Zdravím, tak notebook u přítelkyně zatím nic, ale poprosím o kontrolu PC u sestřenky, jako vždy hodně poamlý počítač, posílám logy...díky
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-12-2021
Ran by Adam S (administrator) on KATKA-PC (ATComputers OPTIMUS) (07-01-2022 18:13:12)
Running from C:\Users\Adam S\Desktop
Loaded Profiles: Katka & UpdatusUser & Adam S
Platform: Microsoft Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <4>
(Discord Inc. -> Discord Inc.) C:\Users\Adam S\AppData\Local\Discord\app-1.0.9003\Discord.exe <6>
(Google LLC -> ) C:\Program Files\Google\Drive File Stream\54.0.2.0\crashpad_handler.exe
(Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe
(IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe
(IObit CO., LTD -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare\Pub\PubPlatform.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Seznam.cz, a.s. -> ) C:\Users\Adam S\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Seznam.cz, a.s. -> ) C:\Users\Adam S\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Spotify AB -> Spotify Ltd) C:\Users\Adam S\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Tencent Technology(Shenzhen) Company Limited -> ) D:\program files\txgameassistant\appmarket\cef_frame_render.exe <3>
(Tencent Technology(Shenzhen) Company Limited -> ) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe
(Tencent Technology(Shenzhen) Company Limited -> Tencent) D:\program files\txgameassistant\appmarket\AppMarket.exe
(Tencent Technology(Shenzhen) Company Limited -> Tencent) D:\program files\txgameassistant\appmarket\QMEmulatorService.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9068040 2016-11-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [157464 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [3894552 2022-01-07] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-09-27] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe [55330648 2021-12-14] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe [55330648 2021-12-14] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Run: [Advanced SystemCare] => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCTray.exe [3779152 2021-09-28] (IObit CO., LTD -> IObit)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {38e6a015-501a-11ec-86c4-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {6dcf23ff-57da-11ea-8b3b-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {76221485-46b2-11eb-867f-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {7622148c-46b2-11eb-867f-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {adbd6370-ec79-11eb-965b-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {b623b378-3738-11e9-b4ce-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {c11c29f0-68e1-11ea-a150-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {ea686d71-2ee6-11eb-b4ec-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {fe59e268-2dd8-11e9-8eae-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\MountPoints2: {fe59e26d-2dd8-11e9-8eae-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-21-3410242202-4032261145-1968254855-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe [55330648 2021-12-14] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Adam S\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [109808 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [cz.seznam.software.autoupdate] => C:\Users\Adam S\AppData\Roaming\Seznam.cz\szninstall.exe [1069296 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe [55330648 2021-12-14] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [Spotify Web Helper] => C:\Users\Adam S\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1524848 2021-10-01] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [Spotify] => C:\Users\Adam S\AppData\Roaming\Spotify\Spotify.exe [6754928 2021-10-01] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [Discord] => C:\Users\Adam S\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35373696 2021-12-07] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\MountPoints2: {38e6a015-501a-11ec-86c4-001a7d0ab781} - F:\HiSuiteDownLoader.exe
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\54.0.2.0\GoogleDriveFS.exe [55330648 2021-12-14] (Google LLC -> Google, Inc.)
HKLM\...\Windows x64\Print Processors\Canon MP250 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9W.DLL [28672 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MP250 series: C:\Windows\system32\CNMLM9W.DLL [336896 2010-04-24] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\96.1.13589.113\Installer\chrmstp.exe [2021-12-16] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-15] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {054B2AEB-4946-4E1F-B550-21ED989976B1} - System32\Tasks\CCleanerSkipUAC - Katka => C:\Program Files\CCleaner\CCleaner.exe [29442688 2021-12-07] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1275BC01-1847-4263-A58F-069E97039BDB} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3410242202-4032261145-1968254855-1000Core => C:\Users\Katka\AppData\Local\Google\Update\GoogleUpdate.exe [156968 2018-12-21] (Google Inc -> Google Inc.)
Task: {136E5341-D277-44BA-808F-772107EA7038} - System32\Tasks\iTopVPN_Scheduler_Adam S => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [5882880 2021-09-28] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {19A27209-C73F-492B-B03F-279640CEBA3D} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6475544 2021-12-16] (Avast Software s.r.o. -> Avast Software)
Task: {1F476527-B622-4126-AC50-920E83B32E06} - System32\Tasks\ASC_SkipUac_Katka => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [10686032 2021-10-13] (IObit CO., LTD -> IObit)
Task: {22DBAC3C-1836-499E-AB1A-D9EE000BDF55} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4969240 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
Task: {2FA58001-5267-4DB0-A260-45F5349AFBBF} - System32\Tasks\iTopVPN_Update_Adam S => C:\Program Files (x86)\iTop VPN\atud.exe [2971136 2021-09-06] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {31634724-1E77-4347-B2B8-FE6FFEC964B8} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {468C14E7-124C-4F1F-8E07-029DF23F244F} - System32\Tasks\iTop Screenshot SkipUAC (Katka) => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622656 2021-07-21] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {4AD86668-01D5-478A-ABB5-7B4E1EB487A2} - System32\Tasks\CCleanerSkipUAC - Adam S => C:\Program Files\CCleaner\CCleaner.exe [29442688 2021-12-07] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {5EF3FF8F-3325-4FF2-B344-DE8C1A4B714E} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4760344 2022-01-07] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 35c2e1ae-ff65-47f1-98ae-9337a695fed7
Task: {7936EBC9-5EED-4785-B2C7-16432DDB7B8A} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-08-28] (Avast Software s.r.o. -> Avast Software)
Task: {7BF68C68-F0B0-4A9F-8AF3-43A32ED1BF5D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-09-15] (Google Inc -> Google Inc.)
Task: {828C2B96-FAA5-40C7-ADC0-04F0C59240CA} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2521976 2021-12-15] (Piriform Software Ltd -> Piriform Software)
Task: {834753CC-0E74-439C-8651-E94D1E6F3EF6} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-22] (Piriform Software Ltd -> Piriform Software)
Task: {83AEE53B-FD31-4A22-AC66-5801105CB079} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-09-15] (Google Inc -> Google Inc.)
Task: {83FE2781-379C-4A91-A2FD-C6413871B71E} - System32\Tasks\IAStorIcon => C:\Program Files\Intel\Intel(R) Virtual RAID on CPU\IAStorIcon.exe [289840 2019-09-24] (Intel(R) Virtual RAID On CPU -> Intel Corporation)
Task: {8BA30B19-A46A-4A60-98EE-581F6749470A} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2521976 2021-12-15] (Piriform Software Ltd -> Piriform Software)
Task: {91108DE4-45FF-469A-A5AE-556FD3C20550} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {9F553661-BE47-4BC6-BA4D-96F74E60D2D5} - System32\Tasks\iTop Screenshot Update => C:\Program Files (x86)\iTop Screenshot\AutoUpdate.exe [2800640 2021-07-21] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {AE9CC364-E532-467D-A9F8-62D3CCF0EA4F} - System32\Tasks\iTop Screen Recorder SkipUAC (Katka) => C:\Program Files\iTop Screen Recorder\IScrRec.exe [14479872 2021-12-17] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {B333649A-7297-45A3-BF31-CC2134F08676} - System32\Tasks\iTop Screen Recorder UAC => C:\Program Files\iTop Screen Recorder\iScrInit.exe [1542144 2021-11-11] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {B3E1E255-BA48-4996-9499-DF7B821634FD} - System32\Tasks\ASC_SkipUac_Adam S => C:\Program Files (x86)\IObit\Advanced SystemCare\ASC.exe [10686032 2021-10-13] (IObit CO., LTD -> IObit)
Task: {CA7073DA-D354-4ECC-85F9-251CF1954ED2} - System32\Tasks\iTop Screen Recorder SkipUAC (Adam S) => C:\Program Files (x86)\iTop Screen Recorder\IScrRec.exe /skipuac (No File)
Task: {CC741BCD-96D5-4970-B273-0CB1ABE33326} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [2821632 2021-10-26] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {D155E767-ECCA-4C9D-9D6B-F77F9C78B889} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-12-07] (Piriform Software Ltd -> Piriform)
Task: {D63B67C9-379A-47F3-977A-AED8B1F04813} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-22] (Piriform Software Ltd -> Piriform Software)
Task: {D8B1F135-BB75-4A4E-9960-A6C5489216E3} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-3410242202-4032261145-1968254855-1000UA => C:\Users\Katka\AppData\Local\Google\Update\GoogleUpdate.exe [156968 2018-12-21] (Google Inc -> Google Inc.)
Task: {EB6DFEA5-C752-49E8-988A-139185455E1C} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {EB7B8187-411B-415C-9F76-D25897FDC52F} - System32\Tasks\iTopVPN_SkipUAC_Adam S => C:\Program Files (x86)\iTop VPN\iTopVPN.exe [5882880 2021-09-28] (ORANGE VIEW LIMITED -> iTop Inc.)
Task: {F5799E9D-0B02-408E-B99F-29831DA0C70B} - System32\Tasks\ASUS\i-Setup182734 => C:\Windows\Install\AsusSetup.exe [1293624 2018-09-13] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.)
Task: {F71DFF49-0BCF-47ED-9B44-8897F00443A8} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.88.1 10.100.160.1 10.100.160.7 10.100.160.8
Tcpip\..\Interfaces\{37280C33-00E4-44DB-9F1B-2DE344C466F5}: [DhcpNameServer] 192.168.88.1 10.100.160.1 10.100.160.7 10.100.160.8
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Adam S\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-07]
FireFox:
========
FF DefaultProfile: obr0yu1g.default
FF ProfilePath: C:\Users\Adam S\AppData\Roaming\Mozilla\Firefox\Profiles\obr0yu1g.default [2021-12-04]
FF user.js: detected! => C:\Users\Adam S\AppData\Roaming\Mozilla\Firefox\Profiles\obr0yu1g.default\user.js [2021-12-04]
FF ProfilePath: C:\Users\Adam S\AppData\Roaming\Mozilla\Firefox\Profiles\s1uzvqfi.default-release [2022-01-07]
FF user.js: detected! => C:\Users\Adam S\AppData\Roaming\Mozilla\Firefox\Profiles\s1uzvqfi.default-release\user.js [2021-12-04]
FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google Inc -> Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-22] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2021-01-22] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @videolan.org/vlc,version=3.0.14 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default [2022-01-07]
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/speeddial/newTabSwitcher.html"
CHR Extension: (Prezentace) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-09-08]
CHR Extension: (Dokumenty) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-09-08]
CHR Extension: (Disk Google) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-09-08]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2021-09-09]
CHR Extension: (YouTube) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-09-08]
CHR Extension: (Tabulky) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-09-08]
CHR Extension: (Dokumenty Google offline) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-09-08]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2021-09-08]
CHR Extension: (Gmail) - C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-09-08]
CHR Profile: C:\Users\Adam S\AppData\Local\Google\Chrome\User Data\System Profile [2022-01-07]
CHR HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 AdvancedSystemCareService15; C:\Program Files (x86)\IObit\Advanced SystemCare\ASCService.exe [1873488 2021-08-21] (IObit CO., LTD -> IObit)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8480848 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [452888 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [452888 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-08-28] (Avast Software s.r.o. -> AVAST Software)
S3 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-22] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\96.1.13589.113\elevation_service.exe [1721904 2021-12-15] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2021-01-22] (Piriform Software Ltd -> Piriform Software)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [13745432 2022-01-07] (Avast Software s.r.o. -> AVAST Software)
S4 clr_optimization_v2.0.50727_64; C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe [90776 2014-03-20] (Microsoft Corporation -> Microsoft Corporation)
S2 clr_optimization_v4.0.30319_64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [158912 2019-03-28] (Microsoft Dynamic Code Publisher -> Microsoft Corporation)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-24] (Huawei Technologies Co., Ltd. -> )
S4 MEmuSVC; C:\Program Files (x86)\Microvirt\MEmu\MemuService.exe [85304 2019-09-12] (Shanghai Microvirt Software Technology Co., Ltd. -> )
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
R2 QMEmulatorService; D:\Program Files\TxGameAssistant\AppMarket\QMEmulatorService.exe [244680 2021-11-17] (Tencent Technology(Shenzhen) Company Limited -> Tencent)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscFileFilter.sys [28592 2021-07-07] (IObit CO., LTD -> IObit)
R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win7_amd64\AscRegistryFilter.sys [28592 2021-07-07] (IObit CO., LTD -> IObit)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2018-09-15] (ASUSTeK Computer Inc. -> )
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [36784 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [223176 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [369216 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [252992 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [100416 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R3 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42416 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [186280 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [540056 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2021-08-28] (AVAST Software s.r.o. -> AVAST Software)
S3 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [108912 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [83976 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [853800 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [545176 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswStm; C:\Windows\System32\drivers\aswStm.sys [215432 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [318760 2021-12-20] (Avast Software s.r.o. -> AVAST Software)
S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [18944 2020-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 googledrivefs3525; C:\Windows\System32\DRIVERS\googledrivefs3525.sys [382944 2021-08-09] (Google LLC -> Google, Inc.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2020-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 iobit_monitor_server2021; C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win7_x64.sys [15280 2021-08-11] (IObit CO., LTD -> IObit)
R1 MEmuDrv; C:\Windows\System32\DRIVERS\MEmuDrv.sys [309904 2021-01-04] (Shanghai Microvirt Software Technology Co., Ltd. -> Maiwei Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation)
R1 TBoxDrv; C:\Program Files\AndroidTbox\TBoxDrv.sys [292032 2020-08-07] (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
U3 aswbdisk; no ImagePath
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x64.sys [X]
S3 cpuz150; \??\C:\Windows\temp\cpuz150\cpuz150_x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-07 17:58 - 2022-01-07 17:58 - 000002040 _____ C:\Users\Public\Desktop\Avast Cleanup Premium.lnk
2022-01-07 17:58 - 2022-01-07 17:58 - 000000000 ____D C:\Windows\system32\gf2engine
2022-01-07 17:58 - 2022-01-07 17:57 - 000036120 _____ (Avast Software) C:\Windows\system32\icarus_rvrt.exe
2022-01-07 17:48 - 2022-01-07 18:14 - 000029697 _____ C:\Users\Adam S\Desktop\FRST.txt
2022-01-07 17:42 - 2022-01-07 18:14 - 000000000 ____D C:\FRST
2022-01-07 17:42 - 2022-01-07 17:46 - 000017097 _____ C:\Users\Adam S\Downloads\FRST.txt
2022-01-07 17:41 - 2022-01-07 17:41 - 002311168 _____ (Farbar) C:\Users\Adam S\Desktop\FRST64.exe
2022-01-07 17:23 - 2022-01-07 17:23 - 000002810 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Adam S
2022-01-06 17:24 - 2022-01-06 18:25 - 1851988810 _____ C:\Users\Adam S\Downloads\Měda 2 CZdabing 2015.avi
2022-01-06 15:20 - 2022-01-06 15:49 - 1076654816 _____ C:\Users\Adam S\Downloads\Méďa [Ted] (2012) CZ dabing.avi
2021-12-23 21:30 - 2022-01-07 18:07 - 000002974 _____ C:\Windows\system32\Tasks\iTop Screen Recorder SkipUAC (Katka)
2021-12-23 21:30 - 2022-01-07 18:07 - 000002968 _____ C:\Windows\system32\Tasks\iTop Screen Recorder UAC
2021-12-23 21:29 - 2022-01-07 18:07 - 000003230 _____ C:\Windows\system32\Tasks\iTop Screen Recorder Update
2021-12-23 21:29 - 2022-01-01 15:32 - 000000000 ____D C:\Program Files\iTop Screen Recorder
2021-12-23 21:29 - 2021-12-23 21:29 - 000000979 _____ C:\Users\Public\Desktop\iTop Screen Recorder.lnk
2021-12-23 21:29 - 2021-12-23 21:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTop Screen Recorder
2021-12-23 20:49 - 2022-01-03 19:14 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-12-21 20:09 - 2021-12-21 20:13 - 000000000 ____D C:\Users\Katka\Desktop\vánoce
2021-12-20 16:19 - 2021-12-20 16:53 - 000000000 ____D C:\Users\Adam S\Desktop\dušan
2021-12-20 13:12 - 2021-12-20 13:11 - 000340248 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2021-12-20 13:12 - 2021-12-20 13:11 - 000215432 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2021-12-18 15:41 - 2021-12-18 16:11 - 1185211320 _____ C:\Users\Adam S\Downloads\Mimoni (2015) CZ dabing.avi
2021-12-11 12:14 - 2021-12-11 12:14 - 000002003 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-12-08 15:28 - 2021-12-08 16:16 - 2074365306 _____ C:\Users\Adam S\Downloads\Maxinožka 2 (2020) CZ dabing NOVINKA.mkv
2021-12-08 15:02 - 2021-12-08 15:25 - 1017939704 _____ C:\Users\Adam S\Downloads\Detektiv Pikachu 2019 cz.dabing,novinky.avi
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-07 18:14 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2022-01-07 18:11 - 2021-11-17 20:29 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\discord
2022-01-07 18:09 - 2021-11-17 20:29 - 000000000 ____D C:\Users\Adam S\AppData\Local\Discord
2022-01-07 18:07 - 2021-11-06 08:35 - 000003044 _____ C:\Windows\system32\Tasks\iTopVPN_Update_Adam S
2022-01-07 18:07 - 2021-11-06 08:35 - 000003002 _____ C:\Windows\system32\Tasks\iTopVPN_Scheduler_Adam S
2022-01-07 18:07 - 2021-11-06 08:35 - 000002800 _____ C:\Windows\system32\Tasks\iTopVPN_SkipUAC_Adam S
2022-01-07 18:07 - 2021-11-06 08:33 - 000003014 _____ C:\Windows\system32\Tasks\ASC_SkipUac_Adam S
2022-01-07 18:07 - 2021-10-28 22:46 - 000002918 _____ C:\Windows\system32\Tasks\IAStorIcon
2022-01-07 18:07 - 2021-10-28 22:16 - 000003234 _____ C:\Windows\system32\Tasks\iTop Screenshot Update
2022-01-07 18:07 - 2021-10-28 22:16 - 000002980 _____ C:\Windows\system32\Tasks\iTop Screenshot SkipUAC (Katka)
2022-01-07 18:07 - 2021-10-28 22:10 - 000003010 _____ C:\Windows\system32\Tasks\ASC_SkipUac_Katka
2022-01-07 18:07 - 2018-09-15 17:10 - 000004478 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2022-01-07 18:01 - 2021-11-17 20:29 - 000000000 ____D C:\Users\Adam S\AppData\Local\SquirrelTemp
2022-01-07 18:01 - 2021-09-11 20:06 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\dvdcss
2022-01-07 18:00 - 2021-09-27 18:37 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\One Night at Flumpty's 2
2022-01-07 18:00 - 2021-02-28 08:46 - 000000000 ____D C:\Program Files (x86)\Steam
2022-01-07 17:58 - 2021-09-08 19:18 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\Avast Software
2022-01-07 17:58 - 2021-08-28 09:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2022-01-07 17:58 - 2021-08-28 09:48 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-01-07 17:57 - 2021-08-28 09:47 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2022-01-07 17:57 - 2021-08-28 09:42 - 000000000 ____D C:\Program Files\Avast Software
2022-01-07 17:57 - 2021-08-28 09:41 - 000000000 ____D C:\ProgramData\Avast Software
2022-01-07 17:44 - 2009-07-14 05:45 - 000035424 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2022-01-07 17:44 - 2009-07-14 05:45 - 000035424 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2022-01-07 17:35 - 2018-09-15 17:13 - 000000000 ____D C:\Program Files\CCleaner
2022-01-07 17:34 - 2018-09-15 17:18 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2022-01-07 17:27 - 2018-09-15 17:04 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-07 17:23 - 2021-11-22 20:05 - 000000000 ____D C:\Temp
2022-01-07 17:22 - 2021-11-04 14:02 - 000003000 _____ C:\Windows\system32\Tasks\iTop Screen Recorder SkipUAC (Adam S)
2022-01-07 17:22 - 2021-08-21 12:37 - 000002808 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Katka
2022-01-07 17:22 - 2021-01-22 15:41 - 000003726 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2022-01-07 17:22 - 2021-01-22 15:38 - 000003438 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineUA
2022-01-07 17:22 - 2020-07-01 08:07 - 000003484 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-07 17:22 - 2020-07-01 08:07 - 000003356 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-07 17:22 - 2018-12-21 11:54 - 000003566 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3410242202-4032261145-1968254855-1000UA
2022-01-07 17:22 - 2018-12-21 11:54 - 000003294 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-3410242202-4032261145-1968254855-1000Core
2022-01-07 17:22 - 2018-09-15 17:04 - 000003388 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-07 17:22 - 2018-09-15 17:04 - 000003260 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-07 16:13 - 2021-09-11 08:58 - 000001373 _____ C:\Users\Adam S\Desktop\Roblox Player.lnk
2022-01-07 16:13 - 2021-09-11 08:48 - 000001188 _____ C:\Users\Adam S\Desktop\Roblox Studio.lnk
2022-01-07 16:13 - 2021-09-11 08:48 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2022-01-07 13:09 - 2021-09-08 19:07 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\Seznam.cz
2022-01-07 13:08 - 2021-10-01 18:58 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\Spotify
2022-01-07 13:07 - 2011-04-12 09:34 - 000672872 _____ C:\Windows\system32\perfh005.dat
2022-01-07 13:07 - 2011-04-12 09:34 - 000142966 _____ C:\Windows\system32\perfc005.dat
2022-01-07 13:07 - 2009-07-14 06:13 - 001595396 _____ C:\Windows\system32\PerfStringBackup.INI
2022-01-07 13:06 - 2021-08-28 09:47 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-01-07 13:05 - 2021-10-28 19:39 - 000000000 ____D C:\ProgramData\ProductData
2022-01-07 13:03 - 2021-10-01 18:58 - 000000000 ____D C:\Users\Adam S\AppData\Local\Spotify
2022-01-07 13:03 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-01-06 15:52 - 2021-09-08 19:38 - 000000000 ____D C:\Users\Adam S\AppData\Local\Avast Software
2022-01-05 19:17 - 2021-11-06 08:34 - 000000000 ____D C:\Program Files (x86)\iTop VPN
2022-01-04 18:41 - 2019-08-03 14:40 - 000000000 ____D C:\stahování
2022-01-04 15:19 - 2021-09-09 12:13 - 000002012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2022-01-04 15:19 - 2021-09-09 12:13 - 000001854 _____ C:\Users\Default\Desktop\Google Slides.lnk
2022-01-04 15:19 - 2021-09-09 12:13 - 000001854 _____ C:\Users\Default\Desktop\Google Sheets.lnk
2022-01-04 15:19 - 2021-09-09 12:13 - 000001842 _____ C:\Users\Default\Desktop\Google Docs.lnk
2022-01-03 19:14 - 2018-09-15 17:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-01-01 19:48 - 2018-09-15 17:12 - 000000000 ____D C:\Users\Katka\AppData\LocalLow\Mozilla
2022-01-01 18:52 - 2019-02-06 11:00 - 000000000 ____D C:\ProgramData\Mozilla
2022-01-01 15:59 - 2021-08-28 10:25 - 000000000 ____D C:\Users\Katka\AppData\Local\Avast Software
2022-01-01 15:31 - 2021-09-08 12:10 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2022-01-01 15:27 - 2021-10-28 19:36 - 000000000 ____D C:\ProgramData\IObit
2021-12-25 12:30 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\NDF
2021-12-23 21:30 - 2021-10-28 22:16 - 000000000 ____D C:\Users\Katka\AppData\Roaming\iTop Screen Recorder
2021-12-23 21:29 - 2021-10-28 22:16 - 000000000 ____D C:\Program Files (x86)\iTop Screen Recorder
2021-12-23 10:07 - 2009-07-14 06:08 - 000032566 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2021-12-20 13:11 - 2021-08-28 09:47 - 000853800 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000545176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000540056 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000318760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000252992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000223176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000186280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000108912 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000100416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000083976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000042416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2021-12-20 13:11 - 2021-08-28 09:47 - 000036784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2021-12-20 13:10 - 2021-08-28 09:47 - 000369216 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2021-12-19 10:42 - 2020-07-01 08:08 - 000002221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-18 20:31 - 2021-10-28 22:16 - 000000000 ____D C:\ProgramData\iTop
2021-12-18 20:25 - 2021-09-11 20:02 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\vlc
2021-12-16 17:49 - 2021-01-22 15:41 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2021-12-16 17:49 - 2021-01-22 15:38 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2021-12-15 16:23 - 2018-09-15 17:05 - 000002224 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-14 21:08 - 2018-09-14 22:18 - 000000000 ____D C:\Windows\system32\MRT
2021-12-14 21:02 - 2018-09-14 22:18 - 137938848 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-12-13 17:23 - 2021-11-28 09:50 - 000000000 ____D C:\Users\Katka\Desktop\Kalendář 2022
2021-12-13 16:44 - 2018-09-14 18:29 - 000000000 ____D C:\Users\Katka
2021-12-11 12:11 - 2018-09-15 11:10 - 000000000 ____D C:\Users\UpdatusUser
2021-12-11 12:07 - 2021-09-08 19:05 - 000000000 ____D C:\Users\Adam S
2021-12-11 12:05 - 2021-11-06 08:35 - 000000000 ____D C:\ProgramData\iTop VPN
2021-12-11 12:05 - 2021-11-04 14:02 - 000000000 ____D C:\Users\Adam S\AppData\Roaming\iTop Screen Recorder
2021-12-11 12:05 - 2021-09-11 08:48 - 000000000 ____D C:\Users\Adam S\AppData\Local\Roblox
2021-12-11 12:05 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\registration
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2021-12-31 12:32
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 27-12-2021
Ran by Adam S (07-01-2022 18:16:04)
Running from C:\Users\Adam S\Desktop
Microsoft Windows 7 Professional Service Pack 1 (X64) (2018-09-14 17:29:13)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Adam S (S-1-5-21-3410242202-4032261145-1968254855-1004 - Administrator - Enabled) => C:\Users\Adam S
Administrator (S-1-5-21-3410242202-4032261145-1968254855-500 - Administrator - Disabled)
Guest (S-1-5-21-3410242202-4032261145-1968254855-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3410242202-4032261145-1968254855-1003 - Limited - Enabled)
Katka (S-1-5-21-3410242202-4032261145-1968254855-1000 - Administrator - Enabled) => C:\Users\Katka
UpdatusUser (S-1-5-21-3410242202-4032261145-1968254855-1001 - Limited - Enabled) => C:\Users\UpdatusUser
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Microsoft Security Essentials (Enabled - Up to date) {71A27EC9-3DA6-45FC-60A7-004F623C6189}
AV: Avast Antivirus (Disabled - Out of date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Microsoft Security Essentials (Enabled - Up to date) {CAC39F2D-1B9C-4A72-5A17-3B3D19BB2B34}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Disabled - Out of date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
4x4 Offroader (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\0c209a9dd9c050bae86b9467ba4198f3) (Version: 1.0 - 4x4 Offroader)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.007.20099 - Adobe Systems Incorporated)
Advanced SystemCare (HKLM-x32\...\Advanced SystemCare_is1) (Version: 15.0.1 - IObit)
Aktualizace NVIDIA 1.10.8 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.10.8 - NVIDIA Corporation)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 21.4.11260.5766 - Avast Software)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 21.11.2500 - Avast Software)
Backup and Sync from Google (HKLM\...\{685BAD50-A3AA-4B91-A15B-77F9DC7346D4}) (Version: 3.57.4043.4118 - Google, Inc.)
BMW M3 Challenge (HKLM-x32\...\{C4CD208D-E3A2-488B-A4F4-FD8DE3DADD25}_is1) (Version: BMW M3 Challenge v1.0.0.0 - 10TACLE STUDIOS AG)
Canon MP250 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MP250_series) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 5.88 - Piriform)
CCleaner Browser (HKLM-x32\...\CCleaner Browser) (Version: 96.1.13589.113 - Autoři prohlížeče CCleaner Browser)
CCleaner Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.8.1067.0 - Piriform Software) Hidden
Crash Time 2 Demo (remove only) (HKLM-x32\...\BurningWheels Demo) (Version: - )
Crazy Stunt Cars 2 (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\5125ab90dfd3875770380bedfc5353ec) (Version: 1.0 - Crazy Stunt Cars 2)
CREY (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\CREY) (Version: - Bitglobe ApS)
Discord (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Discord) (Version: 0.0.309 - Discord Inc.)
Discord (HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Discord) (Version: 1.0.9003 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{A7BBC0A6-3DB0-41CC-BCED-DDFC5D4F3060}) (Version: 1.2.17.0 - Epic Games, Inc.)
FastStone Image Viewer 6.5 (HKLM-x32\...\FastStone Image Viewer) (Version: 6.5 - FastStone Soft)
Game Jolt Client version 0.61.1 (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\game-jolt-client_is1) (Version: 0.61.1 - Lucent Web Creative, LLC)
Gameloop (HKLM-x32\...\MobileGamePC) (Version: 4.1.30.90 - Tencent Technology Company)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 54.0.2.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 96.0.4664.110 - Google LLC)
Google Photos Backup (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Google Photos Backup) (Version: 1.1.4.11 - Google, Inc.)
HappyFoto (HKLM-x32\...\{621A70CA-32A5-4F50-A66C-C9C792580415}_is1) (Version: - Happy Foto CZ)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.360 - Huawei Technologies Co., Ltd.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1173 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.0.1016 - Intel Corporation)
Intel(R) USB 3.0\3.1 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 5.0.4.43 - Intel Corporation)
Intel(R) Virtual RAID on CPU (HKLM-x32\...\{fe14d5b2-aa03-4c4d-8458-f089749db800}) (Version: 6.2.0.1239 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{fb610cea-ba50-4d4b-a717-cf025419035c}) (Version: 10.1.1.13 - Intel(R) Corporation) Hidden
iTop Screen Recorder (HKLM-x32\...\iTop Screen Recorder_is1) (Version: 2.0.0.453 - iTop Inc.)
iTop Screenshot (HKLM-x32\...\iTop Screenshot_is1) (Version: 1.2.1.535 - iTop Inc.)
iTop VPN (HKLM-x32\...\iTop VPN_is1) (Version: 2.2.2.2025 - iTop Inc.)
Java 8 Update 311 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180311F0}) (Version: 8.0.3110.11 - Oracle Corporation)
JJSploit 6.1.2 (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\b1e3a7e5-766b-5910-bd89-4bbe7200c627) (Version: 6.1.2 - )
JJSploit v5 5.3.4 (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\0dc89eee-466e-5758-9507-219f65134c5e) (Version: 5.3.4 - )
Kreslení pro děti (doporučená instalace) (HKLM-x32\...\Kreslení pro děti (doporučená instalace)) (Version: - )
MEmu (HKLM-x32\...\MEmu) (Version: 7.5.6.0 - Microvirt Software Technology Co. Ltd.)
Microsoft .NET Framework 4.8 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 96.0.1054.62 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.10.209.0 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Teams) (Version: 1.4.00.29469 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.15.26706 (HKLM-x32\...\{95ac1cfa-f4fb-4d1b-8912-7f9d5fbb140d}) (Version: 14.15.26706.0 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 95.0.2 (x64 cs)) (Version: 95.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 62.0 - Mozilla)
NVIDIA Ovladače grafiky 309.08 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 309.08 - NVIDIA Corporation)
One Night at Flumpty's 2 (HKLM-x32\...\One Night at Flumpty's 2) (Version: - )
One Night at Flumpty's 3 (HKLM-x32\...\One Night at Flumpty's 3) (Version: - )
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
ProtectDisc Driver, Version 11 (HKLM-x32\...\ProtectDisc Driver 11) (Version: 11.0.0.11 - ProtectDisc Software GmbH)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.87.529.2014 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7982 - Realtek Semiconductor Corp.)
Roblox Player for Adam S (HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\roblox-player) (Version: - Roblox Corporation)
Roblox Player for Katka (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for Katka (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\roblox-studio) (Version: - Roblox Corporation)
Seznam Software (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Seznam Software (HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\SeznamInstall) (Version: 2.1.35 - Seznam.cz)
Sports Cars Driver (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\904bf27e7d80c3790d3801c046c925b6) (Version: 1.0 - Sports Cars Driver)
Spotify (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Spotify) (Version: 1.1.70.610.g4585142b - Spotify AB)
Spotify (HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\...\Spotify) (Version: 1.0.24.104.g92a22684 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TLauncher (HKLM-x32\...\TLauncher2.82) (Version: 2.82 - TLauncher Inc.)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.21a - Ghisler Software GmbH)
UE4 Prerequisites (x64) (HKLM\...\{36EAD5CF-44EF-4FCF-8BE1-D96C4835D7A4}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{2890ae6b-90e9-448d-b3e6-97e43c21e2fd}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Wargaming.net Game Center (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\Wargaming.net Game Center) (Version: 21.7.0.6827 - Wargaming.net)
WinRAR 5.50 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.50.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-10-19] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-10-19] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2021-10-19] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-12-20] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-12-20] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2021-07-31] (IObit CO., LTD -> IObit)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-12-20] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2021-10-19] (Google LLC -> Google)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2021-07-31] (IObit CO., LTD -> IObit)
ContextMenuHandlers2: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-12-20] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2021-07-31] (IObit CO., LTD -> IObit)
ContextMenuHandlers4: [Advanced SystemCare] -> {2803063F-4B8D-4dc6-8874-D1802487FE2D} => C:\Program Files (x86)\IObit\Advanced SystemCare\ASCExtMenu_64.dll [2021-07-31] (IObit CO., LTD -> IObit)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ContextMenuHandlers4: [EPP] -> {09A47860-11B0-4DA5-AFA5-26D86198A780} => c:\Program Files\Microsoft Security Client\shellext.dll [2016-11-14] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2021-10-19] (Google LLC -> Google)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\54.0.2.0\drivefsext.dll [2021-12-14] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-01-31] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2021-12-20] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2017-08-11] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]
ShortcutWithArgument: C:\Users\Adam S\Desktop\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\Adam S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
ShortcutWithArgument: C:\Users\Adam S\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\YouTube.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=agimnkijcaahngcdmfeangaknmldooml
==================== Loaded Modules (Whitelisted) =============
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-file-l1-2-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-file-l2-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-localization-l1-2-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-processthreads-l1-1-1.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-synch-l1-2-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-core-timezone-l1-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-convert-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-environment-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-filesystem-l1-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-heap-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-locale-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-math-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-multibyte-l1-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-runtime-l1-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-stdio-l1-1-0.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-string-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-time-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\api-ms-win-crt-utility-l1-1-0.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\msvcp140.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\MSVCP140.dll
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\ucrtbase.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\ucrtbase.DLL
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\ucrtbase.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\ucrtbase.DLL
2021-11-05 13:23 - 2021-11-05 13:23 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\vcruntime140.dll] C:\Program Files\Avast Software\Avast\1029\avast.local_vc142.crt\VCRUNTIME140.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\vcruntime140.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\VCRUNTIME140.dll
2022-01-07 17:18 - 2022-01-07 17:18 - 000000000 ____L (Microsoft Corporation) [simlink -> C:\Program Files\Avast Software\Avast\avast.local_vc142.crt\vcruntime140_1.dll] C:\Program Files\Avast Software\Avast\defs\22010702\avast.local_vc142.crt\VCRUNTIME140_1.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Version 11) (Whitelisted) ==========
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://
www.google.com/ie
SearchScopes: HKU\S-1-5-21-3410242202-4032261145-1968254855-1000 -> DefaultScope {6A1806CD-94D4-4689 URL =
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2021-10-28 22:26 - 000000842 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-3410242202-4032261145-1968254855-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Katka\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
HKU\S-1-5-21-3410242202-4032261145-1968254855-1004\Control Panel\Desktop\\Wallpaper -> C:\Users\Adam S\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.88.1 - 10.100.160.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{12A036AB-7305-432C-A437-7BC54E1C4429}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B28AE327-CB98-46B1-A468-28B999FBC5ED}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{08FB3C3A-5ED9-4AB3-B2DE-F4495AF01D03}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{4D914528-2C72-4ADD-AF0A-E1E34186B457}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{5AA36964-7A74-4E39-A890-FA78F6C8C8D2}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [{C8C38A2A-37AC-4BBF-9D6D-416CC544AD21}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform)
FirewallRules: [TCP Query User{A2BB4098-9B53-4639-89AC-1AA70244C275}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{FD200992-4304-40FF-AF88-3289E958AEFF}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{1619CD17-9812-46E5-AC59-30EC74C3656C}C:\users\katka\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\katka\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C6765C65-03D7-4D40-BCB7-7ED580E0C4A9}C:\users\katka\appdata\local\microsoft\teams\current\teams.exe] => (Block) C:\users\katka\appdata\local\microsoft\teams\current\teams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F2D04588-5C5B-4B09-9660-B95B73B80701}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{1FCA55E3-7531-4397-833F-4441C01F4C82}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{00813BA2-32ED-4442-A2A9-68750122E1F2}C:\users\katka\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\katka\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{D10FAB15-0671-4A00-9FF6-56907D71ADC6}C:\users\katka\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\katka\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{CED0F2D1-D516-4664-9AE9-90538E790449}C:\users\katka\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\katka\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{A1997B04-534D-48FD-908E-6EBCF8C2ADE4}C:\users\katka\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\katka\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{4FEB58ED-670A-468A-AFF6-5415059D138A}C:\users\katka\appdata\roaming\.minecraft\versions\raft v2.1.0\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\katka\appdata\roaming\.minecraft\versions\raft v2.1.0\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{8E4183DF-F495-4F7C-A3A6-32F78BB6D2C7}C:\users\katka\appdata\roaming\.minecraft\versions\raft v2.1.0\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\katka\appdata\roaming\.minecraft\versions\raft v2.1.0\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{9E1CCF06-02A3-4247-847E-9872EAB68173}C:\users\katka\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\katka\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{9EF89AFE-B5B8-4D43-B2FA-C0426D42F28C}C:\users\katka\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\katka\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{00908A97-0301-4BCC-9D70-65724E9AAC70}C:\users\katka\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\katka\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{60C1CADF-95C9-40C5-A553-8D34FD5D56FA}C:\users\katka\appdata\roaming\spotify\spotify.exe] => (Block) C:\users\katka\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{611C30D4-CBFF-4FBD-A8F3-7DEE9B84604A}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{E6B474DE-7A7E-4467-A965-AC61D08925CC}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{ED767204-1115-45B9-B165-099C355B37AA}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{780E11D9-9E79-4DFF-8CDF-4DA703C278A3}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{1AB3C18F-F866-4FA1-A4EE-99864D85BC1D}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{5F3FF775-CD76-415A-9CD8-4A0358214FCC}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{D399C9F7-9E52-4226-A28E-8027B4F26C64}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{EF30F5E1-D56A-468C-941D-D8606E30C166}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{2A59EB02-5901-4529-B01D-ECAB80DCA7F8}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{BC0EA9D6-EC16-4900-B010-A39A796C5F20}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{ED3BC18C-A4F3-4245-A3C0-80612749C99D}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{00226C7E-322C-4958-A215-3FD4BCC0C194}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{45D7402B-D6CF-4602-BF55-37AE5AACD689}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{9CE461D7-54A3-4DAC-9E16-76C1CD993B22}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEx.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{7F84B945-538C-4065-9DA9-739E7CDB08CE}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEn.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{9088271E-9204-450E-B149-80CB431190EB}] => (Allow) d:\program files\txgameassistant\ui\adb.exe () [File not signed]
FirewallRules: [{44998EF3-FEBB-4F42-8482-DDCC165CF013}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{4A1AF47A-38B9-430F-9387-157B560449C4}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{040331CB-03F4-4B45-9B5B-5D05E680C6BD}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{B575B3A0-171D-45C2-B22E-96BA5459C6E8}] => (Allow) C:\Users\Katka\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{F98FFFBF-1B40-45CF-A7F2-3B6CE6D36F28}] => (Allow) C:\Users\Katka\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A4A1E7BC-9725-4D71-9483-9AD3498D5713}] => (Allow) C:\Users\Katka\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A28B6237-0885-45FE-AD3C-4592DB20C26C}] => (Allow) C:\Users\Katka\AppData\Roaming\Tencent\TxGameAssistant\GameDownload\TenioDL.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{304994AD-4824-492B-8A8D-518221F9EC68}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{C091F126-E6C6-428A-B666-A155D4AE45FA}] => (Allow) D:\program files\txgameassistant\appmarket\DL\syzs_dl_svr.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [TCP Query User{3048F218-FCFE-457D-9E2E-407688AB32B2}C:\users\adam s\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Block) C:\users\adam s\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{09786803-3460-47F8-8927-DAB8C602715B}C:\users\adam s\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Block) C:\users\adam s\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{E98755E8-C4D9-4AF4-96CC-33E041632D84}C:\users\adam s\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\adam s\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{031E06A4-FD48-4233-9D88-1DB7B39ABA07}C:\users\adam s\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\adam s\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [{F0D24AB6-3F4C-4521-AC9D-6BBE0983C1D1}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{8F7CBA7A-A38E-422E-B93C-AA5F0C3154D7}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{90301F6F-F15F-4F7A-B060-EB097C5AA467}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{401A770B-65F7-416D-863B-17243E8A8228}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEx.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A140DAAD-88C8-4687-8DFF-D7668B43C2FD}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEn.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{9AF9A907-8E4F-4FDD-B98D-54D1033B3962}] => (Allow) d:\program files\txgameassistant\ui\adb.exe () [File not signed]
FirewallRules: [{73A8BA81-D317-4671-B0D6-F24D95FBF6DA}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{A2A3C8F3-5375-4BA8-B967-DE8F115898BE}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{F3E7A3A1-7D6D-47E6-BC0D-306A1ECDC9EA}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{6CB37F99-3B6E-4E61-82B5-21618674A52C}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{90B05A0A-EDE3-4641-B35B-C0C99BC42799}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{9D096503-0EE9-4D06-BA44-E6BF8AB64799}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulator.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{0C10F87C-ACA8-43E3-8A9C-D4C419FE6970}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEx.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{CFECB0FB-3277-444D-878E-37D65CA52EBA}] => (Allow) d:\program files\txgameassistant\ui\AndroidEmulatorEn.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A4E5B55D-2F45-4CDA-BCF3-1CBF0DAAFEC0}] => (Allow) d:\program files\txgameassistant\ui\adb.exe () [File not signed]
FirewallRules: [{16DD4E01-49C5-4C57-AD34-07E2F71AA3D2}] => (Allow) d:\program files\txgameassistant\ui\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{DE24E6EC-3E33-4DB7-9B40-2A351396403F}] => (Allow) d:\program files\txgameassistant\ui\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{C1D98A59-471E-44C2-8B75-B0C0FF5B39C8}] => (Allow) d:\program files\txgameassistant\ui\TxGaDcc.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{A25AD800-2B69-4846-8373-916150505DD5}] => (Allow) d:\program files\txgameassistant\appmarket\AppMarket.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{7C359DEF-832E-46EF-A5D6-847D4CE4E715}] => (Allow) d:\program files\txgameassistant\appmarket\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{3E6BEF46-0EBF-476B-8FBF-4A9FB5ADD16D}] => (Allow) d:\program files\txgameassistant\appmarket\bugreport.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{A6F6197A-9C2F-4CA1-B52E-57C0C123B9D8}] => (Allow) d:\program files\txgameassistant\appmarket\QQExternal.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{3F383FEC-C56F-4B16-B88E-4F20623BEB0E}] => (Allow) d:\program files\txgameassistant\appmarket\GameDownload.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{8396D470-67B6-4DCD-A6A5-B4B325E18B72}] => (Allow) d:\program files\txgameassistant\appmarket\GF186\TUpdate.exe (Tencent Technology(Shenzhen) Company Limited -> Tencent)
FirewallRules: [{511F0455-DC0F-47DC-BD8E-AEA4F9060701}] => (Allow) C:\Program Files\AndroidTbox\THypervBox.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{F4089A6A-2962-48B6-8C7E-8ECE53703996}] => (Allow) C:\Program Files\AndroidTbox\TBoxHeadless.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{2F57FE9A-814B-46B3-ABA6-5B4EE3D7D702}] => (Allow) C:\Program Files\AndroidTbox\TBoxNetNAT.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{D955F14F-8F63-444A-8A0B-2389C5CB99E1}] => (Allow) C:\Program Files\AndroidTbox\TBoxSDL.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{F13170EA-E8AE-4513-9DFE-125EE108095A}] => (Allow) C:\Program Files\AndroidTbox\TBoxExtPackHelperApp.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{41F652F6-19E1-40E3-83CE-21AAFEFEAD34}] => (Allow) C:\Program Files\AndroidTbox\USBInstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{BB079EFF-8352-4F35-ABDF-9A4C5DDEA896}] => (Allow) C:\Program Files\AndroidTbox\TBoxNetDHCP.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{B8ABB960-7BD6-42E2-9A2C-BEBEAE63D381}] => (Allow) C:\Program Files\AndroidTbox\TBoxManage.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{63F2C6E3-1DA5-4B5A-9F4B-9348F2491314}] => (Allow) C:\Program Files\AndroidTbox\USBUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{77368C31-1BF6-4198-BB4F-30FF14993B0B}] => (Allow) C:\Program Files\AndroidTbox\TInst.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{A12E50DF-FFEB-4012-8CDB-C286694AB56A}] => (Allow) C:\Program Files\AndroidTbox\SUPLoggerCtl.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{11EDBDB2-1121-42D5-B546-5FC942E22240}] => (Allow) C:\Program Files\AndroidTbox\NetFltUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{E33B7DB1-B34D-46D5-A47E-CAAAC8473CA6}] => (Allow) C:\Program Files\AndroidTbox\NetFltInstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{B9688EF9-F78F-4573-99AB-B14A443793ED}] => (Allow) C:\Program Files\AndroidTbox\SUPUninstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{CD4281D4-B355-4875-AF1D-0E567878180B}] => (Allow) C:\Program Files\AndroidTbox\TBoxBalloonCtrl.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{3050CFCE-C125-4647-ADE1-95A8E60C5DDC}] => (Allow) C:\Program Files\AndroidTbox\SUPInstall.exe (Tencent Technology(Shenzhen) Company Limited -> )
FirewallRules: [{723AB8B5-57CF-4D13-846B-7084D8F4F648}] => (Allow) C:\Program Files\AndroidTbox\TBoxSVC.exe (Tencent Technology(Shenzhen) Company Limited -> Hyperv Corporation)
FirewallRules: [{A42ECF05-297F-45EB-B541-06068562E956}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{94F7F519-B69D-4705-96B6-54FB8ED0DD93}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{C800553B-CB2B-4D1E-B066-420C6C132CA7}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{45B2B607-EECF-4A16-9856-3DE0D0D6D49A}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{2485BB14-592D-4E66-9F34-9EC388C95E15}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{050408F6-C93F-4CCD-9E6C-18CE366AE801}] => (Allow) C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe (Piriform Software Ltd -> Piriform Software)
FirewallRules: [{28660034-2374-4AC7-BE3F-39FCEBF87EC5}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{3E787994-A1F9-4CEB-B813-7FFCC087FC95}] => (Block) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{AA4962E5-784F-4094-897C-963A7E1EC4E1}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{09CDD68D-7455-4942-8B47-9CDCC8E7D713}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> AVAST Software)
==================== Restore Points =========================
07-01-2022 13:14:37 Windows Update
==================== Faulty Device Manager Devices ============
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Periferní zařízení Bluetooth
Description: Periferní zařízení Bluetooth
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: ========================
Application errors:
==================
Error: (01/07/2022 05:51:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AUDIODG.EXE, verze: 6.1.7601.24523, časové razítko: 0x5d79ba7b
Název chybujícího modulu: RltkAPO64.dll, verze: 11.0.6000.536, časové razítko: 0x58213607
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000228e23
ID chybujícího procesu: 0x13ac
Čas spuštění chybující aplikace: 0x01d803e502a02e4a
Cesta k chybující aplikaci: C:\Windows\system32\AUDIODG.EXE
Cesta k chybujícímu modulu: C:\Windows\system32\RltkAPO64.dll
ID zprávy: 103d7ac1-6fda-11ec-b5e7-001a7d0ab781
Error: (01/07/2022 01:04:20 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (01/06/2022 03:19:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (01/05/2022 02:20:03 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (01/04/2022 03:02:51 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (01/03/2022 07:15:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (01/01/2022 03:27:33 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
Error: (12/31/2021 11:54:26 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected.
System errors:
=============
Error: (01/07/2022 06:19:49 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {BB6DF56B-CACE-11DC-9992-0019B93A3A84} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/07/2022 05:49:59 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80070643): Aktualizace bezpečnostních informací pro produkt Microsoft Security Essentials - KB2310138 (verze 1.355.1571.0).
Error: (01/07/2022 05:45:54 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Microsoft Antimalware zjistil chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu: 1.355.1571.0
Předchozí verze podpisu: 1.355.1558.0
Zdroj aktualizace: Uživatel
Fáze aktualizace: Instalovat
Zdrojová cesta:
Typ podpisu: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18800.4
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80508001
Popis chyby: Potíže neumožňují spuštění programu. Nainstalujte všechny dostupné aktualizace a zkuste daný program spustit znovu. Informace o instalaci aktualizací najdete v nápovědě a podpoře.
Error: (01/07/2022 05:45:54 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Microsoft Antimalware zjistil chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu: 1.355.1571.0
Předchozí verze podpisu: 1.355.1558.0
Zdroj aktualizace: Uživatel
Fáze aktualizace: Instalovat
Zdrojová cesta:
Typ podpisu: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18800.4
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x80508001
Popis chyby: Potíže neumožňují spuštění programu. Nainstalujte všechny dostupné aktualizace a zkuste daný program spustit znovu. Informace o instalaci aktualizací najdete v nápovědě a podpoře.
Error: (01/07/2022 05:41:36 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: Server {F9717507-6651-4EDB-BFF7-AE615179BCCF} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/07/2022 01:10:12 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Windows Update přestala během spouštění reagovat.
Error: (01/07/2022 01:03:32 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby avast! Tools bylo dosaženo časového limitu (30000 ms).
Error: (01/06/2022 03:35:49 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Microsoft Antimalware zjistil chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.355.1450.0
Zdroj aktualizace: Server Microsoft Update
Fáze aktualizace: Stahovat
Zdrojová cesta:
http://www.microsoft.com
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18800.4
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 3602 03/26/2018
Motherboard: ASUSTeK COMPUTER INC. H81M-R
Processor: Intel(R) Pentium(R) CPU G3420 @ 3.20GHz
Percentage of memory in use: 86%
Total physical RAM: 4034.72 MB
Available physical RAM: 561.38 MB
Total Virtual: 8128.87 MB
Available Virtual: 3534.78 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.66 GB) (Free:180.87 GB) NTFS
Drive d: (DATA) (Fixed) (Total:465.76 GB) (Free:186.49 GB) NTFS
\\?\Volume{64896b8a-b842-11e8-b9ec-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 78197819)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 465.8 GB) (Disk ID: FC5BB8BC)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================