020-12-28 19:20 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
2021-04-26 11:24 - 2020-08-16 18:59 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-04-26 11:24 - 2020-08-16 18:59 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-04-26 11:24 - 2020-08-16 18:59 - 000003100 _____ C:\WINDOWS\system32\Tasks\OInstall
2021-04-26 11:24 - 2020-08-16 18:59 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-04-26 11:24 - 2020-08-16 18:59 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1053401254-3134794029-3190599243-1000
2021-04-26 11:24 - 2020-08-16 18:59 - 000002294 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-04-26 11:23 - 2020-08-16 18:59 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-04-26 08:22 - 2012-12-18 19:20 - 000000000 ____D C:\Program Files\NetSoftware
2021-04-26 01:28 - 2020-08-16 18:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software
2021-04-25 22:01 - 2020-08-16 18:59 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-04-25 21:59 - 2020-06-08 01:16 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-04-25 21:59 - 2020-06-08 01:16 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-04-23 20:56 - 2015-11-18 11:35 - 000000000 ____D C:\Users\Michal\AppData\Local\ElevatedDiagnostics
2021-04-23 20:51 - 2019-06-29 10:43 - 000000000 ____D C:\WINDOWS\files
2021-04-23 20:47 - 2015-11-21 00:32 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-04-23 20:46 - 2020-08-16 18:50 - 000002406 _____ C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-04-20 08:55 - 2020-09-14 22:52 - 000007907 _____ C:\WINDOWS\BRRBCOM.INI
2021-04-20 08:52 - 2018-04-07 18:49 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2021-04-20 08:52 - 2018-04-07 18:49 - 000002463 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk
2021-04-19 03:35 - 2020-08-16 18:49 - 000448368 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-04-19 03:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-04-19 03:09 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-04-19 03:07 - 2020-08-16 18:51 - 002877440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2021-04-19 01:07 - 2013-07-21 03:01 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-04-19 01:03 - 2012-12-11 18:26 - 131963968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-04-10 23:20 - 2016-04-02 14:04 - 000000000 ____D C:\Users\Michal\AppData\Local\CrashDumps
2021-04-10 23:05 - 2014-12-26 13:41 - 000000000 ____D C:\ProgramData\Package Cache
2021-04-10 20:31 - 2020-08-16 18:50 - 000000000 ____D C:\Users\Michal
2021-04-09 18:07 - 2020-10-28 03:07 - 000177872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-04-09 18:07 - 2020-05-02 14:24 - 000524416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-04-09 18:07 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-04-09 18:07 - 2019-01-21 17:57 - 000365520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-04-09 18:07 - 2019-01-17 20:35 - 000250328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-04-09 18:07 - 2019-01-17 20:35 - 000099288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-04-09 18:07 - 2019-01-17 20:35 - 000035680 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-04-09 18:07 - 2018-10-28 23:46 - 000041304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-04-09 18:07 - 2018-01-05 10:15 - 000208552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-04-09 18:07 - 2013-05-31 14:59 - 000326976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-04-09 18:07 - 2013-05-31 14:59 - 000083368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-04-09 18:07 - 2012-12-11 04:44 - 000850120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-04-09 18:07 - 2012-12-11 04:44 - 000466696 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-04-09 18:07 - 2012-12-11 04:44 - 000107808 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-04-03 14:54 - 2015-08-12 13:27 - 000000000 ____D C:\Users\Michal\AppData\Local\Greenshot
2021-04-02 12:59 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-04-02 08:41 - 2020-02-09 12:57 - 000002073 _____ C:\Users\Public\Desktop\Google Slides.lnk
2021-04-02 08:41 - 2020-02-09 12:57 - 000002071 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2021-04-02 08:41 - 2020-02-09 12:57 - 000002061 _____ C:\Users\Public\Desktop\Google Docs.lnk
2021-04-02 08:41 - 2020-02-09 12:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google

==================== Files in the root of some directories ========

2013-02-05 21:14 - 2013-02-05 21:14 - 000003584 _____ () C:\Users\Michal\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-26 13:24 - 2015-03-13 22:59 - 028579392 _____ (Sony Mobile Communications                                  ) C:\Users\Michal\AppData\Local\pcc.exe
2017-09-17 23:14 - 2017-09-17 23:14 - 000003365 _____ () C:\Users\Michal\AppData\Local\recently-used.xbel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================