Zasekávajíci PC pomalé, disk 100%
Napsal: 12 led 2024 15:59
Dobrý den
prosím o kontrolu, PC je kolikrát hodně pomale , zamrzne nic nejde a pak se objeví hláška že je něco špatně a pak se objeví černa obrazovka, protože po restartu nenaběhne. dokonce mi to psalo error no boot a něco s diskem. při scanování FRST se to na chvíli zastavilo asi 2 minuty.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11.01.2024
Ran by Radovan Noga (administrator) on RADOVAN (Hewlett-Packard HP Pro 3400 Series MT) (12-01-2024 15:28:40)
Running from C:\Users\Radovan Noga\Desktop\FRST64.exe
Loaded Profiles: Radovan Noga & UpdatusUser
Platform: Microsoft Windows 8 (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(explorer.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <10>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Piriform Ltd -> Piriform Ltd) C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (StarWind Software) [File not signed] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572536 2022-08-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [417176 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4478360 2023-11-21] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\Run: [CCleaner Smart Cleaning] => C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe [13797712 2019-08-12] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d344-07f1-11ec-be70-d0374560496c} - "G:\autorun.exe"
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d348-07f1-11ec-be70-d0374560496c} - "H:\autorun.exe"
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d349-07f1-11ec-be70-d0374560496c} - "I:\autorun.exe"
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\Windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.168\Installer\chrmstp.exe [2023-10-05] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.79\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D9C4E55E-9BED-4F7F-916A-3C42D809F3D8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {F97333FA-8351-47E0-8C26-138FB6826D26} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [5046784 2021-08-27] () [File not signed]
Task: {D709DBCB-D0B3-423F-B0E7-DAF9F85EFE32} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5094808 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {8135E99E-3E2B-40F4-A051-D8CAB019908E} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4845464 2023-11-21] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\A (the data entry has 70 more characters).
Task: {83D046BC-52A6-4451-97AE-27C47CC209B6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [7319448 2023-11-20] (Avast Software s.r.o. -> Avast Software)
Task: {F34935C1-795C-4BD3-8862-32DA4351D8FF} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software)
Task: {E1F51BE0-67F7-4FF1-9714-667532BCC17E} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2021-12-22] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
Task: {089B48D5-4AFF-4CD1-880F-5A98211A1E5D} - System32\Tasks\CCleanerSkipUAC => C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe [13797712 2019-08-12] (Piriform Ltd -> Piriform Ltd)
Task: {2453E23C-A4F8-4BB9-95E6-1A668466EB83} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-08-19] (Google LLC -> Google LLC)
Task: {F80483C4-C0A1-4753-847C-8D992C994403} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-08-19] (Google LLC -> Google LLC)
Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask => {0AC1DBCA-7F9F-47FC-A090-34E5FEB291E8} C:\Windows\system32\wlroamextension.dll [543232 2013-02-02] (Microsoft Windows -> Microsoft Corporation)
Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage => {5F074BDF-4BA3-4E68-AE86-2A6B0B5963B0} C:\Windows\system32\wlroamextension.dll [543232 2013-02-02] (Microsoft Windows -> Microsoft Corporation)
Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask => {59B9640B-3F70-4D1C-B159-F26EEB8A4C87} C:\Windows\system32\SettingSyncInfo.dll [128512 2015-08-04] (Microsoft Windows -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{151DA0B1-1517-4659-BD66-44F578B730E0}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2024-01-02] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default [2024-01-12]
CHR Notifications: Default -> hxxps://www.autoscout24.cz; hxxps://www.erotickykontakt.cz; hxxps://www.facebook.com; hxxps://www.gametwist.com; hxxps://www.penize.cz; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com","hxxps://www.seznam.cz/?clid=22668"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210CZ91105G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Extension: (Seznam Doplněk – Email) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2023-10-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-25]
CHR Extension: (Netpanel) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2024-01-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-19]
CHR Extension: (Seznam.cz) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2023-08-07]
CHR Extension: (Eiffel Tower) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppbaibkigenhdcommebegmmmpoolmpip [2023-04-26]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9065880 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [753048 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2335128 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1157528 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-08-19] (Avast Software s.r.o. -> AVAST Software)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [18267032 2023-11-21] (Avast Software s.r.o. -> AVAST Software)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2017072 2021-12-01] (Rockstar Games, Inc. -> Rockstar Games) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\system32\drivers\AmUStor.SYS [117728 2021-12-27] (Alcor Micro, Corp. -> )
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [243136 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [394008 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297984 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [96064 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39752 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276848 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [561888 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105352 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80528 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [952856 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [711664 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [213296 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319672 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [320728 2021-12-22] (Bluestack Systems, Inc -> Bluestack System Inc.)
R3 NVHDA; C:\Windows\system32\drivers\nvhda64v.sys [129960 2022-12-04] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [7947096 2019-05-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2021-08-28] (Disc Soft Ltd -> Duplex Secure Ltd.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation -> Microsoft Corporation)
U3 a63ksxow; C:\Windows\System32\Drivers\a63ksxow.sys [0 0000-00-00] (Microsoft Corporation) <==== ATTENTION [zero byte File/Folder]
S3 netr28ux; \SystemRoot\system32\DRIVERS\netr28ux.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-01-12 15:23 - 2024-01-12 15:28 - 000031876 _____ C:\Users\Radovan Noga\Desktop\Addition.txt
2024-01-12 15:21 - 2024-01-12 15:28 - 000017717 _____ C:\Users\Radovan Noga\Desktop\FRST.txt
2024-01-12 15:20 - 2024-01-12 15:28 - 000000000 ____D C:\FRST
2024-01-12 15:19 - 2024-01-12 15:19 - 002389504 _____ (Farbar) C:\Users\Radovan Noga\Desktop\FRST64.exe
2024-01-12 14:59 - 2024-01-12 15:00 - 000411600 _____ C:\Windows\Minidump\011224-44203-01.dmp
2024-01-11 19:05 - 2024-01-12 14:59 - 573576934 _____ C:\Windows\MEMORY.DMP
2024-01-11 19:05 - 2024-01-11 19:06 - 000410032 _____ C:\Windows\Minidump\011124-30031-01.dmp
2024-01-10 15:26 - 2024-01-10 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2024-01-10 15:26 - 2024-01-10 15:26 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2024-01-10 15:26 - 2018-03-24 00:05 - 000138120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2024-01-10 15:26 - 2017-12-08 23:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll
2024-01-10 15:26 - 2017-12-08 23:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2024-01-10 15:26 - 2017-12-08 23:24 - 000928568 _____ C:\Windows\system32\vulkan-1.dll
2024-01-10 15:26 - 2017-12-08 23:24 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe
2024-01-10 15:23 - 2024-01-10 15:26 - 000000000 ____D C:\Windows\LastGood
2024-01-10 07:52 - 2024-01-10 07:52 - 000000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Šablony
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Soubory cookie
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Poslední
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní tiskárny
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní síť
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Nabídka Start
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Dokumenty
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Obrázky
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Hudba
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Filmy
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Data aplikací
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Data aplikací
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 ___SD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Protect
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 ____D C:\Users\UpdatusUser
2024-01-10 07:52 - 2012-07-26 09:12 - 000000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows
2024-01-10 00:40 - 2024-01-10 07:49 - 000000000 ____D C:\Windows\LastGood.Tmp
2024-01-03 00:45 - 2024-01-03 00:45 - 000035909 _____ C:\Users\Radovan Noga\Downloads\Jaroslav-Noga-1247866-Zivotopisy.cz.pdf
2024-01-03 00:19 - 2024-01-03 00:19 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\QuickStyles
2024-01-03 00:08 - 2024-01-11 19:34 - 000003584 ___SH C:\Users\Radovan Noga\Desktop\Thumbs.db
2024-01-03 00:08 - 2024-01-03 00:08 - 000029362 _____ C:\Users\Radovan Noga\Desktop\Nový Prezentace aplikace Microsoft Office PowerPoint.pptx
2023-12-21 16:06 - 2023-12-21 16:06 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000000000 ____D C:\Program Files (x86)\OpenAL
2023-12-21 16:05 - 2023-12-21 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2023-12-21 16:05 - 2023-12-21 16:05 - 000000000 ____D C:\Program Files (x86)\Microsoft XNA
2023-12-21 16:04 - 2023-12-21 16:04 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2023-12-21 16:04 - 2023-12-21 16:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2023-12-21 08:22 - 2023-12-21 08:21 - 000314264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-01-12 15:14 - 2021-08-19 02:41 - 000000000 ____D C:\Program Files (x86)\Google
2024-01-12 15:07 - 2021-08-27 22:11 - 000003756 _____ C:\Windows\system32\Tasks\AutoKMS
2024-01-12 15:00 - 2021-08-19 02:31 - 000000000 ____D C:\Users\Radovan Noga
2024-01-12 15:00 - 2012-07-26 08:22 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-01-12 14:59 - 2021-12-17 00:50 - 000000000 ____D C:\Windows\Minidump
2024-01-12 14:59 - 2021-08-19 09:51 - 000000000 ____D C:\ProgramData\NVIDIA
2024-01-12 08:53 - 2022-02-04 23:40 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-01-12 08:53 - 2021-12-24 01:25 - 000003860 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt
2024-01-12 08:53 - 2021-08-28 12:27 - 000002832 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2024-01-12 08:53 - 2021-08-19 02:41 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2024-01-12 08:53 - 2021-08-19 02:41 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2024-01-12 08:52 - 2021-08-19 21:58 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2024-01-12 07:58 - 2021-08-19 21:57 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2024-01-11 19:03 - 2021-08-19 22:32 - 000000000 ____D C:\Users\Radovan Noga\AppData\Local\CrashDumps
2024-01-11 18:59 - 2021-08-28 12:27 - 000000000 ____D C:\Users\Radovan Noga\Documents\CCleaner
2024-01-11 18:57 - 2012-07-26 06:37 - 000000000 ____D C:\Windows\Inf
2024-01-11 18:38 - 2021-08-19 21:46 - 000000000 ____D C:\ProgramData\Avast Software
2024-01-11 10:45 - 2021-12-24 01:24 - 000000000 ____D C:\ProgramData\BlueStacks_nxt
2024-01-10 15:39 - 2021-08-19 02:38 - 000003600 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2281608426-3442553567-4178391062-1001
2024-01-10 15:24 - 2021-12-27 00:07 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2024-01-10 15:24 - 2021-08-19 09:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2024-01-10 07:51 - 2021-08-19 09:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-01-06 23:43 - 2022-12-04 22:16 - 000002094 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2024-01-05 10:46 - 2012-07-26 11:01 - 000726246 _____ C:\Windows\system32\perfh005.dat
2024-01-05 10:46 - 2012-07-26 11:01 - 000147800 _____ C:\Windows\system32\perfc005.dat
2024-01-05 10:46 - 2012-07-26 08:28 - 001714430 _____ C:\Windows\system32\PerfStringBackup.INI
2024-01-03 00:21 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Word
2024-01-03 00:21 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Šablony
2024-01-03 00:14 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\UProof
2024-01-03 00:10 - 2021-09-09 19:19 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Office
2024-01-02 23:58 - 2021-09-09 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2023-12-27 12:55 - 2021-08-19 02:35 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-12-23 11:50 - 2021-08-24 18:01 - 000000906 _____ C:\Users\Public\Desktop\VLC media player.lnk
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\Program Files\WinRAR
2023-12-22 11:32 - 2021-08-27 09:30 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\HTML Help
2023-12-21 21:45 - 2021-08-19 09:31 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\IObit
2023-12-21 16:06 - 2012-07-26 09:12 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-12-21 16:03 - 2021-08-19 22:49 - 000000000 ____D C:\ProgramData\Package Cache
2023-12-21 08:22 - 2021-08-19 21:57 - 000243136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000952856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000711664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000561888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000394008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000319672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000297984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000276848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000105352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000096064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000080528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000039752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
==================== Files in the root of some directories ========
2022-12-04 21:23 - 2022-12-04 21:23 - 000000261 _____ () C:\ProgramData\temp_Delete.bat
2022-12-04 21:23 - 2022-12-04 21:23 - 000000096 _____ () C:\ProgramData\temp_runbat.vbs
2021-08-20 22:07 - 2022-04-08 06:34 - 000007603 _____ () C:\Users\Radovan Noga\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2024-01-11 03:02
==================== End of FRST.txt ========================
prosím o kontrolu, PC je kolikrát hodně pomale , zamrzne nic nejde a pak se objeví hláška že je něco špatně a pak se objeví černa obrazovka, protože po restartu nenaběhne. dokonce mi to psalo error no boot a něco s diskem. při scanování FRST se to na chvíli zastavilo asi 2 minuty.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11.01.2024
Ran by Radovan Noga (administrator) on RADOVAN (Hewlett-Packard HP Pro 3400 Series MT) (12-01-2024 15:28:40)
Running from C:\Users\Radovan Noga\Desktop\FRST64.exe
Loaded Profiles: Radovan Noga & UpdatusUser
Platform: Microsoft Windows 8 (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(explorer.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <10>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Piriform Ltd -> Piriform Ltd) C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (StarWind Software) [File not signed] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572536 2022-08-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [417176 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [TuneupUI.exe] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [4478360 2023-11-21] (Avast Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\Run: [CCleaner Smart Cleaning] => C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe [13797712 2019-08-12] (Piriform Ltd -> Piriform Ltd)
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d344-07f1-11ec-be70-d0374560496c} - "G:\autorun.exe"
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d348-07f1-11ec-be70-d0374560496c} - "H:\autorun.exe"
HKU\S-1-5-21-2281608426-3442553567-4178391062-1001\...\MountPoints2: {51f0d349-07f1-11ec-be70-d0374560496c} - "I:\autorun.exe"
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\Windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\109.0.5414.168\Installer\chrmstp.exe [2023-10-05] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\104.0.5112.79\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --channel=stable
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D9C4E55E-9BED-4F7F-916A-3C42D809F3D8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.)
Task: {F97333FA-8351-47E0-8C26-138FB6826D26} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [5046784 2021-08-27] () [File not signed]
Task: {D709DBCB-D0B3-423F-B0E7-DAF9F85EFE32} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5094808 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
Task: {8135E99E-3E2B-40F4-A051-D8CAB019908E} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [4845464 2023-11-21] (Avast Software s.r.o. -> AVAST Software) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup\Setup\.." --configpath "C:\Program Files\Avast Software\Cleanup\Setup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\A (the data entry has 70 more characters).
Task: {83D046BC-52A6-4451-97AE-27C47CC209B6} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [7319448 2023-11-20] (Avast Software s.r.o. -> Avast Software)
Task: {F34935C1-795C-4BD3-8862-32DA4351D8FF} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2144664 2023-08-02] (Avast Software s.r.o. -> Avast Software)
Task: {E1F51BE0-67F7-4FF1-9714-667532BCC17E} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2021-12-22] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
Task: {089B48D5-4AFF-4CD1-880F-5A98211A1E5D} - System32\Tasks\CCleanerSkipUAC => C:\Users\Radovan Noga\Documents\CCleaner\CCleaner.exe [13797712 2019-08-12] (Piriform Ltd -> Piriform Ltd)
Task: {2453E23C-A4F8-4BB9-95E6-1A668466EB83} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-08-19] (Google LLC -> Google LLC)
Task: {F80483C4-C0A1-4753-847C-8D992C994403} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-08-19] (Google LLC -> Google LLC)
Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask => {0AC1DBCA-7F9F-47FC-A090-34E5FEB291E8} C:\Windows\system32\wlroamextension.dll [543232 2013-02-02] (Microsoft Windows -> Microsoft Corporation)
Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage => {5F074BDF-4BA3-4E68-AE86-2A6B0B5963B0} C:\Windows\system32\wlroamextension.dll [543232 2013-02-02] (Microsoft Windows -> Microsoft Corporation)
Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask => {59B9640B-3F70-4D1C-B159-F26EEB8A4C87} C:\Windows\system32\SettingSyncInfo.dll [128512 2015-08-04] (Microsoft Windows -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{151DA0B1-1517-4659-BD66-44F578B730E0}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2024-01-02] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default [2024-01-12]
CHR Notifications: Default -> hxxps://www.autoscout24.cz; hxxps://www.erotickykontakt.cz; hxxps://www.facebook.com; hxxps://www.gametwist.com; hxxps://www.penize.cz; hxxps://www.youtube.com
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com","hxxps://www.seznam.cz/?clid=22668"
CHR DefaultSearchURL: Default -> hxxps://search.yahoo.com/search?fr=mcafee_uninternational&type=E210CZ91105G0&p={searchTerms}
CHR DefaultSearchKeyword: Default -> mcafee
CHR Extension: (Seznam Doplněk – Email) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2023-10-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-25]
CHR Extension: (Netpanel) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2024-01-10]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-19]
CHR Extension: (Seznam.cz) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2023-08-07]
CHR Extension: (Eiffel Tower) - C:\Users\Radovan Noga\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppbaibkigenhdcommebegmmmpoolmpip [2023-04-26]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [9065880 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [753048 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2335128 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1157528 2023-12-21] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-08-19] (Avast Software s.r.o. -> AVAST Software)
S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team)
R2 CleanupPSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [18267032 2023-11-21] (Avast Software s.r.o. -> AVAST Software)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2017072 2021-12-01] (Rockstar Games, Inc. -> Rockstar Games) [File not signed]
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2015-07-06] (Microsoft Windows -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmUStor; C:\Windows\system32\drivers\AmUStor.SYS [117728 2021-12-27] (Alcor Micro, Corp. -> )
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [243136 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [394008 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [297984 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [96064 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [39752 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276848 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [561888 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [105352 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [80528 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [952856 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [711664 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [213296 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [319672 2023-12-21] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software)
R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [320728 2021-12-22] (Bluestack Systems, Inc -> Bluestack System Inc.)
R3 NVHDA; C:\Windows\system32\drivers\nvhda64v.sys [129960 2022-12-04] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [7947096 2019-05-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2021-08-28] (Disc Soft Ltd -> Duplex Secure Ltd.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [281944 2015-07-06] (Microsoft Corporation -> Microsoft Corporation)
U3 a63ksxow; C:\Windows\System32\Drivers\a63ksxow.sys [0 0000-00-00] (Microsoft Corporation) <==== ATTENTION [zero byte File/Folder]
S3 netr28ux; \SystemRoot\system32\DRIVERS\netr28ux.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-01-12 15:23 - 2024-01-12 15:28 - 000031876 _____ C:\Users\Radovan Noga\Desktop\Addition.txt
2024-01-12 15:21 - 2024-01-12 15:28 - 000017717 _____ C:\Users\Radovan Noga\Desktop\FRST.txt
2024-01-12 15:20 - 2024-01-12 15:28 - 000000000 ____D C:\FRST
2024-01-12 15:19 - 2024-01-12 15:19 - 002389504 _____ (Farbar) C:\Users\Radovan Noga\Desktop\FRST64.exe
2024-01-12 14:59 - 2024-01-12 15:00 - 000411600 _____ C:\Windows\Minidump\011224-44203-01.dmp
2024-01-11 19:05 - 2024-01-12 14:59 - 573576934 _____ C:\Windows\MEMORY.DMP
2024-01-11 19:05 - 2024-01-11 19:06 - 000410032 _____ C:\Windows\Minidump\011124-30031-01.dmp
2024-01-10 15:26 - 2024-01-10 15:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2024-01-10 15:26 - 2024-01-10 15:26 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2024-01-10 15:26 - 2018-03-24 00:05 - 000138120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2024-01-10 15:26 - 2017-12-08 23:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll
2024-01-10 15:26 - 2017-12-08 23:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2024-01-10 15:26 - 2017-12-08 23:24 - 000928568 _____ C:\Windows\system32\vulkan-1.dll
2024-01-10 15:26 - 2017-12-08 23:24 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe
2024-01-10 15:23 - 2024-01-10 15:26 - 000000000 ____D C:\Windows\LastGood
2024-01-10 07:52 - 2024-01-10 07:52 - 000000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Šablony
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Soubory cookie
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Poslední
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní tiskárny
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Okolní síť
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Nabídka Start
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Dokumenty
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Obrázky
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Hudba
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Filmy
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\Data aplikací
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Data aplikací
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 ___SD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Protect
2024-01-10 07:52 - 2024-01-10 07:52 - 000000000 ____D C:\Users\UpdatusUser
2024-01-10 07:52 - 2012-07-26 09:12 - 000000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows
2024-01-10 00:40 - 2024-01-10 07:49 - 000000000 ____D C:\Windows\LastGood.Tmp
2024-01-03 00:45 - 2024-01-03 00:45 - 000035909 _____ C:\Users\Radovan Noga\Downloads\Jaroslav-Noga-1247866-Zivotopisy.cz.pdf
2024-01-03 00:19 - 2024-01-03 00:19 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\QuickStyles
2024-01-03 00:08 - 2024-01-11 19:34 - 000003584 ___SH C:\Users\Radovan Noga\Desktop\Thumbs.db
2024-01-03 00:08 - 2024-01-03 00:08 - 000029362 _____ C:\Users\Radovan Noga\Desktop\Nový Prezentace aplikace Microsoft Office PowerPoint.pptx
2023-12-21 16:06 - 2023-12-21 16:06 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2023-12-21 16:06 - 2023-12-21 16:06 - 000000000 ____D C:\Program Files (x86)\OpenAL
2023-12-21 16:05 - 2023-12-21 16:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2023-12-21 16:05 - 2023-12-21 16:05 - 000000000 ____D C:\Program Files (x86)\Microsoft XNA
2023-12-21 16:04 - 2023-12-21 16:04 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2023-12-21 16:04 - 2023-12-21 16:04 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2023-12-21 08:22 - 2023-12-21 08:21 - 000314264 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-01-12 15:14 - 2021-08-19 02:41 - 000000000 ____D C:\Program Files (x86)\Google
2024-01-12 15:07 - 2021-08-27 22:11 - 000003756 _____ C:\Windows\system32\Tasks\AutoKMS
2024-01-12 15:00 - 2021-08-19 02:31 - 000000000 ____D C:\Users\Radovan Noga
2024-01-12 15:00 - 2012-07-26 08:22 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-01-12 14:59 - 2021-12-17 00:50 - 000000000 ____D C:\Windows\Minidump
2024-01-12 14:59 - 2021-08-19 09:51 - 000000000 ____D C:\ProgramData\NVIDIA
2024-01-12 08:53 - 2022-02-04 23:40 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-01-12 08:53 - 2021-12-24 01:25 - 000003860 _____ C:\Windows\system32\Tasks\BlueStacksHelper_nxt
2024-01-12 08:53 - 2021-08-28 12:27 - 000002832 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2024-01-12 08:53 - 2021-08-19 02:41 - 000003682 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2024-01-12 08:53 - 2021-08-19 02:41 - 000003554 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2024-01-12 08:52 - 2021-08-19 21:58 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2024-01-12 07:58 - 2021-08-19 21:57 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2024-01-11 19:03 - 2021-08-19 22:32 - 000000000 ____D C:\Users\Radovan Noga\AppData\Local\CrashDumps
2024-01-11 18:59 - 2021-08-28 12:27 - 000000000 ____D C:\Users\Radovan Noga\Documents\CCleaner
2024-01-11 18:57 - 2012-07-26 06:37 - 000000000 ____D C:\Windows\Inf
2024-01-11 18:38 - 2021-08-19 21:46 - 000000000 ____D C:\ProgramData\Avast Software
2024-01-11 10:45 - 2021-12-24 01:24 - 000000000 ____D C:\ProgramData\BlueStacks_nxt
2024-01-10 15:39 - 2021-08-19 02:38 - 000003600 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2281608426-3442553567-4178391062-1001
2024-01-10 15:24 - 2021-12-27 00:07 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2024-01-10 15:24 - 2021-08-19 09:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2024-01-10 07:51 - 2021-08-19 09:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-01-06 23:43 - 2022-12-04 22:16 - 000002094 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2024-01-05 10:46 - 2012-07-26 11:01 - 000726246 _____ C:\Windows\system32\perfh005.dat
2024-01-05 10:46 - 2012-07-26 11:01 - 000147800 _____ C:\Windows\system32\perfc005.dat
2024-01-05 10:46 - 2012-07-26 08:28 - 001714430 _____ C:\Windows\system32\PerfStringBackup.INI
2024-01-03 00:21 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Word
2024-01-03 00:21 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Šablony
2024-01-03 00:14 - 2021-09-09 19:22 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\UProof
2024-01-03 00:10 - 2021-09-09 19:19 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Office
2024-01-02 23:58 - 2021-09-09 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2023-12-27 12:55 - 2021-08-19 02:35 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2023-12-23 11:50 - 2021-08-24 18:01 - 000000906 _____ C:\Users\Public\Desktop\VLC media player.lnk
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2023-12-23 11:49 - 2021-08-19 09:39 - 000000000 ____D C:\Program Files\WinRAR
2023-12-22 11:32 - 2021-08-27 09:30 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\Microsoft\HTML Help
2023-12-21 21:45 - 2021-08-19 09:31 - 000000000 ____D C:\Users\Radovan Noga\AppData\Roaming\IObit
2023-12-21 16:06 - 2012-07-26 09:12 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2023-12-21 16:03 - 2021-08-19 22:49 - 000000000 ____D C:\ProgramData\Package Cache
2023-12-21 08:22 - 2021-08-19 21:57 - 000243136 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000952856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000711664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000561888 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000394008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000319672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000297984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000276848 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000105352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000096064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000080528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2023-12-21 08:21 - 2021-08-19 21:57 - 000039752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
==================== Files in the root of some directories ========
2022-12-04 21:23 - 2022-12-04 21:23 - 000000261 _____ () C:\ProgramData\temp_Delete.bat
2022-12-04 21:23 - 2022-12-04 21:23 - 000000096 _____ () C:\ProgramData\temp_runbat.vbs
2021-08-20 22:07 - 2022-04-08 06:34 - 000007603 _____ () C:\Users\Radovan Noga\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2024-01-11 03:02
==================== End of FRST.txt ========================