Prosím o kontrolu logu podezření na nabourání se do PC
Napsal: 20 říj 2023 19:30
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-10-2023
Ran by Azareth (administrator) on AZARETH-PC (LENOVO 20091) (20-10-2023 13:31:18)
Running from C:\Users\Azareth\Downloads\FRST64.exe
Loaded Profiles: Azareth
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X64) Language: Angličtina (Spojené státy) -> Čeština (Česká republika)
Default browser: IE
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe ->) (JetBrains s.r.o. -> ) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\lib\pty4j-native\win\x86-64\winpty-agent.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe ->) (JetBrains s.r.o. -> JetBrains s.r.o.) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\fsnotifier.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\lib\pty4j-native\win\x86-64\winpty-agent.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe ->) (Rainberry Inc -> BitTorrent Inc.) C:\Users\Azareth\AppData\Roaming\uTorrent Web\helper\helper.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(explorer.exe ->) (DT Soft Ltd -> DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\68.0.2.0\crashpad_handler.exe <3>
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <46>
(explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe <7>
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (JetBrains s.r.o. -> JetBrains s.r.o.) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(explorer.exe ->) (Rainberry Inc -> BitTorrent Inc.) C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Lenovo EE Boot Optimizer] => C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [206176 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [9753024 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [5908928 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [255896 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646776 2020-03-12] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd -> DT Soft Ltd)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [42727840 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [49958368 2022-02-01] (Google LLC -> )
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016568 2020-12-02] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Azareth\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-10] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8520168 2021-03-01] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) <==== ATTENTION
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4375912 2023-09-29] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [utweb] => C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe [6418944 2023-08-06] (Rainberry Inc -> BitTorrent Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\MountPoints2: {1b68cac0-8921-11ea-98fb-806e6f6e6963} - F:\setupx64.bat
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2020-04-28] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2016-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2016-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series XPS: C:\Windows\system32\CNMXLMDG.DLL [487424 2016-05-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\109.0.19987.122\Installer\chrmstp.exe [2023-01-31] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-01-28] (Google LLC -> Google LLC)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {923317A8-2671-4B9A-8081-65CBC53C8EB4} - System32\Tasks\{53B35AF0-6B3A-4A0A-BBB3-97A8DE7CFD65} => C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe [33136 2010-09-02] (Compal Electronics, Inc. -> COMPAL)
Task: {3F64947B-0BFC-4249-8F30-4A4D2AE60BEF} - System32\Tasks\{90CD3027-AF77-49E0-9F3A-AD9891C3106C} => C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe [33136 2010-09-02] (Compal Electronics, Inc. -> COMPAL)
Task: {18987115-B4F6-4055-80CE-47DBFF185A32} - System32\Tasks\{C966908C-75CA-4106-92A2-F79AA11CA6A1} => C:\Windows\system32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe" -d "C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)"
Task: {42CCA8EE-2276-4ADC-8291-ADCD1FD8A02B} - System32\Tasks\{DA1F993B-7319-461F-9278-B9D8AB7812A7} => C:\Windows\system32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Program Files\Microsoft Office\root\integration\OneDriveSetup.exe" -d F:\Office -c C:\Program Files\Microsoft Office\root\integration\OneDriveSetup.exe /silent /permachine /silent /childprocess /cusid:S-1-5-21-1201691987-3798675826-3542024472-1000
Task: {27E9919E-F8BB-41C1-9135-683FAE6AF2B0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {6649E94D-1A19-4322-9EAF-C72C6E83F7D9} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe)
Task: {C4A2D2B9-1433-4075-A2A6-3A768876FD06} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
Task: {C91BEE1E-BC16-45F7-AC90-22A9E538785E} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5135256 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
Task: {5162A659-4F69-4AA1-8CAE-6BAD8CF61603} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software)
Task: {BEDFC920-770E-437F-8F70-86088733828F} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2022-07-18] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
Task: {687E0CF6-F8FC-4078-A71F-F1C2F9569251} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3277472 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {2FDAEBD1-A20F-4E82-8071-6B36A9FBFAEB} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3277472 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {AE0EEFD8-37C2-4324-A5D1-6B69707EBDC4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {E0947491-92A9-43AD-A3D0-647EE26906B9} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "e12937ae-5955-4604-a50e-a3518a5b1f27" --version "6.17.10746" --silent
Task: {6A4A364E-2141-4984-9051-CD3DB89974B7} - System32\Tasks\CCleanerSkipUAC - Azareth => C:\Program Files\CCleaner\CCleaner.exe [35664800 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {5527D957-AE4A-43E8-A770-2CA166124586} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {B0D29E00-7FE3-45C3-A026-DC0DB6C9D3F1} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {14C505B1-1E44-44B6-8909-D19467D02217} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-27] (Google LLC -> Google LLC)
Task: {9E69560B-BA5E-4D82-B658-B0B8E8297143} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-27] (Google LLC -> Google LLC)
Task: {F0909D45-F39D-4EC9-8184-C4EF1B137CE3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {FC5E0655-A474-4152-8FB8-C6C1BF377C68} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {949170DE-A988-4FA5-8517-D093D1D4E715} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {4AB78676-5E61-45FE-8D86-A668242536B0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0F9C67D-BA7B-4137-AB30-AFA0F1A6B70B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {6243AE14-B145-4E7A-96AA-B78E5E77D444} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {F03088C5-701F-4D4E-97B1-48A1FCC8F00D} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task (No File)
Task: {93548985-FF8C-4C36-A395-088E1B30D8BC} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] () [File not signed]
Task: {5D5501B6-99BD-46B6-9E9D-C9733642A16F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {E496C2CC-8100-438D-9FF4-305B94A79E58} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B6570DB5-E2BE-4C5E-AA47-A2FD4CF1F8B0} - System32\Tasks\NVIDIA GeForceNow_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Users\Azareth\AppData\Local\NVIDIA Corporation\GeForceNOW\CEF\GeForceNOW.exe [3848744 2023-06-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {34366116-F5B1-4C10-BD07-58ADB2E7ADEF} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2A174470-37C1-4EC3-915D-8E49BB9E88E8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {808F8A44-EC3C-4BD3-BC62-7546DC571CFF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5CDE6BFF-F762-4AEE-B3A3-1925C8751B5A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {041946D5-DA89-49A5-AD2F-EEF631429721} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {84A1BD23-864B-44DE-9E12-5D4DBEEA299A} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {80B9B50A-1D2B-44F2-9D05-C91080F59169} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [1174016 2010-11-20] (Microsoft Windows -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{7AC04196-1B18-439A-9168-5D688B3C4E15}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{7AC04196-1B18-439A-9168-5D688B3C4E15}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Edge:
=======
Edge Profile: C:\Users\Azareth\AppData\Local\Microsoft\Edge\User Data\Default [2023-07-07]
FireFox:
========
FF DefaultProfile: 9ckfsfhp.default
FF ProfilePath: C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\9ckfsfhp.default [2020-04-27]
FF ProfilePath: C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\gz5r0ri9.default-release [2023-10-20]
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\gz5r0ri9.default-release\Extensions\sp@avast.com.xpi [2020-04-27]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-07-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-07-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-04-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-04-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-10-09] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default [2023-10-20]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Dokumenty Google offline) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-30]
CHR Extension: (FormApps Extension) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2022-10-20]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-01-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03]
CHR HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR Profile: C:\Users\Azareth\AppData\Roaming\Opera Software\Opera Stable [2023-07-07]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 ActiveSMART Service; C:\Program Files (x86)\ActiveSMART 2.12.0\ASmartService.exe [2551544 2020-08-02] (Ariolic Software Ltd -> Ariolic Software, Ltd. (hxxp://www.ariolic.com))
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9090968 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [776088 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [796568 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-20] (Avast Software s.r.o. -> AVAST Software)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\109.0.19987.122\elevation_service.exe [1802832 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11139576 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2020-08-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12835096 2021-01-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-03-01] (LAVASOFT SOFTWARE CANADA INC -> ) <==== ATTENTION
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [31528 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [240176 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [392984 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297992 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [96064 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39760 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [275168 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [559696 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [23472 2023-04-11] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105248 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80416 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [950696 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [708048 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [213192 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319560 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [321792 2022-07-18] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 cpuz157; C:\Windows\temp\cpuz157\cpuz157_x64.sys [43016 2023-09-23] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [254528 2020-04-28] (DT Soft Ltd -> DT Soft Ltd)
R1 googledrivefs3758; C:\Windows\System32\DRIVERS\googledrivefs3758.sys [386632 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R1 npcap; C:\Windows\System32\DRIVERS\npcap.sys [67536 2023-07-19] (Insecure.Com LLC -> Insecure.Com LLC.)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [513080 2020-04-28] () [File not signed] [File is in use]
S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [74048 2020-08-04] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
U3 al7xo9mw; C:\Windows\System32\Drivers\al7xo9mw.sys [0 0000-00-00] (Advanced Micro Devices) <==== ATTENTION [zero byte File/Folder]
U4 npcap_wifi; no ImagePath
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-10-20 13:31 - 2023-10-20 13:32 - 000032316 _____ C:\Users\Azareth\Downloads\FRST.txt
2023-10-17 14:47 - 2023-10-20 13:32 - 000000000 ____D C:\FRST
2023-10-17 14:47 - 2023-10-17 14:47 - 002383360 _____ (Farbar) C:\Users\Azareth\Downloads\FRST64.exe
2023-10-15 20:21 - 2023-10-15 20:30 - 3184589596 _____ C:\Users\Azareth\Downloads\Nepotvrzeno 19152.crdownload
2023-10-14 09:08 - 2023-10-14 09:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2023-10-14 09:05 - 2023-10-14 09:06 - 044112056 _____ (The Git Development Community ) C:\Users\Azareth\Downloads\Git-2.19.2-64-bit.exe
2023-10-12 16:17 - 2023-10-12 16:32 - 012187975 _____ C:\Users\Azareth\Downloads\aircrack-ng-1.7-win.zip
2023-10-12 12:40 - 2023-10-12 12:41 - 001498192 _____ C:\Users\Azareth\Downloads\Osobni dotaznik NAKIT (1).pdf
2023-10-10 12:46 - 2023-10-10 12:46 - 000002263 _____ C:\Users\Azareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams classic.lnk
2023-10-10 12:46 - 2023-10-10 12:46 - 000002255 _____ C:\Users\Azareth\Desktop\Microsoft Teams classic.lnk
2023-10-10 12:36 - 2023-10-10 13:58 - 001497536 _____ C:\Users\Azareth\Downloads\Osobni dotaznik NAKIT.pdf
2023-10-10 12:15 - 2023-10-10 12:15 - 009010962 _____ C:\Users\Azareth\Downloads\Predpisy NAKIT.zip
2023-10-06 14:53 - 2023-10-06 14:53 - 009841291 _____ C:\Users\Azareth\Downloads\Smlouva CAIS_A.pdf
2023-10-05 23:08 - 2023-10-05 23:08 - 000000000 ____D C:\Users\Azareth\AppData\Local\WinSparkle
2023-10-05 12:22 - 2023-10-05 12:22 - 000195320 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000014042641903.pdf
2023-10-05 12:22 - 2023-10-05 12:22 - 000195311 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013719355344.pdf
2023-10-05 12:22 - 2023-10-05 12:22 - 000194985 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013390863630.pdf
2023-10-05 11:32 - 2023-10-05 11:32 - 000497973 _____ C:\Users\Azareth\Downloads\Predpis_zaloh_1_1_2023 (2).pdf
2023-10-04 17:44 - 2023-10-04 17:44 - 000522792 _____ C:\Windows\Minidump\100423-12901-01.dmp
2023-10-02 14:14 - 2023-10-02 14:14 - 000211175 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013615339957.pdf
2023-10-02 14:14 - 2023-10-02 14:14 - 000211022 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013941301191.pdf
2023-10-02 14:14 - 2023-10-02 14:14 - 000000162 ____H C:\Users\Azareth\Downloads\~$5108000000002188222113_2000013615339957.pdf
2023-10-02 14:13 - 2023-10-02 14:13 - 000210973 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013298338381.pdf
2023-09-29 17:25 - 2023-10-15 21:38 - 000003416 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1201691987-3798675826-3542024472-1000
2023-09-29 17:25 - 2023-10-15 21:38 - 000003182 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1201691987-3798675826-3542024472-1000
2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 ____D C:\Users\Azareth\AppData\Local\OneDrive
2023-09-28 09:32 - 2023-09-28 09:32 - 000313240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2023-09-27 20:19 - 2023-09-27 20:19 - 000107770 _____ C:\Users\Azareth\Downloads\DevOps Engineer (5).pdf
2023-09-27 15:13 - 2023-09-27 15:13 - 000107770 _____ C:\Users\Azareth\Downloads\DevOps Engineer (4).pdf
2023-09-26 19:17 - 2023-09-26 19:17 - 036745567 _____ C:\Users\Azareth\Downloads\minikube-installer.exe
2023-09-26 19:17 - 2023-09-26 19:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kubernetes
2023-09-26 19:17 - 2023-09-26 19:17 - 000000000 ____D C:\Program Files\Kubernetes
2023-09-26 14:03 - 2023-09-26 14:03 - 000006260 _____ C:\Users\Azareth\Downloads\BBCPie 23 09 23 Melanie Marie Sauna Temptation XXX 480p MP4-XXX [XC].torrent
2023-09-23 19:53 - 2023-10-02 23:08 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Wireshark
2023-09-23 19:52 - 2023-10-15 21:38 - 000003100 _____ C:\Windows\system32\Tasks\npcapwatchdog
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Windows\SysWOW64\Npcap
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Windows\system32\Npcap
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Program Files\Npcap
2023-09-23 19:49 - 2023-09-23 19:49 - 000000000 ____D C:\Users\Azareth\Downloads\WiresharkPortable64
2023-09-23 19:47 - 2023-09-23 19:48 - 045811360 _____ (PortableApps.com) C:\Users\Azareth\Downloads\WiresharkPortable64_4.0.8.paf.exe
2023-09-23 19:39 - 2023-09-23 19:39 - 000568128 _____ C:\Windows\Minidump\092323-13384-01.dmp
2023-09-22 14:59 - 2023-09-22 14:59 - 000151405 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202305_8010808982.pdf
2023-09-22 14:59 - 2023-09-22 14:59 - 000151254 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202306_8010808982.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000195387 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013081263080.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000195327 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012762573297.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000151414 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202304_8010808982.pdf
2023-09-22 14:57 - 2023-09-22 14:57 - 000195178 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012422169327.pdf
2023-09-22 12:27 - 2023-09-22 12:27 - 000211158 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012990785061.pdf
2023-09-22 12:26 - 2023-09-22 12:26 - 000211226 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012636871118.pdf
2023-09-22 12:24 - 2023-09-22 12:25 - 000211262 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012333991923.pdf
2023-09-22 12:18 - 2023-09-22 12:19 - 000155471 _____ C:\Users\Azareth\Downloads\Vypis_z_uctu_0-2188222113_z_20230430.pdf
2023-09-21 13:16 - 2023-09-21 13:16 - 000451142 _____ C:\Users\Azareth\Downloads\Predpis_zaloh_1_1_2023 (1).pdf
2023-09-20 17:01 - 2023-09-20 17:01 - 000275025 _____ C:\Users\Azareth\Documents\IMG_20230920_0001.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-10-20 13:05 - 2020-04-27 15:33 - 000000000 ____D C:\Program Files (x86)\Google
2023-10-20 12:46 - 2020-09-23 12:22 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Microsoft\Teams
2023-10-20 11:36 - 2009-07-14 06:45 - 000024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2023-10-20 11:36 - 2009-07-14 06:45 - 000024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2023-10-20 11:33 - 2020-04-27 16:09 - 000668850 _____ C:\Windows\system32\perfh005.dat
2023-10-20 11:33 - 2020-04-27 16:09 - 000141464 _____ C:\Windows\system32\perfc005.dat
2023-10-20 11:33 - 2009-07-14 07:13 - 001583374 _____ C:\Windows\system32\PerfStringBackup.INI
2023-10-20 11:33 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2023-10-20 11:27 - 2023-09-02 10:45 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\uTorrent Web
2023-10-20 11:27 - 2023-06-30 13:11 - 000000000 ____D C:\Program Files (x86)\Steam
2023-10-20 11:27 - 2021-08-19 17:11 - 000000000 ____D C:\Users\Azareth\AppData\Local\BitTorrentHelper
2023-10-20 11:27 - 2020-04-28 17:53 - 000000000 ____D C:\Program Files\CCleaner
2023-10-20 11:27 - 2020-04-27 15:26 - 000356217 _____ C:\Windows\system32\fastboot.set
2023-10-20 11:26 - 2020-10-05 20:56 - 000000000 ___HD C:\ProgramData\ActiveSMART
2023-10-20 11:26 - 2020-04-27 21:13 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-10-20 11:26 - 2020-04-27 16:21 - 000000000 ____D C:\ProgramData\Avast Software
2023-10-20 11:26 - 2020-04-27 15:34 - 000000000 ____D C:\ProgramData\NVIDIA
2023-10-20 11:26 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-10-19 17:59 - 2021-05-23 11:45 - 000000000 ____D C:\Users\Azareth\AppData\Local\Avast Software
2023-10-19 17:40 - 2022-10-20 17:40 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-10-19 12:17 - 2022-11-02 13:36 - 000003360 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-10-19 12:17 - 2020-04-28 17:53 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-10-18 11:30 - 2020-11-14 19:57 - 000000400 __RSH C:\ProgramData\ntuser.pol
2023-10-17 19:59 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2023-10-17 13:37 - 2020-04-30 17:09 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-10-17 13:36 - 2022-10-31 14:49 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2023-10-15 21:38 - 2023-07-01 16:44 - 000003694 _____ C:\Windows\system32\Tasks\NVIDIA GeForceNow_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-10-15 21:38 - 2022-07-23 11:04 - 000003856 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt
2023-10-15 21:38 - 2021-08-19 17:06 - 000002816 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Azareth
2023-10-15 21:38 - 2021-06-20 20:41 - 000003540 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-10-15 21:38 - 2021-06-20 20:41 - 000003412 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-28 17:54 - 000003726 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2023-10-15 21:38 - 2020-04-28 17:53 - 000003438 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineUA
2023-10-15 21:38 - 2020-04-28 17:53 - 000003310 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-27 19:28 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-10-15 21:38 - 2020-04-27 19:28 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-27 16:21 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2023-10-14 09:08 - 2020-10-06 21:37 - 000000000 ____D C:\Program Files\Git
2023-10-14 09:08 - 2020-10-06 21:14 - 000000000 ____D C:\ProgramData\Git
2023-10-12 02:57 - 2020-04-30 08:00 - 000000000 ____D C:\Windows\system32\MRT
2023-10-12 02:52 - 2020-04-30 08:00 - 181553176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-10-10 13:53 - 2020-04-28 11:51 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Microsoft\Word
2023-10-09 18:06 - 2020-04-27 19:17 - 000000000 ____D C:\Users\Azareth\AppData\Local\CrashDumps
2023-10-05 22:22 - 2020-10-26 19:34 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Code
2023-10-04 17:44 - 2023-07-07 22:55 - 723126580 _____ C:\Windows\MEMORY.DMP
2023-10-04 17:44 - 2020-07-05 09:28 - 000000000 ____D C:\Windows\Minidump
2023-10-02 14:16 - 2020-05-07 08:28 - 000000000 ____D C:\ProgramData\CanonIJPLM
2023-09-29 17:25 - 2020-04-28 09:45 - 000002126 _____ C:\Users\Azareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2023-09-28 09:32 - 2020-10-15 19:48 - 000275168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000950696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000708048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000559696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000392984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000319560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000297992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000240176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000105248 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000096064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000080416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000039760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000031528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000003910 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-09-25 14:29 - 2023-08-03 13:38 - 000000905 _____ C:\Users\Public\Desktop\ChatGPT.lnk
2023-09-25 14:29 - 2023-08-03 13:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChatGPT
2023-09-25 14:29 - 2023-08-03 13:38 - 000000000 ____D C:\Program Files\ChatGPT
2023-09-22 15:01 - 2020-11-30 18:02 - 000000000 ____D C:\Users\Azareth\Desktop\Atyla
==================== Files in the root of some directories ========
2020-07-26 16:04 - 2020-07-26 18:45 - 000000128 _____ () C:\Users\Azareth\AppData\Roaming\winscp.rnd
2020-04-28 08:07 - 2020-04-28 08:07 - 000001500 _____ () C:\Users\Azareth\AppData\Local\PDLSetup.20200428.080709.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2023-10-20 00:00
==================== End of FRST.txt ========================
Ran by Azareth (administrator) on AZARETH-PC (LENOVO 20091) (20-10-2023 13:31:18)
Running from C:\Users\Azareth\Downloads\FRST64.exe
Loaded Profiles: Azareth
Platform: Microsoft Windows 7 Ultimate Service Pack 1 (X64) Language: Angličtina (Spojené státy) -> Čeština (Česká republika)
Default browser: IE
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe ->) (JetBrains s.r.o. -> ) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\lib\pty4j-native\win\x86-64\winpty-agent.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe ->) (JetBrains s.r.o. -> JetBrains s.r.o.) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\fsnotifier.exe
(C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\lib\pty4j-native\win\x86-64\winpty-agent.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
(C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe ->) (Rainberry Inc -> BitTorrent Inc.) C:\Users\Azareth\AppData\Roaming\uTorrent Web\helper\helper.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(explorer.exe ->) (DT Soft Ltd -> DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\68.0.2.0\crashpad_handler.exe <3>
(explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <46>
(explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe <7>
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (JetBrains s.r.o. -> JetBrains s.r.o.) C:\Program Files\JetBrains\IntelliJ IDEA Community Edition 2021.2.2\bin\idea64.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe
(explorer.exe ->) (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe
(explorer.exe ->) (Rainberry Inc -> BitTorrent Inc.) C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (LAVASOFT SOFTWARE CANADA INC -> ) C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Lenovo EE Boot Optimizer] => C:\Program Files (x86)\Lenovo\Boot Optimizer\PopWnd.exe [206176 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [9753024 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [5908928 2020-04-27] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [255896 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [646776 2020-03-12] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [270912 2015-06-17] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd -> DT Soft Ltd)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [42727840 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [49958368 2022-02-01] (Google LLC -> )
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91016568 2020-12-02] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Azareth\AppData\Local\Microsoft\Teams\Update.exe [2589872 2023-10-10] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe [8520168 2021-03-01] (LAVASOFT SOFTWARE CANADA INC -> Lavasoft) <==== ATTENTION
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4375912 2023-09-29] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\Run: [utweb] => C:\Users\Azareth\AppData\Roaming\uTorrent Web\utweb.exe [6418944 2023-08-06] (Rainberry Inc -> BitTorrent Inc.)
HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\...\MountPoints2: {1b68cac0-8921-11ea-98fb-806e6f6e6963} - F:\setupx64.bat
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe [50728728 2023-01-11] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2020-04-28] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\Canon MG3000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDG.DLL [30720 2016-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series: C:\Windows\system32\CNMLMDG.DLL [485376 2016-06-20] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG3000 series XPS: C:\Windows\system32\CNMXLMDG.DLL [487424 2016-05-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\109.0.19987.122\Installer\chrmstp.exe [2023-01-31] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-01-28] (Google LLC -> Google LLC)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [182784 2018-03-25] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [159704 2018-03-25] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {923317A8-2671-4B9A-8081-65CBC53C8EB4} - System32\Tasks\{53B35AF0-6B3A-4A0A-BBB3-97A8DE7CFD65} => C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe [33136 2010-09-02] (Compal Electronics, Inc. -> COMPAL)
Task: {3F64947B-0BFC-4249-8F30-4A4D2AE60BEF} - System32\Tasks\{90CD3027-AF77-49E0-9F3A-AD9891C3106C} => C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe [33136 2010-09-02] (Compal Electronics, Inc. -> COMPAL)
Task: {18987115-B4F6-4055-80CE-47DBFF185A32} - System32\Tasks\{C966908C-75CA-4106-92A2-F79AA11CA6A1} => C:\Windows\system32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)\Setup.exe" -d "C:\Drivers\Camera driver(Bison,Chicony,Suyin,Liteon)"
Task: {42CCA8EE-2276-4ADC-8291-ADCD1FD8A02B} - System32\Tasks\{DA1F993B-7319-461F-9278-B9D8AB7812A7} => C:\Windows\system32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Program Files\Microsoft Office\root\integration\OneDriveSetup.exe" -d F:\Office -c C:\Program Files\Microsoft Office\root\integration\OneDriveSetup.exe /silent /permachine /silent /childprocess /cusid:S-1-5-21-1201691987-3798675826-3542024472-1000
Task: {27E9919E-F8BB-41C1-9135-683FAE6AF2B0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {6649E94D-1A19-4322-9EAF-C72C6E83F7D9} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-08] (Adobe Inc. -> Adobe)
Task: {C4A2D2B9-1433-4075-A2A6-3A768876FD06} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
Task: {C91BEE1E-BC16-45F7-AC90-22A9E538785E} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5135256 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
Task: {5162A659-4F69-4AA1-8CAE-6BAD8CF61603} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-01] (Avast Software s.r.o. -> Avast Software)
Task: {BEDFC920-770E-437F-8F70-86088733828F} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2022-07-18] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
Task: {687E0CF6-F8FC-4078-A71F-F1C2F9569251} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3277472 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {2FDAEBD1-A20F-4E82-8071-6B36A9FBFAEB} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [3277472 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {AE0EEFD8-37C2-4324-A5D1-6B69707EBDC4} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {E0947491-92A9-43AD-A3D0-647EE26906B9} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "e12937ae-5955-4604-a50e-a3518a5b1f27" --version "6.17.10746" --silent
Task: {6A4A364E-2141-4984-9051-CD3DB89974B7} - System32\Tasks\CCleanerSkipUAC - Azareth => C:\Program Files\CCleaner\CCleaner.exe [35664800 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {5527D957-AE4A-43E8-A770-2CA166124586} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {B0D29E00-7FE3-45C3-A026-DC0DB6C9D3F1} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
Task: {14C505B1-1E44-44B6-8909-D19467D02217} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-27] (Google LLC -> Google LLC)
Task: {9E69560B-BA5E-4D82-B658-B0B8E8297143} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-27] (Google LLC -> Google LLC)
Task: {F0909D45-F39D-4EC9-8184-C4EF1B137CE3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {FC5E0655-A474-4152-8FB8-C6C1BF377C68} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {949170DE-A988-4FA5-8517-D093D1D4E715} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {4AB78676-5E61-45FE-8D86-A668242536B0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0F9C67D-BA7B-4137-AB30-AFA0F1A6B70B} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {6243AE14-B145-4E7A-96AA-B78E5E77D444} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2023-01-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {F03088C5-701F-4D4E-97B1-48A1FCC8F00D} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task (No File)
Task: {93548985-FF8C-4C36-A395-088E1B30D8BC} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-11-22] () [File not signed]
Task: {5D5501B6-99BD-46B6-9E9D-C9733642A16F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {E496C2CC-8100-438D-9FF4-305B94A79E58} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B6570DB5-E2BE-4C5E-AA47-A2FD4CF1F8B0} - System32\Tasks\NVIDIA GeForceNow_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Users\Azareth\AppData\Local\NVIDIA Corporation\GeForceNOW\CEF\GeForceNOW.exe [3848744 2023-06-19] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {34366116-F5B1-4C10-BD07-58ADB2E7ADEF} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2A174470-37C1-4EC3-915D-8E49BB9E88E8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {808F8A44-EC3C-4BD3-BC62-7546DC571CFF} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5CDE6BFF-F762-4AEE-B3A3-1925C8751B5A} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {041946D5-DA89-49A5-AD2F-EEF631429721} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {84A1BD23-864B-44DE-9E12-5D4DBEEA299A} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {80B9B50A-1D2B-44F2-9D05-C91080F59169} - System32\Tasks\SidebarExecute => C:\Program Files (x86)\Windows Sidebar\sidebar.exe [1174016 2010-11-20] (Microsoft Windows -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{7AC04196-1B18-439A-9168-5D688B3C4E15}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{7AC04196-1B18-439A-9168-5D688B3C4E15}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Edge:
=======
Edge Profile: C:\Users\Azareth\AppData\Local\Microsoft\Edge\User Data\Default [2023-07-07]
FireFox:
========
FF DefaultProfile: 9ckfsfhp.default
FF ProfilePath: C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\9ckfsfhp.default [2020-04-27]
FF ProfilePath: C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\gz5r0ri9.default-release [2023-10-20]
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Azareth\AppData\Roaming\Mozilla\Firefox\Profiles\gz5r0ri9.default-release\Extensions\sp@avast.com.xpi [2020-04-27]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\dtplugin\npDeployJava1.dll [2020-07-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.251.2 -> C:\Program Files\Java\jre1.8.0_251\bin\plugin2\npjp2.dll [2020-07-08] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-04-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-08] (Adobe Inc. -> )
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2019-07-02] (CANON INC.) [File not signed]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-04-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1583.3\npCCleanerBrowserUpdate3.dll [2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-10-09] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default [2023-10-20]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Dokumenty Google offline) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-30]
CHR Extension: (FormApps Extension) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2022-10-20]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-01-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Azareth\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-03]
CHR HKU\S-1-5-21-1201691987-3798675826-3542024472-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
Opera:
=======
OPR Profile: C:\Users\Azareth\AppData\Roaming\Opera Software\Opera Stable [2023-07-07]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 ActiveSMART Service; C:\Program Files (x86)\ActiveSMART 2.12.0\ASmartService.exe [2551544 2020-08-02] (Ariolic Software Ltd -> Ariolic Software, Ltd. (hxxp://www.ariolic.com))
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-08] (Adobe Inc. -> Adobe)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9090968 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [776088 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [796568 2023-09-28] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-05-20] (Avast Software s.r.o. -> AVAST Software)
S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\109.0.19987.122\elevation_service.exe [1802832 2023-01-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [208176 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11139576 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2020-08-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12835096 2021-01-28] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 WCAssistantService; C:\Program Files (x86)\Lavasoft\Web Companion\Application\Lavasoft.WCAssistant.WinService.exe [28136 2021-03-01] (LAVASOFT SOFTWARE CANADA INC -> ) <==== ATTENTION
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [31528 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [240176 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [392984 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297992 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [96064 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39760 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [275168 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [559696 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [23472 2023-04-11] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105248 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80416 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [950696 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [708048 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [213192 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319560 2023-09-28] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [321792 2022-07-18] (Bluestack Systems, Inc -> Bluestack System Inc.)
S3 cpuz157; C:\Windows\temp\cpuz157\cpuz157_x64.sys [43016 2023-09-23] (Microsoft Windows Hardware Compatibility Publisher -> CPUID)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [254528 2020-04-28] (DT Soft Ltd -> DT Soft Ltd)
R1 googledrivefs3758; C:\Windows\System32\DRIVERS\googledrivefs3758.sys [386632 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R1 npcap; C:\Windows\System32\DRIVERS\npcap.sys [67536 2023-07-19] (Insecure.Com LLC -> Insecure.Com LLC.)
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [513080 2020-04-28] () [File not signed] [File is in use]
S3 vpnva; C:\Windows\System32\DRIVERS\vpnva64-6.sys [74048 2020-08-04] (Cisco Systems, Inc. -> Cisco Systems, Inc.)
U3 al7xo9mw; C:\Windows\System32\Drivers\al7xo9mw.sys [0 0000-00-00] (Advanced Micro Devices) <==== ATTENTION [zero byte File/Folder]
U4 npcap_wifi; no ImagePath
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 xhunter1; \??\C:\Windows\xhunter1.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-10-20 13:31 - 2023-10-20 13:32 - 000032316 _____ C:\Users\Azareth\Downloads\FRST.txt
2023-10-17 14:47 - 2023-10-20 13:32 - 000000000 ____D C:\FRST
2023-10-17 14:47 - 2023-10-17 14:47 - 002383360 _____ (Farbar) C:\Users\Azareth\Downloads\FRST64.exe
2023-10-15 20:21 - 2023-10-15 20:30 - 3184589596 _____ C:\Users\Azareth\Downloads\Nepotvrzeno 19152.crdownload
2023-10-14 09:08 - 2023-10-14 09:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2023-10-14 09:05 - 2023-10-14 09:06 - 044112056 _____ (The Git Development Community ) C:\Users\Azareth\Downloads\Git-2.19.2-64-bit.exe
2023-10-12 16:17 - 2023-10-12 16:32 - 012187975 _____ C:\Users\Azareth\Downloads\aircrack-ng-1.7-win.zip
2023-10-12 12:40 - 2023-10-12 12:41 - 001498192 _____ C:\Users\Azareth\Downloads\Osobni dotaznik NAKIT (1).pdf
2023-10-10 12:46 - 2023-10-10 12:46 - 000002263 _____ C:\Users\Azareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams classic.lnk
2023-10-10 12:46 - 2023-10-10 12:46 - 000002255 _____ C:\Users\Azareth\Desktop\Microsoft Teams classic.lnk
2023-10-10 12:36 - 2023-10-10 13:58 - 001497536 _____ C:\Users\Azareth\Downloads\Osobni dotaznik NAKIT.pdf
2023-10-10 12:15 - 2023-10-10 12:15 - 009010962 _____ C:\Users\Azareth\Downloads\Predpisy NAKIT.zip
2023-10-06 14:53 - 2023-10-06 14:53 - 009841291 _____ C:\Users\Azareth\Downloads\Smlouva CAIS_A.pdf
2023-10-05 23:08 - 2023-10-05 23:08 - 000000000 ____D C:\Users\Azareth\AppData\Local\WinSparkle
2023-10-05 12:22 - 2023-10-05 12:22 - 000195320 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000014042641903.pdf
2023-10-05 12:22 - 2023-10-05 12:22 - 000195311 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013719355344.pdf
2023-10-05 12:22 - 2023-10-05 12:22 - 000194985 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013390863630.pdf
2023-10-05 11:32 - 2023-10-05 11:32 - 000497973 _____ C:\Users\Azareth\Downloads\Predpis_zaloh_1_1_2023 (2).pdf
2023-10-04 17:44 - 2023-10-04 17:44 - 000522792 _____ C:\Windows\Minidump\100423-12901-01.dmp
2023-10-02 14:14 - 2023-10-02 14:14 - 000211175 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013615339957.pdf
2023-10-02 14:14 - 2023-10-02 14:14 - 000211022 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013941301191.pdf
2023-10-02 14:14 - 2023-10-02 14:14 - 000000162 ____H C:\Users\Azareth\Downloads\~$5108000000002188222113_2000013615339957.pdf
2023-10-02 14:13 - 2023-10-02 14:13 - 000210973 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013298338381.pdf
2023-09-29 17:25 - 2023-10-15 21:38 - 000003416 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1201691987-3798675826-3542024472-1000
2023-09-29 17:25 - 2023-10-15 21:38 - 000003182 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1201691987-3798675826-3542024472-1000
2023-09-29 17:25 - 2023-09-29 17:25 - 000000000 ____D C:\Users\Azareth\AppData\Local\OneDrive
2023-09-28 09:32 - 2023-09-28 09:32 - 000313240 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2023-09-27 20:19 - 2023-09-27 20:19 - 000107770 _____ C:\Users\Azareth\Downloads\DevOps Engineer (5).pdf
2023-09-27 15:13 - 2023-09-27 15:13 - 000107770 _____ C:\Users\Azareth\Downloads\DevOps Engineer (4).pdf
2023-09-26 19:17 - 2023-09-26 19:17 - 036745567 _____ C:\Users\Azareth\Downloads\minikube-installer.exe
2023-09-26 19:17 - 2023-09-26 19:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kubernetes
2023-09-26 19:17 - 2023-09-26 19:17 - 000000000 ____D C:\Program Files\Kubernetes
2023-09-26 14:03 - 2023-09-26 14:03 - 000006260 _____ C:\Users\Azareth\Downloads\BBCPie 23 09 23 Melanie Marie Sauna Temptation XXX 480p MP4-XXX [XC].torrent
2023-09-23 19:53 - 2023-10-02 23:08 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Wireshark
2023-09-23 19:52 - 2023-10-15 21:38 - 000003100 _____ C:\Windows\system32\Tasks\npcapwatchdog
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Windows\SysWOW64\Npcap
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Windows\system32\Npcap
2023-09-23 19:52 - 2023-09-23 19:52 - 000000000 ____D C:\Program Files\Npcap
2023-09-23 19:49 - 2023-09-23 19:49 - 000000000 ____D C:\Users\Azareth\Downloads\WiresharkPortable64
2023-09-23 19:47 - 2023-09-23 19:48 - 045811360 _____ (PortableApps.com) C:\Users\Azareth\Downloads\WiresharkPortable64_4.0.8.paf.exe
2023-09-23 19:39 - 2023-09-23 19:39 - 000568128 _____ C:\Windows\Minidump\092323-13384-01.dmp
2023-09-22 14:59 - 2023-09-22 14:59 - 000151405 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202305_8010808982.pdf
2023-09-22 14:59 - 2023-09-22 14:59 - 000151254 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202306_8010808982.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000195387 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000013081263080.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000195327 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012762573297.pdf
2023-09-22 14:58 - 2023-09-22 14:58 - 000151414 _____ C:\Users\Azareth\Downloads\Doklad SIPO_202304_8010808982.pdf
2023-09-22 14:57 - 2023-09-22 14:57 - 000195178 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012422169327.pdf
2023-09-22 12:27 - 2023-09-22 12:27 - 000211158 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012990785061.pdf
2023-09-22 12:26 - 2023-09-22 12:26 - 000211226 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012636871118.pdf
2023-09-22 12:24 - 2023-09-22 12:25 - 000211262 _____ C:\Users\Azareth\Downloads\CZ5108000000002188222113_2000012333991923.pdf
2023-09-22 12:18 - 2023-09-22 12:19 - 000155471 _____ C:\Users\Azareth\Downloads\Vypis_z_uctu_0-2188222113_z_20230430.pdf
2023-09-21 13:16 - 2023-09-21 13:16 - 000451142 _____ C:\Users\Azareth\Downloads\Predpis_zaloh_1_1_2023 (1).pdf
2023-09-20 17:01 - 2023-09-20 17:01 - 000275025 _____ C:\Users\Azareth\Documents\IMG_20230920_0001.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2023-10-20 13:05 - 2020-04-27 15:33 - 000000000 ____D C:\Program Files (x86)\Google
2023-10-20 12:46 - 2020-09-23 12:22 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Microsoft\Teams
2023-10-20 11:36 - 2009-07-14 06:45 - 000024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2023-10-20 11:36 - 2009-07-14 06:45 - 000024416 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2023-10-20 11:33 - 2020-04-27 16:09 - 000668850 _____ C:\Windows\system32\perfh005.dat
2023-10-20 11:33 - 2020-04-27 16:09 - 000141464 _____ C:\Windows\system32\perfc005.dat
2023-10-20 11:33 - 2009-07-14 07:13 - 001583374 _____ C:\Windows\system32\PerfStringBackup.INI
2023-10-20 11:33 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
2023-10-20 11:27 - 2023-09-02 10:45 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\uTorrent Web
2023-10-20 11:27 - 2023-06-30 13:11 - 000000000 ____D C:\Program Files (x86)\Steam
2023-10-20 11:27 - 2021-08-19 17:11 - 000000000 ____D C:\Users\Azareth\AppData\Local\BitTorrentHelper
2023-10-20 11:27 - 2020-04-28 17:53 - 000000000 ____D C:\Program Files\CCleaner
2023-10-20 11:27 - 2020-04-27 15:26 - 000356217 _____ C:\Windows\system32\fastboot.set
2023-10-20 11:26 - 2020-10-05 20:56 - 000000000 ___HD C:\ProgramData\ActiveSMART
2023-10-20 11:26 - 2020-04-27 21:13 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-10-20 11:26 - 2020-04-27 16:21 - 000000000 ____D C:\ProgramData\Avast Software
2023-10-20 11:26 - 2020-04-27 15:34 - 000000000 ____D C:\ProgramData\NVIDIA
2023-10-20 11:26 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-10-19 17:59 - 2021-05-23 11:45 - 000000000 ____D C:\Users\Azareth\AppData\Local\Avast Software
2023-10-19 17:40 - 2022-10-20 17:40 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2023-10-19 12:17 - 2022-11-02 13:36 - 000003360 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2023-10-19 12:17 - 2020-04-28 17:53 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2023-10-18 11:30 - 2020-11-14 19:57 - 000000400 __RSH C:\ProgramData\ntuser.pol
2023-10-17 19:59 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
2023-10-17 13:37 - 2020-04-30 17:09 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2023-10-17 13:36 - 2022-10-31 14:49 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2023-10-15 21:38 - 2023-07-01 16:44 - 000003694 _____ C:\Windows\system32\Tasks\NVIDIA GeForceNow_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2023-10-15 21:38 - 2022-07-23 11:04 - 000003856 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt
2023-10-15 21:38 - 2021-08-19 17:06 - 000002816 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Azareth
2023-10-15 21:38 - 2021-06-20 20:41 - 000003540 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-10-15 21:38 - 2021-06-20 20:41 - 000003412 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-28 17:54 - 000003726 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly)
2023-10-15 21:38 - 2020-04-28 17:53 - 000003438 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineUA
2023-10-15 21:38 - 2020-04-28 17:53 - 000003310 _____ C:\Windows\system32\Tasks\CCleanerUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-27 19:28 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2023-10-15 21:38 - 2020-04-27 19:28 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2023-10-15 21:38 - 2020-04-27 16:21 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2023-10-14 09:08 - 2020-10-06 21:37 - 000000000 ____D C:\Program Files\Git
2023-10-14 09:08 - 2020-10-06 21:14 - 000000000 ____D C:\ProgramData\Git
2023-10-12 02:57 - 2020-04-30 08:00 - 000000000 ____D C:\Windows\system32\MRT
2023-10-12 02:52 - 2020-04-30 08:00 - 181553176 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2023-10-10 13:53 - 2020-04-28 11:51 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Microsoft\Word
2023-10-09 18:06 - 2020-04-27 19:17 - 000000000 ____D C:\Users\Azareth\AppData\Local\CrashDumps
2023-10-05 22:22 - 2020-10-26 19:34 - 000000000 ____D C:\Users\Azareth\AppData\Roaming\Code
2023-10-04 17:44 - 2023-07-07 22:55 - 723126580 _____ C:\Windows\MEMORY.DMP
2023-10-04 17:44 - 2020-07-05 09:28 - 000000000 ____D C:\Windows\Minidump
2023-10-02 14:16 - 2020-05-07 08:28 - 000000000 ____D C:\ProgramData\CanonIJPLM
2023-09-29 17:25 - 2020-04-28 09:45 - 000002126 _____ C:\Users\Azareth\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2023-09-28 09:32 - 2020-10-15 19:48 - 000275168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000950696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000708048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000559696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000392984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000319560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000297992 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000240176 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000105248 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000096064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000080416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000039760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000031528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys
2023-09-28 09:32 - 2020-04-27 16:21 - 000003910 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2023-09-25 14:29 - 2023-08-03 13:38 - 000000905 _____ C:\Users\Public\Desktop\ChatGPT.lnk
2023-09-25 14:29 - 2023-08-03 13:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChatGPT
2023-09-25 14:29 - 2023-08-03 13:38 - 000000000 ____D C:\Program Files\ChatGPT
2023-09-22 15:01 - 2020-11-30 18:02 - 000000000 ____D C:\Users\Azareth\Desktop\Atyla
==================== Files in the root of some directories ========
2020-07-26 16:04 - 2020-07-26 18:45 - 000000128 _____ () C:\Users\Azareth\AppData\Roaming\winscp.rnd
2020-04-28 08:07 - 2020-04-28 08:07 - 000001500 _____ () C:\Users\Azareth\AppData\Local\PDLSetup.20200428.080709.txt
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2023-10-20 00:00
==================== End of FRST.txt ========================