FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2021
Ran by Simona (administrator)
Running from C:\Users\Simona\Downloads
Loaded Profiles: Simona
Platform: Windows 10 Home Version 1903 18362.778 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <30>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.102\GoogleCrashHandler64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9088b61921a6ff9f\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_9088b61921a6ff9f\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_5061a185bda56841\RstMwService.exe
(Intel(R) Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_3.7.124.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\usocoreworker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.56.102.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Slack Technologies, Inc. -> Slack Technologies Inc.) C:\Users\Simona\AppData\Local\slack\app-4.18.0\slack.exe <6>
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Toggl Ou -> Toggl) C:\Users\Simona\AppData\Local\TogglDesktop\TogglDesktop.exe
(Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe
(Wacom Technology Corporation -> Wacom Technology, Corp.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtHDVBg_ASC] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617568 2020-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319520 2018-08-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [123672 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19677472 2020-03-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [winlogui] => C:\Windows\system32\winlogui.exe [5120 2020-05-03] (Microsoft Corporation) [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [HPUsageTracking] => C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe "C:\Program Files (x86)\HP\HP UT\"
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779440 2021-04-16] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-02-21] (Adobe Inc. -> )
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [Flvto Youtube Downloader] => "C:\Users\Simona\AppData\Local\Flvto Youtube Downloader\FlvtoYoutubeDownloader.Redesign.exe" /minimize
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [680720 2021-04-16] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [omega] => C:\Omega\upgrade.exe /callWindows
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [Discord] => C:\Users\Simona\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [TogglDesktop] => C:\Users\Simona\AppData\Local\TogglDesktop\TogglDesktop.exe [1774656 2021-02-23] (Toggl Ou -> Toggl)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [Google Update] => C:\Users\Simona\AppData\Local\Google\Update\1.3.36.102\GoogleUpdateCore.exe [223816 2021-08-04] (Google LLC -> Google LLC)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Run: [com.squirrel.slack.slack] => C:\Users\Simona\AppData\Local\slack\slack.exe [309568 2021-07-27] (Slack Technologies, Inc. -> Slack Technologies Inc.)
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-4100036461-1423016816-3956434626-1001\...\MountPoints2: {4ff2cd79-6f96-11ea-a4d0-a0510bd67913} - "F:\Setup.exe"
HKLM\...\Windows x64\Print Processors\HP1006S: C:\Windows\System32\spool\prtprocs\x64\HP1006S.DLL [373760 2010-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard)
HKLM\...\Print\Monitors\HP LaserJet P1006 Language Monitor: C:\Windows\system32\HP1006LM.DLL [403968 2010-06-29] (Microsoft Windows Hardware Compatibility Publisher -> Software 2000 Limited)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\92.0.4515.159\Installer\chrmstp.exe [2021-08-19] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\update.bat [2020-01-12] () [File not signed] <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {034BE179-ACF2-432A-AF2E-AA8DBFE2DF44} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2935088 2019-07-03] (Acer Incorporated -> )
Task: {03C8B69C-18D7-44E3-B233-7432C5D66693} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114048 2021-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {03E6FD61-259E-4F18-906B-5103DFF4A84B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {176A569C-6B5C-4DEA-9019-0A830883C23F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C2EFA0C-22C5-4845-B24A-AFACA6B98F34} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4100036461-1423016816-3956434626-1001Core => C:\Users\Simona\AppData\Local\Google\Update\GoogleUpdate.exe [154456 2021-04-30] (Google LLC -> Google LLC)
Task: {3FBD542B-1177-42F1-943F-C5A66D193BFC} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-10-25] (Google Inc -> Google Inc.)
Task: {5C838282-0A5D-439C-A27E-70ED9CC51154} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {607F7006-FDC6-4B1F-94B5-A481839336E2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {6750F1CE-3141-4EC7-91E9-BA9D4944E5A2} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41776 2019-07-03] (Acer Incorporated -> )
Task: {69907A15-1F81-49BA-8657-6B5ACACA845C} - System32\Tasks\Quick Access => C:\Program Files\Acer\Acer Quick Access\QALauncher.exe [446256 2019-09-26] (Acer Incorporated -> Acer Incorporated)
Task: {6B18A859-8E00-4AA1-9CF6-D9AF2DC329DA} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {6FE89E40-C8DD-47B3-A4BC-E68EA5BBD38B} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {80D8EC04-E53F-47BD-A205-831437BF6C36} - System32\Tasks\Power Button => C:\Program Files\Acer\Acer Quick Access\ePowerButton_NB.exe [2770736 2019-09-26] (Acer Incorporated -> Acer Incorporated)
Task: {9D1B3D39-3368-4889-8DD5-BBDF5970A982} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4798256 2019-07-03] (Acer Incorporated -> )
Task: {A492E909-23A7-42DA-AA00-EF6F7A8BA519} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {AA6D89FE-BA3E-4211-9ECC-9EFBA224C293} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114048 2021-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {AC860C1F-EAF9-4937-A3C9-FD37EB7B5B08} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-4100036461-1423016816-3956434626-1001UA => C:\Users\Simona\AppData\Local\Google\Update\GoogleUpdate.exe [154456 2021-04-30] (Google LLC -> Google LLC)
Task: {BA1A3CCA-7415-4EE5-BBC0-5AB211EE64D8} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23253888 2021-08-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {BCE083AE-D89C-4105-AD61-8EA3979ACEEC} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {CD40A836-13EB-4594-981B-D93DCAF45392} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\PushRenewal => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {CF6EDC18-2D3F-4249-A839-C64EA6F7DC44} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4902680 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
Task: {D1ABE443-86A3-4981-9BA9-4E9F06A7577B} - System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-IH454QU-Simona => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {D2C3567D-1C12-42F5-AA71-98BFE8ADEF52} - System32\Tasks\software update application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [474368 2019-09-25] (Acer Incorporated -> Acer Incorporated)
Task: {D341770C-3165-4F8B-9EE7-2EA7B2AFEF13} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {D4819631-6769-4628-9CF5-90A1AD83DC9C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-10-25] (Google Inc -> Google Inc.)
Task: {D92900E9-13B4-4F9F-A7D6-F403FEDA652E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [330240 2020-04-16] (Microsoft Windows -> Microsoft Corporation)
Task: {E435A09B-C0E1-4DE9-A91D-A25E51A5D6B6} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== ATTENTION
Task: {E4C97D51-90CA-4565-A38D-CD88F83707E5} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {E82B8DBF-B0A1-4279-B2D4-25D8F4B81E58} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [330240 2020-04-16] (Microsoft Windows -> Microsoft Corporation)
Task: {FCE04210-32B4-4C1E-8BD8-B0E67C1E3842} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {FD652DFC-21B5-4AA8-B22A-D25769A56FE3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\PushLaunch => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
Task: {FEB1175B-88DE-496B-BDED-EBE8463FDC96} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\637091F8-A15D-4706-BE3E-809C5432240F\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [551424 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 172.30.3.1
Tcpip\..\Interfaces\{fe580731-e0bf-4195-9ffc-d770a6003437}: [DhcpNameServer] 172.30.3.1
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2021-08-24] [UpdateUrl:hxxps://sadownload.mcafee.com/products/SA/Win/xpi/webadvisor/update.json]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Plugin: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-11-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-11-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-04-16] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-06-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-04-16] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default [2021-08-24]
CHR Notifications: Default -> hxxps://akestrofst.info; hxxps://drive.google.com; hxxps://fbnotify.top; hxxps://ketormanch.pro; hxxps://mail.google.com; hxxps://mail.ovbmail.sk; hxxps://meet.google.com; hxxps://nesto.cc; hxxps://notification-centar.com; hxxps://planerny-ndv.ru; hxxps://refresher.sk; hxxps://uploadhaven.com; hxxps://
www.abrokegamer.com; hxxps://
www.facebook.com; hxxps://
www.netflix.com; hxxps://www1a.debrahinton.pro; hxxps://www1a.lucienmann.pro
CHR Extension: (Prezentácie) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-10-25]
CHR Extension: (Dokumenty) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-10-25]
CHR Extension: (Disk Google) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22]
CHR Extension: (YouTube) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-10-25]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-07-29]
CHR Extension: (Tabuľky) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-10-25]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2021-08-17]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-06-24]
CHR Extension: (Full Page Screenshot) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\glgomjpomoahpeekneidkinhcfjnnhmb [2021-05-19]
CHR Extension: (Visual Effects for Google Meet) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\hodiladlefdpcbemnbbcpclbmknkiaem [2021-05-09]
CHR Extension: (Little Alchemy) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2020-12-19]
CHR Extension: (Tipli do prehliadača) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpijoellhiljjmeeloljbehhhjkpijpb [2021-05-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (MultiHighlighter) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocifbglmlbpgpbflnkfpclkmckoollbn [2020-06-09]
CHR Extension: (Netflix Party is now Teleparty) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\oocalimimngaihdkbihfgmpkcpnmlaoa [2021-08-13]
CHR Extension: (Gmail) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-07-24]
CHR Profile: C:\Users\Simona\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-08-07]
CHR Profile: C:\Users\Simona\AppData\Local\Google\Chrome\User Data\System Profile [2020-08-07]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [300336 2019-07-03] (Acer Incorporated -> Acer Incorporated)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842416 2021-04-16] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3779840 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3547904 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8262736 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [627480 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1616664 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [374552 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9142128 2021-08-05] (Microsoft Corporation -> Microsoft Corporation)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [977824 2021-08-24] (McAfee, LLC -> McAfee, LLC)
S3 QALSvc; C:\Program Files\Acer\Acer Quick Access\QALSvc.exe [466224 2019-09-26] (Acer Incorporated -> Acer Incorporated)
S3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [508208 2019-09-26] (Acer Incorporated -> Acer Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13261608 2021-05-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-25] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 wuauserv; C:\Windows\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
S3 wuauserv; C:\Windows\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation) <==== ATTENTION (no ServiceDLL)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AcerAirplaneModeController; C:\Windows\System32\drivers\AcerAirplaneModeController.sys [29912 2019-05-03] (Acer Incorporated -> Acer Incorporated)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [218976 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [367640 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [250392 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [99352 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [17344 2021-08-24] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [41352 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [184648 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [559816 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [108408 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [82904 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851704 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [471920 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [215392 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [328568 2021-08-24] (Avast Software s.r.o. -> AVAST Software)
S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2020-03-26] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [59360 2020-03-26] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46688 2019-10-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [350136 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-25] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-24 08:46 - 2021-08-24 08:46 - 000029796 _____ C:\Users\Simona\Downloads\FRST.txt
2021-08-24 08:45 - 2021-08-24 08:46 - 000000000 ____D C:\FRST
2021-08-24 08:45 - 2021-08-24 08:45 - 002300928 _____ (Farbar) C:\Users\Simona\Downloads\FRST64.exe
2021-08-24 08:26 - 2021-08-24 08:26 - 000000000 ____D C:\Users\Simona\AppData\Roaming\Maxon
2021-08-24 07:58 - 2021-08-24 07:58 - 000000000 ____D C:\Users\Simona\AppData\Local\Avast Software
2021-08-24 07:57 - 2021-08-24 07:58 - 000002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium Security.lnk
2021-08-24 07:57 - 2021-08-24 07:58 - 000002076 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk
2021-08-24 07:57 - 2021-08-24 07:46 - 000339736 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2021-08-24 07:46 - 2021-08-24 07:46 - 000215392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2021-08-24 07:42 - 2021-08-24 07:43 - 000224552 _____ (AVAST Software) C:\Users\Simona\Downloads\avast_premium_security_setup_online.exe
2021-08-24 06:46 - 2021-08-24 06:59 - 000000000 ____D C:\Users\Simona\AppData\Roaming\ClickUp Desktop
2021-08-24 06:46 - 2021-08-24 06:46 - 000001836 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClickUp.lnk
2021-08-24 06:46 - 2021-08-24 06:46 - 000001824 _____ C:\Users\Public\Desktop\ClickUp.lnk
2021-08-24 06:46 - 2021-08-24 06:46 - 000000000 ____D C:\Users\Simona\AppData\Local\clickup-desktop-updater
2021-08-24 06:46 - 2021-08-24 06:46 - 000000000 ____D C:\Program Files\ClickUp
2021-08-16 15:22 - 2021-08-16 15:22 - 000000000 ____D C:\Users\Simona\AppData\LocalLow\Dani
2021-08-08 21:46 - 2021-08-08 21:46 - 000000218 _____ C:\Users\Simona\AppData\Local\recently-used.xbel
2021-08-01 15:43 - 2021-08-01 15:43 - 000000000 ____D C:\Users\Simona\AppData\Roaming\3909
2021-08-01 15:42 - 2021-08-01 15:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Papers Please
2021-08-01 15:42 - 2021-08-01 15:42 - 000000000 ____D C:\Program Files (x86)\Papers Please
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-08-24 08:40 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-24 08:35 - 2021-03-17 20:26 - 000000000 ____D C:\Users\Simona\AppData\Roaming\Slack
2021-08-24 08:17 - 2019-10-31 13:04 - 000004264 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2021-08-24 08:17 - 2019-10-25 14:50 - 000000000 ____D C:\Program Files (x86)\Google
2021-08-24 08:15 - 2019-11-08 14:58 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-08-24 08:15 - 2019-10-31 13:03 - 000000000 ____D C:\ProgramData\AVAST Software
2021-08-24 08:15 - 2019-10-30 14:59 - 000000000 ____D C:\Users\Simona\AppData\Roaming\WTablet
2021-08-24 08:15 - 2019-10-25 12:52 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-08-24 08:15 - 2019-03-19 06:37 - 000786432 _____ C:\Windows\system32\config\BBI
2021-08-24 08:13 - 2019-10-25 13:01 - 000002922 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4100036461-1423016816-3956434626-1001
2021-08-24 07:57 - 2019-03-19 06:52 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-08-24 07:46 - 2020-04-21 14:26 - 000559816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2021-08-24 07:46 - 2020-04-21 14:26 - 000184648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000851704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000471920 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000367640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000328568 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000250392 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000218976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000108408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000099352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000082904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000041352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2021-08-24 07:46 - 2019-10-31 13:04 - 000017344 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2021-08-24 07:37 - 2019-11-15 11:15 - 000000000 ____D C:\Users\Simona\AppData\Local\CrashDumps
2021-08-24 07:30 - 2019-11-11 11:47 - 000000000 ____D C:\Users\Simona\AppData\Local\D3DSCache
2021-08-24 07:18 - 2019-10-25 12:54 - 000000000 ____D C:\Windows\minidump
2021-08-24 07:13 - 2019-03-19 06:50 - 000000000 ____D C:\Windows\INF
2021-08-24 07:06 - 2021-03-17 23:04 - 000000000 ___RD C:\Users\Simona\Desktop\Files.zip
2021-08-24 07:04 - 2020-03-21 20:57 - 000000000 ___RD C:\Users\Simona\Desktop\Random stuff
2021-08-24 07:02 - 2019-10-25 13:20 - 000000000 ____D C:\Users\Simona\AppData\Roaming\vlc
2021-08-24 06:15 - 2019-10-25 12:52 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-08-23 23:19 - 2020-08-07 01:10 - 000000000 ___RD C:\Users\Simona\Desktop\Media Work
2021-08-23 21:48 - 2020-03-19 10:07 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2021-08-23 14:48 - 2019-10-25 12:58 - 000002374 _____ C:\Users\Simona\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-08-23 12:22 - 2021-03-17 20:22 - 000000000 ____D C:\Users\Simona\AppData\Local\TogglDesktop
2021-08-23 11:29 - 2021-03-23 16:27 - 000000000 ____D C:\Users\Simona\Desktop\LHMS
2021-08-23 10:25 - 2019-10-25 12:59 - 000000000 ____D C:\Users\Simona\AppData\Local\Packages
2021-08-22 22:38 - 2021-03-17 22:28 - 000000000 ___RD C:\Users\Simona\Desktop\Games
2021-08-21 13:23 - 2020-12-01 16:11 - 000000000 ____D C:\Users\Simona\AppData\Roaming\discord
2021-08-19 08:02 - 2019-10-25 14:52 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-08-18 16:47 - 2020-11-11 14:21 - 000000000 ____D C:\Program Files (x86)\Steam
2021-08-18 15:03 - 2020-12-01 16:11 - 000000000 ____D C:\Users\Simona\AppData\Local\Discord
2021-08-16 10:20 - 2020-03-10 19:13 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2021-08-12 13:41 - 2020-03-19 10:07 - 000003522 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0
2021-08-11 13:19 - 2019-10-25 13:01 - 000000000 ___RD C:\Users\Simona\OneDrive
2021-08-08 20:34 - 2020-05-28 14:42 - 000000000 ____D C:\Users\Simona\.dbus-keyrings
2021-08-04 23:59 - 2019-10-25 14:50 - 000003458 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-08-04 23:59 - 2019-10-25 14:50 - 000003334 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-08-04 19:11 - 2021-04-30 08:24 - 000003724 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-4100036461-1423016816-3956434626-1001UA
2021-08-04 19:11 - 2021-04-30 08:24 - 000003456 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskUserS-1-5-21-4100036461-1423016816-3956434626-1001Core
2021-08-01 15:42 - 2020-03-13 14:51 - 000000000 ___HD C:\Windows\msdownld.tmp
2021-08-01 15:42 - 2020-03-13 14:44 - 000000000 ____D C:\Windows\SysWOW64\directx
2021-07-30 22:06 - 2019-10-25 13:08 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-07-27 20:08 - 2021-03-17 20:26 - 000002208 _____ C:\Users\Simona\Desktop\Slack.lnk
2021-07-27 20:08 - 2021-03-17 20:26 - 000000000 ____D C:\Users\Simona\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Slack Technologies Inc
2021-07-27 20:08 - 2021-03-17 20:26 - 000000000 ____D C:\Users\Simona\AppData\Local\slack
2021-07-27 20:03 - 2020-12-01 16:11 - 000000000 ____D C:\Users\Simona\AppData\Local\SquirrelTemp
==================== Files in the root of some directories ========
2019-11-22 17:00 - 2020-04-13 18:02 - 000110931 _____ () C:\Users\Simona\AppData\Roaming\downloads.json
2020-09-24 22:19 - 2020-09-24 22:19 - 000000128 ____H () C:\Users\Simona\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6
2020-12-16 02:52 - 2020-12-16 02:52 - 000000002 _____ () C:\Users\Simona\AppData\Roaming\ExplorerFavorites.txt
2020-04-08 01:04 - 2020-04-08 01:04 - 000000112 _____ () C:\Users\Simona\AppData\Roaming\JP2K CS6 Prefs
2020-08-08 17:34 - 2020-08-08 21:27 - 000000000 _____ () C:\Users\Simona\AppData\Roaming\MCVi2UserDetail.ini
2020-09-04 22:40 - 2021-06-11 13:57 - 000001456 _____ () C:\Users\Simona\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-11-11 23:15 - 2019-11-11 23:15 - 000000356 _____ () C:\Users\Simona\AppData\Local\karboncalligraphyrc
2019-10-29 13:43 - 2020-03-22 18:20 - 001120278 _____ () C:\Users\Simona\AppData\Local\krita.log
2019-11-25 14:58 - 2020-01-18 23:45 - 000105740 _____ () C:\Users\Simona\AppData\Local\kritacrash.log
2020-03-22 18:20 - 2020-03-22 18:20 - 000000039 _____ () C:\Users\Simona\AppData\Local\kritadisplayrc
2019-10-29 13:43 - 2020-03-22 18:20 - 000026124 _____ () C:\Users\Simona\AppData\Local\kritarc
2020-03-19 10:06 - 2020-03-19 10:06 - 000000410 _____ () C:\Users\Simona\AppData\Local\oobelibMkey.log
2021-08-08 21:46 - 2021-08-08 21:46 - 000000218 _____ () C:\Users\Simona\AppData\Local\recently-used.xbel
2020-04-01 21:43 - 2020-04-01 21:43 - 000000017 _____ () C:\Users\Simona\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================