prosim o kontrolu logu z frst dekuji
Napsal: 10 srp 2022 17:18
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\mkrmsg.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlk.exe
(C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(LENOVO -> Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\CCleanerBrowserCrashHandler.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\CCleanerBrowserCrashHandler64.exe
(services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Driver Updater\DriverUpdSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\LPlatSvc.exe <2>
(services.exe ->) (Lenovo Information Products (Shenzhen) Co.,Ltd -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(services.exe ->) (Protexis Inc. -> Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Symantec Corp -> Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213760 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4114688 2022-07-29] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [DriverUpdUI.exe] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [4560720 2022-05-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [290160 2012-06-02] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [557592 2019-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-04-13] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [507744 2021-04-13] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel® Services Manager -> Intel Corporation)
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2011-07-14] (Leader Technologies Inc -> Lenovo, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [PCSuiteTrayApplication] => C:\Program Files (x86)\Nokia\Nokia PC Suite 6\LaunchApplication.exe [227328 2007-03-23] (Nokia) [File not signed]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3478600 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-1214479148-1350895280-1617313171-1000\...\Run: [TMCC] => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
HKU\S-1-5-21-1214479148-1350895280-1617313171-1000\...\Run: [CCleanerBrowserAutoLaunch_50D2929F9404B069E15B932115C12F5B] => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\103.1.17779.136\Installer\chrmstp.exe [2022-08-10] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe [2022-04-08] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2012-04-01] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] ->
Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2022-08-06]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0391FBA9-010A-4A61-B790-372AB9C431EE} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
Task: {05B94BBD-3E21-4508-BDF3-16C61C01E1B9} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {0FC36B3B-0E46-4455-AFEF-AAB9E4BC40E7} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4928768 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
Task: {0FE6A629-1F75-4BE3-98C2-720082DB16AE} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {12B5BA37-45A4-4A42-AE0F-899FC7C269CE} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {16A04C43-FB8C-4245-9B20-6BBE184ABAE1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {19466F2A-2B35-4C9B-9816-D26B059C2506} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {1CE74941-AC01-4789-A981-60BAC20C46A0} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {1E0E45CD-1EE4-4E1E-BFED-94908AFF22D7} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {1EBD881E-44FB-4D9F-93A3-C031A8550592} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {203E1697-10CB-4F36-B461-957C38303576} - System32\Tasks\{33B067E7-90EA-465F-8F99-4621BF3877B0} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {21636DE1-94DB-422C-89DA-9C2E39C75723} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2022-07-26] (Avast Software s.r.o. -> Avast Software)
Task: {22749680-697E-413B-84C8-4EF0C4D9276C} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
Task: {227F3B0E-0ADB-42B3-A46C-ABEF8F48EF25} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File)
Task: {237A09D6-6D56-4EE9-A67E-3BE3077FDBBA} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {238165A7-6AE6-4CA9-9F36-8284598F284E} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {275100B1-2462-4C78-8FD0-9D091A959C78} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (No File)
Task: {2CF4F60F-0758-45E2-8128-953FD9B4CB35} - System32\Tasks\DiskUpdate => C:\SWTOOLS\OSFIXES\DISKUPDT\DiskUpdate.exe (No File)
Task: {342F1C49-1EBB-44D0-8A6D-D9F170A9FD1C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {36527195-2CE3-46F4-B492-BDCFB7238D6F} - \PMTask -> No File <==== ATTENTION
Task: {37F748E7-3F46-4002-AC38-DC0C53AA03CF} - System32\Tasks\GoogleUpdateTaskMachineCore1d0efea176d1842 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {39988AF4-7194-4AB8-9F4B-6F557EB4E0FD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {3A2FF5FC-3504-4163-B20D-3E0298321644} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {3EDF85BF-9579-405B-B601-40C20D59A035} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {3FFCEB6A-FB8F-456C-8552-6E9F12256AC5} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {4253E6BE-FDF0-419D-BDB0-33503037294B} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {4A3EFA3E-EE80-475F-AE31-55B56CE5F4D2} - System32\Tasks\Avast Software\Avast Driver Updater BugReport => C:\Program Files\Avast Software\Driver Updater\AvBugReport.exe [4613456 2022-05-25] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 148 --programpath "C:\Program Files\Avast Software\Driver Updater\Setup\.." --configpath "C:\Program Files\Avast Software\Driver Updater\Setup" --path "C:\ProgramData\Avast Software\Driver Updater\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 07c5d1ff-a170-4ee3-a5b0-26a8ac3a731f
Task: {4B0F4B9E-892F-49B9-8775-2F96B075B7F6} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {52E0370C-7560-4C3A-AECA-C64610389A8B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {53140936-B877-40D5-947C-AF2E4278B19B} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [64984 2022-05-17] (Lenovo -> )
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5C1EE3C0-51F6-4C82-B781-C428E4F1EB2C} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4637440 2022-08-05] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 53a46343-951d-4faa-b560-4347e7432cd1
Task: {5DC44BDF-C0D8-4D57-992A-096D9C7DD536} - System32\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {5F852097-6DCC-4183-B4CA-AC0997779ED2} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e1ef2203643a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {63BB2C79-08BD-4AE2-8055-E9900868EFFE} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {64B6BCDB-3BED-490A-A5BC-51AF100FE63D} - System32\Tasks\Avast Software\Avast Driver Updater Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-du\icarus.exe [6667600 2022-05-19] (Avast Software s.r.o. -> Avast Software)
Task: {67639C76-146D-4A25-9BA9-3819071BDB19} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1321608 2016-12-07] (LENOVO -> Lenovo)
Task: {68977B2E-6366-4740-9876-80FFA0E32333} - System32\Tasks\Driver Booster SkipUAC (Roman) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [7735056 2019-11-05] (IObit) [File not signed]
Task: {68C17451-3C66-4E3C-80F4-2489EBB3E8F0} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10165384 2016-12-07] (LENOVO -> Lenovo)
Task: {69B0F60A-9270-46C9-9DD3-1B36075B6735} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6667600 2022-07-28] (Avast Software s.r.o. -> Avast Software)
Task: {6D4D31B2-934A-4658-8553-2D02E613D8A1} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [128976 2022-05-17] (Lenovo -> Lenovo)
Task: {6F5D5B84-2FBE-443E-8B08-D2E57218CC47} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {71F86030-2740-4544-B5F7-115063C28621} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {7937AA97-3A8E-4540-A785-010C9DB4BCEB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (No File)
Task: {80438DF2-09A5-4B01-9AE8-EA3FB14A897B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File)
Task: {85BCDF98-DE64-46CD-B342-33E3DC975DE5} - System32\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {89F5CB92-EF56-4C60-8FC4-D5F18FB76AB7} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {8B864A67-2D2A-4841-9742-E84FFCB08B44} - System32\Tasks\Lenovo Power Management Driver PnP Task => C:\WINDOWS\System32\ibmpmsvc.exe [855968 2019-12-19] (Lenovo -> Lenovo.)
Task: {8CA53062-F15D-456F-B1D6-008A5151CB26} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe [264328 2016-12-07] (LENOVO -> )
Task: {91866D7B-86B2-4E27-A795-219C988EC9E0} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {91D604C4-5684-4128-BA77-D66755BE17C4} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10165384 2016-12-07] (LENOVO -> Lenovo)
Task: {995C4871-6E39-4F62-9FB6-B2B6714D4EA0} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {9BE62370-4896-4685-837D-5913AFC7FEA4} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4614912 2022-07-29] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 30c6d444-7ece-4c6c-a791-47145e98b8ef
Task: {A3F6A53E-5946-4989-BE5F-8A0BB8AE0AA7} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1197824 2022-08-05] (Avast Software s.r.o. -> AVAST Software)
Task: {A81A7212-B450-49A8-B3D6-772F212765C7} - System32\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {A83A26C6-6CFC-4EFF-A48C-53767455BFF8} - System32\Tasks\{71827D95-300A-4240-B0AA-4AE35833373A} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {A8FDB19B-D610-4A76-9189-3C83436FDFC7} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [189800 2013-06-26] (Lenovo Information Products (Shenzhen) Co.,Ltd -> )
Task: {AAAB1C95-C2A0-4B37-ACCA-24DEE3E7FD94} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [66000 2015-03-23] (LENOVO -> Lenovo)
Task: {AB373F90-9C5E-47FE-915B-B17E41A39BC3} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File)
Task: {AC652B54-8004-4C06-84F6-8D771B10AE31} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [16744 2013-05-17] (Lenovo Information Products (Shenzhen) Co.,Ltd -> Lenovo)
Task: {AC7B75AB-E94F-4B04-BEB6-75226D1F7A98} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B3794950-9389-4FAA-A390-A087C04CE69F} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {B4DE1389-A36E-43CB-8C4B-47D2146EEE17} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
Task: {B5D71717-81FE-498F-A38D-0428A6A50BEA} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {B6B0AAB3-7237-4022-97C4-1E205AF03FE2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {B9FA8972-9000-4644-AA60-0579F4F2CAAF} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {BE85F8D1-F1FA-41B7-9265-404CCD68A5B6} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {BEDBDD7C-A1DB-4735-9ECD-1E6B5B3C21BF} - \Lenovo\SimpleTap\Start SimpleTap for Roman-THINK.Roman -> No File <==== ATTENTION
Task: {C0C15E23-6A43-410D-8952-AD50A59E316D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {C18288D9-416E-4A7D-A955-8970D2BB644F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {C8BE2097-B454-47B5-B407-8F2999AEE177} - System32\Tasks\{29F2F256-1C70-4D29-A8B4-865F74ABC896} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {C9FD6C60-7924-4B97-AD7B-B88A9C21BAE5} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {CA43A0CF-61D2-4C33-8587-F535B15267F8} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (No File)
Task: {CB2ED866-D21D-428E-97DC-1792DDD8A9A5} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (No File)
Task: {CC297A82-7B2F-46B3-A159-FD01D606E58A} - System32\Tasks\{F189ED5A-5960-4AF4-B3C0-2D0DCC12CB55} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\MLPS\APPS\MUIInstaller\LENMNC.exe" -d "C:\Program Files\MLPS\APPS\MUIInstaller"
Task: {CD08D4E1-75C7-453B-80B4-734F8F40B548} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {D80C471E-AFED-43F9-B9EF-F752F7C19AFA} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
Task: {D91B2D8A-DE73-4724-8849-661F3FA49806} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {DC01DCAF-5B62-4A5A-B6D5-EE557E3CCF92} - System32\Tasks\{A2FB244C-2CB9-4F9A-8907-A34FE525C3F4} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {E39A710E-2106-4A3B-BBB1-A05292C46040} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {E3FF349E-B3F1-4CCA-A3F5-F00B07A4F889} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {E450C898-470B-49A7-8282-01673BD1D75F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {F110B929-5F6E-43EE-B40C-8BF85C111093} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {F839821F-2CBC-40F1-8E75-1F4E17E01241} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (No File)
Task: {FB662C9B-8428-4330-B9A7-9A728BE0C9D6} - System32\Tasks\{EB31C6F5-E494-4894-B8F4-827E2CB9C859} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {FCD8B955-D473-4D4F-A110-3BBCA44370CD} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2644a0cc-481e-4489-a345-76f5ff3c47a6}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{940AABCF-BBB2-46C7-86BB-89CCCB052B21}: [NameServer] 195.146.132.58 195.146.128.62
Tcpip\..\Interfaces\{9adda19c-ad88-4ece-a987-652284a134f2}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-10]
Edge HomePage: Default -> hxxp://www.msn.com/?pc=UP97&ocid=UP97DHP
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-03-01] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [VIP5X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client
FF Extension: (Symantec VIP Access Add-On) - C:\Program Files (x86)\Symantec\VIP Access Client [2014-07-14] [Legacy] [not signed]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [2022-08-10] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [2022-08-10] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default [2022-08-10]
CHR Notifications: Default -> hxxps://app.smartsupp.com; hxxps://dd-restaurant.ru; hxxps://eu1.badoo.com; hxxps://robotcaptcha2.info; hxxps://www.alibaba.com; hxxps://www.andreashop.sk; hxxps://www.facebook.com; hxxps://www.twoo.com
CHR HomePage: Default -> hxxps://www.google.sk/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.google.com ... oogle.com/"
CHR Extension: (Website Logon) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdkedefaddcdlpmiafhicjnkbogjiogj [2013-04-26]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-07-06]
CHR Extension: (Avast SafePrice | Porovnanie, ponuky, kupóny) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2022-06-25]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2022-08-01]
CHR Extension: (Reklamy blokátor pre YouTube ™) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\hflefjhkfeiaignkclmphmokmmbhbhik [2019-12-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile [2022-08-10]
CHR Extension: (Dokumenty Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-20]
CHR Extension: (Google Drive) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-20]
CHR Extension: (YouTube) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-20]
CHR Extension: (Website Logon) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\cdkedefaddcdlpmiafhicjnkbogjiogj [2015-07-20]
CHR Extension: (Google Search) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-20]
CHR Extension: (Adobe Acrobat – Vytvoriť PDF) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-07-20]
CHR Extension: (Tabuľky Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-20]
CHR Extension: (Skype Click to Call) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-20]
CHR Extension: (Peňaženka Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-20]
CHR Extension: (Amazon for Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2015-07-20] [UpdateUrl:hxxp://d1h5tuq46hrbzn.cloudfront.net/abb/chrome/update.xml] <==== ATTENTION
CHR Extension: (Gmail) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-20]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2013-05-11]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx [2012-02-24]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8507448 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [589568 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [589056 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\103.1.17779.136\elevation_service.exe [1991960 2022-07-21] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15703296 2022-07-29] (Avast Software s.r.o. -> AVAST Software)
S3 defragsvc; C:\WINDOWS\System32\defragsvc.dll [543232 2022-03-09] (Microsoft Windows -> Microsoft Corporation) [File not signed]
R2 DriverUpdSvc; C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe [7680336 2022-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [179568 2012-06-02] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [133992 2011-07-12] (Lenovo(Japan)Ltd. -> Lenovo Group Limited)
R2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [774040 2019-12-19] (Lenovo -> Lenovo.)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273544 2016-12-07] (LENOVO -> Lenovo)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9752320 2022-08-05] (Avast Software s.r.o. -> AVAST Software)
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [292864 2007-03-26] (Nokia.) [File not signed]
R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2012-04-19] (Symantec Corp -> Symantec Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.4-0\NisSrv.exe [2483616 2021-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.4-0\MsMpEng.exe [128376 2021-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [41832 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [235576 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [389120 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [258048 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [104960 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [24528 2022-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [47976 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [275024 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553928 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [113968 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [89032 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [859872 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [670776 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221512 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2020-07-27] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [324840 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [65944 2022-06-08] (Avast Software s.r.o. -> Avast Software)
S3 aswWintun; C:\WINDOWS\System32\drivers\aswWintun.sys [38768 2021-05-06] (Avast Software s.r.o. -> Avast Software)
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14976 2015-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET, spol. s r.o. -> ESET)
R2 epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET, spol. s r.o. -> ESET)
R3 huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [86016 2014-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-12-19] (Martin Malik - REALiX -> REALiX(tm))
S3 nmwcd; C:\WINDOWS\system32\drivers\ccdcmbx64.sys [19968 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdc; C:\WINDOWS\system32\drivers\ccdcmbox64.sys [27136 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R0 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [44232 2019-12-19] (Lenovo -> Lenovo.)
R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [347472 2019-12-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [25608 2020-10-20] (AVG Technologies CZ, s.r.o. -> SlimWare Utilities, Inc.)
R3 Tvti2c; C:\WINDOWS\system32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Products (Shenzhen) Co.,Ltd -> Lenovo Information Product(ShenZhen China) Inc.)
R3 tvtvcamd; C:\WINDOWS\system32\DRIVERS\tvtvcamd.sys [27432 2011-12-08] (Lenovo (Japan) Ltd. -> ThinkVantage Communications Utility)
S3 upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltjx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [642304 2019-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [420072 2021-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72952 2021-03-19] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-08-10 18:08 - 2022-08-10 18:10 - 000046145 _____ C:\Users\Roman\Desktop\FRST.txt
2022-08-10 18:07 - 2022-08-10 18:09 - 000000000 ____D C:\FRST
2022-08-10 18:04 - 2022-08-10 18:04 - 002370048 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2022-08-10 11:11 - 2022-08-10 11:11 - 000000000 ___HD C:\$WinREAgent
2022-08-10 10:56 - 2022-08-10 10:56 - 000000000 ____D C:\Users\Roman\AppData\Local\CCleaner Browser
2022-08-10 10:56 - 2022-08-10 10:56 - 000000000 ____D C:\ProgramData\CCleaner Browser
2022-08-10 10:55 - 2022-08-10 10:55 - 000003842 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2022-08-10 10:55 - 2022-08-10 10:55 - 000003258 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Logon)
2022-08-10 10:55 - 2022-08-10 10:55 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2022-08-10 10:53 - 2022-08-10 10:56 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2022-08-10 10:53 - 2022-08-10 10:53 - 000003512 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineUA
2022-08-10 10:53 - 2022-08-10 10:53 - 000003388 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineCore
2022-08-10 10:52 - 2022-08-10 11:02 - 000000000 ____D C:\Program Files\CCleaner
2022-08-10 10:21 - 2022-08-10 10:24 - 000000000 ____D C:\Users\Roman\Desktop\textove
2022-08-10 10:17 - 2022-08-10 10:20 - 000000000 ____D C:\Users\Roman\Desktop\obrazky
2022-08-01 09:57 - 2022-08-01 09:57 - 000270592 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-08-01 09:57 - 2022-08-01 09:57 - 000221512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-07-13 13:17 - 2022-07-13 13:17 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-07-13 13:17 - 2022-07-13 13:17 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-07-13 13:17 - 2022-07-13 13:17 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000011811 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-07-13 13:16 - 2022-07-13 13:16 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-07-13 13:16 - 2022-07-13 13:16 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-08-10 17:57 - 2021-04-13 22:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-08-10 17:55 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-08-10 15:50 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-08-10 15:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-08-10 14:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-08-10 11:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-08-10 10:59 - 2014-09-29 04:25 - 000000000 ____D C:\Users\Roman\AppData\Local\CrashDumps
2022-08-10 10:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ModemLogs
2022-08-10 10:15 - 2021-07-21 10:07 - 000000000 ____D C:\ProgramData\Lenovo
2022-08-10 10:15 - 2013-03-07 00:42 - 000000000 ____D C:\Program Files\Lenovo
2022-08-10 10:15 - 2013-03-07 00:42 - 000000000 ____D C:\Program Files (x86)\Lenovo
2022-08-10 10:13 - 2017-12-17 20:28 - 000000000 ____D C:\Users\Roman\AppData\Local\Packages
2022-08-10 10:11 - 2013-03-07 00:37 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2022-08-10 10:11 - 2013-03-07 00:36 - 000000000 ____D C:\Program Files (x86)\Intel
2022-08-10 10:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-08-10 10:09 - 2013-04-26 16:52 - 000000000 ____D C:\Users\Roman\AppData\Local\Google
2022-08-10 10:09 - 2013-04-26 16:51 - 000000000 ____D C:\Users\Roman\AppData\LocalLow\VeriSign
2022-08-10 10:09 - 2013-03-07 00:50 - 000000000 ____D C:\Program Files\Common Files\AuthenTec
2022-08-10 10:09 - 2013-03-07 00:50 - 000000000 ____D C:\Program Files (x86)\Google
2022-08-10 10:04 - 2019-12-19 19:36 - 000000000 ____D C:\Users\Roman\AppData\Local\AVAST Software
2022-08-10 10:04 - 2019-11-15 18:16 - 000000000 ____D C:\ProgramData\AVAST Software
2022-08-10 09:53 - 2013-11-30 06:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-08-10 09:35 - 2013-11-30 06:35 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-08-10 09:25 - 2021-04-13 22:44 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-08-09 14:07 - 2021-12-12 20:21 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1214479148-1350895280-1617313171-1000
2022-08-09 14:07 - 2021-04-13 22:44 - 000003372 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1214479148-1350895280-1617313171-1000
2022-08-09 14:06 - 2021-04-29 18:38 - 000002382 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-08-07 16:38 - 2020-06-06 00:33 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-08-07 16:38 - 2020-06-06 00:33 - 000002293 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-08-06 05:02 - 2021-04-13 22:44 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2022-08-06 05:00 - 2021-04-13 22:44 - 000003700 _____ C:\WINDOWS\system32\Tasks\Lenovo Power Management Driver PnP Task
2022-08-06 05:00 - 2021-04-13 22:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-08-06 05:00 - 2021-04-13 22:10 - 000008192 ___SH C:\DumpStack.log.tmp
2022-08-06 05:00 - 2015-08-29 02:10 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f.job
2022-08-06 05:00 - 2015-07-16 16:10 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224.job
2022-08-06 05:00 - 2015-05-20 18:04 - 000000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3.job
2022-08-06 05:00 - 2015-05-20 18:04 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202.job
2022-08-06 05:00 - 2013-10-26 10:12 - 000000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d.job
2022-08-05 22:31 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-08-05 10:28 - 2020-06-09 18:34 - 000037200 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2022-08-04 10:56 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-08-01 19:49 - 2021-08-06 09:52 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-01 19:49 - 2021-04-13 22:44 - 000003560 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-01 19:49 - 2021-04-13 22:44 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3
2022-08-01 19:49 - 2021-04-13 22:44 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d
2022-08-01 19:49 - 2021-04-13 22:44 - 000003414 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d0e1ef2203643a
2022-08-01 19:49 - 2021-04-13 22:44 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202
2022-08-01 19:49 - 2021-04-13 22:44 - 000003190 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0efea176d1842
2022-08-01 19:49 - 2021-04-13 22:44 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-01 19:49 - 2021-04-13 22:44 - 000002382 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (Roman)
2022-08-01 19:49 - 2021-04-13 22:44 - 000002338 _____ C:\WINDOWS\system32\Tasks\{F189ED5A-5960-4AF4-B3C0-2D0DCC12CB55}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{EB31C6F5-E494-4894-B8F4-827E2CB9C859}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{A2FB244C-2CB9-4F9A-8907-A34FE525C3F4}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{71827D95-300A-4240-B0AA-4AE35833373A}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{33B067E7-90EA-465F-8F99-4621BF3877B0}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{29F2F256-1C70-4D29-A8B4-865F74ABC896}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002048 _____ C:\WINDOWS\system32\Tasks\DiskUpdate
2022-08-01 19:49 - 2021-04-13 22:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-08-01 13:58 - 2019-11-15 18:19 - 000670776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-08-01 09:57 - 2022-06-27 14:44 - 000024528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2022-08-01 09:57 - 2020-10-14 11:45 - 000275024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-08-01 09:57 - 2020-07-17 00:09 - 000041832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2022-08-01 09:57 - 2020-04-21 23:10 - 000553928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-08-01 09:57 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-01 09:57 - 2019-11-15 18:19 - 000859872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000389120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000324840 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000258048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000235576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000113968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000104960 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000089032 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000047976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-07-14 10:19 - 2021-04-13 22:33 - 001806644 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-07-14 10:19 - 2016-10-02 07:20 - 000642658 _____ C:\WINDOWS\system32\perfh01B.dat
2022-07-14 10:19 - 2016-10-02 07:20 - 000195808 _____ C:\WINDOWS\system32\perfc01B.dat
2022-07-13 21:29 - 2022-04-11 09:49 - 000439728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-07-13 13:15 - 2021-04-13 22:15 - 003010560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
==================== Files in the root of some directories ========
2013-04-26 16:50 - 2013-04-26 16:50 - 000090624 _____ () C:\Users\Public\AlexaNSISPlugin.4892.dll
2020-09-21 20:47 - 2020-09-21 20:47 - 010014720 _____ () C:\Program Files (x86)\GUT6722.tmp
2013-04-26 16:50 - 2015-07-12 21:51 - 000151090 _____ () C:\Users\Roman\AppData\Roaming\AbsoluteReminder.xml
2013-09-29 18:10 - 2015-04-01 21:33 - 000076976 _____ () C:\Users\Roman\AppData\Roaming\LoJackSetup.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\mkrmsg.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(C:\Program Files\Lenovo\HOTKEY\tphkload.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlk.exe
(C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoHelper.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(LENOVO -> Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\CCleanerBrowserCrashHandler.exe
(Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\CCleanerBrowserCrashHandler64.exe
(services.exe ->) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Driver Updater\DriverUpdSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CamMute.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(services.exe ->) (Lenovo (Japan) Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe
(services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\LPlatSvc.exe <2>
(services.exe ->) (Lenovo Information Products (Shenzhen) Co.,Ltd -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe
(services.exe ->) (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\lvvsst.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(services.exe ->) (Protexis Inc. -> Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(services.exe ->) (Symantec Corp -> Symantec Corporation) C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Message Center Plus\MCPLaunch.exe
(svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213760 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4114688 2022-07-29] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [DriverUpdUI.exe] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [4560720 2022-05-25] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [LENOVO.TPKNRRES] => C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [290160 2012-06-02] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [557592 2019-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-04-13] (Intel Corporation -> Intel Corporation)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [507744 2021-04-13] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel® Services Manager -> Intel Corporation)
HKLM-x32\...\Run: [Lenovo Registration] => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4351712 2011-07-14] (Leader Technologies Inc -> Lenovo, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [PCSuiteTrayApplication] => C:\Program Files (x86)\Nokia\Nokia PC Suite 6\LaunchApplication.exe [227328 2007-03-23] (Nokia) [File not signed]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3478600 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKU\S-1-5-21-1214479148-1350895280-1617313171-1000\...\Run: [TMCC] => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
HKU\S-1-5-21-1214479148-1350895280-1617313171-1000\...\Run: [CCleanerBrowserAutoLaunch_50D2929F9404B069E15B932115C12F5B] => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\103.1.17779.136\Installer\chrmstp.exe [2022-08-10] (Piriform Software Ltd -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.75\Installer\chrmstp.exe [2022-04-08] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2012-04-01] (Broadcom Corporation -> Broadcom Corporation.)
HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] ->
Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2022-08-06]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\AVAST Software\SecureLine VPN\Vpn.exe (Avast Software s.r.o. -> AVAST Software)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0391FBA9-010A-4A61-B790-372AB9C431EE} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
Task: {05B94BBD-3E21-4508-BDF3-16C61C01E1B9} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {0FC36B3B-0E46-4455-AFEF-AAB9E4BC40E7} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [4928768 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
Task: {0FE6A629-1F75-4BE3-98C2-720082DB16AE} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {12B5BA37-45A4-4A42-AE0F-899FC7C269CE} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {16A04C43-FB8C-4245-9B20-6BBE184ABAE1} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {19466F2A-2B35-4C9B-9816-D26B059C2506} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {1CE74941-AC01-4789-A981-60BAC20C46A0} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (No File)
Task: {1E0E45CD-1EE4-4E1E-BFED-94908AFF22D7} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {1EBD881E-44FB-4D9F-93A3-C031A8550592} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {203E1697-10CB-4F36-B461-957C38303576} - System32\Tasks\{33B067E7-90EA-465F-8F99-4621BF3877B0} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {21636DE1-94DB-422C-89DA-9C2E39C75723} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [6694224 2022-07-26] (Avast Software s.r.o. -> Avast Software)
Task: {22749680-697E-413B-84C8-4EF0C4D9276C} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
Task: {227F3B0E-0ADB-42B3-A46C-ABEF8F48EF25} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (No File)
Task: {237A09D6-6D56-4EE9-A67E-3BE3077FDBBA} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {238165A7-6AE6-4CA9-9F36-8284598F284E} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {275100B1-2462-4C78-8FD0-9D091A959C78} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate_scheduled => C:\WINDOWS\ehome\mcupdate.exe -crl -hms -pscn 15 (No File)
Task: {2CF4F60F-0758-45E2-8128-953FD9B4CB35} - System32\Tasks\DiskUpdate => C:\SWTOOLS\OSFIXES\DISKUPDT\DiskUpdate.exe (No File)
Task: {342F1C49-1EBB-44D0-8A6D-D9F170A9FD1C} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (No File)
Task: {36527195-2CE3-46F4-B492-BDCFB7238D6F} - \PMTask -> No File <==== ATTENTION
Task: {37F748E7-3F46-4002-AC38-DC0C53AA03CF} - System32\Tasks\GoogleUpdateTaskMachineCore1d0efea176d1842 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {39988AF4-7194-4AB8-9F4B-6F557EB4E0FD} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {3A2FF5FC-3504-4163-B20D-3E0298321644} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (No File)
Task: {3EDF85BF-9579-405B-B601-40C20D59A035} - \CCleanerSkipUAC -> No File <==== ATTENTION
Task: {3FFCEB6A-FB8F-456C-8552-6E9F12256AC5} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)"
Task: {4253E6BE-FDF0-419D-BDB0-33503037294B} - System32\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB}
Task: {4A3EFA3E-EE80-475F-AE31-55B56CE5F4D2} - System32\Tasks\Avast Software\Avast Driver Updater BugReport => C:\Program Files\Avast Software\Driver Updater\AvBugReport.exe [4613456 2022-05-25] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 148 --programpath "C:\Program Files\Avast Software\Driver Updater\Setup\.." --configpath "C:\Program Files\Avast Software\Driver Updater\Setup" --path "C:\ProgramData\Avast Software\Driver Updater\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 07c5d1ff-a170-4ee3-a5b0-26a8ac3a731f
Task: {4B0F4B9E-892F-49B9-8775-2F96B075B7F6} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (No File)
Task: {52E0370C-7560-4C3A-AECA-C64610389A8B} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {53140936-B877-40D5-947C-AF2E4278B19B} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [64984 2022-05-17] (Lenovo -> )
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5C1EE3C0-51F6-4C82-B781-C428E4F1EB2C} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [4637440 2022-08-05] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\SecureLine VPN\log" --guid 53a46343-951d-4faa-b560-4347e7432cd1
Task: {5DC44BDF-C0D8-4D57-992A-096D9C7DD536} - System32\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {5F852097-6DCC-4183-B4CA-AC0997779ED2} - System32\Tasks\GoogleUpdateTaskMachineUA1d0e1ef2203643a => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {63BB2C79-08BD-4AE2-8055-E9900868EFFE} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (No File)
Task: {64B6BCDB-3BED-490A-A5BC-51AF100FE63D} - System32\Tasks\Avast Software\Avast Driver Updater Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-du\icarus.exe [6667600 2022-05-19] (Avast Software s.r.o. -> Avast Software)
Task: {67639C76-146D-4A25-9BA9-3819071BDB19} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1321608 2016-12-07] (LENOVO -> Lenovo)
Task: {68977B2E-6366-4740-9876-80FFA0E32333} - System32\Tasks\Driver Booster SkipUAC (Roman) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [7735056 2019-11-05] (IObit) [File not signed]
Task: {68C17451-3C66-4E3C-80F4-2489EBB3E8F0} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10165384 2016-12-07] (LENOVO -> Lenovo)
Task: {69B0F60A-9270-46C9-9DD3-1B36075B6735} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [6667600 2022-07-28] (Avast Software s.r.o. -> Avast Software)
Task: {6D4D31B2-934A-4658-8553-2D02E613D8A1} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [128976 2022-05-17] (Lenovo -> Lenovo)
Task: {6F5D5B84-2FBE-443E-8B08-D2E57218CC47} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (No File)
Task: {71F86030-2740-4544-B5F7-115063C28621} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {7937AA97-3A8E-4540-A785-010C9DB4BCEB} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (No File)
Task: {80438DF2-09A5-4B01-9AE8-EA3FB14A897B} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (No File)
Task: {85BCDF98-DE64-46CD-B342-33E3DC975DE5} - System32\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {89F5CB92-EF56-4C60-8FC4-D5F18FB76AB7} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E}
Task: {8B864A67-2D2A-4841-9742-E84FFCB08B44} - System32\Tasks\Lenovo Power Management Driver PnP Task => C:\WINDOWS\System32\ibmpmsvc.exe [855968 2019-12-19] (Lenovo -> Lenovo.)
Task: {8CA53062-F15D-456F-B1D6-008A5151CB26} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.UpdateStatusService.exe [264328 2016-12-07] (LENOVO -> )
Task: {91866D7B-86B2-4E27-A795-219C988EC9E0} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (No File)
Task: {91D604C4-5684-4128-BA77-D66755BE17C4} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [10165384 2016-12-07] (LENOVO -> Lenovo)
Task: {995C4871-6E39-4F62-9FB6-B2B6714D4EA0} - System32\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {9BE62370-4896-4685-837D-5913AFC7FEA4} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4614912 2022-07-29] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --guid 30c6d444-7ece-4c6c-a791-47145e98b8ef
Task: {A3F6A53E-5946-4989-BE5F-8A0BB8AE0AA7} - System32\Tasks\Avast SecureLine VPN Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [1197824 2022-08-05] (Avast Software s.r.o. -> AVAST Software)
Task: {A81A7212-B450-49A8-B3D6-772F212765C7} - System32\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-29] (Google Inc -> Google Inc.)
Task: {A83A26C6-6CFC-4EFF-A48C-53767455BFF8} - System32\Tasks\{71827D95-300A-4240-B0AA-4AE35833373A} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {A8FDB19B-D610-4A76-9189-3C83436FDFC7} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [189800 2013-06-26] (Lenovo Information Products (Shenzhen) Co.,Ltd -> )
Task: {AAAB1C95-C2A0-4B37-ACCA-24DEE3E7FD94} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [66000 2015-03-23] (LENOVO -> Lenovo)
Task: {AB373F90-9C5E-47FE-915B-B17E41A39BC3} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (No File)
Task: {AC652B54-8004-4C06-84F6-8D771B10AE31} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [16744 2013-05-17] (Lenovo Information Products (Shenzhen) Co.,Ltd -> Lenovo)
Task: {AC7B75AB-E94F-4B04-BEB6-75226D1F7A98} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {B3794950-9389-4FAA-A390-A087C04CE69F} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61}
Task: {B4DE1389-A36E-43CB-8C4B-47D2146EEE17} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2813280 2022-07-21] (Piriform Software Ltd -> Piriform Software)
Task: {B5D71717-81FE-498F-A38D-0428A6A50BEA} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1}
Task: {B6B0AAB3-7237-4022-97C4-1E205AF03FE2} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {B9FA8972-9000-4644-AA60-0579F4F2CAAF} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (No File)
Task: {BE85F8D1-F1FA-41B7-9265-404CCD68A5B6} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (No File)
Task: {BEDBDD7C-A1DB-4735-9ECD-1E6B5B3C21BF} - \Lenovo\SimpleTap\Start SimpleTap for Roman-THINK.Roman -> No File <==== ATTENTION
Task: {C0C15E23-6A43-410D-8952-AD50A59E316D} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (No File)
Task: {C18288D9-416E-4A7D-A955-8970D2BB644F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (No File)
Task: {C8BE2097-B454-47B5-B407-8F2999AEE177} - System32\Tasks\{29F2F256-1C70-4D29-A8B4-865F74ABC896} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {C9FD6C60-7924-4B97-AD7B-B88A9C21BAE5} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (No File)
Task: {CA43A0CF-61D2-4C33-8587-F535B15267F8} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (No File)
Task: {CB2ED866-D21D-428E-97DC-1792DDD8A9A5} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (No File)
Task: {CC297A82-7B2F-46B3-A159-FD01D606E58A} - System32\Tasks\{F189ED5A-5960-4AF4-B3C0-2D0DCC12CB55} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\MLPS\APPS\MUIInstaller\LENMNC.exe" -d "C:\Program Files\MLPS\APPS\MUIInstaller"
Task: {CD08D4E1-75C7-453B-80B4-734F8F40B548} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {D80C471E-AFED-43F9-B9EF-F752F7C19AFA} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
Task: {D91B2D8A-DE73-4724-8849-661F3FA49806} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {DC01DCAF-5B62-4A5A-B6D5-EE557E3CCF92} - System32\Tasks\{A2FB244C-2CB9-4F9A-8907-A34FE525C3F4} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {E39A710E-2106-4A3B-BBB1-A05292C46040} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {E3FF349E-B3F1-4CCA-A3F5-F00B07A4F889} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {E450C898-470B-49A7-8282-01673BD1D75F} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (No File)
Task: {F110B929-5F6E-43EE-B40C-8BF85C111093} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (No File)
Task: {F839821F-2CBC-40F1-8E75-1F4E17E01241} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (No File)
Task: {FB662C9B-8428-4330-B9A7-9A728BE0C9D6} - System32\Tasks\{EB31C6F5-E494-4894-B8F4-827E2CB9C859} => C:\Program Files (x86)\T-Mobile Communication Center\TMCC.exe [843776 2012-05-03] (Slovak Telekom a.s.) [File not signed]
Task: {FCD8B955-D473-4D4F-A110-3BBCA44370CD} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (No File)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2644a0cc-481e-4489-a345-76f5ff3c47a6}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{940AABCF-BBB2-46C7-86BB-89CCCB052B21}: [NameServer] 195.146.132.58 195.146.128.62
Tcpip\..\Interfaces\{9adda19c-ad88-4ece-a987-652284a134f2}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Roman\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-10]
Edge HomePage: Default -> hxxp://www.msn.com/?pc=UP97&ocid=UP97DHP
FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2015-03-01] [Legacy] [not signed]
FF HKLM-x32\...\Firefox\Extensions: [VIP5X@verisign.com] - C:\Program Files (x86)\Symantec\VIP Access Client
FF Extension: (Symantec VIP Access Add-On) - C:\Program Files (x86)\Symantec\VIP Access Client [2014-07-14] [Legacy] [not signed]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [2022-08-10] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [2022-08-10] (Piriform Software Ltd -> Piriform Software)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2012-09-20] (Adobe Systems Incorporated -> Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default [2022-08-10]
CHR Notifications: Default -> hxxps://app.smartsupp.com; hxxps://dd-restaurant.ru; hxxps://eu1.badoo.com; hxxps://robotcaptcha2.info; hxxps://www.alibaba.com; hxxps://www.andreashop.sk; hxxps://www.facebook.com; hxxps://www.twoo.com
CHR HomePage: Default -> hxxps://www.google.sk/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.google.com ... oogle.com/"
CHR Extension: (Website Logon) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\cdkedefaddcdlpmiafhicjnkbogjiogj [2013-04-26]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-07-06]
CHR Extension: (Avast SafePrice | Porovnanie, ponuky, kupóny) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2022-06-25]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2022-08-01]
CHR Extension: (Reklamy blokátor pre YouTube ™) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\hflefjhkfeiaignkclmphmokmmbhbhik [2019-12-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile [2022-08-10]
CHR Extension: (Dokumenty Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\aohghmighlieiainnegkcijnfilokake [2015-07-20]
CHR Extension: (Google Drive) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-07-20]
CHR Extension: (YouTube) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-07-20]
CHR Extension: (Website Logon) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\cdkedefaddcdlpmiafhicjnkbogjiogj [2015-07-20]
CHR Extension: (Google Search) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-07-20]
CHR Extension: (Adobe Acrobat – Vytvoriť PDF) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2015-07-20]
CHR Extension: (Tabuľky Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-07-20]
CHR Extension: (Skype Click to Call) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-07-20]
CHR Extension: (Peňaženka Google) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-20]
CHR Extension: (Amazon for Chrome) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pbjikboenpfhbbejgkoklgkhjpfogcam [2015-07-20] [UpdateUrl:hxxp://d1h5tuq46hrbzn.cloudfront.net/abb/chrome/update.xml] <==== ATTENTION
CHR Extension: (Gmail) - C:\Users\Roman\AppData\Local\Google\Chrome\User Data\System Profile\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-20]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2013-05-11]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]
CHR HKLM-x32\...\Chrome\Extension: [pbjikboenpfhbbejgkoklgkhjpfogcam] - C:\Program Files (x86)\Amazon\ABB\AmazonChrome-lenovo-abb.crx [2012-02-24]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [65640 2013-05-11] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [8507448 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [589568 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [589056 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-25] (Avast Software s.r.o. -> AVAST Software)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\103.1.17779.136\elevation_service.exe [1991960 2022-07-21] (Piriform Software Ltd -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [196976 2022-08-10] (Piriform Software Ltd -> Piriform Software)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [15703296 2022-07-29] (Avast Software s.r.o. -> AVAST Software)
S3 defragsvc; C:\WINDOWS\System32\defragsvc.dll [543232 2022-03-09] (Microsoft Windows -> Microsoft Corporation) [File not signed]
R2 DriverUpdSvc; C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe [7680336 2022-05-25] (Avast Software s.r.o. -> AVAST Software)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [179568 2012-06-02] (Lenovo (Japan) Ltd. -> Lenovo Group Limited)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [133992 2011-07-12] (Lenovo(Japan)Ltd. -> Lenovo Group Limited)
R2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [774040 2019-12-19] (Lenovo -> Lenovo.)
S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273544 2016-12-07] (LENOVO -> Lenovo)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [9752320 2022-08-05] (Avast Software s.r.o. -> AVAST Software)
S3 ServiceLayer; C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe [292864 2007-03-26] (Nokia.) [File not signed]
R2 VIPAppService; C:\Program Files (x86)\Symantec\VIP Access Client\VIPAppService.exe [84080 2012-04-19] (Symantec Corp -> Symantec Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.4-0\NisSrv.exe [2483616 2021-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2102.4-0\MsMpEng.exe [128376 2021-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [41832 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [235576 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [389120 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [258048 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [104960 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [24528 2022-08-01] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [47976 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [275024 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553928 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [113968 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [89032 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [859872 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [670776 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221512 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2020-07-27] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [324840 2022-08-01] (Avast Software s.r.o. -> AVAST Software)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [65944 2022-06-08] (Avast Software s.r.o. -> Avast Software)
S3 aswWintun; C:\WINDOWS\System32\drivers\aswWintun.sys [38768 2021-05-06] (Avast Software s.r.o. -> Avast Software)
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [264040 2015-09-23] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14976 2015-09-23] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [186784 2015-09-23] (ESET, spol. s r.o. -> ESET)
R2 epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [170792 2015-09-23] (ESET, spol. s r.o. -> ESET)
R3 huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [86016 2014-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2019-12-19] (Martin Malik - REALiX -> REALiX(tm))
S3 nmwcd; C:\WINDOWS\system32\drivers\ccdcmbx64.sys [19968 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdc; C:\WINDOWS\system32\drivers\ccdcmbox64.sys [27136 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R0 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [44232 2019-12-19] (Lenovo -> Lenovo.)
R3 RSP2STOR; C:\WINDOWS\System32\drivers\RtsP2Stor.sys [347472 2019-12-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 SWDUMon; C:\WINDOWS\system32\DRIVERS\SWDUMon.sys [25608 2020-10-20] (AVG Technologies CZ, s.r.o. -> SlimWare Utilities, Inc.)
R3 Tvti2c; C:\WINDOWS\system32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Products (Shenzhen) Co.,Ltd -> Lenovo Information Product(ShenZhen China) Inc.)
R3 tvtvcamd; C:\WINDOWS\system32\DRIVERS\tvtvcamd.sys [27432 2011-12-08] (Lenovo (Japan) Ltd. -> ThinkVantage Communications Utility)
S3 upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltjx64.sys [9216 2011-08-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [642304 2019-12-19] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [420072 2021-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72952 2021-03-19] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-08-10 18:08 - 2022-08-10 18:10 - 000046145 _____ C:\Users\Roman\Desktop\FRST.txt
2022-08-10 18:07 - 2022-08-10 18:09 - 000000000 ____D C:\FRST
2022-08-10 18:04 - 2022-08-10 18:04 - 002370048 _____ (Farbar) C:\Users\Roman\Desktop\FRST64.exe
2022-08-10 11:11 - 2022-08-10 11:11 - 000000000 ___HD C:\$WinREAgent
2022-08-10 10:56 - 2022-08-10 10:56 - 000000000 ____D C:\Users\Roman\AppData\Local\CCleaner Browser
2022-08-10 10:56 - 2022-08-10 10:56 - 000000000 ____D C:\ProgramData\CCleaner Browser
2022-08-10 10:55 - 2022-08-10 10:55 - 000003842 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2022-08-10 10:55 - 2022-08-10 10:55 - 000003258 _____ C:\WINDOWS\system32\Tasks\CCleaner Browser Heartbeat Task (Logon)
2022-08-10 10:55 - 2022-08-10 10:55 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk
2022-08-10 10:53 - 2022-08-10 10:56 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser
2022-08-10 10:53 - 2022-08-10 10:53 - 000003512 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineUA
2022-08-10 10:53 - 2022-08-10 10:53 - 000003388 _____ C:\WINDOWS\system32\Tasks\CCleanerUpdateTaskMachineCore
2022-08-10 10:52 - 2022-08-10 11:02 - 000000000 ____D C:\Program Files\CCleaner
2022-08-10 10:21 - 2022-08-10 10:24 - 000000000 ____D C:\Users\Roman\Desktop\textove
2022-08-10 10:17 - 2022-08-10 10:20 - 000000000 ____D C:\Users\Roman\Desktop\obrazky
2022-08-01 09:57 - 2022-08-01 09:57 - 000270592 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2022-08-01 09:57 - 2022-08-01 09:57 - 000221512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2022-07-13 13:17 - 2022-07-13 13:17 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-07-13 13:17 - 2022-07-13 13:17 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-07-13 13:17 - 2022-07-13 13:17 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll
2022-07-13 13:17 - 2022-07-13 13:17 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com
2022-07-13 13:17 - 2022-07-13 13:17 - 000011811 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-07-13 13:16 - 2022-07-13 13:16 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll
2022-07-13 13:16 - 2022-07-13 13:16 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
2022-07-13 13:15 - 2022-07-13 13:15 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-08-10 17:57 - 2021-04-13 22:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-08-10 17:55 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-08-10 15:50 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-08-10 15:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-08-10 14:41 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-08-10 11:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2022-08-10 10:59 - 2014-09-29 04:25 - 000000000 ____D C:\Users\Roman\AppData\Local\CrashDumps
2022-08-10 10:56 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ModemLogs
2022-08-10 10:15 - 2021-07-21 10:07 - 000000000 ____D C:\ProgramData\Lenovo
2022-08-10 10:15 - 2013-03-07 00:42 - 000000000 ____D C:\Program Files\Lenovo
2022-08-10 10:15 - 2013-03-07 00:42 - 000000000 ____D C:\Program Files (x86)\Lenovo
2022-08-10 10:13 - 2017-12-17 20:28 - 000000000 ____D C:\Users\Roman\AppData\Local\Packages
2022-08-10 10:11 - 2013-03-07 00:37 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2022-08-10 10:11 - 2013-03-07 00:36 - 000000000 ____D C:\Program Files (x86)\Intel
2022-08-10 10:09 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2022-08-10 10:09 - 2013-04-26 16:52 - 000000000 ____D C:\Users\Roman\AppData\Local\Google
2022-08-10 10:09 - 2013-04-26 16:51 - 000000000 ____D C:\Users\Roman\AppData\LocalLow\VeriSign
2022-08-10 10:09 - 2013-03-07 00:50 - 000000000 ____D C:\Program Files\Common Files\AuthenTec
2022-08-10 10:09 - 2013-03-07 00:50 - 000000000 ____D C:\Program Files (x86)\Google
2022-08-10 10:04 - 2019-12-19 19:36 - 000000000 ____D C:\Users\Roman\AppData\Local\AVAST Software
2022-08-10 10:04 - 2019-11-15 18:16 - 000000000 ____D C:\ProgramData\AVAST Software
2022-08-10 09:53 - 2013-11-30 06:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-08-10 09:35 - 2013-11-30 06:35 - 144534560 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-08-10 09:25 - 2021-04-13 22:44 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
2022-08-09 14:07 - 2021-12-12 20:21 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1214479148-1350895280-1617313171-1000
2022-08-09 14:07 - 2021-04-13 22:44 - 000003372 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1214479148-1350895280-1617313171-1000
2022-08-09 14:06 - 2021-04-29 18:38 - 000002382 _____ C:\Users\Roman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-08-07 16:38 - 2020-06-06 00:33 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-08-07 16:38 - 2020-06-06 00:33 - 000002293 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-08-06 05:02 - 2021-04-13 22:44 - 000004028 _____ C:\WINDOWS\system32\Tasks\Avast SecureLine VPN Update
2022-08-06 05:00 - 2021-04-13 22:44 - 000003700 _____ C:\WINDOWS\system32\Tasks\Lenovo Power Management Driver PnP Task
2022-08-06 05:00 - 2021-04-13 22:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-08-06 05:00 - 2021-04-13 22:10 - 000008192 ___SH C:\DumpStack.log.tmp
2022-08-06 05:00 - 2015-08-29 02:10 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f.job
2022-08-06 05:00 - 2015-07-16 16:10 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224.job
2022-08-06 05:00 - 2015-05-20 18:04 - 000000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3.job
2022-08-06 05:00 - 2015-05-20 18:04 - 000000932 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202.job
2022-08-06 05:00 - 2013-10-26 10:12 - 000000936 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d.job
2022-08-05 22:31 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-08-05 10:28 - 2020-06-09 18:34 - 000037200 _____ (Avast Software) C:\WINDOWS\system32\icarus_rvrt.exe
2022-08-04 10:56 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2022-08-01 19:49 - 2021-08-06 09:52 - 000003386 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-08-01 19:49 - 2021-04-13 22:44 - 000003560 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-08-01 19:49 - 2021-04-13 22:44 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d093169a2f04a3
2022-08-01 19:49 - 2021-04-13 22:44 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1ced22323c8638d
2022-08-01 19:49 - 2021-04-13 22:44 - 000003414 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA1d0e1ef2203643a
2022-08-01 19:49 - 2021-04-13 22:44 - 000003280 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0e1ef21cd383f
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0bfd12737a224
2022-08-01 19:49 - 2021-04-13 22:44 - 000003244 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0931699f75202
2022-08-01 19:49 - 2021-04-13 22:44 - 000003190 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore1d0efea176d1842
2022-08-01 19:49 - 2021-04-13 22:44 - 000003162 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-08-01 19:49 - 2021-04-13 22:44 - 000002382 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (Roman)
2022-08-01 19:49 - 2021-04-13 22:44 - 000002338 _____ C:\WINDOWS\system32\Tasks\{F189ED5A-5960-4AF4-B3C0-2D0DCC12CB55}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{EB31C6F5-E494-4894-B8F4-827E2CB9C859}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{A2FB244C-2CB9-4F9A-8907-A34FE525C3F4}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{71827D95-300A-4240-B0AA-4AE35833373A}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{33B067E7-90EA-465F-8F99-4621BF3877B0}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002138 _____ C:\WINDOWS\system32\Tasks\{29F2F256-1C70-4D29-A8B4-865F74ABC896}
2022-08-01 19:49 - 2021-04-13 22:44 - 000002048 _____ C:\WINDOWS\system32\Tasks\DiskUpdate
2022-08-01 19:49 - 2021-04-13 22:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2022-08-01 13:58 - 2019-11-15 18:19 - 000670776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2022-08-01 09:57 - 2022-06-27 14:44 - 000024528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys
2022-08-01 09:57 - 2020-10-14 11:45 - 000275024 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2022-08-01 09:57 - 2020-07-17 00:09 - 000041832 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2022-08-01 09:57 - 2020-04-21 23:10 - 000553928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2022-08-01 09:57 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2022-08-01 09:57 - 2019-11-15 18:19 - 000859872 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000389120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000324840 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000258048 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000235576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000113968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000104960 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000089032 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2022-08-01 09:57 - 2019-11-15 18:19 - 000047976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
2022-07-14 10:19 - 2021-04-13 22:33 - 001806644 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-07-14 10:19 - 2016-10-02 07:20 - 000642658 _____ C:\WINDOWS\system32\perfh01B.dat
2022-07-14 10:19 - 2016-10-02 07:20 - 000195808 _____ C:\WINDOWS\system32\perfc01B.dat
2022-07-13 21:29 - 2022-04-11 09:49 - 000439728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2022-07-13 21:25 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-07-13 13:15 - 2021-04-13 22:15 - 003010560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
==================== Files in the root of some directories ========
2013-04-26 16:50 - 2013-04-26 16:50 - 000090624 _____ () C:\Users\Public\AlexaNSISPlugin.4892.dll
2020-09-21 20:47 - 2020-09-21 20:47 - 010014720 _____ () C:\Program Files (x86)\GUT6722.tmp
2013-04-26 16:50 - 2015-07-12 21:51 - 000151090 _____ () C:\Users\Roman\AppData\Roaming\AbsoluteReminder.xml
2013-09-29 18:10 - 2015-04-01 21:33 - 000076976 _____ () C:\Users\Roman\AppData\Roaming\LoJackSetup.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================