
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-11-2020
Ran by linco (administrator) on DESKTOP-J0PJPO6 (ASUSTeK COMPUTER INC. FX502VE) (01-12-2020 23:15:43)
Running from C:\Users\linco\OneDrive\Počítač
Loaded Profiles: linco
Platform: Windows 10 Home Version 20H2 19042.630 (X64) Language: Čeština (Česká republika)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Battery Health Charging\AsBhcSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnNM.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe
(geek software GmbH -> geek software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe <2>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\MobileBrServ\mbbService.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9f310939ec1eebf9\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\linco\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\linco\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\ngen.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\ngentask.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngen.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentask.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2011.11613.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.621_none_e7694895260e0b6d\TiWorker.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9>
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TeamViewer -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TomTom International B.V. -> TomTom) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [117344 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [2596704 2020-12-01] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [486464 2020-10-01] (geek software GmbH -> geek software GmbH)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-2298117505-976418258-3832342613-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32281272 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2298117505-976418258-3832342613-1001\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [2216416 2020-09-02] (TomTom International B.V. -> TomTom)
HKU\S-1-5-21-2298117505-976418258-3832342613-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [90952552 2020-11-12] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-2298117505-976418258-3832342613-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\linco\AppData\Local\Microsoft\Teams\Update.exe [2452112 2020-09-16] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAD.DLL [28672 2010-08-25] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5100 series: C:\Windows\system32\CNMLMAD.DLL [361472 2010-08-25] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\us008 Langmon: C:\Windows\system32\us008lm.dll [31256 2016-02-15] (Microsoft Windows Hardware Compatibility Publisher -> )
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2020-11-20]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {052503AA-459D-4432-9AD1-1533982ADBEE} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {188876BF-EDEE-4E8A-9387-CE265DA9046E} - System32\Tasks\ASUS Battery Health Charging Notification => C:\Program Files (x86)\ASUS\ASUS Battery Health Charging\BhcMgr.exe [2478776 2016-11-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {2564D4DF-C850-4D58-9434-90FCAFD96E67} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1741416 2020-09-18] (Avast Software s.r.o. -> Avast Software)
Task: {290BEDB7-672D-4A81-9F91-5862579DE28B} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation)
Task: {2FCC2536-52B2-452C-9C14-8C78D9D1A7F4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-31] (Google LLC -> Google LLC)
Task: {36535DC6-14B1-42EB-A962-BD22196A1949} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-02-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {42D5785A-35ED-43AA-AFA0-D6A8E6793A5A} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-02-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {478C6DE4-C7A2-4663-8249-FA69755867A9} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4DF1AB1A-110B-4FD2-A255-C4F02E089B74} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {5620E5D1-3081-4726-B0A8-AE4E2049D1A0} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [5442656 2020-11-16] (Avast Software s.r.o. -> Avast Software)
Task: {5936DC24-2CB4-4217-B7DA-440A6B7ADFF2} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5EB1C8DF-0C4E-45B9-A392-5F3335ADAF29} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {607C2400-E491-4423-9907-59782433557D} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {669BA5FE-B7DF-4A9D-AF12-4A8603F3A1D5} - System32\Tasks\UMonitor Task => C:\WINDOWS\SysWOW64\UMonit64.exe [61752 2016-08-19] (GENESYS LOGIC, INC. -> )
Task: {6D6B6CA4-C9E6-49D7-AE91-66B1E758AAF8} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {76F5C288-1FD7-4AB3-80AB-DE7E572C8A22} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-31] (Google LLC -> Google LLC)
Task: {816A6D5F-E3D5-4882-8714-F73D49F2478E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {868C9BEB-2F9D-40E6-BF29-5A7C33419DAA} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4661856 2020-11-18] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 7e6b0c2d-372b-43e7-96fd-19dd33bc0713
Task: {95B6C707-EEC3-4992-9DAE-1C9189872243} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122552 2016-11-14] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {9AC3B822-A126-4F56-8768-F12E5685B199} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_453_Plugin.exe [1502776 2020-11-19] (Adobe Inc. -> Adobe)
Task: {9DE4561B-12A2-4861-B70D-80355F153286} - System32\Tasks\IcarusAvastVpnUpgrade => C:\Program Files\AVAST Software\SecureLine\setup\avast_vpn_online_setup.exe -> /silent /ShowVpnGui=0 /RestartUpdaterTaskName=IcarusAvastVpnUpgrade /RestartUpdaterAppExe="C:\Program Files\AVAST Software\SecureLine\setup\avast_vpn_online_setup.exe"
Task: {A826EE10-BABC-4D64-B8E5-7E2951F8B71E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {AEB63488-B184-44F6-9A95-2FD682825BE1} - System32\Tasks\ASUS USB Charger Plus => C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe [19967504 2016-11-14] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {CC41892C-860D-4898-A9DB-8C98DC996881} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [122552 2016-11-14] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {D288DF0A-B851-49C7-BF20-32C82981F42A} - System32\Tasks\ASUS HotfixChecker => C:\Program Files (x86)\ASUS\HotfixChecker\HotfixChecker.exe [140088 2019-04-12] (ASUSTek Computer Inc. -> ASUSTek Computer Inc.)
Task: {D8F9627D-4253-4A02-82AB-9BB5640B94D0} - System32\Tasks\Agent Activation Runtime\S-1-5-21-2298117505-976418258-3832342613-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-10-14] (Microsoft Windows -> )
Task: {D9D88A78-BB2B-4D4D-81D5-CE50611D10CD} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1188968 2020-11-18] (Avast Software s.r.o. -> AVAST Software)
Task: {DFA43575-DBCC-4F0D-87A0-1E25EFB3B888} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-19] (Adobe Inc. -> Adobe)
Task: {E6A8DFCE-D6FD-40C0-9E2B-35982F847BB7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F0B1161C-315A-4041-A847-7219B585847C} - System32\Tasks\Avast Software\Avast Cleanup Update BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [2812624 2020-12-01] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 2e5984f7-ba80-4bc8-9aaa-ebc6ab4cd103
Task: {F0EF8B0E-9517-4285-B88A-ED5A0EBDBA75} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4617832 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
Task: {F10DB309-86E8-4619-83EE-CCF405CE56A7} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {F1DB79E9-4213-4909-8B79-315A34442453} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [5442656 2020-11-25] (Avast Software s.r.o. -> Avast Software)
Task: {F4A96CF6-78BB-427F-A1D5-B2DFDF7FEA24} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26781880 2020-11-10] (Piriform Software Ltd -> Piriform Software Ltd)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
Task: C:\WINDOWS\Tasks\WpsExternal_20161114022915.job => C:\Program Files (x86)\Kingsoft\WPS Office\ksolaunch.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{42582e72-4c63-4be9-a426-7f1e4414f4ae}: [NameServer] 100.120.76.1
Tcpip\..\Interfaces\{8f7faa56-f206-44f5-aff9-a71b2a640cc6}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Tcpip\..\Interfaces\{cb788683-62bb-49bd-a2bd-8c95f035c6d8}: [DhcpNameServer] 192.168.8.1
Tcpip\..\Interfaces\{ce166e0c-1abd-4573-a63b-a0ac72c5ca8a}: [DhcpNameServer] 10.66.0.1
Tcpip\..\Interfaces\{e18207f4-a8ef-4cf7-b8a8-34da4ddaba4f}: [DhcpNameServer] 192.168.8.1 192.168.8.1
Edge:
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\linco\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-01]
Edge Notifications: Default -> hxxps://teams.microsoft.com
FireFox:
========
FF DefaultProfile: a89791ok.default
FF ProfilePath: C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default [2020-12-01]
FF user.js: detected! => C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\user.js [2019-10-07]
FF Session Restore: Mozilla\Firefox\Profiles\a89791ok.default -> is enabled.
FF Extension: (Facebook Container) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\@contain-facebook.xpi [2020-09-29]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2019-04-27]
FF Extension: (To Google Translate) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2020-11-11]
FF Extension: (Avast Passwords) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\jid1-r1tDuNiNb4SEww@jetpack.xpi [2020-02-10] [UpdateUrl:hxxps://pamcdn.avast.com/pamcdn/extensions/firefox/update.json]
FF Extension: (Czech (CZ) Language Pack) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\langpack-cs@firefox.mozilla.org.xpi [2020-11-19]
FF Extension: (Avast SafePrice | Porovnanie, ponuky, kupóny) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\safeprice@avast.com.xpi [2018-10-09]
FF Extension: (Avast SecureLine VPN) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\secureline-vpn@avast.com.xpi [2020-09-30]
FF Extension: (Avast SafePrice | Porovnanie, ponuky, kupóny) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\sp@avast.com.xpi [2020-07-03]
FF Extension: (Avast Online Security) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\wrc@avast.com.xpi [2019-11-26] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avast/aos/update.json]
FF Extension: (Image Search Options) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\{4a313247-8330-4a81-948e-b79936516f78}.xpi [2020-08-20]
FF Extension: (Plná Peňaženka Líštička Lite) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\{5f383f45-0de3-43b3-838c-ea98916167e3}.xpi [2020-10-31]
FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2020-08-31]
FF Extension: (Adblock Plus - free ad blocker) - C:\Users\linco\AppData\Roaming\Mozilla\Firefox\Profiles\a89791ok.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-11-17]
FF HKLM\...\Firefox\Extensions: [sparalarm@chip.de] - C:\Program Files (x86)\sparalarm\ff\chip_sparalarm-14.39.1-fx.xpi
FF Extension: (CHIP Sparalarm) - C:\Program Files (x86)\sparalarm\ff\chip_sparalarm-14.39.1-fx.xpi [2019-09-11]
FF HKLM-x32\...\Firefox\Extensions: [sparalarm@chip.de] - C:\Program Files (x86)\sparalarm\ff\chip_sparalarm-14.39.1-fx.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_453.dll [2020-11-19] (Adobe Inc. -> )
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_453.dll [2020-11-19] (Adobe Inc. -> )
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-09-24] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-09-24] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-09-24] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-09-24] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2020-09-24] (FOXIT SOFTWARE INC. -> Foxit Corporation)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-11-19] (Adobe Inc. -> Adobe)
R2 AsBhcService; C:\Program Files (x86)\ASUS\ASUS Battery Health Charging\AsBhcSrv.exe [114360 2016-10-20] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8454552 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [365648 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1187512 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [3096160 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [58048 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [12968552 2020-12-01] (Avast Software s.r.o. -> AVAST Software)
R2 FoxitReaderUpdateService; C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\FoxitReaderUpdateService.exe [2357864 2020-08-31] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-11-19] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 Mobile Broadband HL Service; C:\Program Files (x86)\MobileBrServ\mbbservice.exe [242264 2016-03-24] (Huawei Technologies Co.,Ltd. -> )
R2 PDF24; C:\Program Files (x86)\PDF24\pdf24.exe [486464 2020-10-01] (geek software GmbH -> geek software GmbH)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> )
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1352832 2020-11-06] (Rockstar Games, Inc. -> Rockstar Games)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [7897696 2020-11-18] (Avast Software s.r.o. -> AVAST Software)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [7032080 2016-05-12] (TeamViewer -> TeamViewer GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2020-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2020-02-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [29312 2016-11-14] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 AsusHFilter; C:\WINDOWS\System32\drivers\AsusHFilter.sys [30200 2016-12-22] (ASUSTeK Computer Inc. -> )
R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [206408 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [332368 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [247888 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [97352 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16816 2020-11-10] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42784 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [176744 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [521752 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [109280 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84856 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851608 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [469832 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [217336 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326416 2020-11-10] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [59312 2020-06-30] (Avast Software s.r.o. -> Avast Software)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [180776 2019-05-03] (GENESYS LOGIC, INC. -> Genesys Logic)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2020-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2020-02-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2020-02-12] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-12-01 10:08 - 2020-12-01 10:08 - 001139162 _____ C:\Users\linco\AppData\Local\census.cache
2020-12-01 10:07 - 2020-12-01 10:07 - 000415507 _____ C:\Users\linco\AppData\Local\ars.cache
2020-12-01 09:42 - 2020-12-01 09:42 - 000000010 _____ C:\Users\linco\AppData\Local\sponge.last.runtime.cache
2020-12-01 09:39 - 2020-12-01 09:39 - 000000000 ____D C:\WINDOWS\Trend Micro
2020-12-01 09:39 - 2020-12-01 09:39 - 000000000 ____D C:\ProgramData\Trend Micro
2020-12-01 09:38 - 2020-12-01 09:38 - 000000036 _____ C:\Users\linco\AppData\Local\housecall.guid.cache
2020-11-23 11:51 - 2020-11-23 11:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.0
2020-11-19 10:31 - 2020-11-21 19:10 - 000003768 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2020-11-19 10:31 - 2020-11-21 19:10 - 000003464 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2020-11-13 15:20 - 2020-11-13 15:30 - 166406004 _____ C:\Users\linco\OneDrive\Dokumenty\Nové video123.mp4
2020-11-13 14:57 - 2020-11-13 15:03 - 2097069466 _____ C:\Users\linco\OneDrive\Dokumenty\Nové video.mp4
2020-11-13 14:22 - 2020-11-13 14:22 - 000004536 _____ C:\Users\linco\AppData\Roaming\CamStudio.cfg
2020-11-13 14:22 - 2020-11-13 14:22 - 000000408 _____ C:\Users\linco\AppData\Roaming\CamShapes.ini
2020-11-13 14:22 - 2020-11-13 14:22 - 000000408 _____ C:\Users\linco\AppData\Roaming\CamLayout.ini
2020-11-13 14:22 - 2020-11-13 14:22 - 000000046 _____ C:\Users\linco\AppData\Roaming\Camdata.ini
2020-11-13 14:21 - 2020-11-13 14:21 - 000000000 ____D C:\Users\linco\OneDrive\Dokumenty\My CamStudio Videos
2020-11-13 14:21 - 2020-11-13 14:21 - 000000000 ____D C:\Users\linco\OneDrive\Dokumenty\My CamStudio Temp Files
2020-11-13 14:20 - 2020-11-13 14:20 - 000000096 _____ C:\Users\linco\AppData\Roaming\version2.xml
2020-11-13 14:20 - 2020-11-13 14:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CamStudio 2.7
2020-11-13 14:20 - 2020-11-13 14:20 - 000000000 ____D C:\Program Files\CamStudio 2.7
2020-11-13 13:55 - 2020-11-13 13:55 - 000000000 ____D C:\Users\linco\AppData\Roaming\BANDISOFT
2020-11-13 13:54 - 2020-11-21 10:10 - 000000000 ____D C:\Users\linco\OneDrive\Dokumenty\Bandicut
2020-11-13 13:54 - 2020-11-13 13:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicut
2020-11-13 13:54 - 2020-11-13 13:54 - 000000000 ____D C:\ProgramData\BANDISOFT
2020-11-13 13:54 - 2020-11-13 13:54 - 000000000 ____D C:\Program Files\Bandicut
2020-11-12 08:29 - 2020-11-12 08:29 - 000009265 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-11-12 08:25 - 2020-11-16 08:51 - 000002526 _____ C:\WINDOWS\system32\Tasks\ASUS HotfixChecker
2020-11-10 21:49 - 2020-11-10 21:49 - 000339552 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2020-11-10 21:49 - 2020-11-10 21:49 - 000217336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2020-11-10 16:34 - 2020-11-07 23:28 - 001769688 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-11-10 16:34 - 2020-11-07 23:28 - 001769688 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-11-10 16:34 - 2020-11-07 23:28 - 001370328 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-11-10 16:34 - 2020-11-07 23:28 - 001370328 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-11-10 16:34 - 2020-11-07 23:28 - 001054944 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-11-10 16:34 - 2020-11-07 23:28 - 001054944 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-11-10 16:34 - 2020-11-07 23:28 - 000917728 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-11-10 16:34 - 2020-11-07 23:28 - 000917728 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-11-10 16:34 - 2020-11-07 23:28 - 000455408 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-11-10 16:34 - 2020-11-07 23:28 - 000349936 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-11-10 16:34 - 2020-11-07 23:26 - 000674712 _____ C:\WINDOWS\system32\nvofapi64.dll
2020-11-10 16:34 - 2020-11-07 23:26 - 000543128 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 007707544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 006858992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 004175256 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 002509720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 002096880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 001731824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6445730.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 001585560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 001506032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 001482992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6445730.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 001159920 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 000813464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 000670616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 000656112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2020-11-10 16:34 - 2020-11-07 23:25 - 000556440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2020-11-10 16:34 - 2020-11-07 23:20 - 005976296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2020-11-09 21:54 - 2020-11-19 10:41 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-07 00:18 - 2020-11-07 00:18 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-07 00:18 - 2020-11-07 00:18 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-07 00:18 - 2020-11-07 00:18 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2020-11-07 00:18 - 2020-11-07 00:18 - 000152576 _____ C:\WINDOWS\system32\EoAExperiences.exe
2020-11-02 19:12 - 2020-11-02 19:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2020-11-02 19:12 - 2020-11-02 19:12 - 000000000 ____D C:\ProgramData\FileOpen
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-12-01 23:17 - 2020-06-20 22:03 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-12-01 23:17 - 2020-06-20 22:03 - 000003340 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-12-01 23:17 - 2020-06-20 22:03 - 000002278 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-12-01 23:17 - 2020-06-20 22:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2020-12-01 23:16 - 2020-08-22 13:05 - 000000000 ____D C:\FRST
2020-12-01 23:14 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-12-01 23:14 - 2018-09-15 20:01 - 000000000 ____D C:\Users\linco\AppData\Local\AVAST Software
2020-12-01 22:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-01 22:49 - 2019-02-03 19:31 - 000000000 ____D C:\ProgramData\Mozilla
2020-12-01 22:48 - 2018-09-15 20:01 - 000000000 ____D C:\Users\linco\AppData\LocalLow\Mozilla
2020-12-01 22:41 - 2020-06-20 22:03 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2020-12-01 22:36 - 2020-06-20 22:01 - 002229496 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-12-01 22:36 - 2020-06-20 20:24 - 000460726 _____ C:\WINDOWS\system32\perfh006.dat
2020-12-01 22:36 - 2020-06-20 20:24 - 000080908 _____ C:\WINDOWS\system32\perfc006.dat
2020-12-01 22:36 - 2019-12-07 15:41 - 000708966 _____ C:\WINDOWS\system32\perfh005.dat
2020-12-01 22:36 - 2019-12-07 15:41 - 000145298 _____ C:\WINDOWS\system32\perfc005.dat
2020-12-01 22:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-12-01 22:32 - 2018-09-15 19:57 - 000000000 ___RD C:\Users\linco\OneDrive
2020-12-01 22:29 - 2020-07-01 08:23 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2020-12-01 22:29 - 2020-06-20 22:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-12-01 22:29 - 2020-06-20 21:55 - 000008192 ___SH C:\DumpStack.log.tmp
2020-12-01 22:29 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2020-12-01 22:29 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-12-01 22:29 - 2018-09-15 21:08 - 000000000 ____D C:\Program Files\CCleaner
2020-12-01 22:29 - 2018-09-15 19:59 - 000000000 ____D C:\ProgramData\AVAST Software
2020-12-01 22:29 - 2018-09-15 19:55 - 000000000 __SHD C:\Users\linco\IntelGraphicsProfiles
2020-12-01 22:29 - 2017-07-04 19:03 - 000000000 ____D C:\ProgramData\NVIDIA
2020-12-01 22:27 - 2020-06-20 21:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-12-01 21:53 - 2020-08-08 08:05 - 000000668 _____ C:\Users\linco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-12-01 10:52 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-01 10:52 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-30 22:59 - 2018-09-15 19:57 - 000000000 ____D C:\Users\linco\AppData\Local\NVIDIA Corporation
2020-11-30 22:56 - 2018-09-15 20:13 - 000000000 ____D C:\Program Files (x86)\Steam
2020-11-30 21:01 - 2018-12-05 19:58 - 000000000 ____D C:\Users\linco\AppData\Roaming\WhatsApp
2020-11-26 00:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-11-26 00:25 - 2018-12-17 19:00 - 000000000 ____D C:\Users\linco\AppData\Local\ElevatedDiagnostics
2020-11-25 19:44 - 2020-06-10 09:47 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-11-24 15:53 - 2020-04-15 19:11 - 000000000 ____D C:\Users\linco\AppData\Local\WhatsApp
2020-11-23 19:50 - 2020-06-20 21:55 - 000636632 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-11-21 19:10 - 2020-06-20 22:03 - 000003048 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-11-21 18:49 - 2018-09-15 19:59 - 000000000 ____D C:\Users\linco\AppData\Local\NVIDIA
2020-11-19 10:41 - 2018-09-15 20:01 - 000001007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-19 10:31 - 2020-08-12 20:49 - 000000000 ____D C:\Users\linco\AppData\Local\Adobe
2020-11-19 10:30 - 2019-12-07 10:18 - 000842296 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2020-11-19 10:30 - 2019-12-07 10:18 - 000175160 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2020-11-19 10:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2020-11-19 10:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed
2020-11-19 09:38 - 2019-02-03 09:22 - 000010251 _____ C:\Users\linco\OneDrive\Dokumenty\Bez názvu 1.odt
2020-11-16 15:12 - 2020-06-16 09:02 - 000082024 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2020-11-16 08:51 - 2020-07-31 22:19 - 000003444 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-11-16 08:51 - 2020-07-31 22:19 - 000003220 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-16 08:51 - 2020-06-20 22:03 - 000003458 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003412 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{38CC7C1D-45C7-44FB-A803-5B6EEAB649F6}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003256 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003212 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003178 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2020-11-16 08:51 - 2020-06-20 22:03 - 000003044 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000002984 _____ C:\WINDOWS\system32\Tasks\ATK Package 36D18D69AFC3
2020-11-16 08:51 - 2020-06-20 22:03 - 000002974 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000002918 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2298117505-976418258-3832342613-1001
2020-11-16 08:51 - 2020-06-20 22:03 - 000002804 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-11-16 08:51 - 2020-06-20 22:03 - 000002406 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice
2020-11-16 08:51 - 2020-06-20 22:03 - 000002400 _____ C:\WINDOWS\system32\Tasks\ASUS USB Charger Plus
2020-11-16 08:51 - 2020-06-20 22:03 - 000002390 _____ C:\WINDOWS\system32\Tasks\ASUS Battery Health Charging Notification
2020-11-16 08:51 - 2020-06-20 22:03 - 000002362 _____ C:\WINDOWS\system32\Tasks\RTKCPL
2020-11-16 08:51 - 2020-06-20 22:03 - 000002322 _____ C:\WINDOWS\system32\Tasks\UMonitor Task
2020-11-16 08:51 - 2020-06-20 22:03 - 000002274 _____ C:\WINDOWS\system32\Tasks\ATK Package A22126881260
2020-11-16 08:28 - 2019-03-27 14:36 - 000000000 ____D C:\ProgramData\ASUS
2020-11-16 08:27 - 2020-07-31 22:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2020-11-14 13:42 - 2018-09-20 17:10 - 000000000 ____D C:\Users\linco\AppData\Local\CrashDumps
2020-11-14 13:04 - 2018-09-19 19:11 - 000000000 ____D C:\Users\linco\AppData\Local\PlaceholderTileLogoFolder
2020-11-13 17:20 - 2018-09-15 19:55 - 000000000 ____D C:\Users\linco\AppData\Local\Packages
2020-11-13 16:45 - 2020-04-13 19:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2020-11-13 13:53 - 2018-09-19 11:02 - 000000000 ____D C:\ProgramData\Packages
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-11-12 11:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-11-12 09:36 - 2018-09-16 13:50 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-11-12 09:13 - 2018-09-16 13:50 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-11-12 08:29 - 2020-06-20 21:57 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-11-10 21:50 - 2018-09-15 20:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-10 21:49 - 2020-10-08 22:50 - 000176744 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2020-11-10 21:49 - 2020-04-03 18:31 - 000521752 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2020-11-10 21:49 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2020-11-10 21:49 - 2019-11-21 16:36 - 000851608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000469832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000332368 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000326416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000247888 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000206408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000109280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000097352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2020-11-10 21:49 - 2019-11-21 16:36 - 000016816 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2020-11-07 23:20 - 2020-05-31 18:17 - 007005008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2020-11-07 05:01 - 2020-05-31 18:17 - 000058620 _____ C:\WINDOWS\system32\nvinfo.pb
2020-11-07 01:10 - 2017-07-04 19:03 - 005510968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 002636264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 001759032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 000992232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 000194360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 000122344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2020-11-07 01:10 - 2017-07-04 19:03 - 000083256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2020-11-07 00:24 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-11-07 00:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-11-07 00:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-11-07 00:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-11-06 08:58 - 2016-11-14 03:28 - 000000000 ____D C:\Program Files (x86)\ASUS
2020-11-06 08:51 - 2018-09-16 12:24 - 000000000 ____D C:\Program Files\Rockstar Games
2020-11-06 08:51 - 2018-09-16 12:02 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2020-11-03 16:51 - 2020-10-20 20:02 - 000000000 ____D C:\Users\linco\AppData\Roaming\Messenger
2020-11-03 16:51 - 2020-10-20 20:02 - 000000000 ____D C:\Users\linco\AppData\Local\messenger-updater
2020-11-03 16:51 - 2020-10-20 20:02 - 000000000 ____D C:\Users\linco\AppData\Local\Messenger
2020-11-02 19:12 - 2018-09-27 15:43 - 000000000 ____D C:\ProgramData\Foxit Software
2020-11-02 10:09 - 2018-09-27 15:42 - 000000000 ____D C:\Users\linco\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2020-11-01 11:56 - 2017-07-04 19:03 - 009340317 _____ C:\WINDOWS\system32\nvcoproc.bin
==================== Files in the root of some directories ========
2020-11-13 14:22 - 2020-11-13 14:22 - 000000046 _____ () C:\Users\linco\AppData\Roaming\Camdata.ini
2020-11-13 14:22 - 2020-11-13 14:22 - 000000408 _____ () C:\Users\linco\AppData\Roaming\CamLayout.ini
2020-11-13 14:22 - 2020-11-13 14:22 - 000000408 _____ () C:\Users\linco\AppData\Roaming\CamShapes.ini
2020-11-13 14:22 - 2020-11-13 14:22 - 000004536 _____ () C:\Users\linco\AppData\Roaming\CamStudio.cfg
2018-09-15 19:58 - 2019-07-07 10:46 - 000000200 _____ () C:\Users\linco\AppData\Roaming\sp_data.sys
2020-11-13 14:20 - 2020-11-13 14:20 - 000000096 _____ () C:\Users\linco\AppData\Roaming\version2.xml
2020-12-01 10:07 - 2020-12-01 10:07 - 000415507 _____ () C:\Users\linco\AppData\Local\ars.cache
2020-12-01 10:08 - 2020-12-01 10:08 - 001139162 _____ () C:\Users\linco\AppData\Local\census.cache
2020-12-01 09:38 - 2020-12-01 09:38 - 000000036 _____ () C:\Users\linco\AppData\Local\housecall.guid.cache
2020-12-01 09:42 - 2020-12-01 09:42 - 000000010 _____ () C:\Users\linco\AppData\Local\sponge.last.runtime.cache
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================