Preventívka T-Bag
Napsal: 02 led 2022 13:36
Zdravím, prosím o preventívnu kontrolu, ntb je akýsi pomalý a prehliadače opera/chrome mi velmi žeru Ram/Cpu.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-12-2021
Ran by Tibor (administrator) on TIBOR (Acer Aspire E5-573G) (02-01-2022 12:53:02)
Running from C:\Users\Tibor\Desktop
Loaded Profiles: Tibor
Platform: Microsoft Windows 10 Home Version 21H1 19043.1415 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\ASUSService.exe
() [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe
() [File not signed] C:\Users\Tibor\Desktop\GSAutoClicker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Discord Inc. -> Discord Inc.) C:\Users\Tibor\AppData\Local\Discord\app-1.0.9003\Discord.exe <6>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <23>
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIGCE.EXE
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Ralink Technology, Corp.) [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaRegistry64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp. -> ) C:\Windows\runSW.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Windows\SwUSB.exe
(RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14049536 2015-07-09] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [157464 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8442464 2020-12-12] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [EPSON1D24F2 (Epson Stylus SX420W)] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE [224768 2009-09-14] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Discord] => C:\Users\Tibor\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [utweb] => "C:\Users\Tibor\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Opera Browser Assistant] => C:\Users\Tibor\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4095184 2021-08-11] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [ut] => "C:\Users\Tibor\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [EPSON SX420W Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE [224768 2009-09-14] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EPSON SX420W Series 64MonitorBE: C:\WINDOWS\system32\E_ILMGCE.DLL [118784 2008-11-12] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-13] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ASUS USB-AC51 WLAN Control Center.lnk [2020-12-22]
ShortcutTarget: ASUS USB-AC51 WLAN Control Center.lnk -> C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaUI.exe (ASUSTeK Computer Inc.) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TREZOR Bridge.lnk [2021-01-08]
ShortcutTarget: TREZOR Bridge.lnk -> C:\Program Files (x86)\TREZOR Bridge\trezord.exe (SatoshiLabs, s.r.o. -> )
Startup: C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2020-10-08]
ShortcutTarget: MEGAsync.lnk -> C:\Windows.old\Users\Tibor\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {073BDFFE-C5A9-43DA-A4EF-E881E69890EA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {0E3885D1-8826-4E7B-9FF0-2CCB4A06583D} - System32\Tasks\Opera scheduled assistant Autoupdate 1602954848 => C:\Users\Tibor\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Tibor\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {19A4EE05-2984-4BF6-9CE1-1F420DCCAB61} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1AC05320-3413-4ACD-A9D4-0A09BD13966F} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2813316739-561623387-2885406294-1001 => C:\Windows.old\Users\Tibor\AppData\Local\MEGAsync\MEGAupdater.exe [1303800 2020-12-12] (Mega Limited -> Mega Limited)
Task: {4351048E-0DB9-4F81-99B7-704A0FFED913} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {52EAE05D-FE15-45C3-ACB1-4F88E273BF4D} - System32\Tasks\Opera scheduled Autoupdate 1602954829 => C:\Users\Tibor\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-14] (Opera Software AS -> Opera Software)
Task: {5E12C1DA-42E7-4EA3-9085-DB1714E0BFE9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {639C6B9E-1E7A-4BE9-92F9-ED7157D9C0F4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-10-08] (Google LLC -> Google LLC)
Task: {84C939F4-D939-4F2B-B01B-92F2B4E69124} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {906F5B73-7B83-4DFC-B6EF-18A13442BF75} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9B92D60A-DECD-4709-A1BD-4C2566A84D02} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B09642EC-734A-427C-AC0F-3F0DB7B7AF58} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {BA7B6BF4-0B80-4C26-9C83-904870744383} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1E0276D-1BC8-41D1-9949-5EFD12FAFB3D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {C35E4ED4-521B-48EC-8AE2-18587E4AADB3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C61E8B24-30DF-43FE-A848-2841AD26F90A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-10-08] (Google LLC -> Google LLC)
Task: {C7500535-9F5F-43B3-A022-E3D1723DBAE3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D4D51C84-FC3E-40F5-82DF-565134B7CC9D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D54452D8-0618-4F7A-9DD5-F40E09C478FD} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4969240 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
Task: {D54CF93E-D2CB-4CD1-88BE-8C48CBA2EC11} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {FC3949A2-53FB-463B-8958-3E3BB9BC5465} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {FE82577C-64CC-4550-A27A-CD7443349B65} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{38361781-665b-4bac-baa9-7292d430fe54}: [DhcpNameServer] 192.168.2.254
Tcpip\..\Interfaces\{7f91a368-a36a-489f-985d-b120411bfc58}: [DhcpNameServer] 195.146.132.59 8.8.8.8
Tcpip\..\Interfaces\{a791c8d3-0280-49a8-90c0-2ee0a4245225}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-26]
Edge Session Restore: Default -> is enabled.
Edge Extension: (Outlook) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-15]
Edge Extension: (Word) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-15]
Edge Extension: (Excel) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-15]
Edge Extension: (PowerPoint) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-15]
FireFox:
========
FF DefaultProfile: umm8z632.default
FF ProfilePath: C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\umm8z632.default [2020-10-10]
FF NewTab: Mozilla\Firefox\Profiles\umm8z632.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-10-10 06:06:17&bName=
FF ProfilePath: C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751 [2021-10-29]
FF Session Restore: Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751 -> is enabled.
FF Extension: (Facebook Container) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\@contain-facebook.xpi [2021-08-23]
FF Extension: (Enhancer for YouTube™) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-08-23]
FF Extension: (MetaMask) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\webextension@metamask.io.xpi [2021-08-23]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default [2022-01-02]
CHR Notifications: Default -> hxxps://app.anchorprotocol.com
CHR Extension: (Prezentácie) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-10]
CHR Extension: (Terra Station) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiifbnbfobpmeekipheeijimdpnlpgpp [2021-12-18]
CHR Extension: (Dokumenty) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-10]
CHR Extension: (Disk Google) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-10]
CHR Extension: (Phantom) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2021-12-29]
CHR Extension: (Authenticator) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2021-11-11]
CHR Extension: (YouTube) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-10]
CHR Extension: (Tabuľky) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-10]
CHR Extension: (Binance Wallet) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbohimaelbohpjbbldcngcnapndodjp [2021-12-28]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-05]
CHR Extension: (IE Tab) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2021-11-20]
CHR Extension: (Nastavenie hlasitosti) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\kedfglpbemacpmmdhkhmichimibbhnge [2021-12-11]
CHR Extension: (MetaMask) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2021-12-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-15]
CHR Extension: (Gmail) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-10]
Opera:
=======
OPR Profile: C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable [2022-01-02]
OPR Notifications: Opera Stable -> hxxps://bridge.renproject.io; hxxps://www.tradingview.com
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Terra Station) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\aiifbnbfobpmeekipheeijimdpnlpgpp [2021-12-29]
OPR Extension: (Phantom) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2021-12-17]
OPR Extension: (Keplr) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2021-12-30]
OPR Extension: (Rich Hints Agent) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-12-30]
OPR Extension: (Harmony Chrome Extension Wallet) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\fnnegphlobjdpkhecapkijjdkgcjhkib [2021-11-06]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-13]
OPR Extension: (Install Chrome Extensions) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2021-03-22]
OPR Extension: (MetaMask) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2021-12-29]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 ASUSWireless; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\ASUSService.exe [184320 2014-03-05] () [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8480848 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [323152 2015-05-29] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [452888 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [452888 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-03] (Avast Software s.r.o. -> AVAST Software)
S2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [165104 2015-06-30] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7901368 2021-12-13] (Malwarebytes Inc -> Malwarebytes)
R2 RalinkRegistryWriter; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaRegistry64.exe [447488 2014-03-05] (Ralink Technology, Corp.) [File not signed]
S2 RaMediaServer; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaMediaServer.exe [1863680 2014-03-05] (Ralink) [File not signed]
R2 RemoteMouseService; C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe [11264 2020-09-23] () [File not signed]
R2 RunSwUSB; C:\Windows\runSW.exe [59232 2018-05-02] (Realtek Semiconductor Corp. -> )
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [29280 2020-12-12] (LAVASOFT SOFTWARE CANADA INC -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-10-05] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210352 2021-12-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-07-12] (Malwarebytes Inc -> Malwarebytes)
S3 qcusbser; C:\WINDOWS\System32\drivers\qcusbser.sys [242688 2016-05-18] (Xiaomi Technology Inc -> QUALCOMM Incorporated)
S3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [7148872 2018-05-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-02 12:50 - 2022-01-02 12:56 - 000027619 _____ C:\Users\Tibor\Desktop\FRST.txt
2022-01-02 12:50 - 2022-01-02 12:50 - 000000000 ___HD C:\$AV_ASW
2022-01-02 12:50 - 2022-01-02 12:50 - 000000000 ____D C:\Users\Tibor\Desktop\FRST-OlderVersion
2022-01-02 12:41 - 2022-01-02 12:41 - 002311168 _____ (Farbar) C:\Users\Tibor\Desktop\FRST64 (1).exe
2021-12-30 08:31 - 2021-12-30 08:31 - 000007334 _____ C:\Users\Tibor\Desktop\Nová položka OpenDocument Text.odt
2021-12-29 17:30 - 2021-12-29 17:47 - 000012698 _____ C:\Users\Tibor\Desktop\Nová položka OpenDocument Zošit.ods
2021-12-29 16:27 - 2021-12-29 16:27 - 060249906 _____ C:\Users\Tibor\Downloads\bybit.apk
2021-12-29 13:07 - 2021-12-29 13:37 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Authy Desktop
2021-12-29 13:07 - 2021-12-29 13:07 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twilio Inc
2021-12-29 13:06 - 2021-12-29 13:07 - 000000000 ____D C:\Users\Tibor\AppData\Local\authy
2021-12-29 13:06 - 2021-12-29 13:06 - 070878224 _____ (Twilio Inc.) C:\Users\Tibor\Downloads\Authy Desktop Setup 1.9.0.exe
2021-12-29 10:00 - 2021-12-29 10:00 - 000850651 _____ C:\Users\Tibor\Downloads\EPH263847226_adresne_stitky_a4.pdf
2021-12-28 13:18 - 2021-12-28 13:18 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2021-12-28 13:17 - 2021-12-28 13:17 - 000340248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-12-28 13:17 - 2021-12-28 13:17 - 000215432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-12-26 06:49 - 2021-12-26 06:49 - 000210352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-12-21 19:26 - 2021-12-21 19:26 - 000850398 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_a4.pdf
2021-12-21 19:26 - 2021-12-21 19:26 - 000850397 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_c6.pdf
2021-12-21 19:25 - 2021-12-21 19:25 - 000850399 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_dl.pdf
2021-12-18 12:07 - 2021-12-18 12:07 - 000000000 ____D C:\WINDOWS\SystemTemp
2021-12-18 08:53 - 2021-12-18 12:05 - 000000243 _____ C:\Users\Tibor\Desktop\new.txt
2021-12-17 12:58 - 2021-12-17 12:58 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-12-17 12:58 - 2021-12-17 12:58 - 000011979 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-12-17 12:56 - 2021-12-17 12:56 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-12-17 12:56 - 2021-12-17 12:56 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-12-17 12:10 - 2021-12-17 12:10 - 000000000 ___HD C:\$WinREAgent
2021-12-11 17:25 - 2022-01-02 00:36 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2813316739-561623387-2885406294-1001
2021-12-09 19:28 - 2021-12-09 19:28 - 000007554 _____ C:\Users\Tibor\Downloads\export-0xb1aa469f612f5b50517dfc94f23c184f2be96d7a.csv
2021-12-05 22:00 - 2021-12-05 21:29 - 000867241 _____ C:\Users\Tibor\Desktop\GSAutoClicker.exe
2021-12-05 21:29 - 2021-12-05 21:29 - 002617784 _____ (Opera Software) C:\Users\Tibor\Downloads\OperaSetup (2).exe
2021-12-05 21:29 - 2021-12-05 21:29 - 000867241 _____ C:\Users\Tibor\Downloads\GSAutoClicker.exe
2021-12-05 19:50 - 2021-12-05 19:50 - 000002080 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-12-05 18:06 - 2021-12-29 13:46 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Anchor Wallet
2021-12-05 18:05 - 2021-12-05 20:37 - 000000000 ____D C:\Program Files\Anchor Wallet
2021-12-05 18:05 - 2021-12-05 20:35 - 000000000 ____D C:\Users\Tibor\AppData\Local\anchor-wallet-updater
2021-12-05 18:05 - 2021-12-05 18:05 - 001048904 _____ (Greymass) C:\Users\Tibor\Downloads\win-anchor-wallet-1.3.1.exe
2021-12-05 18:05 - 2021-12-05 18:05 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anchor Wallet.lnk
2021-12-05 18:05 - 2021-12-05 18:05 - 000002114 _____ C:\Users\Public\Desktop\Anchor Wallet.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-02 13:02 - 2021-06-09 14:59 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Discord
2022-01-02 12:55 - 2020-10-08 19:03 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-02 12:55 - 2019-10-14 19:51 - 000000000 ____D C:\FRST
2022-01-02 12:49 - 2021-06-09 14:59 - 000000000 ____D C:\Users\Tibor\AppData\Local\Discord
2022-01-02 12:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-02 12:05 - 2020-10-08 16:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-02 01:19 - 2020-10-08 18:55 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-02 01:13 - 2021-06-06 11:06 - 000000000 ____D C:\Users\Tibor\AppData\Local\Avast Software
2022-01-02 00:40 - 2020-10-08 16:54 - 000000000 ____D C:\ProgramData\NVIDIA
2022-01-02 00:39 - 2020-10-08 16:53 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-01-02 00:39 - 2015-09-17 16:40 - 000000000 __SHD C:\Users\Tibor\IntelGraphicsProfiles
2022-01-02 00:38 - 2020-10-08 16:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-02 00:38 - 2020-09-20 20:33 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-02 00:36 - 2020-10-17 18:14 - 000003484 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1602954829
2022-01-02 00:36 - 2020-10-14 21:14 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-02 00:36 - 2020-10-14 21:14 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-02 00:36 - 2020-10-08 19:03 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-02 00:36 - 2020-10-08 19:03 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-02 00:36 - 2020-10-08 19:03 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-02 00:36 - 2020-10-08 18:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2813316739-561623387-2885406294-1001
2022-01-01 13:27 - 2020-10-08 18:56 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-12-30 08:10 - 2020-10-08 18:52 - 000000000 ____D C:\ProgramData\Avast Software
2021-12-30 08:06 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-12-29 14:09 - 2021-07-31 11:21 - 000000158 _____ C:\Users\Tibor\Desktop\tera.txt
2021-12-29 13:55 - 2021-03-29 22:22 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\tor
2021-12-29 13:46 - 2020-10-10 19:01 - 000000000 ____D C:\Users\Tibor\AppData\Local\CrashDumps
2021-12-29 13:07 - 2020-11-10 14:33 - 000000000 ____D C:\Users\Tibor\AppData\Local\SquirrelTemp
2021-12-28 13:17 - 2020-10-08 18:54 - 000545176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000540056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000318760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000252992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000186280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000108912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000100416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000083976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000042416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-12-28 13:17 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-12-28 13:16 - 2020-10-08 18:54 - 000853800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000369216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000223176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000036784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-12-26 06:55 - 2020-10-08 17:18 - 000840602 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-12-26 06:55 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-12-26 05:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-12-24 09:35 - 2021-07-20 19:07 - 000000000 ____D C:\Users\Tibor\AppData\LocalLow\IGDump
2021-12-22 20:20 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-12-22 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-12-18 22:21 - 2020-10-14 21:14 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-18 12:11 - 2020-10-08 16:41 - 000294472 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-12-17 13:11 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-12-17 12:37 - 2020-10-17 18:13 - 000001409 _____ C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prehliadač Opera.lnk
2021-12-17 12:01 - 2020-10-11 12:00 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-12-17 11:56 - 2020-10-11 11:59 - 137938848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-12-15 13:26 - 2019-09-17 10:27 - 000000000 ____D C:\Users\Tibor\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage(cracked dll)
2021-12-13 21:57 - 2021-01-10 14:39 - 000002263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-13 21:57 - 2021-01-10 14:39 - 000002222 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-12-13 20:21 - 2021-07-12 19:39 - 000002025 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-12-13 20:21 - 2020-12-23 16:42 - 000002037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-12-13 20:20 - 2020-12-23 16:41 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-12-13 20:20 - 2020-12-23 16:15 - 000000000 ____D C:\Program Files\Malwarebytes
2021-12-05 21:29 - 2018-03-14 20:16 - 000000000 ____D C:\Users\Tibor\Documents\AutomaticSolution Software
2021-12-05 20:54 - 2020-10-10 19:06 - 000000000 ____D C:\Users\Tibor\AppData\Local\BitTorrentHelper
2021-12-05 19:50 - 2020-10-08 19:00 - 000002092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-12-04 17:04 - 2020-10-08 17:05 - 000002371 _____ C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27-12-2021
Ran by Tibor (administrator) on TIBOR (Acer Aspire E5-573G) (02-01-2022 12:53:02)
Running from C:\Users\Tibor\Desktop
Loaded Profiles: Tibor
Platform: Microsoft Windows 10 Home Version 21H1 19043.1415 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\ASUSService.exe
() [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe
() [File not signed] C:\Users\Tibor\Desktop\GSAutoClicker.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaUI.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(Discord Inc. -> Discord Inc.) C:\Users\Tibor\AppData\Local\Discord\app-1.0.9003\Discord.exe <6>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <23>
(Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIGCE.EXE
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Ralink Technology, Corp.) [File not signed] C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaRegistry64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor Corp. -> ) C:\Windows\runSW.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Windows\SwUSB.exe
(RemoteMouse.net) [File not signed] C:\Program Files (x86)\Remote Mouse\RemoteMouseCore.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14049536 2015-07-09] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [157464 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8442464 2020-12-12] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [EPSON1D24F2 (Epson Stylus SX420W)] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE [224768 2009-09-14] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Discord] => C:\Users\Tibor\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [utweb] => "C:\Users\Tibor\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [Opera Browser Assistant] => C:\Users\Tibor\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4095184 2021-08-11] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [ut] => "C:\Users\Tibor\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2813316739-561623387-2885406294-1001\...\Run: [EPSON SX420W Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATIGCE.EXE [224768 2009-09-14] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EPSON SX420W Series 64MonitorBE: C:\WINDOWS\system32\E_ILMGCE.DLL [118784 2008-11-12] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-13] (Google LLC -> Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ASUS USB-AC51 WLAN Control Center.lnk [2020-12-22]
ShortcutTarget: ASUS USB-AC51 WLAN Control Center.lnk -> C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaUI.exe (ASUSTeK Computer Inc.) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TREZOR Bridge.lnk [2021-01-08]
ShortcutTarget: TREZOR Bridge.lnk -> C:\Program Files (x86)\TREZOR Bridge\trezord.exe (SatoshiLabs, s.r.o. -> )
Startup: C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2020-10-08]
ShortcutTarget: MEGAsync.lnk -> C:\Windows.old\Users\Tibor\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {073BDFFE-C5A9-43DA-A4EF-E881E69890EA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
Task: {0E3885D1-8826-4E7B-9FF0-2CCB4A06583D} - System32\Tasks\Opera scheduled assistant Autoupdate 1602954848 => C:\Users\Tibor\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Tibor\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {19A4EE05-2984-4BF6-9CE1-1F420DCCAB61} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1AC05320-3413-4ACD-A9D4-0A09BD13966F} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-2813316739-561623387-2885406294-1001 => C:\Windows.old\Users\Tibor\AppData\Local\MEGAsync\MEGAupdater.exe [1303800 2020-12-12] (Mega Limited -> Mega Limited)
Task: {4351048E-0DB9-4F81-99B7-704A0FFED913} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {52EAE05D-FE15-45C3-ACB1-4F88E273BF4D} - System32\Tasks\Opera scheduled Autoupdate 1602954829 => C:\Users\Tibor\AppData\Local\Programs\Opera\launcher.exe [2256592 2021-12-14] (Opera Software AS -> Opera Software)
Task: {5E12C1DA-42E7-4EA3-9085-DB1714E0BFE9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {639C6B9E-1E7A-4BE9-92F9-ED7157D9C0F4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-10-08] (Google LLC -> Google LLC)
Task: {84C939F4-D939-4F2B-B01B-92F2B4E69124} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_75ffca5eec865b4b\lib\IntelPTTEKRecertification.exe [918288 2020-04-22] (Intel(R) Trust Services -> Intel(R) Corporation)
Task: {906F5B73-7B83-4DFC-B6EF-18A13442BF75} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9B92D60A-DECD-4709-A1BD-4C2566A84D02} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B09642EC-734A-427C-AC0F-3F0DB7B7AF58} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {BA7B6BF4-0B80-4C26-9C83-904870744383} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C1E0276D-1BC8-41D1-9949-5EFD12FAFB3D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {C35E4ED4-521B-48EC-8AE2-18587E4AADB3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C61E8B24-30DF-43FE-A848-2841AD26F90A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-10-08] (Google LLC -> Google LLC)
Task: {C7500535-9F5F-43B3-A022-E3D1723DBAE3} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D4D51C84-FC3E-40F5-82DF-565134B7CC9D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D54452D8-0618-4F7A-9DD5-F40E09C478FD} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4969240 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
Task: {D54CF93E-D2CB-4CD1-88BE-8C48CBA2EC11} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {FC3949A2-53FB-463B-8958-3E3BB9BC5465} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1562376 2021-08-16] (Adobe Inc. -> Adobe Inc.)
Task: {FE82577C-64CC-4550-A27A-CD7443349B65} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{38361781-665b-4bac-baa9-7292d430fe54}: [DhcpNameServer] 192.168.2.254
Tcpip\..\Interfaces\{7f91a368-a36a-489f-985d-b120411bfc58}: [DhcpNameServer] 195.146.132.59 8.8.8.8
Tcpip\..\Interfaces\{a791c8d3-0280-49a8-90c0-2ee0a4245225}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-26]
Edge Session Restore: Default -> is enabled.
Edge Extension: (Outlook) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-15]
Edge Extension: (Word) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-15]
Edge Extension: (Excel) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-15]
Edge Extension: (PowerPoint) - C:\Users\Tibor\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-15]
FireFox:
========
FF DefaultProfile: umm8z632.default
FF ProfilePath: C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\umm8z632.default [2020-10-10]
FF NewTab: Mozilla\Firefox\Profiles\umm8z632.default -> hxxps://securesearch.org/homepage?hp=2&pId=BT170603&iDate=2020-10-10 06:06:17&bName=
FF ProfilePath: C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751 [2021-10-29]
FF Session Restore: Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751 -> is enabled.
FF Extension: (Facebook Container) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\@contain-facebook.xpi [2021-08-23]
FF Extension: (Enhancer for YouTube™) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-08-23]
FF Extension: (MetaMask) - C:\Users\Tibor\AppData\Roaming\Mozilla\Firefox\Profiles\tcp1p373.default-release-1610529294751\Extensions\webextension@metamask.io.xpi [2021-08-23]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-10-05] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default [2022-01-02]
CHR Notifications: Default -> hxxps://app.anchorprotocol.com
CHR Extension: (Prezentácie) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-10]
CHR Extension: (Terra Station) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiifbnbfobpmeekipheeijimdpnlpgpp [2021-12-18]
CHR Extension: (Dokumenty) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-10]
CHR Extension: (Disk Google) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-10]
CHR Extension: (Phantom) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2021-12-29]
CHR Extension: (Authenticator) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2021-11-11]
CHR Extension: (YouTube) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-10]
CHR Extension: (Tabuľky) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-10]
CHR Extension: (Binance Wallet) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhbohimaelbohpjbbldcngcnapndodjp [2021-12-28]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-05]
CHR Extension: (IE Tab) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2021-11-20]
CHR Extension: (Nastavenie hlasitosti) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\kedfglpbemacpmmdhkhmichimibbhnge [2021-12-11]
CHR Extension: (MetaMask) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2021-12-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-15]
CHR Extension: (Gmail) - C:\Users\Tibor\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-10]
Opera:
=======
OPR Profile: C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable [2022-01-02]
OPR Notifications: Opera Stable -> hxxps://bridge.renproject.io; hxxps://www.tradingview.com
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Terra Station) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\aiifbnbfobpmeekipheeijimdpnlpgpp [2021-12-29]
OPR Extension: (Phantom) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\bfnaelmomeimhlpmgjnjophhpkkoljpa [2021-12-17]
OPR Extension: (Keplr) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\dmkamcknogkgcdfhhbddcghachkejeap [2021-12-30]
OPR Extension: (Rich Hints Agent) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-12-30]
OPR Extension: (Harmony Chrome Extension Wallet) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\fnnegphlobjdpkhecapkijjdkgcjhkib [2021-11-06]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-13]
OPR Extension: (Install Chrome Extensions) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2021-03-22]
OPR Extension: (MetaMask) - C:\Users\Tibor\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2021-12-29]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-08-16] (Adobe Inc. -> Adobe Inc.)
R2 ASUSWireless; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\ASUSService.exe [184320 2014-03-05] () [File not signed]
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8480848 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [323152 2015-05-29] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) [File not signed]
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [452888 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [452888 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-03] (Avast Software s.r.o. -> AVAST Software)
S2 ibtsiva; C:\Program Files (x86)\Intel\Bluetooth\utilities\ibtsiva.exe [165104 2015-06-30] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7901368 2021-12-13] (Malwarebytes Inc -> Malwarebytes)
R2 RalinkRegistryWriter; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaRegistry64.exe [447488 2014-03-05] (Ralink Technology, Corp.) [File not signed]
S2 RaMediaServer; C:\Program Files (x86)\ASUS\USB-AC51 WLAN Card Utilities\Common\RaMediaServer.exe [1863680 2014-03-05] (Ralink) [File not signed]
R2 RemoteMouseService; C:\Program Files (x86)\Remote Mouse\RemoteMouseService.exe [11264 2020-09-23] () [File not signed]
R2 RunSwUSB; C:\Windows\runSW.exe [59232 2018-05-02] (Realtek Semiconductor Corp. -> )
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [29280 2020-12-12] (LAVASOFT SOFTWARE CANADA INC -> )
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20640 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [36784 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [223176 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [369216 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [252992 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [100416 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [21936 2021-10-05] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42416 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [186280 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [540056 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [108912 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [83976 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [853800 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [545176 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [215432 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [318760 2021-12-28] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210352 2021-12-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-12-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-07-12] (Malwarebytes Inc -> Malwarebytes)
S3 qcusbser; C:\WINDOWS\System32\drivers\qcusbser.sys [242688 2016-05-18] (Xiaomi Technology Inc -> QUALCOMM Incorporated)
S3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [14680 2013-07-18] (Acer Incorporated -> Acer Incorporated)
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [7148872 2018-05-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-02 12:50 - 2022-01-02 12:56 - 000027619 _____ C:\Users\Tibor\Desktop\FRST.txt
2022-01-02 12:50 - 2022-01-02 12:50 - 000000000 ___HD C:\$AV_ASW
2022-01-02 12:50 - 2022-01-02 12:50 - 000000000 ____D C:\Users\Tibor\Desktop\FRST-OlderVersion
2022-01-02 12:41 - 2022-01-02 12:41 - 002311168 _____ (Farbar) C:\Users\Tibor\Desktop\FRST64 (1).exe
2021-12-30 08:31 - 2021-12-30 08:31 - 000007334 _____ C:\Users\Tibor\Desktop\Nová položka OpenDocument Text.odt
2021-12-29 17:30 - 2021-12-29 17:47 - 000012698 _____ C:\Users\Tibor\Desktop\Nová položka OpenDocument Zošit.ods
2021-12-29 16:27 - 2021-12-29 16:27 - 060249906 _____ C:\Users\Tibor\Downloads\bybit.apk
2021-12-29 13:07 - 2021-12-29 13:37 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Authy Desktop
2021-12-29 13:07 - 2021-12-29 13:07 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twilio Inc
2021-12-29 13:06 - 2021-12-29 13:07 - 000000000 ____D C:\Users\Tibor\AppData\Local\authy
2021-12-29 13:06 - 2021-12-29 13:06 - 070878224 _____ (Twilio Inc.) C:\Users\Tibor\Downloads\Authy Desktop Setup 1.9.0.exe
2021-12-29 10:00 - 2021-12-29 10:00 - 000850651 _____ C:\Users\Tibor\Downloads\EPH263847226_adresne_stitky_a4.pdf
2021-12-28 13:18 - 2021-12-28 13:18 - 000061304 _____ () C:\WINDOWS\system32\Drivers\lpsport.sys
2021-12-28 13:17 - 2021-12-28 13:17 - 000340248 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2021-12-28 13:17 - 2021-12-28 13:17 - 000215432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2021-12-26 06:49 - 2021-12-26 06:49 - 000210352 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-12-21 19:26 - 2021-12-21 19:26 - 000850398 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_a4.pdf
2021-12-21 19:26 - 2021-12-21 19:26 - 000850397 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_c6.pdf
2021-12-21 19:25 - 2021-12-21 19:25 - 000850399 _____ C:\Users\Tibor\Downloads\NZ0176011_adresne_stitky_dl.pdf
2021-12-18 12:07 - 2021-12-18 12:07 - 000000000 ____D C:\WINDOWS\SystemTemp
2021-12-18 08:53 - 2021-12-18 12:05 - 000000243 _____ C:\Users\Tibor\Desktop\new.txt
2021-12-17 12:58 - 2021-12-17 12:58 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe
2021-12-17 12:58 - 2021-12-17 12:58 - 000011979 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-12-17 12:56 - 2021-12-17 12:56 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe
2021-12-17 12:56 - 2021-12-17 12:56 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-12-17 12:10 - 2021-12-17 12:10 - 000000000 ___HD C:\$WinREAgent
2021-12-11 17:25 - 2022-01-02 00:36 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2813316739-561623387-2885406294-1001
2021-12-09 19:28 - 2021-12-09 19:28 - 000007554 _____ C:\Users\Tibor\Downloads\export-0xb1aa469f612f5b50517dfc94f23c184f2be96d7a.csv
2021-12-05 22:00 - 2021-12-05 21:29 - 000867241 _____ C:\Users\Tibor\Desktop\GSAutoClicker.exe
2021-12-05 21:29 - 2021-12-05 21:29 - 002617784 _____ (Opera Software) C:\Users\Tibor\Downloads\OperaSetup (2).exe
2021-12-05 21:29 - 2021-12-05 21:29 - 000867241 _____ C:\Users\Tibor\Downloads\GSAutoClicker.exe
2021-12-05 19:50 - 2021-12-05 19:50 - 000002080 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2021-12-05 18:06 - 2021-12-29 13:46 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Anchor Wallet
2021-12-05 18:05 - 2021-12-05 20:37 - 000000000 ____D C:\Program Files\Anchor Wallet
2021-12-05 18:05 - 2021-12-05 20:35 - 000000000 ____D C:\Users\Tibor\AppData\Local\anchor-wallet-updater
2021-12-05 18:05 - 2021-12-05 18:05 - 001048904 _____ (Greymass) C:\Users\Tibor\Downloads\win-anchor-wallet-1.3.1.exe
2021-12-05 18:05 - 2021-12-05 18:05 - 000002126 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anchor Wallet.lnk
2021-12-05 18:05 - 2021-12-05 18:05 - 000002114 _____ C:\Users\Public\Desktop\Anchor Wallet.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-01-02 13:02 - 2021-06-09 14:59 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\Discord
2022-01-02 12:55 - 2020-10-08 19:03 - 000000000 ____D C:\Program Files (x86)\Google
2022-01-02 12:55 - 2019-10-14 19:51 - 000000000 ____D C:\FRST
2022-01-02 12:49 - 2021-06-09 14:59 - 000000000 ____D C:\Users\Tibor\AppData\Local\Discord
2022-01-02 12:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-01-02 12:05 - 2020-10-08 16:41 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-01-02 01:19 - 2020-10-08 18:55 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-01-02 01:13 - 2021-06-06 11:06 - 000000000 ____D C:\Users\Tibor\AppData\Local\Avast Software
2022-01-02 00:40 - 2020-10-08 16:54 - 000000000 ____D C:\ProgramData\NVIDIA
2022-01-02 00:39 - 2020-10-08 16:53 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-01-02 00:39 - 2015-09-17 16:40 - 000000000 __SHD C:\Users\Tibor\IntelGraphicsProfiles
2022-01-02 00:38 - 2020-10-08 16:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-01-02 00:38 - 2020-09-20 20:33 - 000008192 ___SH C:\DumpStack.log.tmp
2022-01-02 00:36 - 2020-10-17 18:14 - 000003484 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1602954829
2022-01-02 00:36 - 2020-10-14 21:14 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-02 00:36 - 2020-10-14 21:14 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-02 00:36 - 2020-10-08 19:03 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-02 00:36 - 2020-10-08 19:03 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-02 00:36 - 2020-10-08 19:03 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-02 00:36 - 2020-10-08 18:01 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2813316739-561623387-2885406294-1001
2022-01-01 13:27 - 2020-10-08 18:56 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-12-30 08:10 - 2020-10-08 18:52 - 000000000 ____D C:\ProgramData\Avast Software
2021-12-30 08:06 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-12-29 14:09 - 2021-07-31 11:21 - 000000158 _____ C:\Users\Tibor\Desktop\tera.txt
2021-12-29 13:55 - 2021-03-29 22:22 - 000000000 ____D C:\Users\Tibor\AppData\Roaming\tor
2021-12-29 13:46 - 2020-10-10 19:01 - 000000000 ____D C:\Users\Tibor\AppData\Local\CrashDumps
2021-12-29 13:07 - 2020-11-10 14:33 - 000000000 ____D C:\Users\Tibor\AppData\Local\SquirrelTemp
2021-12-28 13:17 - 2020-10-08 18:54 - 000545176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000540056 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000318760 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000252992 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000186280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000108912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000100416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000083976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2021-12-28 13:17 - 2020-10-08 18:54 - 000042416 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2021-12-28 13:17 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-12-28 13:16 - 2020-10-08 18:54 - 000853800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000369216 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000223176 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2021-12-28 13:16 - 2020-10-08 18:54 - 000036784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2021-12-26 06:55 - 2020-10-08 17:18 - 000840602 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-12-26 06:55 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-12-26 05:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-12-24 09:35 - 2021-07-20 19:07 - 000000000 ____D C:\Users\Tibor\AppData\LocalLow\IGDump
2021-12-22 20:20 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-12-22 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-12-18 22:21 - 2020-10-14 21:14 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-18 12:11 - 2020-10-08 16:41 - 000294472 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-12-18 12:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-12-17 13:11 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-12-17 12:37 - 2020-10-17 18:13 - 000001409 _____ C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prehliadač Opera.lnk
2021-12-17 12:01 - 2020-10-11 12:00 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-12-17 11:56 - 2020-10-11 11:59 - 137938848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-12-15 13:26 - 2019-09-17 10:27 - 000000000 ____D C:\Users\Tibor\Downloads\Adobe Photoshop CS6 13.0.1 Final Multilanguage(cracked dll)
2021-12-13 21:57 - 2021-01-10 14:39 - 000002263 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-13 21:57 - 2021-01-10 14:39 - 000002222 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2021-12-13 20:21 - 2021-07-12 19:39 - 000002025 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2021-12-13 20:21 - 2020-12-23 16:42 - 000002037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-12-13 20:20 - 2020-12-23 16:41 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-12-13 20:20 - 2020-12-23 16:15 - 000000000 ____D C:\Program Files\Malwarebytes
2021-12-05 21:29 - 2018-03-14 20:16 - 000000000 ____D C:\Users\Tibor\Documents\AutomaticSolution Software
2021-12-05 20:54 - 2020-10-10 19:06 - 000000000 ____D C:\Users\Tibor\AppData\Local\BitTorrentHelper
2021-12-05 19:50 - 2020-10-08 19:00 - 000002092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk
2021-12-04 17:04 - 2020-10-08 17:05 - 000002371 _____ C:\Users\Tibor\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================