Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-09-2021 02
Ran by Petrk (administrator) on DESKTOP-L4K2NGD (Gigabyte Technology Co., Ltd. H110M-S2HP) (26-09-2021 13:18:30)
Running from C:\Users\Petrk\Desktop
Loaded Profiles: Petrk
Platform: Windows 10 Pro Version 21H1 19043.1237 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe) C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\AvBugReport.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\AvBugReport.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(Avast Software s.r.o. -> Avast Software) C:\Program Files\Common Files\AVAST Software\Icarus\avast-tu\icarus.exe
(Avira GmbH) [File not signed] C:\Program Files (x86)\Avira\Unerase\unerase.exe
(Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16>
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{48EF0EB8-09AD-4FD1-AD22-64C577B92BD9}\EDGEMITMP_FDDC4.tmp\setup.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{48EF0EB8-09AD-4FD1-AD22-64C577B92BD9}\MicrosoftEdge_X64_94.0.992.31_93.0.961.52.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <4>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Petrk\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.56.11001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20436.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotification.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotificationUx.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\NVDisplay.Container.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(Softdeluxe) [File not signed] C:\Users\Petrk\AppData\Local\Softdeluxe\Free Download Manager\fdm.exe
(Softdeluxe) [File not signed] C:\Users\Petrk\AppData\Local\Softdeluxe\Free Download Manager\wenativehost.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [124184 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\RtkAudUService64.exe [856288 2019-10-30] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3180256 2021-08-30] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [2748696 2021-09-20] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [455872 2020-06-22] (Power Software Limited -> Power Software Ltd)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [779448 2021-05-12] (Adobe Inc. -> Adobe Inc.)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-05-13] (Adobe Inc. -> )
HKLM-x32\...\Run: [zenvpn] => C:\Program Files (x86)\ZenVPN OpenVPN bundle\bin\zenvpn.exe [9643265 2021-07-05] () [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4282600 2021-09-17] (Valve -> Valve Corporation)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [Discord] => C:\Users\Petrk\AppData\Local\Discord\Update.exe [1512104 2021-05-24] (Discord Inc. -> GitHub)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [com.blitz.app] => C:\Users\Petrk\AppData\Local\Programs\Blitz\Blitz.exe [122577672 2021-09-24] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [Xvid] => C:\Program Files (x86)\Xvid\CheckUpdate.exe [8192 2011-01-17] () [File not signed]
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35093120 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33251808 2021-08-01] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [Free Download Manager] => C:\Users\Petrk\AppData\Local\Softdeluxe\Free Download Manager\fdm.exe [4938752 2021-05-21] (Softdeluxe) [File not signed]
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1806680 2021-09-09] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [DiscordPTB] => C:\Users\Petrk\AppData\Local\DiscordPTB\Update.exe [1512096 2021-05-22] (Discord Inc. -> GitHub)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\Run: [bt] => C:\Users\Petrk\AppData\Roaming\BitTorrent\BitTorrent.exe [2279976 2021-09-23] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\MountPoints2: {0fb1a98e-aa18-11ea-92c6-1c1b0d6559d7} - "D:\Autorun.exe"
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\MountPoints2: {c7a269ad-1abf-11ec-9403-1c1b0d6559d7} - "E:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-438706691-1456983326-2169936386-1001\...\MountPoints2: {c7a269cb-1abf-11ec-9403-1c1b0d6559d7} - "E:\HiSuiteDownLoader.exe"
HKLM\...\Windows x64\Print Processors\xrhk1apps: C:\Windows\System32\spool\prtprocs\x64\xrhk1apps.dll [32768 2011-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Xerox)
HKLM\...\Print\Monitors\Xerox WorkCentre 6015B Language Monitor: C:\WINDOWS\system32\xrhk1alm.dll [23040 2011-03-31] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\94.0.4606.61\Installer\chrmstp.exe [2021-09-24] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2021-09-12]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {099FE9D5-AA48-460D-B938-38E5D539AD4E} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3412736 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {111CFCB1-9D9E-4CF6-85B4-12AF9206F1C3} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6098200 2021-07-30] (Avast Software s.r.o. -> Avast Software)
Task: {13138879-A237-4824-B2A2-8EF422B901F9} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6386968 2021-09-16] (Avast Software s.r.o. -> Avast Software)
Task: {1CFD1876-3CA0-4649-99C9-432C6FC45382} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1D3A4A5E-8C0F-4073-8E66-DC252D6E5085} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1790184 2021-04-30] (Avast Software s.r.o. -> Avast Software)
Task: {27E08082-B518-49CC-A938-04065D06BEEC} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {2B867CD6-8116-4F23-B03B-06DCCAAEFB8F} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2021-09-13] (Adobe Inc. -> Adobe)
Task: {311E82C5-E1AF-4D2A-A037-FBF3DF7AA562} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {39E75219-DD57-4AC8-BFDF-FCD212B7F62F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {50AB32BC-E1FE-4460-BC88-0F61986923C6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-30] (Google Inc -> Google LLC)
Task: {55C0234E-7DB1-4556-85DC-CD3B2EF6C8AD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [7053744 2021-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {60C174D7-9E39-4C2B-8567-03DE0FB4292F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-09-10] (Piriform Software Ltd -> Piriform)
Task: {610D731F-11AE-43DF-B89F-66374B12E20B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {66BD5410-53B2-47B2-8B5C-D2EAFCAA3007} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6B3FC76C-3892-4FDE-BDC5-7DDBEA8B7E98} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [7053744 2021-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {839C6E0F-BABE-4E9E-9923-EA442965A4AC} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4917528 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
Task: {8D662F95-2D6B-4579-91B1-4B90D27E8A4D} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {90067285-830F-4B42-B726-8F05F88D5FC2} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1192216 2021-09-12] (Avast Software s.r.o. -> AVAST Software)
Task: {9D2643F1-7861-4BEA-93DD-DBBFB62F7B59} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A134A5CD-8C88-48CD-88DD-B9D59DD87D75} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4755224 2021-09-20] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid e1a85234-9cc0-4eba-9522-3fc33422dd4c
Task: {A2779BEF-A7CA-4079-A459-DBE053B5A7E5} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\Adobe Flash Player NPAPI Notifier" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\Adobe Flash Player Updater" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\CCleanerSkipUAC - Petrk" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(7): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineCore" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(8): schtasks.exe -> /Change /TN "\GoogleUpdateTaskMachineUA" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(9): schtasks.exe -> /Change /TN "\Intel PTT EK Recertification" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(10): schtasks.exe -> /Change /TN "\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(11): schtasks.exe -> /Change /TN "\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(12): schtasks.exe -> /Change /TN "\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(13): schtasks.exe -> /Change /TN "\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(14): schtasks.exe -> /Change /TN "\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(15): schtasks.exe -> /Change /TN "\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(16): schtasks.exe -> /Change /TN "\OneDrive Standalone Update Task-S-1-5-21-438706691-1456983326-2169936386-1001" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(17): schtasks.exe -> /Change /TN "\Overwolf Updater Task" /ENABLE
Task: {A706E2CC-9E22-4584-BC5F-89362B85E9A2} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(18): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {AB5DAAB9-5783-40F7-B533-7A328499A942} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AE74F09B-2930-44F1-9F4B-E0C45723A689} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-30] (Google Inc -> Google LLC)
Task: {AEE8D209-AFB0-4109-BAAD-88592F4287C5} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B52F21C7-7C64-46D5-9EE9-09503C7B9FD7} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B6EACE23-2DE4-40DA-B47A-36EDFAD8E41C} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-09-13] (Adobe Inc. -> Adobe)
Task: {BB8EA675-CD49-4378-824D-341B14A9DC37} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C288A388-238C-4654-B5AE-4ED149079CE6} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D646E343-7EA8-4A56-89D7-15A2EBDDC6D3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {DD1C29FB-EC12-48DF-B7CF-248861ADCEF3} - System32\Tasks\CCleanerSkipUAC - Petrk => C:\Program Files\CCleaner\CCleaner.exe [29155968 2021-09-10] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DF214B9C-AADA-4932-9DCE-00E8F12D52F2} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21858176 2021-08-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E1F66D5C-C545-4127-938D-EFB7F08ECBF1} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2483032 2021-09-09] (Overwolf Ltd -> Overwolf LTD)
Task: {E231EF3E-520A-4ABB-8900-2BDE752C4C4C} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4760344 2021-09-12] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid e43a3ecd-1cc8-448e-9e61-c30cd7c04183
Task: {E3CE8369-8381-4F2C-B2A0-3666D35CEB0C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139128 2021-08-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {EBF3A2C0-3932-4BB1-86ED-774BEDFA0E61} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F46A6BDC-0008-43C8-8660-74A30080E145} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [21858176 2021-08-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {FDBC6147-79B9-4BFC-B4F5-A2FD118E26E0} - System32\Tasks\Red Giant Link => C:\Program Files\Red Giant Link\Red Giant Link.exe
Task: {FE53D70D-1893-4D83-BFD7-63F0E71E49AA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139128 2021-08-31] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{00ab76ad-373b-496c-9cf0-4588e453c289}: [DhcpNameServer] 10.8.0.1
Tcpip\..\Interfaces\{30135f4c-b012-40a3-8782-afaf0ab8d8cf}: [NameServer] 100.122.0.0
Tcpip\..\Interfaces\{34f189e7-70f0-4e10-ab08-7451bde8fc04}: [NameServer] 100.120.41.1
Tcpip\..\Interfaces\{bdfa07f8-f4f9-4a26-a3ed-28bb44b9ca41}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{bdfa07f8-f4f9-4a26-a3ed-28bb44b9ca41}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{caf344f0-9ad7-4230-b0ab-cf7003985567}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Petrk\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-26]
Edge Extension: (IDM Integration Module) - C:\Users\Petrk\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2021-03-11]
Edge HKU\S-1-5-21-438706691-1456983326-2169936386-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2020-10-30]
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2021-09-13] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-08-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-08-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2021-05-12] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2021-09-13] (Adobe Inc. -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-08-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files (x86)\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-08-28] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-09-09] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2021-05-12] (Adobe Inc. -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default [2021-09-26]
CHR Notifications: Default -> hxxps://bets.net; hxxps://csgo.fastcup.net; hxxps://csgo500.com; hxxps://csgoatse.com; hxxps://esportal.com; hxxps://kfc.cz; hxxps://
www.tradingview.com; hxxps://www1.bethanyharrell.pro; hxxps://www1.ramirocampos.pro; hxxps://www2a.delmarmora.pro
CHR StartupUrls: Default -> "hxxps://
www.google.com/","hxxps://www.google.co ... oogle.com/"
CHR DefaultSearchURL: Default -> hxxps://app.gala.games/favicon.ico
CHR Extension: (Prezentace) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-09-30]
CHR Extension: (Free Download Manager) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2021-08-08]
CHR Extension: (The FFZ Add-On Pack) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2021-05-26]
CHR Extension: (BetterTTV) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2021-09-23]
CHR Extension: (7TV) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2021-09-22]
CHR Extension: (Dokumenty) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-09-30]
CHR Extension: (Disk Google) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22]
CHR Extension: (YouTube) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-09-30]
CHR Extension: (Steam Inventory Helper) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2021-06-11]
CHR Extension: (Black green shards) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojkleigdijnbfecdhjigpgalhfhkdee [2019-09-30]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2021-09-17]
CHR Extension: (FrankerFaceZ) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2019-09-30]
CHR Extension: (Tabulky) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-09-30]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-09-23]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-09-18]
CHR Extension: (Gala Games Web Application) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\mapmolmdehlbdldnpoaadfmhnmaidfld [2021-03-29]
CHR Extension: (FACEIT Enhancer) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2021-09-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Esportal Enhancer) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\olmfkdaefegfpkolccopfmohncemakcj [2020-10-10]
CHR Extension: (Gmail) - C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR Profile: C:\Users\Petrk\AppData\Local\Google\Chrome\User Data\System Profile [2021-05-20]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-09-13] (Adobe Inc. -> Adobe)
S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [842424 2021-05-12] (Adobe Inc. -> Adobe Inc.)
S4 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3779840 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3547904 2021-07-14] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8303184 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [630040 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1633048 2021-09-12] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [377624 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-02] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-05-06] (BattlEye Innovations e.K. -> )
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15049496 2021-09-20] (Avast Software s.r.o. -> AVAST Software)
S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9166736 2021-08-23] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2021-07-02] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [595888 2021-08-05] (EasyAntiCheat Oy -> Epic Games, Inc.)
S4 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
S4 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7497336 2021-08-27] (Malwarebytes Inc -> Malwarebytes)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2556048 2021-07-15] (Electronic Arts, Inc. -> Electronic Arts)
S4 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3474584 2021-07-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2483032 2021-09-09] (Overwolf Ltd -> Overwolf LTD)
S4 postgresql-x64-9.5; C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe [94208 2016-08-09] (PostgreSQL Global Development Group) [File not signed]
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1848624 2021-07-29] (Rockstar Games, Inc. -> Rockstar Games)
S4 rpcapd; C:\Program Files (x86)\WinPcap\rpcapd.exe [118520 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [8807704 2021-09-12] (Avast Software s.r.o. -> AVAST Software)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5394872 2021-09-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13103632 2020-09-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [10202040 2021-08-30] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 HuaweiHiSuiteService64.exe; "C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_799504293a3d3200\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 acdrv; C:\WINDOWS\system32\drivers\acdrv.sys [4670856 2020-04-25] (OnMoon Company LLC -> )
S3 ACE-BASE; C:\WINDOWS\system32\drivers\ACE-BASE.sys [1732736 2021-09-12] (Tencent Technology(Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-GAME; C:\WINDOWS\system32\drivers\ACE-GAME.sys [752768 2021-09-12] (Tencent Technology(Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [221584 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [367632 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [250384 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [99344 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [17344 2021-08-11] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [41344 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [184120 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [538464 2021-09-12] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [107840 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [82904 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [851704 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [553496 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215384 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2021-09-12] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [328568 2021-09-07] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [56960 2021-09-12] (Avast Software s.r.o. -> Avast Software)
R3 aswWintun; C:\WINDOWS\System32\drivers\aswWintun.sys [37104 2021-09-12] (Avast Software s.r.o. -> WireGuard LLC)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 EspoDriver; C:\WINDOWS\system32\drivers\EspoDriver.sys [6146048 2021-09-15] (Esportal AB -> )
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-09-30] (Martin Malik - REALiX -> REALiX(tm))
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-08-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-08-27] (Malwarebytes Inc -> Malwarebytes)
S3 MpKslc794175d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{5B7C841C-3E56-4E4D-9541-5BC198A31780}\MpKslDrv.sys [107752 2021-07-31] (Microsoft Windows -> Microsoft Corporation)
R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2013-03-01] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [27136 2014-11-05] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49024 2020-12-30] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tesrsdt; C:\WINDOWS\system32\drivers\tesrsdt.sys [442128 2019-10-07] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S3 TesSafe; C:\WINDOWS\system32\TesSafe.sys [555064 2019-10-14] (Tencent Technology(Shenzhen) Company Limited -> TENCENT)
S1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [8234240 2021-08-30] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-09-26 13:07 - 2021-09-22 22:33 - 002304512 _____ (Farbar) C:\Users\Petrk\Desktop\FRST64.exe
2021-09-26 12:59 - 2021-09-26 12:59 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Avira Unerase Personal
2021-09-26 12:53 - 2021-09-26 12:53 - 000002076 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk
2021-09-26 12:46 - 2021-09-07 12:35 - 000340248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-09-26 12:30 - 2021-09-26 12:31 - 000303960 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-09-26 12:27 - 2021-09-26 12:27 - 000000000 _____ C:\WINDOWS\WMSysPp1020
2021-09-26 11:25 - 2021-09-26 11:25 - 000000000 ____D C:\Program Files (x86)\Avira
2021-09-24 13:18 - 2021-09-24 13:18 - 000000000 ____D C:\Users\Petrk\Downloads\AGFY-GAS STATION SIM
2021-09-23 21:39 - 2021-09-24 00:16 - 000000000 ____D C:\Users\Petrk\Downloads\Gas Station Simulator
2021-09-23 21:35 - 2021-09-23 21:35 - 003567649 _____ C:\Users\Petrk\Downloads\Gas.Station.Simulator.v1.0.1.37785.torrent
2021-09-23 20:37 - 2021-09-23 20:37 - 000000000 ____D C:\Users\Public\Documents\Steam
2021-09-23 20:37 - 2021-09-23 20:37 - 000000000 ____D C:\Users\Petrk\AppData\Local\GSS2
2021-09-23 19:18 - 2021-09-23 20:17 - 000000000 ____D C:\Users\Petrk\Downloads\Gas Station Simulator 1
2021-09-23 19:15 - 2021-09-23 19:15 - 003568389 _____ C:\Users\Petrk\Downloads\Gas.Station.Simulator.v1.0.1.37829.torrent
2021-09-23 19:13 - 2021-09-24 00:18 - 000000000 ____D C:\Users\Petrk\AppData\Local\BitTorrentHelper
2021-09-23 19:12 - 2021-09-24 09:38 - 000001103 _____ C:\Users\Petrk\Desktop\BitTorrent.lnk
2021-09-23 19:12 - 2021-09-24 00:19 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\BitTorrent
2021-09-23 19:11 - 2021-09-23 19:11 - 000000000 ____D C:\Users\Petrk\AppData\Local\Adaware
2021-09-23 19:10 - 2021-09-23 19:11 - 004932568 _____ (BitTorrent Inc.) C:\Users\Petrk\Downloads\BitTorrent.exe
2021-09-22 22:33 - 2021-09-22 22:33 - 002304512 _____ (Farbar) C:\Users\Petrk\Downloads\FRST64.exe
2021-09-19 11:58 - 2021-09-20 09:49 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\EasyAntiCheat
2021-09-17 00:47 - 2021-09-17 00:47 - 000672768 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2021-09-17 00:47 - 2021-09-17 00:47 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-09-17 00:47 - 2021-09-17 00:47 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-09-17 00:47 - 2021-09-17 00:47 - 000170496 _____ C:\WINDOWS\system32\DeviceUpdateCenterCsp.dll
2021-09-17 00:46 - 2021-09-17 00:46 - 002111488 _____ (Digimarc) C:\WINDOWS\SysWOW64\DMRCDecoder.dll
2021-09-17 00:46 - 2021-09-17 00:46 - 001313608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-09-17 00:46 - 2021-09-17 00:46 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2021-09-17 00:46 - 2021-09-17 00:46 - 000011355 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-09-17 00:45 - 2021-09-17 00:45 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-09-17 00:45 - 2021-09-17 00:45 - 001164288 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-09-17 00:45 - 2021-09-17 00:45 - 000426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-09-17 00:45 - 2021-09-17 00:45 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-09-17 00:45 - 2021-09-17 00:45 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2021-09-17 00:44 - 2021-09-17 00:44 - 002295296 _____ (Digimarc) C:\WINDOWS\system32\DMRCDecoder.dll
2021-09-17 00:44 - 2021-09-17 00:44 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-09-17 00:44 - 2021-09-17 00:44 - 001823304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-09-17 00:44 - 2021-09-17 00:44 - 001393480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-09-17 00:44 - 2021-09-17 00:44 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-09-17 00:43 - 2021-09-17 00:43 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-09-17 00:43 - 2021-09-17 00:43 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-09-17 00:43 - 2021-09-17 00:43 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-09-16 23:52 - 2021-09-16 23:52 - 000000000 ___HD C:\$WinREAgent
2021-09-16 19:10 - 2021-09-16 19:10 - 1860610614 _____ C:\Users\Petrk\Downloads\AGFY-GAS STATION SIM.rar
2021-09-15 22:45 - 2021-09-26 12:23 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\discordptb
2021-09-15 22:44 - 2021-09-26 11:39 - 000000000 ____D C:\Users\Petrk\AppData\Local\DiscordPTB
2021-09-15 22:34 - 2021-09-15 22:36 - 000000000 ____D C:\Users\Petrk\AppData\Local\Discord
2021-09-15 01:50 - 2021-09-15 01:50 - 000000000 ____D C:\Users\Petrk\Downloads\ACLib
2021-09-14 21:12 - 2021-09-14 21:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TopCD
2021-09-14 21:10 - 2021-09-14 21:12 - 000000000 ____D C:\Program Files\Kobra 11 Nitro
2021-09-14 01:59 - 2021-09-20 09:49 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\dvdcss
2021-09-13 08:45 - 2021-09-16 17:05 - 000000000 ____D C:\Users\Petrk\Desktop\GAMES
2021-09-13 08:39 - 2021-09-26 13:34 - 000003774 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier
2021-09-13 08:39 - 2021-09-26 13:34 - 000003488 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater
2021-09-13 08:39 - 2021-09-13 08:39 - 000842296 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2021-09-13 08:39 - 2021-09-13 08:39 - 000175160 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2021-09-13 08:39 - 2021-09-13 08:39 - 000000000 ____D C:\WINDOWS\system32\Macromed
2021-09-12 16:28 - 2021-09-12 16:28 - 000000000 ____D C:\WINDOWS\Panther
2021-09-12 15:07 - 2021-09-26 12:23 - 000000000 ____D C:\WINDOWS\system32\gf2engine
2021-09-12 15:07 - 2021-09-12 15:07 - 000002125 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Cleanup Premium.lnk
2021-09-12 14:34 - 2021-09-26 12:53 - 000002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium Security.lnk
2021-09-12 14:29 - 2021-09-12 14:29 - 000000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2021-09-12 14:29 - 2021-09-12 14:29 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2021-09-12 14:29 - 2021-09-12 14:28 - 000538464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-09-12 14:28 - 2021-09-16 16:40 - 000000000 ____D C:\Program Files (x86)\Avast Software
2021-09-12 14:27 - 2021-09-26 12:32 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2021-09-12 14:27 - 2021-09-16 18:52 - 000036120 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2021-09-12 14:27 - 2021-09-12 14:27 - 000056960 _____ (Avast Software) C:\WINDOWS\system32\Drivers\aswVpnRdr.sys
2021-09-12 14:27 - 2021-09-12 14:27 - 000053904 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\aswTap.sys
2021-09-12 14:27 - 2021-09-12 14:27 - 000037104 _____ (WireGuard LLC) C:\WINDOWS\system32\Drivers\aswWintun.sys
2021-09-12 14:27 - 2021-09-12 14:27 - 000002149 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SecureLine VPN.lnk
2021-09-10 22:22 - 2021-09-10 22:22 - 000000013 _____ C:\Users\Petrk\Desktop\valorant SENSI..txt
2021-09-08 22:20 - 2021-09-08 22:20 - 000000072 _____ C:\WINDOWS\system32\AdsInfoCls
2021-09-08 19:01 - 2021-09-08 19:01 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\GMEGLOBAL
2021-09-08 16:33 - 2021-09-16 16:38 - 000000000 ____D C:\Program Files\AntiCheatExpert
2021-09-08 16:33 - 2021-09-12 17:33 - 001732736 _____ (ANTICHEATEXPERT.COM) C:\WINDOWS\system32\Drivers\ACE-BASE.sys
2021-09-08 16:33 - 2021-09-12 17:33 - 000752768 _____ (ANTICHEATEXPERT.COM) C:\WINDOWS\system32\Drivers\ACE-GAME.sys
2021-09-08 16:32 - 2021-09-12 17:54 - 000000000 ____D C:\ProgramData\AntiCheatExpert
2021-09-08 16:18 - 2021-09-08 16:42 - 000000000 ____D C:\Users\Petrk\AppData\Local\Tiger
2021-09-07 12:36 - 2021-09-07 12:35 - 000215384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-09-05 09:01 - 2021-09-10 17:50 - 000000000 ____D C:\Users\Petrk\AppData\LocalLow\IGDump
2021-09-02 18:27 - 2021-09-15 21:39 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\cookie-electron
2021-09-02 17:50 - 2021-09-02 17:50 - 000000223 _____ C:\Users\Petrk\Desktop\Cookie Clicker.url
2021-08-27 19:50 - 2021-08-27 19:54 - 000000000 ____D C:\Users\Petrk\Documents\My Spore Creations
2021-08-27 19:50 - 2021-08-27 19:53 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Spore
2021-08-27 19:50 - 2021-08-27 19:50 - 000001244 _____ C:\AiOLog.txt
2021-08-27 19:48 - 2021-08-27 19:48 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\SPORE Collection_Uninstall
2021-08-27 19:48 - 2021-08-27 19:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\R.G. Mechanics
2021-08-27 19:29 - 2021-08-27 19:51 - 000000000 ____D C:\AiO-Files
2021-08-27 16:28 - 2021-08-27 16:28 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2021-08-27 16:28 - 2021-08-27 16:28 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-08-27 16:27 - 2021-08-27 16:27 - 000160176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2021-08-27 16:27 - 2021-08-27 16:27 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2021-08-27 16:27 - 2021-08-27 16:27 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-08-27 16:25 - 2021-08-27 16:25 - 000000000 ____D C:\Program Files\Malwarebytes
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-09-26 13:34 - 2021-08-19 09:55 - 000002252 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Petrk
2021-09-26 13:34 - 2021-07-16 01:04 - 000003402 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-09-26 13:34 - 2021-07-16 01:04 - 000003178 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-09-26 13:34 - 2021-07-13 22:38 - 000003244 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task
2021-09-26 13:34 - 2020-11-06 08:41 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2021-09-26 13:34 - 2020-11-05 21:16 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-09-26 13:34 - 2020-11-05 21:16 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000003196 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000002988 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-09-26 13:34 - 2020-11-05 21:16 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-438706691-1456983326-2169936386-1001
2021-09-26 13:34 - 2020-11-05 21:16 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-26 13:34 - 2020-11-05 21:16 - 000002236 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-09-26 13:34 - 2020-11-05 21:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-09-26 13:28 - 2021-05-20 14:23 - 000042669 _____ C:\Users\Petrk\Desktop\FRST.txt
2021-09-26 13:24 - 2021-05-20 14:11 - 000000000 ____D C:\FRST
2021-09-26 13:23 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-09-26 13:19 - 2020-04-06 02:04 - 000000000 ____D C:\Program Files\CCleaner
2021-09-26 13:18 - 2020-12-24 00:33 - 000000000 ____D C:\Users\postgres
2021-09-26 13:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-09-26 13:17 - 2020-06-06 13:28 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-09-26 13:17 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-09-26 12:52 - 2020-11-05 21:16 - 000003990 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2021-09-26 12:46 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-09-26 12:46 - 2019-09-30 19:53 - 000000000 ____D C:\ProgramData\NVIDIA
2021-09-26 12:39 - 2019-10-04 23:05 - 000000000 ____D C:\Users\Petrk\AppData\Local\CrashDumps
2021-09-26 12:39 - 2019-09-30 17:57 - 000000000 ____D C:\Program Files (x86)\Steam
2021-09-26 12:38 - 2020-04-10 21:12 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2021-09-26 12:37 - 2019-09-30 16:21 - 000000000 ____D C:\Program Files (x86)\Google
2021-09-26 12:33 - 2020-11-05 20:47 - 000000000 ____D C:\Users\Petrk
2021-09-26 12:32 - 2019-10-01 17:02 - 000000000 ____D C:\ProgramData\AVAST Software
2021-09-26 12:30 - 2020-11-05 21:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-09-26 12:30 - 2020-11-05 20:40 - 000008192 ___SH C:\DumpStack.log.tmp
2021-09-26 12:23 - 2021-08-17 21:10 - 000000000 ____D C:\Program Files\Riot Vanguard
2021-09-26 12:23 - 2021-07-05 21:53 - 000000000 ____D C:\Program Files\TAP-Windows
2021-09-26 12:23 - 2021-04-01 17:32 - 000000000 ____D C:\Users\Petrk\AppData\Local\LostRelics
2021-09-26 12:23 - 2021-01-19 22:00 - 000000000 ____D C:\Users\Petrk\Desktop\zbytek
2021-09-26 12:23 - 2020-11-07 15:45 - 000000000 ___HD C:\GrandeDevice
2021-09-26 12:23 - 2020-06-17 12:55 - 000000000 ____D C:\Program Files (x86)\LEGO MARVEL Super Heroes
2021-09-26 12:23 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2021-09-26 11:40 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\registration
2021-09-26 11:40 - 2019-10-02 19:44 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Blitz
2021-09-26 11:39 - 2019-09-30 18:20 - 000000000 ____D C:\ProgramData\Riot Games
2021-09-26 09:34 - 2020-11-05 20:40 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-09-25 17:54 - 2019-09-30 20:09 - 000000000 ____D C:\Users\Petrk\AppData\Local\D3DSCache
2021-09-25 16:42 - 2021-05-18 13:32 - 000000032 _____ C:\Users\Petrk\AppData\Roaming\.machineId
2021-09-24 10:41 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-09-24 10:08 - 2019-09-30 16:26 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-09-24 10:08 - 2019-09-30 16:26 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-09-24 09:38 - 2021-03-10 21:34 - 000002460 _____ C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mavis Hub.lnk
2021-09-24 09:38 - 2020-11-05 20:47 - 000002520 _____ C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-09-24 09:38 - 2020-04-08 02:49 - 000002404 _____ C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2021-09-23 21:54 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-09-22 18:46 - 2021-07-13 22:37 - 000000000 ____D C:\Program Files (x86)\Overwolf
2021-09-20 09:49 - 2019-10-01 19:45 - 000000000 ____D C:\Users\Petrk\AppData\Local\SquirrelTemp
2021-09-17 22:18 - 2019-10-01 19:45 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Discord
2021-09-17 15:27 - 2020-10-06 18:48 - 000000000 ____D C:\Program Files\esportal-client
2021-09-17 09:07 - 2020-11-05 21:00 - 002635886 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-09-17 09:07 - 2020-10-29 09:37 - 000783992 _____ C:\WINDOWS\system32\perfh019.dat
2021-09-17 09:07 - 2020-10-29 09:37 - 000158144 _____ C:\WINDOWS\system32\perfc019.dat
2021-09-17 09:07 - 2019-12-07 16:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2021-09-17 09:07 - 2019-12-07 16:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2021-09-17 08:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-09-17 08:55 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-09-17 08:55 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-09-17 08:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-09-17 08:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-09-17 08:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-09-17 08:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-09-17 08:42 - 2019-12-07 16:35 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\TS3Client
2021-09-17 08:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-09-17 00:58 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-09-16 16:43 - 2021-07-13 22:34 - 000000000 ____D C:\Users\Petrk\AppData\Local\Overwolf
2021-09-16 16:41 - 2019-12-26 15:54 - 000000000 ____D C:\Program Files (x86)\GameforgeClient
2021-09-16 16:38 - 2019-10-17 16:12 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-09-16 16:22 - 2021-07-05 21:22 - 000000000 ____D C:\Program Files (x86)\Proton Technologies
2021-09-16 16:08 - 2021-04-11 17:38 - 000000000 ____D C:\Users\Petrk\Desktop\textove soubory
2021-09-16 03:02 - 2019-09-30 22:17 - 000000000 ____D C:\Users\Petrk\AppData\Local\ElevatedDiagnostics
2021-09-15 22:45 - 2019-10-01 19:45 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2021-09-15 15:59 - 2021-05-16 08:54 - 006146048 ____S C:\WINDOWS\system32\Drivers\EspoDriver.sys
2021-09-15 09:10 - 2019-09-30 16:14 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-09-15 08:46 - 2019-09-30 16:14 - 135637312 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-09-14 17:08 - 2020-05-16 14:32 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-09-14 02:29 - 2019-12-23 18:37 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\vlc
2021-09-14 01:34 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-09-13 08:47 - 2021-01-28 17:54 - 000000000 ____D C:\Users\Petrk\Desktop\obrazky
2021-09-13 08:42 - 2019-12-07 16:35 - 000000970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2021-09-13 08:40 - 2019-10-01 16:23 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-09-13 08:40 - 2019-10-01 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2021-09-13 08:40 - 2019-10-01 16:23 - 000000000 ____D C:\Program Files\WinRAR
2021-09-13 08:38 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2021-09-12 21:56 - 2020-10-12 20:47 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-09-12 18:24 - 2020-11-05 21:16 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-12 18:24 - 2020-11-05 21:16 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-12 18:24 - 2020-11-05 21:16 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-12 18:24 - 2020-11-05 21:16 - 000003008 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-09-12 17:57 - 2020-11-30 09:06 - 000003378 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6b3a5a8889aed
2021-09-12 17:57 - 2020-11-05 21:16 - 000003572 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-09-12 17:57 - 2020-11-05 21:16 - 000003348 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-09-12 16:15 - 2021-05-12 19:38 - 000002672 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2021-09-12 16:12 - 2020-01-23 23:47 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\TeamViewer
2021-09-12 16:12 - 2019-12-23 22:35 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Sony
2021-09-12 16:12 - 2019-10-04 19:06 - 000000000 ____D C:\Users\Petrk\Documents\Euro Truck Simulator 2
2021-09-12 16:11 - 2021-07-24 23:29 - 000000000 ____D C:\Users\Petrk\Desktop\FiveM
2021-09-12 16:11 - 2020-02-29 17:03 - 000000000 ____D C:\Users\Petrk\Desktop\Adobe Illustrator CC 2019
2021-09-12 16:11 - 2019-10-20 09:31 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2021-09-12 15:52 - 2021-05-12 19:37 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2021-09-12 15:27 - 2019-10-01 21:11 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\AVAST Software
2021-09-12 15:27 - 2019-10-01 17:04 - 000000000 ____D C:\Program Files\AVAST Software
2021-09-12 14:42 - 2021-07-05 21:53 - 000000000 ____D C:\ProgramData\ZenVPN
2021-09-12 14:42 - 2021-07-05 21:53 - 000000000 ____D C:\Program Files (x86)\ZenVPN OpenVPN bundle
2021-09-12 14:27 - 2019-10-01 17:29 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2021-09-12 08:57 - 2021-05-03 15:46 - 000000000 ____D C:\WINDOWS\Minidump
2021-09-09 17:05 - 2021-04-11 17:37 - 000000000 ____D C:\Users\Petrk\Desktop\Filmy
2021-09-08 16:36 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\tracing
2021-09-08 16:36 - 2019-09-30 20:09 - 000000000 ____D C:\ProgramData\Package Cache
2021-09-07 12:36 - 2019-10-01 17:29 - 000328568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-09-07 12:35 - 2020-10-22 18:47 - 000184120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000851704 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000553496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000367632 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000250384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000221584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000107840 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000099344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000082904 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-09-07 12:35 - 2019-10-01 17:29 - 000041344 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-09-04 19:05 - 2019-12-28 19:29 - 000000000 ____D C:\Users\Petrk\AppData\Roaming\obs-studio
2021-09-04 12:18 - 2020-09-21 00:00 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-08-31 09:10 - 2021-01-15 23:20 - 000000000 ____D C:\Program Files\Microsoft Office
2021-08-28 10:21 - 2020-06-14 09:30 - 000000000 ____D C:\Program Files\Java
2021-08-28 10:21 - 2020-04-19 22:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2021-08-28 10:20 - 2020-04-19 22:45 - 000000000 ____D C:\Program Files (x86)\Java
2021-08-28 10:15 - 2020-06-14 09:30 - 000191832 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2021-08-28 10:14 - 2020-04-19 22:45 - 000164696 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2021-08-27 19:38 - 2020-01-31 19:57 - 000000000 ____D C:\games
2021-08-27 16:55 - 2021-07-01 15:55 - 000000000 ____D C:\Users\Petrk\AppData\Local\OriginalApplicationSetup
2021-08-27 16:55 - 2020-02-07 11:38 - 000000000 ____D C:\Program Files (x86)\uTorrent
2021-08-27 08:39 - 2020-04-24 10:29 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2021-08-27 08:39 - 2020-03-28 23:57 - 002163152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2021-08-27 08:39 - 2020-03-28 23:57 - 000307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2021-08-27 08:39 - 2020-03-28 23:57 - 000213456 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2021-08-27 08:39 - 2020-03-28 23:57 - 000188856 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2021-08-27 08:39 - 2020-03-28 23:57 - 000061904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
==================== Files in the root of some directories ========
2021-05-18 13:32 - 2021-09-25 16:42 - 000000032 _____ () C:\Users\Petrk\AppData\Roaming\.machineId
2021-06-26 12:02 - 2021-07-02 16:07 - 095884942 _____ () C:\Users\Petrk\AppData\Roaming\gta5_patch.bin
2020-12-07 19:48 - 2020-12-07 20:20 - 000000099 _____ () C:\Users\Petrk\AppData\Roaming\LauncherSettings_live.cfg
2021-06-26 12:02 - 2021-06-26 12:02 - 000332800 _____ () C:\Users\Petrk\AppData\Roaming\patcher.dll
2020-12-07 19:51 - 2020-12-07 19:51 - 000002577 _____ () C:\Users\Petrk\AppData\Roaming\TheHunterSettings_live.bin
2020-12-07 19:54 - 2020-12-07 19:55 - 000000050 _____ () C:\Users\Petrk\AppData\Roaming\TheHunterSettings_steam_live.cfg
2020-04-06 02:18 - 2020-04-06 02:18 - 000407216 _____ () C:\Users\Petrk\AppData\Local\ars.cache
2020-04-06 02:20 - 2020-04-06 02:20 - 001135712 _____ () C:\Users\Petrk\AppData\Local\census.cache
2020-04-06 00:43 - 2020-04-06 00:43 - 000000036 _____ () C:\Users\Petrk\AppData\Local\housecall.guid.cache
2021-05-12 19:07 - 2021-05-12 19:07 - 000000410 _____ () C:\Users\Petrk\AppData\Local\oobelibMkey.log
2020-07-09 23:03 - 2021-04-10 11:15 - 000003668 _____ () C:\Users\Petrk\AppData\Local\PlariumPlay.log
2020-07-29 17:44 - 2020-07-29 17:44 - 000007598 _____ () C:\Users\Petrk\AppData\Local\Resmon.ResmonCfg
2020-04-06 01:35 - 2020-04-06 01:35 - 000000010 _____ () C:\Users\Petrk\AppData\Local\sponge.last.runtime.cache
2020-01-30 11:48 - 2020-01-30 11:49 - 000011654 _____ () C:\Users\Petrk\AppData\Local\WiDiSetupLog.20200130.104832.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================