Preventivka
Napsal: 03 lis 2022 12:35
Nevím jestli není problém s diskem, je příliš obsazený a není co smazat (velká složka s fotkami je na druhé části a tam místa je relativně dost).
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-10-2022 02
Ran by alice (administrator) on DESKTOP-PJN7KRI (LENOVO 80E5) (03-11-2022 12:28:34)
Running from C:\Users\alice\Downloads
Loaded Profiles: alice
Platform: Microsoft Windows 10 Home Version 21H1 19043.2130 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe
(explorer.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(explorer.exe ->) (Fortemedia Inc -> ) C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek semiconductor) C:\Windows\RTFTrack.exe
(explorer.exe ->) (ZONER software, a.s. -> ZONER software) C:\Program Files\Zoner\Photo Studio 18\Program32\ZPSTray.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\22.212.1009.0004\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22082.119.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5166872 2016-08-04] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212192 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2630016 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [14B3FC0A7A39F776DA4615F55564CD177F362087._service_run] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service /prefetch:8 (No File)
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 18\Program32\ZPSTRAY.EXE [680520 2017-01-09] (ZONER software, a.s. -> ZONER software)
GroupPolicy\User: Restriction ? <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {11FDA613-A878-4120-974F-0D3781928A1A} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1613147354-136639444-1604222446-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166528 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {75FAE479-DC06-4BD1-8893-1A15F7062611} - System32\Tasks\Avast Emergency Update
Task: {76162F1F-6EF4-4377-93D7-5B6810B36122} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166528 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {BD4C6EA5-4A09-4FB3-8EFB-929235EE5220} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {CC4FAEDC-A74D-424B-A473-1C314A89942F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-05-25] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{2b987a6c-d30e-444d-aa10-a23b2adfbeb0}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{7845037c-814a-4406-8b0f-140b12fb4a7c}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-03]
Edge Extension: (Old Layout for Facebook) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\abmkkackbbimmdbfjdilpnfaegaeagge [2022-08-15]
Edge Extension: (LastPass: Free Password Manager) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2022-11-03]
Edge Extension: (Seznam doplněk - Email) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2022-08-15]
Edge Extension: (Outlook) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-17]
Edge Extension: (Avast Online Security & Privacy) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-11-03]
Edge Extension: (Google Mail Checker) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\glbpkcehjkihaknkjifkehdpjfngbdga [2022-08-15]
Edge Extension: (Word) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-17]
Edge Extension: (Excel) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-17]
Edge Extension: (PowerPoint) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-17]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8513552 2022-10-05] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [592608 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2018528 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [592096 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.212.1009.0004\FileSyncHelper.exe [3475328 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.212.1009.0004\OneDriveUpdaterService.exe [3840896 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [42296 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [238128 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [390096 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [258496 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [105920 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [48488 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276496 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [558536 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [114488 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [90000 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [862960 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [671712 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [221976 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [327904 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-11-03 12:28 - 2022-11-03 12:29 - 000015337 _____ C:\Users\alice\Downloads\FRST.txt
2022-11-03 12:28 - 2022-11-03 12:28 - 000000000 ____D C:\FRST
2022-11-03 12:26 - 2022-11-03 12:27 - 002374144 _____ (Farbar) C:\Users\alice\Downloads\FRST64.exe
2022-11-03 12:24 - 2022-11-03 12:24 - 001222144 _____ C:\Users\alice\Downloads\RSITx64.exe
2022-11-03 12:24 - 2022-11-03 12:24 - 000000000 ____D C:\rsit
2022-11-03 12:24 - 2022-11-03 12:24 - 000000000 ____D C:\Program Files\trend micro
2022-10-13 17:40 - 2022-10-13 17:40 - 000025576 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2022-10-13 08:14 - 2022-10-13 08:14 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2022-10-13 08:14 - 2022-10-13 08:14 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-10-13 08:13 - 2022-10-13 08:13 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-10-13 08:05 - 2022-10-13 08:05 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-11-03 12:15 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-11-03 12:09 - 2020-07-14 22:58 - 000000000 ____D C:\Users\alice\AppData\Local\CrashDumps
2022-11-03 12:09 - 2020-07-14 09:59 - 000000000 ____D C:\Windows\Panther
2022-11-03 12:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-11-03 12:04 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2022-11-03 11:52 - 2020-08-29 20:55 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-11-03 11:52 - 2020-08-29 20:55 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-11-03 11:43 - 2020-07-14 09:11 - 000000000 ____D C:\Users\alice\AppData\Local\Google
2022-11-03 11:43 - 2020-07-14 09:11 - 000000000 ____D C:\Program Files (x86)\Google
2022-11-03 11:28 - 2020-07-14 09:04 - 000000000 ____D C:\Users\alice
2022-11-03 10:58 - 2020-07-14 09:09 - 000000000 ____D C:\Users\alice\AppData\Local\D3DSCache
2022-11-03 10:56 - 2021-12-11 12:42 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1613147354-136639444-1604222446-1001
2022-11-03 10:56 - 2021-09-04 08:41 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-11-03 10:56 - 2020-07-16 10:59 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-11-03 10:56 - 2020-07-16 10:59 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-11-03 10:54 - 2020-07-14 09:32 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-11-03 10:54 - 2020-07-14 09:32 - 000000000 __SHD C:\Users\alice\IntelGraphicsProfiles
2022-11-03 09:51 - 2020-07-14 08:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-11-03 08:51 - 2020-07-14 10:51 - 000000000 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-11-03 08:24 - 2020-07-14 09:09 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-11-03 08:24 - 2019-12-07 15:41 - 000683426 _____ C:\Windows\system32\perfh005.dat
2022-11-03 08:24 - 2019-12-07 15:41 - 000137206 _____ C:\Windows\system32\perfc005.dat
2022-11-03 08:24 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2022-10-28 06:22 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2022-10-25 18:56 - 2021-01-09 15:33 - 000000000 ____D C:\Windows\Minidump
2022-10-22 16:51 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2022-10-21 12:26 - 2021-03-10 03:06 - 000003220 _____ C:\Windows\system32\Tasks\Intel PTT EK Recertification
2022-10-21 12:26 - 2020-08-29 20:55 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-21 12:26 - 2020-08-29 20:55 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-21 12:26 - 2020-07-14 10:51 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-10-21 08:25 - 2020-07-14 08:59 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-10-21 08:24 - 2020-07-14 08:59 - 000008192 ___SH C:\DumpStack.log.tmp
2022-10-18 21:27 - 2020-07-14 10:49 - 000000000 ____D C:\ProgramData\Avast Software
2022-10-18 21:26 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2022-10-13 20:21 - 2020-07-14 08:59 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2022-10-13 08:18 - 2019-12-07 10:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2022-10-13 08:18 - 2019-12-07 10:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2022-10-13 08:13 - 2020-07-14 09:03 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-10-13 08:05 - 2020-07-15 12:13 - 000000000 ____D C:\Windows\system32\MRT
2022-10-13 08:02 - 2020-07-15 12:13 - 147398024 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-10-2022 02
Ran by alice (administrator) on DESKTOP-PJN7KRI (LENOVO 80E5) (03-11-2022 12:28:34)
Running from C:\Users\alice\Downloads
Loaded Profiles: alice
Platform: Microsoft Windows 10 Home Version 21H1 19043.2130 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe
(explorer.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(explorer.exe ->) (Fortemedia Inc -> ) C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek semiconductor) C:\Windows\RTFTrack.exe
(explorer.exe ->) (ZONER software, a.s. -> ZONER software) C:\Program Files\Zoner\Photo Studio 18\Program32\ZPSTray.exe
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\22.212.1009.0004\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22082.119.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [5166872 2016-08-04] (Realtek Semiconductor Corp -> Realtek semiconductor)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> )
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212192 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" (No File)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2630016 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [14B3FC0A7A39F776DA4615F55564CD177F362087._service_run] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=service /prefetch:8 (No File)
HKU\S-1-5-21-1613147354-136639444-1604222446-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 18\Program32\ZPSTRAY.EXE [680520 2017-01-09] (ZONER software, a.s. -> ZONER software)
GroupPolicy\User: Restriction ? <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {11FDA613-A878-4120-974F-0D3781928A1A} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1613147354-136639444-1604222446-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166528 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {75FAE479-DC06-4BD1-8893-1A15F7062611} - System32\Tasks\Avast Emergency Update
Task: {76162F1F-6EF4-4377-93D7-5B6810B36122} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166528 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {BD4C6EA5-4A09-4FB3-8EFB-929235EE5220} - System32\Tasks\Intel PTT EK Recertification => C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\IntelPTTEKRecertification.exe [818008 2021-09-15] (Intel Corporation -> Intel(R) Corporation)
Task: {CC4FAEDC-A74D-424B-A473-1C314A89942F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-05-25] (Avast Software s.r.o. -> Avast Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{2b987a6c-d30e-444d-aa10-a23b2adfbeb0}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{7845037c-814a-4406-8b0f-140b12fb4a7c}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-03]
Edge Extension: (Old Layout for Facebook) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\abmkkackbbimmdbfjdilpnfaegaeagge [2022-08-15]
Edge Extension: (LastPass: Free Password Manager) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bbcinlkgjjkejfdpemiealijmmooekmp [2022-11-03]
Edge Extension: (Seznam doplněk - Email) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2022-08-15]
Edge Extension: (Outlook) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2020-10-17]
Edge Extension: (Avast Online Security & Privacy) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-11-03]
Edge Extension: (Google Mail Checker) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\glbpkcehjkihaknkjifkehdpjfngbdga [2022-08-15]
Edge Extension: (Word) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2020-10-17]
Edge Extension: (Excel) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2020-10-17]
Edge Extension: (PowerPoint) - C:\Users\alice\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2020-10-17]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8513552 2022-10-05] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [592608 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2018528 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [592096 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.212.1009.0004\FileSyncHelper.exe [3475328 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.212.1009.0004\OneDriveUpdaterService.exe [3840896 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [42296 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [238128 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [390096 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [258496 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [105920 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [48488 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276496 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [558536 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [114488 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [90000 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [862960 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [671712 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [221976 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [327904 2022-09-30] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-11-03 12:28 - 2022-11-03 12:29 - 000015337 _____ C:\Users\alice\Downloads\FRST.txt
2022-11-03 12:28 - 2022-11-03 12:28 - 000000000 ____D C:\FRST
2022-11-03 12:26 - 2022-11-03 12:27 - 002374144 _____ (Farbar) C:\Users\alice\Downloads\FRST64.exe
2022-11-03 12:24 - 2022-11-03 12:24 - 001222144 _____ C:\Users\alice\Downloads\RSITx64.exe
2022-11-03 12:24 - 2022-11-03 12:24 - 000000000 ____D C:\rsit
2022-11-03 12:24 - 2022-11-03 12:24 - 000000000 ____D C:\Program Files\trend micro
2022-10-13 17:40 - 2022-10-13 17:40 - 000025576 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2022-10-13 08:14 - 2022-10-13 08:14 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2022-10-13 08:14 - 2022-10-13 08:14 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2022-10-13 08:14 - 2022-10-13 08:14 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-10-13 08:13 - 2022-10-13 08:13 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-10-13 08:05 - 2022-10-13 08:05 - 000000000 ___HD C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-11-03 12:15 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-11-03 12:09 - 2020-07-14 22:58 - 000000000 ____D C:\Users\alice\AppData\Local\CrashDumps
2022-11-03 12:09 - 2020-07-14 09:59 - 000000000 ____D C:\Windows\Panther
2022-11-03 12:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-11-03 12:04 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2022-11-03 11:52 - 2020-08-29 20:55 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-11-03 11:52 - 2020-08-29 20:55 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-11-03 11:43 - 2020-07-14 09:11 - 000000000 ____D C:\Users\alice\AppData\Local\Google
2022-11-03 11:43 - 2020-07-14 09:11 - 000000000 ____D C:\Program Files (x86)\Google
2022-11-03 11:28 - 2020-07-14 09:04 - 000000000 ____D C:\Users\alice
2022-11-03 10:58 - 2020-07-14 09:09 - 000000000 ____D C:\Users\alice\AppData\Local\D3DSCache
2022-11-03 10:56 - 2021-12-11 12:42 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1613147354-136639444-1604222446-1001
2022-11-03 10:56 - 2021-09-04 08:41 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-11-03 10:56 - 2020-07-16 10:59 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-11-03 10:56 - 2020-07-16 10:59 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-11-03 10:54 - 2020-07-14 09:32 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2022-11-03 10:54 - 2020-07-14 09:32 - 000000000 __SHD C:\Users\alice\IntelGraphicsProfiles
2022-11-03 09:51 - 2020-07-14 08:59 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-11-03 08:51 - 2020-07-14 10:51 - 000000000 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-11-03 08:24 - 2020-07-14 09:09 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2022-11-03 08:24 - 2019-12-07 15:41 - 000683426 _____ C:\Windows\system32\perfh005.dat
2022-11-03 08:24 - 2019-12-07 15:41 - 000137206 _____ C:\Windows\system32\perfc005.dat
2022-11-03 08:24 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2022-10-28 06:22 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2022-10-25 18:56 - 2021-01-09 15:33 - 000000000 ____D C:\Windows\Minidump
2022-10-22 16:51 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2022-10-21 12:26 - 2021-03-10 03:06 - 000003220 _____ C:\Windows\system32\Tasks\Intel PTT EK Recertification
2022-10-21 12:26 - 2020-08-29 20:55 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-10-21 12:26 - 2020-08-29 20:55 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-10-21 12:26 - 2020-07-14 10:51 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-10-21 08:25 - 2020-07-14 08:59 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-10-21 08:24 - 2020-07-14 08:59 - 000008192 ___SH C:\DumpStack.log.tmp
2022-10-18 21:27 - 2020-07-14 10:49 - 000000000 ____D C:\ProgramData\Avast Software
2022-10-18 21:26 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2022-10-13 20:21 - 2020-07-14 08:59 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2022-10-13 20:20 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2022-10-13 08:18 - 2019-12-07 10:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2022-10-13 08:18 - 2019-12-07 10:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2022-10-13 08:13 - 2020-07-14 09:03 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-10-13 08:05 - 2020-07-15 12:13 - 000000000 ____D C:\Windows\system32\MRT
2022-10-13 08:02 - 2020-07-15 12:13 - 147398024 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================