Poprosim o preventivku
Napsal: 31 kvě 2021 21:24
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-05-2021 01
Ran by PC1 (administrator) on DESKTOP-NORVJE6 (MSI MS-7A39) (31-05-2021 22:21:40)
Running from C:\Users\PC1\Downloads
Loaded Profiles: PC1
Platform: Windows 10 Home Version 2004 19041.985 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <22>
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\pub\PubPlatform.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\PC1\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2105.19601.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxAccounts.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277520 2020-04-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [118496 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [utweb] => "C:\Users\PC1\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33223648 2021-05-29] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [uTorrent] => C:\Users\PC1\AppData\Roaming\uTorrent\uTorrent.exe [1964064 2021-04-18] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33770112 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {03E2AE8E-D90D-4311-84BD-4EC53ADC12E6} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit)
Task: {16BF366D-9B8D-4ED9-A193-35B61B467FFF} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe
Task: {31CCFF01-B50B-49A1-AE61-D27E251929BD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28158080 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4B45F0DA-7953-453D-9B6D-E5F1B669D67F} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5867976 2021-01-13] (IObit Information Technology -> IObit)
Task: {73AFBA93-A06C-4079-9D96-C629482A4856} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3472848 2021-01-05] (IObit Information Technology -> IObit)
Task: {B984746D-9FC2-46AF-B5F7-79134032CA2D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-20] (Google LLC -> Google LLC)
Task: {BA6FBB2C-9462-4AFC-B177-F86D8B50A846} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-20] (Google LLC -> Google LLC)
Task: {C1B2EDFE-7395-464A-9656-77633BE9BF5E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-05-20] (Piriform Software Ltd -> Piriform)
Task: {E0AE1FE2-3B63-4D32-A5FB-B6E5F82CE7F2} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4699872 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
Task: {FBD4795D-57A3-4976-91C7-50F1B0EA8AA6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-05-07] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{54db6741-c35b-439b-9673-ac7e98521184}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-31]
Edge Extension: (Outlook) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-12-23]
Edge Extension: (Word) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-12-23]
Edge Extension: (Excel) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-12-23]
Edge Extension: (PowerPoint) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-12-23]
FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR Profile: C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default [2021-05-31]
CHR Notifications: Default -> hxxps://sibirem.ru
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (YouTube) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-20]
CHR Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-05-01]
CHR Extension: (Coupons at Checkout) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\inlgdellfblpplcogjfedlhjnpgafnia [2020-12-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-20]
CHR Extension: (Chrome Media Router) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-30]
CHR HKLM\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7894040 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [606944 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [356064 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56920 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1716632 2021-05-14] (Rockstar Games, Inc. -> Rockstar Games)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12871464 2021-04-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\NisSrv.exe [2599296 2021-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MsMpEng.exe [128360 2021-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 2C50ECBD; C:\WINDOWS\System32\drivers\2C50ECBD.sys [478392 2021-04-14] (Kaspersky Lab -> Kaspersky Lab ZAO)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35664 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [212192 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [365024 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250336 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99288 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [17328 2021-05-28] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41296 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [180448 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [522936 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107792 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82872 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850632 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [467720 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215352 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326992 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2020-11-07] (Microsoft Corporation) [File not signed]
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2020-01-03] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2020-01-03] (Disc Soft Ltd -> Disc Soft Ltd)
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit Information Technology -> IObit)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49544 2021-05-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [421112 2021-05-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [73976 2021-05-06] (Microsoft Windows -> Microsoft Corporation)
R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2020-12-24] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-31 22:21 - 2021-05-31 22:22 - 000015683 _____ C:\Users\PC1\Downloads\FRST.txt
2021-05-31 22:21 - 2021-05-31 22:21 - 002299904 _____ (Farbar) C:\Users\PC1\Downloads\FRST64 (1).exe
2021-05-31 13:56 - 2021-05-31 13:56 - 000000000 ____D C:\Users\PC1\Desktop\Nový priečinok
2021-05-31 13:33 - 2021-05-31 13:49 - 000000000 ____D C:\Users\PC1\Desktop\fENIX
2021-05-31 13:33 - 2021-05-31 13:33 - 000381861 _____ C:\Users\PC1\Downloads\PhoenixModMenu.rar
2021-05-31 13:26 - 2021-05-31 13:26 - 000000000 ___HD C:\$AV_ASW
2021-05-31 13:25 - 2021-05-31 13:25 - 000017694 _____ C:\Users\PC1\Downloads\Phoenix ModMenu.rar
2021-05-30 11:48 - 2021-05-30 11:48 - 000001699 _____ C:\Users\Public\Desktop\Recuva.lnk
2021-05-30 11:48 - 2021-05-30 11:48 - 000001699 _____ C:\ProgramData\Desktop\Recuva.lnk
2021-05-30 11:48 - 2021-05-30 11:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2021-05-30 11:48 - 2021-05-30 11:48 - 000000000 ____D C:\Program Files\Recuva
2021-05-30 11:46 - 2021-05-30 11:47 - 000000000 ____D C:\Program Files\Defraggler
2021-05-30 11:46 - 2021-05-30 11:46 - 000001765 _____ C:\Users\Public\Desktop\Defraggler.lnk
2021-05-30 11:46 - 2021-05-30 11:46 - 000001765 _____ C:\ProgramData\Desktop\Defraggler.lnk
2021-05-30 11:46 - 2021-05-30 11:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2021-05-30 11:45 - 2021-05-31 22:18 - 000000000 ____D C:\Program Files\CCleaner
2021-05-30 11:45 - 2021-05-31 18:07 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-05-30 11:45 - 2021-05-30 11:45 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2021-05-30 11:45 - 2021-05-30 11:45 - 000000863 _____ C:\ProgramData\Desktop\CCleaner.lnk
2021-05-30 11:45 - 2021-05-30 11:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2021-05-29 17:38 - 2021-05-29 17:38 - 000031393 _____ C:\Users\PC1\Downloads\HoboRPG (3).CT
2021-05-29 17:32 - 2021-05-29 17:32 - 000135820 _____ C:\Users\PC1\Downloads\Hobo-second.CT
2021-05-28 22:46 - 2021-05-28 22:46 - 000017328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2021-05-13 05:08 - 2021-05-13 05:08 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-05-13 05:07 - 2021-05-13 05:07 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-05-13 05:07 - 2021-05-13 05:07 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-05-13 05:07 - 2021-05-13 05:07 - 001823816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-05-13 05:07 - 2021-05-13 05:07 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-05-13 05:07 - 2021-05-13 05:07 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-05-12 22:00 - 2021-05-12 22:00 - 000040246 _____ C:\Users\PC1\Downloads\Speccy_1_25_674CZ.zip
2021-05-08 14:03 - 2021-05-08 14:03 - 000031430 _____ C:\Users\PC1\Downloads\HoboRPG (2).CT
2021-05-08 13:29 - 2021-05-08 13:29 - 000144395 _____ C:\Users\PC1\Downloads\[SkT]Cyberpunk.2077_v1.22_.torrent
2021-05-08 09:21 - 2021-05-08 09:21 - 001053492 _____ C:\Users\PC1\Downloads\HostsEditor.zip
2021-05-08 07:58 - 2021-05-30 11:49 - 000000837 _____ C:\Users\Public\Desktop\Speccy.lnk
2021-05-08 07:58 - 2021-05-30 11:49 - 000000837 _____ C:\ProgramData\Desktop\Speccy.lnk
2021-05-08 07:58 - 2021-05-30 11:49 - 000000000 ____D C:\Program Files\Speccy
2021-05-08 07:58 - 2021-05-08 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2021-05-08 07:38 - 2021-05-08 07:38 - 000031430 _____ C:\Users\PC1\Downloads\HoboRPG (1).CT
2021-05-07 04:35 - 2021-05-07 04:35 - 000000000 ____D C:\Users\PC1\AppData\Roaming\Avast Software
2021-05-07 04:31 - 2021-05-31 16:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-05-07 04:31 - 2021-05-25 20:29 - 000522936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-05-07 04:31 - 2021-05-07 04:31 - 000326992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-05-07 04:31 - 2021-05-07 04:31 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-05-07 04:31 - 2021-05-07 04:31 - 000002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000002152 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000002152 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2021-05-07 04:31 - 2021-05-07 04:30 - 000850632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000467720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000365024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-05-07 04:31 - 2021-05-07 04:30 - 000250336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000215352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000212192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000180448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000099288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000082872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000041296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000035664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-05-07 04:30 - 2021-05-07 04:30 - 000000000 ____D C:\Program Files\Avast Software
2021-05-07 04:29 - 2021-05-07 04:30 - 000220392 _____ (AVAST Software) C:\Users\PC1\Downloads\avast_free_antivirus_setup_online.exe
2021-05-06 21:28 - 2021-05-06 21:28 - 000000795 _____ C:\Users\Public\Desktop\Hobo Tough Life.lnk
2021-05-06 21:28 - 2021-05-06 21:28 - 000000795 _____ C:\ProgramData\Desktop\Hobo Tough Life.lnk
2021-05-02 20:29 - 2021-05-02 20:29 - 000068763 _____ C:\Users\PC1\Downloads\[SkT]Tom a Jerry _ Tom and Jerry (2021)(CZ_EN)[WebRip][2160p] CSFD 43%.torrent
2021-05-02 20:27 - 2021-05-02 20:27 - 000058692 _____ C:\Users\PC1\Downloads\[SkT]Tom_a_Jerry___Tom_and_Jerry_(2021)(CZ_EN)[1080p]_=_CSFD_43%.torrent
2021-05-02 20:21 - 2021-05-02 20:21 - 000000000 ____D C:\Users\PC1\AppData\Roaming\Cheat Happens
2021-05-02 20:17 - 2021-05-02 20:17 - 000025106 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Education_Workstations_N_v.2004_(Build_19041.264)_(x64)_(CZ) (1).torrent
2021-05-02 20:13 - 2021-05-02 20:13 - 006257533 _____ C:\Users\PC1\Downloads\Hobo_Tough_Life_Trainer_5_cha.zip
2021-05-02 20:12 - 2021-05-02 20:12 - 004606365 _____ C:\Users\PC1\Downloads\_9Trainers.com_Trainer_File_Hobo_Tough_Life (2).rar
2021-05-02 20:05 - 2021-05-02 20:05 - 000000000 ____D C:\Program Files\dotnet
2021-05-02 20:04 - 2021-05-02 20:04 - 000000000 ____D C:\Users\PC1\Cheathappens
2021-05-02 20:03 - 2021-05-02 20:03 - 006257533 _____ C:\Users\PC1\Downloads\Hobo_Tough_Life_Trai.zip
2021-05-02 18:49 - 2021-05-02 18:49 - 007891694 _____ C:\Users\PC1\Downloads\torrent-cd-serial-ke_431220617.zip
2021-05-02 18:27 - 2021-05-02 18:27 - 000000000 ____D C:\Users\PC1\Downloads\rufus_files
2021-05-02 18:20 - 2021-05-02 18:27 - 2877227008 _____ C:\Users\PC1\Downloads\ubuntu-20.04.2.0-desktop-amd64.iso
2021-05-02 18:15 - 2021-05-06 04:21 - 000000290 __RSH C:\ProgramData\ntuser.pol
2021-05-02 18:15 - 2021-05-02 18:15 - 001173560 _____ (Akeo Consulting) C:\Users\PC1\Downloads\rufus-3.14.exe
2021-05-02 18:14 - 2021-05-02 18:14 - 000025106 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Education_Workstations_N_v.2004_(Build_19041.264)_(x64)_(CZ).torrent
2021-05-02 17:53 - 2021-05-02 17:53 - 000026541 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Enterprise_v.2004_(Build_10.0.19041.264)(x86)(CZ_SK).torrent
2021-05-02 17:38 - 2021-05-02 17:38 - 000011545 _____ C:\Users\PC1\Downloads\HoboRPG_mod by iLucky - v.1.00.019.CT
2021-05-02 17:36 - 2021-05-02 17:36 - 000113805 _____ C:\Users\PC1\Downloads\HoboRPG.CT
2021-05-02 17:32 - 2021-05-02 17:32 - 000011915 _____ C:\Users\PC1\Downloads\HoboRPG.1.00.019.CT
2021-05-02 17:31 - 2021-05-02 17:31 - 007890237 _____ C:\Users\PC1\Downloads\trainerverpc_890806843.zip
2021-05-02 17:31 - 2021-05-02 17:31 - 000000000 ____D C:\Users\PC1\AppData\Local\MegaDev
2021-05-02 17:30 - 2021-05-02 17:30 - 056610696 _____ (MegaDev GmbH) C:\Users\PC1\Downloads\Plitch_setup_1.1.7.exe
2021-05-02 17:30 - 2021-05-02 17:30 - 000000000 ____D C:\Users\PC1\AppData\Local\plitch-updater
2021-05-01 08:18 - 2021-05-01 08:18 - 025306568 _____ (Piriform Software Ltd) C:\Users\PC1\Downloads\ccsetup566pro.exe
2021-05-01 08:06 - 2021-05-31 18:07 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-05-01 08:06 - 2021-05-01 08:06 - 000000055 _____ C:\Users\PC1\Desktop\Internet Search.URL
2021-05-01 08:06 - 2021-05-01 08:06 - 000000000 ____D C:\Program Files (x86)\me.fo
2021-05-01 07:51 - 2021-05-30 11:36 - 000000000 ____D C:\Users\PC1\AppData\LocalLow\uTorrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-31 22:21 - 2020-12-19 11:48 - 000000000 ____D C:\FRST
2021-05-31 22:18 - 2019-12-30 14:51 - 000000000 ___RD C:\Users\PC1\OneDrive
2021-05-31 19:07 - 2020-12-20 11:44 - 000000000 ____D C:\Users\PC1
2021-05-31 19:07 - 2020-12-20 11:32 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-31 18:07 - 2021-03-29 06:02 - 000002684 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_AutoAnalyze
2021-05-31 18:07 - 2021-03-29 06:02 - 000002446 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Startup
2021-05-31 18:07 - 2021-03-29 06:02 - 000002446 _____ C:\WINDOWS\system32\Tasks\IObitSelfCheckTask
2021-05-31 18:07 - 2021-03-29 06:02 - 000002442 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Update
2021-05-31 18:07 - 2021-02-05 20:03 - 000003384 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-05-31 18:07 - 2021-02-05 20:03 - 000003160 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-05-31 18:07 - 2020-12-23 18:30 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-31 18:07 - 2020-12-23 18:30 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-31 18:07 - 2020-12-20 11:57 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3805889190-2908880830-1705731779-1001
2021-05-31 16:59 - 2020-12-20 11:55 - 000000000 ____D C:\Users\PC1\AppData\Local\D3DSCache
2021-05-31 16:29 - 2020-12-20 11:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-05-31 14:42 - 2021-03-09 16:44 - 000000000 ____D C:\Users\PC1\AppData\Local\CrashDumps
2021-05-31 13:54 - 2020-12-20 11:53 - 000840598 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-05-31 13:54 - 2020-12-20 11:31 - 000000000 ____D C:\WINDOWS\INF
2021-05-31 13:49 - 2021-01-02 13:33 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-05-31 13:49 - 2020-12-20 11:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-05-31 13:49 - 2020-11-07 11:27 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-31 10:11 - 2020-12-20 11:32 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-31 10:11 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-05-30 13:57 - 2021-02-27 12:06 - 000000000 ____D C:\Users\PC1\AppData\Roaming\uTorrent
2021-05-30 12:20 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-05-29 17:38 - 2021-04-16 19:13 - 000000000 ____D C:\Program Files\Cheat Engine 7.2
2021-05-28 22:46 - 2020-12-23 18:30 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-05-28 22:46 - 2020-12-23 18:30 - 000002282 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-05-28 22:46 - 2020-06-10 21:36 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-28 22:45 - 2021-03-29 06:02 - 000000000 ____D C:\ProgramData\ProductData
2021-05-25 20:29 - 2020-12-20 11:44 - 000002349 _____ C:\Users\PC1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-05-16 06:59 - 2020-12-20 11:28 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-05-13 05:16 - 2020-12-20 11:32 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-05-13 05:14 - 2021-03-07 20:59 - 000000000 ____D C:\ProgramData\Avast Software
2021-05-13 05:14 - 2020-12-20 11:40 - 000259032 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-05-13 05:13 - 2020-12-20 11:41 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-05-13 05:13 - 2020-12-20 11:35 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SystemResources
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\setup
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\Provisioning
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-05-13 05:13 - 2020-12-20 11:27 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-05-13 05:10 - 2020-12-20 11:33 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-05-13 04:58 - 2020-12-20 12:41 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-05-13 04:56 - 2020-12-20 12:41 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-05-12 22:00 - 2020-12-20 12:00 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-12 22:00 - 2020-12-20 12:00 - 000002278 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-05-12 22:00 - 2020-12-20 12:00 - 000002278 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-05-07 04:31 - 2020-12-20 11:32 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-05-06 04:15 - 2020-12-20 11:41 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-05-02 20:05 - 2020-12-20 12:08 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-02 18:15 - 2020-12-20 11:32 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-05-02 18:15 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2021-05-01 08:08 - 2020-12-20 18:07 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2021-05-01 08:08 - 2020-12-20 18:07 - 000000916 _____ C:\ProgramData\Desktop\VLC media player.lnk
==================== Files in the root of some directories ========
2021-03-07 20:58 - 2021-03-07 20:58 - 000016438 _____ () C:\Users\PC1\AppData\Local\partner.bmp
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by PC1 (administrator) on DESKTOP-NORVJE6 (MSI MS-7A39) (31-05-2021 22:21:40)
Running from C:\Users\PC1\Downloads
Loaded Profiles: PC1
Platform: Windows 10 Home Version 2004 19041.985 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.82\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <22>
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\pub\PubPlatform.exe
(IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\PC1\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2105.19601.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxAccounts.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20920.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9277520 2020-04-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [118496 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [utweb] => "C:\Users\PC1\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33223648 2021-05-29] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [uTorrent] => C:\Users\PC1\AppData\Roaming\uTorrent\uTorrent.exe [1964064 2021-04-18] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-3805889190-2908880830-1705731779-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33770112 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {03E2AE8E-D90D-4311-84BD-4EC53ADC12E6} - System32\Tasks\SmartDefrag_AutoAnalyze => C:\Program Files (x86)\IObit\Smart Defrag\AutoDefrag.exe [314128 2018-05-02] (IObit Information Technology -> IObit)
Task: {16BF366D-9B8D-4ED9-A193-35B61B467FFF} - System32\Tasks\IObitSelfCheckTask => C:\Program Files (x86)\IObit\Smart Defrag\IObitSelfCheck.exe
Task: {31CCFF01-B50B-49A1-AE61-D27E251929BD} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28158080 2021-05-20] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4B45F0DA-7953-453D-9B6D-E5F1B669D67F} - System32\Tasks\SmartDefrag_Startup => C:\Program Files (x86)\IObit\Smart Defrag\SmartDefrag.exe [5867976 2021-01-13] (IObit Information Technology -> IObit)
Task: {73AFBA93-A06C-4079-9D96-C629482A4856} - System32\Tasks\SmartDefrag_Update => C:\Program Files (x86)\IObit\Smart Defrag\AutoUpdate.exe [3472848 2021-01-05] (IObit Information Technology -> IObit)
Task: {B984746D-9FC2-46AF-B5F7-79134032CA2D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-20] (Google LLC -> Google LLC)
Task: {BA6FBB2C-9462-4AFC-B177-F86D8B50A846} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-20] (Google LLC -> Google LLC)
Task: {C1B2EDFE-7395-464A-9656-77633BE9BF5E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-05-20] (Piriform Software Ltd -> Piriform)
Task: {E0AE1FE2-3B63-4D32-A5FB-B6E5F82CE7F2} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4699872 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
Task: {FBD4795D-57A3-4976-91C7-50F1B0EA8AA6} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-05-07] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 195.146.128.62
Tcpip\..\Interfaces\{54db6741-c35b-439b-9673-ac7e98521184}: [DhcpNameServer] 192.168.1.1 195.146.128.62
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-31]
Edge Extension: (Outlook) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-12-23]
Edge Extension: (Word) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-12-23]
Edge Extension: (Excel) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-12-23]
Edge Extension: (PowerPoint) - C:\Users\PC1\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-12-23]
FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
Chrome:
=======
CHR Profile: C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default [2021-05-31]
CHR Notifications: Default -> hxxps://sibirem.ru
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/"
CHR Extension: (YouTube) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-20]
CHR Extension: (AdBlock - najlepší blokovač reklám) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-05-01]
CHR Extension: (Coupons at Checkout) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\inlgdellfblpplcogjfedlhjnpgafnia [2020-12-26]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Gmail) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-20]
CHR Extension: (Chrome Media Router) - C:\Users\PC1\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-04-30]
CHR HKLM\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [joiapjkjgbcljoopaenlplkfapolkdhp]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7894040 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [606944 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [356064 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56920 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [926176 2021-03-16] (Epic Games Inc. -> Epic Games, Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1716632 2021-05-14] (Rockstar Games, Inc. -> Rockstar Games)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12871464 2021-04-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\NisSrv.exe [2599296 2021-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.9-0\MsMpEng.exe [128360 2021-05-06] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 2C50ECBD; C:\WINDOWS\System32\drivers\2C50ECBD.sys [478392 2021-04-14] (Kaspersky Lab -> Kaspersky Lab ZAO)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [35664 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [212192 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [365024 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250336 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99288 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [17328 2021-05-28] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41296 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [180448 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [522936 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107792 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82872 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [850632 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [467720 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215352 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [326992 2021-05-07] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2020-11-07] (Microsoft Corporation) [File not signed]
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2020-01-03] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2020-01-03] (Disc Soft Ltd -> Disc Soft Ltd)
R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit Information Technology -> IObit)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49544 2021-05-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [421112 2021-05-06] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [73976 2021-05-06] (Microsoft Windows -> Microsoft Corporation)
R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [312776 2020-12-24] (Microsoft Windows Hardware Compatibility Publisher -> Nox Limited Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-31 22:21 - 2021-05-31 22:22 - 000015683 _____ C:\Users\PC1\Downloads\FRST.txt
2021-05-31 22:21 - 2021-05-31 22:21 - 002299904 _____ (Farbar) C:\Users\PC1\Downloads\FRST64 (1).exe
2021-05-31 13:56 - 2021-05-31 13:56 - 000000000 ____D C:\Users\PC1\Desktop\Nový priečinok
2021-05-31 13:33 - 2021-05-31 13:49 - 000000000 ____D C:\Users\PC1\Desktop\fENIX
2021-05-31 13:33 - 2021-05-31 13:33 - 000381861 _____ C:\Users\PC1\Downloads\PhoenixModMenu.rar
2021-05-31 13:26 - 2021-05-31 13:26 - 000000000 ___HD C:\$AV_ASW
2021-05-31 13:25 - 2021-05-31 13:25 - 000017694 _____ C:\Users\PC1\Downloads\Phoenix ModMenu.rar
2021-05-30 11:48 - 2021-05-30 11:48 - 000001699 _____ C:\Users\Public\Desktop\Recuva.lnk
2021-05-30 11:48 - 2021-05-30 11:48 - 000001699 _____ C:\ProgramData\Desktop\Recuva.lnk
2021-05-30 11:48 - 2021-05-30 11:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2021-05-30 11:48 - 2021-05-30 11:48 - 000000000 ____D C:\Program Files\Recuva
2021-05-30 11:46 - 2021-05-30 11:47 - 000000000 ____D C:\Program Files\Defraggler
2021-05-30 11:46 - 2021-05-30 11:46 - 000001765 _____ C:\Users\Public\Desktop\Defraggler.lnk
2021-05-30 11:46 - 2021-05-30 11:46 - 000001765 _____ C:\ProgramData\Desktop\Defraggler.lnk
2021-05-30 11:46 - 2021-05-30 11:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2021-05-30 11:45 - 2021-05-31 22:18 - 000000000 ____D C:\Program Files\CCleaner
2021-05-30 11:45 - 2021-05-31 18:07 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-05-30 11:45 - 2021-05-30 11:45 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk
2021-05-30 11:45 - 2021-05-30 11:45 - 000000863 _____ C:\ProgramData\Desktop\CCleaner.lnk
2021-05-30 11:45 - 2021-05-30 11:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2021-05-29 17:38 - 2021-05-29 17:38 - 000031393 _____ C:\Users\PC1\Downloads\HoboRPG (3).CT
2021-05-29 17:32 - 2021-05-29 17:32 - 000135820 _____ C:\Users\PC1\Downloads\Hobo-second.CT
2021-05-28 22:46 - 2021-05-28 22:46 - 000017328 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2021-05-13 05:08 - 2021-05-13 05:08 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll
2021-05-13 05:07 - 2021-05-13 05:07 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-05-13 05:07 - 2021-05-13 05:07 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-05-13 05:07 - 2021-05-13 05:07 - 001823816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-05-13 05:07 - 2021-05-13 05:07 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-05-13 05:07 - 2021-05-13 05:07 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-05-13 05:07 - 2021-05-13 05:07 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-05-13 05:07 - 2021-05-13 05:07 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-05-12 22:00 - 2021-05-12 22:00 - 000040246 _____ C:\Users\PC1\Downloads\Speccy_1_25_674CZ.zip
2021-05-08 14:03 - 2021-05-08 14:03 - 000031430 _____ C:\Users\PC1\Downloads\HoboRPG (2).CT
2021-05-08 13:29 - 2021-05-08 13:29 - 000144395 _____ C:\Users\PC1\Downloads\[SkT]Cyberpunk.2077_v1.22_.torrent
2021-05-08 09:21 - 2021-05-08 09:21 - 001053492 _____ C:\Users\PC1\Downloads\HostsEditor.zip
2021-05-08 07:58 - 2021-05-30 11:49 - 000000837 _____ C:\Users\Public\Desktop\Speccy.lnk
2021-05-08 07:58 - 2021-05-30 11:49 - 000000837 _____ C:\ProgramData\Desktop\Speccy.lnk
2021-05-08 07:58 - 2021-05-30 11:49 - 000000000 ____D C:\Program Files\Speccy
2021-05-08 07:58 - 2021-05-08 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2021-05-08 07:38 - 2021-05-08 07:38 - 000031430 _____ C:\Users\PC1\Downloads\HoboRPG (1).CT
2021-05-07 04:35 - 2021-05-07 04:35 - 000000000 ____D C:\Users\PC1\AppData\Roaming\Avast Software
2021-05-07 04:31 - 2021-05-31 16:59 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-05-07 04:31 - 2021-05-25 20:29 - 000522936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-05-07 04:31 - 2021-05-07 04:31 - 000326992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-05-07 04:31 - 2021-05-07 04:31 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-05-07 04:31 - 2021-05-07 04:31 - 000002164 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000002152 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000002152 _____ C:\ProgramData\Desktop\Avast Free Antivirus.lnk
2021-05-07 04:31 - 2021-05-07 04:31 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2021-05-07 04:31 - 2021-05-07 04:30 - 000850632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000467720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000365024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000339680 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-05-07 04:31 - 2021-05-07 04:30 - 000250336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000215352 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000212192 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000180448 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000107792 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000099288 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000082872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000041296 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-05-07 04:31 - 2021-05-07 04:30 - 000035664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-05-07 04:30 - 2021-05-07 04:30 - 000000000 ____D C:\Program Files\Avast Software
2021-05-07 04:29 - 2021-05-07 04:30 - 000220392 _____ (AVAST Software) C:\Users\PC1\Downloads\avast_free_antivirus_setup_online.exe
2021-05-06 21:28 - 2021-05-06 21:28 - 000000795 _____ C:\Users\Public\Desktop\Hobo Tough Life.lnk
2021-05-06 21:28 - 2021-05-06 21:28 - 000000795 _____ C:\ProgramData\Desktop\Hobo Tough Life.lnk
2021-05-02 20:29 - 2021-05-02 20:29 - 000068763 _____ C:\Users\PC1\Downloads\[SkT]Tom a Jerry _ Tom and Jerry (2021)(CZ_EN)[WebRip][2160p] CSFD 43%.torrent
2021-05-02 20:27 - 2021-05-02 20:27 - 000058692 _____ C:\Users\PC1\Downloads\[SkT]Tom_a_Jerry___Tom_and_Jerry_(2021)(CZ_EN)[1080p]_=_CSFD_43%.torrent
2021-05-02 20:21 - 2021-05-02 20:21 - 000000000 ____D C:\Users\PC1\AppData\Roaming\Cheat Happens
2021-05-02 20:17 - 2021-05-02 20:17 - 000025106 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Education_Workstations_N_v.2004_(Build_19041.264)_(x64)_(CZ) (1).torrent
2021-05-02 20:13 - 2021-05-02 20:13 - 006257533 _____ C:\Users\PC1\Downloads\Hobo_Tough_Life_Trainer_5_cha.zip
2021-05-02 20:12 - 2021-05-02 20:12 - 004606365 _____ C:\Users\PC1\Downloads\_9Trainers.com_Trainer_File_Hobo_Tough_Life (2).rar
2021-05-02 20:05 - 2021-05-02 20:05 - 000000000 ____D C:\Program Files\dotnet
2021-05-02 20:04 - 2021-05-02 20:04 - 000000000 ____D C:\Users\PC1\Cheathappens
2021-05-02 20:03 - 2021-05-02 20:03 - 006257533 _____ C:\Users\PC1\Downloads\Hobo_Tough_Life_Trai.zip
2021-05-02 18:49 - 2021-05-02 18:49 - 007891694 _____ C:\Users\PC1\Downloads\torrent-cd-serial-ke_431220617.zip
2021-05-02 18:27 - 2021-05-02 18:27 - 000000000 ____D C:\Users\PC1\Downloads\rufus_files
2021-05-02 18:20 - 2021-05-02 18:27 - 2877227008 _____ C:\Users\PC1\Downloads\ubuntu-20.04.2.0-desktop-amd64.iso
2021-05-02 18:15 - 2021-05-06 04:21 - 000000290 __RSH C:\ProgramData\ntuser.pol
2021-05-02 18:15 - 2021-05-02 18:15 - 001173560 _____ (Akeo Consulting) C:\Users\PC1\Downloads\rufus-3.14.exe
2021-05-02 18:14 - 2021-05-02 18:14 - 000025106 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Education_Workstations_N_v.2004_(Build_19041.264)_(x64)_(CZ).torrent
2021-05-02 17:53 - 2021-05-02 17:53 - 000026541 _____ C:\Users\PC1\Downloads\[SkT]Windows_10_May_2020_Update_Home_Pro_Enterprise_v.2004_(Build_10.0.19041.264)(x86)(CZ_SK).torrent
2021-05-02 17:38 - 2021-05-02 17:38 - 000011545 _____ C:\Users\PC1\Downloads\HoboRPG_mod by iLucky - v.1.00.019.CT
2021-05-02 17:36 - 2021-05-02 17:36 - 000113805 _____ C:\Users\PC1\Downloads\HoboRPG.CT
2021-05-02 17:32 - 2021-05-02 17:32 - 000011915 _____ C:\Users\PC1\Downloads\HoboRPG.1.00.019.CT
2021-05-02 17:31 - 2021-05-02 17:31 - 007890237 _____ C:\Users\PC1\Downloads\trainerverpc_890806843.zip
2021-05-02 17:31 - 2021-05-02 17:31 - 000000000 ____D C:\Users\PC1\AppData\Local\MegaDev
2021-05-02 17:30 - 2021-05-02 17:30 - 056610696 _____ (MegaDev GmbH) C:\Users\PC1\Downloads\Plitch_setup_1.1.7.exe
2021-05-02 17:30 - 2021-05-02 17:30 - 000000000 ____D C:\Users\PC1\AppData\Local\plitch-updater
2021-05-01 08:18 - 2021-05-01 08:18 - 025306568 _____ (Piriform Software Ltd) C:\Users\PC1\Downloads\ccsetup566pro.exe
2021-05-01 08:06 - 2021-05-31 18:07 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-05-01 08:06 - 2021-05-01 08:06 - 000000055 _____ C:\Users\PC1\Desktop\Internet Search.URL
2021-05-01 08:06 - 2021-05-01 08:06 - 000000000 ____D C:\Program Files (x86)\me.fo
2021-05-01 07:51 - 2021-05-30 11:36 - 000000000 ____D C:\Users\PC1\AppData\LocalLow\uTorrent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-31 22:21 - 2020-12-19 11:48 - 000000000 ____D C:\FRST
2021-05-31 22:18 - 2019-12-30 14:51 - 000000000 ___RD C:\Users\PC1\OneDrive
2021-05-31 19:07 - 2020-12-20 11:44 - 000000000 ____D C:\Users\PC1
2021-05-31 19:07 - 2020-12-20 11:32 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-31 18:07 - 2021-03-29 06:02 - 000002684 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_AutoAnalyze
2021-05-31 18:07 - 2021-03-29 06:02 - 000002446 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Startup
2021-05-31 18:07 - 2021-03-29 06:02 - 000002446 _____ C:\WINDOWS\system32\Tasks\IObitSelfCheckTask
2021-05-31 18:07 - 2021-03-29 06:02 - 000002442 _____ C:\WINDOWS\system32\Tasks\SmartDefrag_Update
2021-05-31 18:07 - 2021-02-05 20:03 - 000003384 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-05-31 18:07 - 2021-02-05 20:03 - 000003160 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-05-31 18:07 - 2020-12-23 18:30 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-31 18:07 - 2020-12-23 18:30 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-31 18:07 - 2020-12-20 11:57 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3805889190-2908880830-1705731779-1001
2021-05-31 16:59 - 2020-12-20 11:55 - 000000000 ____D C:\Users\PC1\AppData\Local\D3DSCache
2021-05-31 16:29 - 2020-12-20 11:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-05-31 14:42 - 2021-03-09 16:44 - 000000000 ____D C:\Users\PC1\AppData\Local\CrashDumps
2021-05-31 13:54 - 2020-12-20 11:53 - 000840598 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-05-31 13:54 - 2020-12-20 11:31 - 000000000 ____D C:\WINDOWS\INF
2021-05-31 13:49 - 2021-01-02 13:33 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-05-31 13:49 - 2020-12-20 11:41 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-05-31 13:49 - 2020-11-07 11:27 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-31 10:11 - 2020-12-20 11:32 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-31 10:11 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-05-30 13:57 - 2021-02-27 12:06 - 000000000 ____D C:\Users\PC1\AppData\Roaming\uTorrent
2021-05-30 12:20 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-05-29 17:38 - 2021-04-16 19:13 - 000000000 ____D C:\Program Files\Cheat Engine 7.2
2021-05-28 22:46 - 2020-12-23 18:30 - 000002282 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2021-05-28 22:46 - 2020-12-23 18:30 - 000002282 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2021-05-28 22:46 - 2020-06-10 21:36 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-28 22:45 - 2021-03-29 06:02 - 000000000 ____D C:\ProgramData\ProductData
2021-05-25 20:29 - 2020-12-20 11:44 - 000002349 _____ C:\Users\PC1\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-05-16 06:59 - 2020-12-20 11:28 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-05-13 05:16 - 2020-12-20 11:32 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-05-13 05:14 - 2021-03-07 20:59 - 000000000 ____D C:\ProgramData\Avast Software
2021-05-13 05:14 - 2020-12-20 11:40 - 000259032 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-05-13 05:13 - 2020-12-20 11:41 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2021-05-13 05:13 - 2020-12-20 11:35 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SystemResources
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\setup
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\Provisioning
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-05-13 05:13 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-05-13 05:13 - 2020-12-20 11:27 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-05-13 05:10 - 2020-12-20 11:33 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-05-13 04:58 - 2020-12-20 12:41 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-05-13 04:56 - 2020-12-20 12:41 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-05-12 22:00 - 2020-12-20 12:00 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-12 22:00 - 2020-12-20 12:00 - 000002278 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-05-12 22:00 - 2020-12-20 12:00 - 000002278 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2021-05-07 04:31 - 2020-12-20 11:32 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-05-06 04:15 - 2020-12-20 11:41 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-05-02 20:05 - 2020-12-20 12:08 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-02 18:15 - 2020-12-20 11:32 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-05-02 18:15 - 2020-12-20 11:32 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2021-05-01 08:08 - 2020-12-20 18:07 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2021-05-01 08:08 - 2020-12-20 18:07 - 000000916 _____ C:\ProgramData\Desktop\VLC media player.lnk
==================== Files in the root of some directories ========
2021-03-07 20:58 - 2021-03-07 20:58 - 000016438 _____ () C:\Users\PC1\AppData\Local\partner.bmp
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================