Viry nebo již hardwarově staré PC?
Napsal: 19 dub 2025 07:43
Dobrý den,
mám již letitější PC. Ještě nedavno (cca pře měsícem) bylo vytížení procesoru do 10%, nyní je až na 80%. Paměť je také více vytížena (asi 20% navíc). Myslíte, že jde o virus nebo poslední aktualizaci Win10?
Děkuji.
Logy:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-04-2025
Ran by dell (administrator) on DESKTOP-KOJPAA1 (Dell Inc. OptiPlex 790) (19-04-2025 07:59:35)
Running from C:\Users\dell\Desktop\FRST64.exe
Loaded Profiles: dell
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5608 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <6>
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(Proton AG -> ) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(services.exe ->) (ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireguardService.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [455976 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45882672 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [ProtonVPN] => C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe [12921496 2025-02-17] (Proton AG -> ProtonVPN)
HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMHJE.DLL [120320 2019-12-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\Installer\chrmstp.exe [2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {DD10294D-7B66-44B6-B0F3-D275FB676335} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {A6D369DF-82E9-4B5D-A24C-EAA32F8FFC64} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8594216 2025-03-27] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {D00C6E67-C339-4538-A145-B764F0C917F9} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5293864 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {267AF93A-C565-470E-8941-49A8B1B8D2A3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2564904 2024-11-21] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E9BB7EB6-2B6C-402C-8858-A969EA730834} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {2CF545D6-2E30-49EC-8A9B-9F1495BDF95A} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {42DE5B2A-8442-45AF-81DC-07514B71BEA2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {97420A35-0F7F-4509-BA42-5F72F06563F7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "8854c426-c0c0-472d-94c9-909e1c9df923" --version "6.35.0.11488" --silent
Task: {C42AD8B8-0700-471F-9D41-9E3807213984} - System32\Tasks\CCleanerSkipUAC - dell => C:\Program Files\CCleaner\CCleaner.exe [39622960 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CC3EB9C8-F4C0-4F81-BED4-8353DAB220BE} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-11-05] (Microsoft Corporation -> Microsoft)
Task: {5BC39C72-3523-435E-B422-D5B9AB9AB562} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {90D671E2-59CB-4775-9B4E-ADB5DDF2884B} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2020-06-09] () [File not signed]
Task: {110A5E3C-5FE6-41B6-AB3F-3BBEB54BFF35} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001 => C:\Users\dell\AppData\Local\Microsoft\OneDrive\25.051.0317.0003\OneDriveLauncher.exe [674624 2025-04-17] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{341de5c2-24bc-4e7a-ac38-0fb87a34a109}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ac128890-bdb1-ce5c-d1db-efb01de370b2}: [NameServer] 10.2.0.1
Edge:
=======
Edge Profile: C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-19]
Edge Extension: (Dokumenty Google offline) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-23]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-10]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
FireFox:
========
FF DefaultProfile: mtod2os8.default
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default [2023-11-09]
FF Homepage: Mozilla\Firefox\Profiles\mtod2os8.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\mtod2os8.default -> about:newtab
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default\Extensions\sp@avast.com.xpi [2019-12-27]
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 [2025-04-19]
FF NetworkProxy: Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 -> autoconfig_url", "hxxp://1.1.1.1/"
FF Extension: (AdBlocker Ultimate) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adblockultimate@adblockultimate.net.xpi [2025-04-14]
FF Extension: (Blokátor reklam AdGuard) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adguardadblocker@adguard.com.xpi [2025-01-09]
FF Extension: (DeepL: AI překladač a editor textů) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\firefox-extension@deepl.com.xpi [2024-11-05]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Brave:
=======
BRA Profile: C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-04-19]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-12-15]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-12-15]
BRA Extension: (Brave NTP background images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-12-15]
BRA Extension: (Wallet Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-23]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-chat Apps (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cjoooeeofnfjohnalnghhmdlalopplja [2024-12-15]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2024-12-15]
BRA Extension: (Brave Ad Block Updater (AdGuard Chinese (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbljdmoohhbifebddjnbbljgencmpjlb [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Bulgarian (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fdmemomgcgpopbhhmdkdedkphkglhopj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList China (中文) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmnnhojoekmmehfpmeegehbmifiijobb [2024-12-15]
BRA Extension: (Brave Ads Resources) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2024-06-26]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-12-15]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-05-13]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-Newsletter (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdddfellohomdnfkdhombbddhojklibj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Social (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\nbkknaieglghmocpollinelcggiehfco [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CJX's Annoyance (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\npcnkjiaolpnapjleimicclmdcccoeme [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2024-12-15]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-26]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Recommendations (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\phdmgpanpejkbmbljlhcehpadabljfbk [2024-12-15]
BRA Extension: (Brave Ad Block Updater (uBlock Annoyances (used with Fanboy's Annoyances) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\pnoagbonokhdnppohfeemefhjbbofplk [2024-05-16]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7500072 2025-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [807208 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [859432 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-02] (Avast Software s.r.o. -> AVAST Software)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\elevation_service.exe [3512848 2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
R3 ProtonVPN Service; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe [464608 2025-02-17] (Proton AG -> ProtonVPN)
R3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireGuardService.exe [464104 2025-02-17] (Proton AG -> ProtonVPN)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [20536 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [248376 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393272 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [296528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [84560 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [37944 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [282680 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [98872 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [69688 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [942672 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1427512 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [207440 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [391760 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 kmloop; C:\WINDOWS\System32\drivers\loop.sys [17408 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
S4 npcap_wifi; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
R3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v3.5.3\Resources\ProtonVPN.CalloutDriver.sys [40360 2025-02-10] (Proton AG -> Proton AG)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2025-03-18] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2025-03-14] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 07:59 - 2025-04-19 08:02 - 000024074 _____ C:\Users\dell\Desktop\FRST.txt
2025-04-19 07:58 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Desktop\FRST64.exe
2025-04-19 07:55 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Downloads\FRST64.exe
2025-04-18 17:41 - 2025-04-18 17:41 - 000000000 ___HD C:\$WinREAgent
2025-04-16 05:25 - 2025-04-16 05:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-04-16 04:36 - 2025-04-17 06:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-04-09 15:55 - 2025-04-09 15:54 - 000316200 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2025-04-09 07:21 - 2025-04-17 11:11 - 000002374 _____ C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-05 17:17 - 2025-04-05 17:17 - 000007612 _____ C:\Users\dell\Downloads\E5kqmdJx
2025-04-05 17:16 - 2025-04-05 17:16 - 000007612 _____ C:\Users\dell\Downloads\ynh-Cn_C
2025-04-02 18:11 - 2025-04-02 18:11 - 000151740 _____ C:\Users\dell\Downloads\Jablotron_Faktura_2515139767_5488530.pdf
2025-04-01 08:39 - 2025-04-01 08:39 - 001952980 _____ C:\Users\dell\Downloads\Prvodce_balenm_-_CZ.pdf
2025-04-01 08:20 - 2025-04-01 21:57 - 000000000 ____D C:\Users\dell\Documents\Okna_střešni
2025-03-27 13:45 - 2025-03-27 13:45 - 087299296 _____ (Wireshark development team) C:\Users\dell\Downloads\Wireshark-4.4.5-x64.exe
2025-03-26 18:01 - 2025-03-26 18:01 - 001023112 _____ C:\Users\dell\Downloads\prilohy_28070.zip
2025-03-26 17:59 - 2025-03-26 17:59 - 000143909 _____ C:\Users\dell\Downloads\Silnik_standard_EN (1).pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 002505608 _____ C:\Users\dell\Downloads\SKYROLL-PL-Instrukcja-montazu.pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 000447967 _____ C:\Users\dell\Downloads\Naped_Standardowy_N-6SH (1).pdf
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\H7eTP9sO
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\7G7AS4r-
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 08:05 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-04-19 08:01 - 2023-11-08 22:55 - 000000000 ____D C:\FRST
2025-04-19 07:57 - 2023-07-18 17:38 - 000000000 ____D C:\Users\dell\AppData\Local\Avast Software
2025-04-19 07:38 - 2021-12-17 15:29 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-04-19 07:31 - 2022-02-11 04:51 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-04-19 07:26 - 2025-03-19 13:47 - 000003384 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-04-19 07:26 - 2024-05-23 16:45 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-04-19 07:26 - 2024-05-23 16:45 - 000000000 ____D C:\Program Files\CCleaner
2025-04-19 07:22 - 2024-05-23 16:45 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-04-19 05:44 - 2023-01-21 07:19 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-04-19 05:44 - 2020-06-07 17:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-19 05:43 - 2023-08-05 09:52 - 000000000 ____D C:\Users\dell\AppData\Local\D3DSCache
2025-04-18 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-18 18:32 - 2020-09-16 17:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-04-18 05:57 - 2025-02-06 04:57 - 000003100 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2024-05-23 16:45 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - dell
2025-04-18 05:57 - 2022-03-07 22:09 - 000003432 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2025-04-18 05:57 - 2022-03-07 22:09 - 000003208 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2025-04-18 05:57 - 2021-12-13 17:03 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2021-05-23 06:06 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-04-18 05:57 - 2020-10-27 10:53 - 000002174 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog
2025-04-18 05:57 - 2020-09-16 18:15 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-18 05:57 - 2020-09-16 18:15 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-18 05:57 - 2020-09-16 18:15 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2020-09-16 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-04-17 16:35 - 2023-10-23 21:10 - 000000000 ____D C:\Users\dell\AppData\Local\CrashDumps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-04-17 06:33 - 2020-09-16 18:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-04-17 06:33 - 2020-09-16 17:46 - 000008192 ___SH C:\DumpStack.log.tmp
2025-04-17 06:33 - 2019-12-27 14:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-04-16 18:43 - 2022-03-07 22:11 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-04-16 18:43 - 2022-03-07 22:11 - 000002323 _____ C:\Users\Public\Desktop\Brave.lnk
2025-04-16 05:25 - 2019-12-27 14:10 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-04-09 21:19 - 2020-01-06 21:04 - 000000000 ____D C:\Users\dell\AppData\Roaming\Microsoft\Excel
2025-04-09 16:47 - 2020-09-16 18:03 - 001797018 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-04-09 16:47 - 2019-12-07 16:43 - 000751046 _____ C:\WINDOWS\system32\perfh005.dat
2025-04-09 16:47 - 2019-12-07 16:43 - 000162620 _____ C:\WINDOWS\system32\perfc005.dat
2025-04-09 16:47 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-04-09 16:42 - 2019-12-27 14:12 - 000000000 ____D C:\ProgramData\AVAST Software
2025-04-09 16:39 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-04-09 16:38 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-04-09 15:55 - 2019-12-27 14:17 - 000393272 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-04-09 15:55 - 2019-12-27 14:17 - 000391760 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-04-09 15:54 - 2020-10-26 13:39 - 000282680 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-04-09 15:54 - 2020-04-21 03:56 - 000553528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 001427512 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000942672 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000296528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000248376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000098872 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000084560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000069688 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000037944 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000020536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-04-03 20:43 - 2020-08-06 19:53 - 000007603 _____ C:\Users\dell\AppData\Local\Resmon.ResmonCfg
2025-03-30 10:29 - 2023-10-11 13:56 - 000000000 ____D C:\Program Files\RUXIM
2025-03-23 15:19 - 2019-12-28 01:40 - 000000000 ____D C:\Users\dell\AppData\Roaming\FileZilla
==================== Files in the root of some directories ========
2021-02-27 13:49 - 2024-04-22 13:42 - 000000128 _____ () C:\Users\dell\AppData\Roaming\winscp.rnd
2020-02-08 15:38 - 2024-12-28 14:57 - 000000128 _____ () C:\Users\dell\AppData\Local\PUTTY.RND
2020-08-06 19:53 - 2025-04-03 20:43 - 000007603 _____ () C:\Users\dell\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Addition:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-04-2025
Ran by dell (administrator) on DESKTOP-KOJPAA1 (Dell Inc. OptiPlex 790) (19-04-2025 07:59:35)
Running from C:\Users\dell\Desktop\FRST64.exe
Loaded Profiles: dell
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5608 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <6>
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(Proton AG -> ) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(services.exe ->) (ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireguardService.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [455976 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45882672 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [ProtonVPN] => C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe [12921496 2025-02-17] (Proton AG -> ProtonVPN)
HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMHJE.DLL [120320 2019-12-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\Installer\chrmstp.exe [2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {DD10294D-7B66-44B6-B0F3-D275FB676335} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {A6D369DF-82E9-4B5D-A24C-EAA32F8FFC64} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8594216 2025-03-27] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {D00C6E67-C339-4538-A145-B764F0C917F9} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5293864 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {267AF93A-C565-470E-8941-49A8B1B8D2A3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2564904 2024-11-21] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E9BB7EB6-2B6C-402C-8858-A969EA730834} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {2CF545D6-2E30-49EC-8A9B-9F1495BDF95A} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {42DE5B2A-8442-45AF-81DC-07514B71BEA2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {97420A35-0F7F-4509-BA42-5F72F06563F7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "8854c426-c0c0-472d-94c9-909e1c9df923" --version "6.35.0.11488" --silent
Task: {C42AD8B8-0700-471F-9D41-9E3807213984} - System32\Tasks\CCleanerSkipUAC - dell => C:\Program Files\CCleaner\CCleaner.exe [39622960 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CC3EB9C8-F4C0-4F81-BED4-8353DAB220BE} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-11-05] (Microsoft Corporation -> Microsoft)
Task: {5BC39C72-3523-435E-B422-D5B9AB9AB562} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {90D671E2-59CB-4775-9B4E-ADB5DDF2884B} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2020-06-09] () [File not signed]
Task: {110A5E3C-5FE6-41B6-AB3F-3BBEB54BFF35} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001 => C:\Users\dell\AppData\Local\Microsoft\OneDrive\25.051.0317.0003\OneDriveLauncher.exe [674624 2025-04-17] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{341de5c2-24bc-4e7a-ac38-0fb87a34a109}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ac128890-bdb1-ce5c-d1db-efb01de370b2}: [NameServer] 10.2.0.1
Edge:
=======
Edge Profile: C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-19]
Edge Extension: (Dokumenty Google offline) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-23]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-10]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
FireFox:
========
FF DefaultProfile: mtod2os8.default
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default [2023-11-09]
FF Homepage: Mozilla\Firefox\Profiles\mtod2os8.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\mtod2os8.default -> about:newtab
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default\Extensions\sp@avast.com.xpi [2019-12-27]
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 [2025-04-19]
FF NetworkProxy: Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 -> autoconfig_url", "hxxp://1.1.1.1/"
FF Extension: (AdBlocker Ultimate) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adblockultimate@adblockultimate.net.xpi [2025-04-14]
FF Extension: (Blokátor reklam AdGuard) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adguardadblocker@adguard.com.xpi [2025-01-09]
FF Extension: (DeepL: AI překladač a editor textů) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\firefox-extension@deepl.com.xpi [2024-11-05]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Brave:
=======
BRA Profile: C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-04-19]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-12-15]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-12-15]
BRA Extension: (Brave NTP background images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-12-15]
BRA Extension: (Wallet Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-23]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-chat Apps (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cjoooeeofnfjohnalnghhmdlalopplja [2024-12-15]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2024-12-15]
BRA Extension: (Brave Ad Block Updater (AdGuard Chinese (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbljdmoohhbifebddjnbbljgencmpjlb [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Bulgarian (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fdmemomgcgpopbhhmdkdedkphkglhopj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList China (中文) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmnnhojoekmmehfpmeegehbmifiijobb [2024-12-15]
BRA Extension: (Brave Ads Resources) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2024-06-26]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-12-15]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-05-13]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-Newsletter (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdddfellohomdnfkdhombbddhojklibj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Social (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\nbkknaieglghmocpollinelcggiehfco [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CJX's Annoyance (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\npcnkjiaolpnapjleimicclmdcccoeme [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2024-12-15]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-26]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Recommendations (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\phdmgpanpejkbmbljlhcehpadabljfbk [2024-12-15]
BRA Extension: (Brave Ad Block Updater (uBlock Annoyances (used with Fanboy's Annoyances) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\pnoagbonokhdnppohfeemefhjbbofplk [2024-05-16]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7500072 2025-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [807208 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [859432 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-02] (Avast Software s.r.o. -> AVAST Software)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\elevation_service.exe [3512848 2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
R3 ProtonVPN Service; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe [464608 2025-02-17] (Proton AG -> ProtonVPN)
R3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireGuardService.exe [464104 2025-02-17] (Proton AG -> ProtonVPN)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [20536 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [248376 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393272 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [296528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [84560 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [37944 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [282680 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [98872 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [69688 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [942672 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1427512 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [207440 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [391760 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 kmloop; C:\WINDOWS\System32\drivers\loop.sys [17408 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
S4 npcap_wifi; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
R3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v3.5.3\Resources\ProtonVPN.CalloutDriver.sys [40360 2025-02-10] (Proton AG -> Proton AG)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2025-03-18] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2025-03-14] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 07:59 - 2025-04-19 08:02 - 000024074 _____ C:\Users\dell\Desktop\FRST.txt
2025-04-19 07:58 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Desktop\FRST64.exe
2025-04-19 07:55 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Downloads\FRST64.exe
2025-04-18 17:41 - 2025-04-18 17:41 - 000000000 ___HD C:\$WinREAgent
2025-04-16 05:25 - 2025-04-16 05:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-04-16 04:36 - 2025-04-17 06:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-04-09 15:55 - 2025-04-09 15:54 - 000316200 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2025-04-09 07:21 - 2025-04-17 11:11 - 000002374 _____ C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-05 17:17 - 2025-04-05 17:17 - 000007612 _____ C:\Users\dell\Downloads\E5kqmdJx
2025-04-05 17:16 - 2025-04-05 17:16 - 000007612 _____ C:\Users\dell\Downloads\ynh-Cn_C
2025-04-02 18:11 - 2025-04-02 18:11 - 000151740 _____ C:\Users\dell\Downloads\Jablotron_Faktura_2515139767_5488530.pdf
2025-04-01 08:39 - 2025-04-01 08:39 - 001952980 _____ C:\Users\dell\Downloads\Prvodce_balenm_-_CZ.pdf
2025-04-01 08:20 - 2025-04-01 21:57 - 000000000 ____D C:\Users\dell\Documents\Okna_střešni
2025-03-27 13:45 - 2025-03-27 13:45 - 087299296 _____ (Wireshark development team) C:\Users\dell\Downloads\Wireshark-4.4.5-x64.exe
2025-03-26 18:01 - 2025-03-26 18:01 - 001023112 _____ C:\Users\dell\Downloads\prilohy_28070.zip
2025-03-26 17:59 - 2025-03-26 17:59 - 000143909 _____ C:\Users\dell\Downloads\Silnik_standard_EN (1).pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 002505608 _____ C:\Users\dell\Downloads\SKYROLL-PL-Instrukcja-montazu.pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 000447967 _____ C:\Users\dell\Downloads\Naped_Standardowy_N-6SH (1).pdf
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\H7eTP9sO
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\7G7AS4r-
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 08:05 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-04-19 08:01 - 2023-11-08 22:55 - 000000000 ____D C:\FRST
2025-04-19 07:57 - 2023-07-18 17:38 - 000000000 ____D C:\Users\dell\AppData\Local\Avast Software
2025-04-19 07:38 - 2021-12-17 15:29 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-04-19 07:31 - 2022-02-11 04:51 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-04-19 07:26 - 2025-03-19 13:47 - 000003384 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-04-19 07:26 - 2024-05-23 16:45 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-04-19 07:26 - 2024-05-23 16:45 - 000000000 ____D C:\Program Files\CCleaner
2025-04-19 07:22 - 2024-05-23 16:45 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-04-19 05:44 - 2023-01-21 07:19 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-04-19 05:44 - 2020-06-07 17:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-19 05:43 - 2023-08-05 09:52 - 000000000 ____D C:\Users\dell\AppData\Local\D3DSCache
2025-04-18 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-18 18:32 - 2020-09-16 17:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-04-18 05:57 - 2025-02-06 04:57 - 000003100 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2024-05-23 16:45 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - dell
2025-04-18 05:57 - 2022-03-07 22:09 - 000003432 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2025-04-18 05:57 - 2022-03-07 22:09 - 000003208 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2025-04-18 05:57 - 2021-12-13 17:03 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2021-05-23 06:06 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-04-18 05:57 - 2020-10-27 10:53 - 000002174 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog
2025-04-18 05:57 - 2020-09-16 18:15 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-18 05:57 - 2020-09-16 18:15 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-18 05:57 - 2020-09-16 18:15 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2020-09-16 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-04-17 16:35 - 2023-10-23 21:10 - 000000000 ____D C:\Users\dell\AppData\Local\CrashDumps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-04-17 06:33 - 2020-09-16 18:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-04-17 06:33 - 2020-09-16 17:46 - 000008192 ___SH C:\DumpStack.log.tmp
2025-04-17 06:33 - 2019-12-27 14:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-04-16 18:43 - 2022-03-07 22:11 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-04-16 18:43 - 2022-03-07 22:11 - 000002323 _____ C:\Users\Public\Desktop\Brave.lnk
2025-04-16 05:25 - 2019-12-27 14:10 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-04-09 21:19 - 2020-01-06 21:04 - 000000000 ____D C:\Users\dell\AppData\Roaming\Microsoft\Excel
2025-04-09 16:47 - 2020-09-16 18:03 - 001797018 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-04-09 16:47 - 2019-12-07 16:43 - 000751046 _____ C:\WINDOWS\system32\perfh005.dat
2025-04-09 16:47 - 2019-12-07 16:43 - 000162620 _____ C:\WINDOWS\system32\perfc005.dat
2025-04-09 16:47 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-04-09 16:42 - 2019-12-27 14:12 - 000000000 ____D C:\ProgramData\AVAST Software
2025-04-09 16:39 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-04-09 16:38 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-04-09 15:55 - 2019-12-27 14:17 - 000393272 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-04-09 15:55 - 2019-12-27 14:17 - 000391760 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-04-09 15:54 - 2020-10-26 13:39 - 000282680 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-04-09 15:54 - 2020-04-21 03:56 - 000553528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 001427512 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000942672 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000296528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000248376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000098872 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000084560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000069688 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000037944 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000020536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-04-03 20:43 - 2020-08-06 19:53 - 000007603 _____ C:\Users\dell\AppData\Local\Resmon.ResmonCfg
2025-03-30 10:29 - 2023-10-11 13:56 - 000000000 ____D C:\Program Files\RUXIM
2025-03-23 15:19 - 2019-12-28 01:40 - 000000000 ____D C:\Users\dell\AppData\Roaming\FileZilla
==================== Files in the root of some directories ========
2021-02-27 13:49 - 2024-04-22 13:42 - 000000128 _____ () C:\Users\dell\AppData\Roaming\winscp.rnd
2020-02-08 15:38 - 2024-12-28 14:57 - 000000128 _____ () C:\Users\dell\AppData\Local\PUTTY.RND
2020-08-06 19:53 - 2025-04-03 20:43 - 000007603 _____ () C:\Users\dell\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
mám již letitější PC. Ještě nedavno (cca pře měsícem) bylo vytížení procesoru do 10%, nyní je až na 80%. Paměť je také více vytížena (asi 20% navíc). Myslíte, že jde o virus nebo poslední aktualizaci Win10?
Děkuji.
Logy:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-04-2025
Ran by dell (administrator) on DESKTOP-KOJPAA1 (Dell Inc. OptiPlex 790) (19-04-2025 07:59:35)
Running from C:\Users\dell\Desktop\FRST64.exe
Loaded Profiles: dell
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5608 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <6>
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(Proton AG -> ) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(services.exe ->) (ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireguardService.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [455976 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45882672 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [ProtonVPN] => C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe [12921496 2025-02-17] (Proton AG -> ProtonVPN)
HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMHJE.DLL [120320 2019-12-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\Installer\chrmstp.exe [2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {DD10294D-7B66-44B6-B0F3-D275FB676335} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {A6D369DF-82E9-4B5D-A24C-EAA32F8FFC64} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8594216 2025-03-27] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {D00C6E67-C339-4538-A145-B764F0C917F9} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5293864 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {267AF93A-C565-470E-8941-49A8B1B8D2A3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2564904 2024-11-21] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E9BB7EB6-2B6C-402C-8858-A969EA730834} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {2CF545D6-2E30-49EC-8A9B-9F1495BDF95A} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {42DE5B2A-8442-45AF-81DC-07514B71BEA2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {97420A35-0F7F-4509-BA42-5F72F06563F7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "8854c426-c0c0-472d-94c9-909e1c9df923" --version "6.35.0.11488" --silent
Task: {C42AD8B8-0700-471F-9D41-9E3807213984} - System32\Tasks\CCleanerSkipUAC - dell => C:\Program Files\CCleaner\CCleaner.exe [39622960 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CC3EB9C8-F4C0-4F81-BED4-8353DAB220BE} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-11-05] (Microsoft Corporation -> Microsoft)
Task: {5BC39C72-3523-435E-B422-D5B9AB9AB562} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {90D671E2-59CB-4775-9B4E-ADB5DDF2884B} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2020-06-09] () [File not signed]
Task: {110A5E3C-5FE6-41B6-AB3F-3BBEB54BFF35} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001 => C:\Users\dell\AppData\Local\Microsoft\OneDrive\25.051.0317.0003\OneDriveLauncher.exe [674624 2025-04-17] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{341de5c2-24bc-4e7a-ac38-0fb87a34a109}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ac128890-bdb1-ce5c-d1db-efb01de370b2}: [NameServer] 10.2.0.1
Edge:
=======
Edge Profile: C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-19]
Edge Extension: (Dokumenty Google offline) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-23]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-10]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
FireFox:
========
FF DefaultProfile: mtod2os8.default
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default [2023-11-09]
FF Homepage: Mozilla\Firefox\Profiles\mtod2os8.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\mtod2os8.default -> about:newtab
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default\Extensions\sp@avast.com.xpi [2019-12-27]
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 [2025-04-19]
FF NetworkProxy: Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 -> autoconfig_url", "hxxp://1.1.1.1/"
FF Extension: (AdBlocker Ultimate) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adblockultimate@adblockultimate.net.xpi [2025-04-14]
FF Extension: (Blokátor reklam AdGuard) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adguardadblocker@adguard.com.xpi [2025-01-09]
FF Extension: (DeepL: AI překladač a editor textů) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\firefox-extension@deepl.com.xpi [2024-11-05]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Brave:
=======
BRA Profile: C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-04-19]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-12-15]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-12-15]
BRA Extension: (Brave NTP background images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-12-15]
BRA Extension: (Wallet Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-23]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-chat Apps (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cjoooeeofnfjohnalnghhmdlalopplja [2024-12-15]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2024-12-15]
BRA Extension: (Brave Ad Block Updater (AdGuard Chinese (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbljdmoohhbifebddjnbbljgencmpjlb [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Bulgarian (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fdmemomgcgpopbhhmdkdedkphkglhopj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList China (中文) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmnnhojoekmmehfpmeegehbmifiijobb [2024-12-15]
BRA Extension: (Brave Ads Resources) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2024-06-26]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-12-15]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-05-13]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-Newsletter (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdddfellohomdnfkdhombbddhojklibj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Social (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\nbkknaieglghmocpollinelcggiehfco [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CJX's Annoyance (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\npcnkjiaolpnapjleimicclmdcccoeme [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2024-12-15]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-26]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Recommendations (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\phdmgpanpejkbmbljlhcehpadabljfbk [2024-12-15]
BRA Extension: (Brave Ad Block Updater (uBlock Annoyances (used with Fanboy's Annoyances) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\pnoagbonokhdnppohfeemefhjbbofplk [2024-05-16]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7500072 2025-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [807208 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [859432 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-02] (Avast Software s.r.o. -> AVAST Software)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\elevation_service.exe [3512848 2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
R3 ProtonVPN Service; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe [464608 2025-02-17] (Proton AG -> ProtonVPN)
R3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireGuardService.exe [464104 2025-02-17] (Proton AG -> ProtonVPN)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [20536 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [248376 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393272 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [296528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [84560 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [37944 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [282680 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [98872 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [69688 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [942672 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1427512 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [207440 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [391760 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 kmloop; C:\WINDOWS\System32\drivers\loop.sys [17408 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
S4 npcap_wifi; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
R3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v3.5.3\Resources\ProtonVPN.CalloutDriver.sys [40360 2025-02-10] (Proton AG -> Proton AG)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2025-03-18] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2025-03-14] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 07:59 - 2025-04-19 08:02 - 000024074 _____ C:\Users\dell\Desktop\FRST.txt
2025-04-19 07:58 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Desktop\FRST64.exe
2025-04-19 07:55 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Downloads\FRST64.exe
2025-04-18 17:41 - 2025-04-18 17:41 - 000000000 ___HD C:\$WinREAgent
2025-04-16 05:25 - 2025-04-16 05:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-04-16 04:36 - 2025-04-17 06:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-04-09 15:55 - 2025-04-09 15:54 - 000316200 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2025-04-09 07:21 - 2025-04-17 11:11 - 000002374 _____ C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-05 17:17 - 2025-04-05 17:17 - 000007612 _____ C:\Users\dell\Downloads\E5kqmdJx
2025-04-05 17:16 - 2025-04-05 17:16 - 000007612 _____ C:\Users\dell\Downloads\ynh-Cn_C
2025-04-02 18:11 - 2025-04-02 18:11 - 000151740 _____ C:\Users\dell\Downloads\Jablotron_Faktura_2515139767_5488530.pdf
2025-04-01 08:39 - 2025-04-01 08:39 - 001952980 _____ C:\Users\dell\Downloads\Prvodce_balenm_-_CZ.pdf
2025-04-01 08:20 - 2025-04-01 21:57 - 000000000 ____D C:\Users\dell\Documents\Okna_střešni
2025-03-27 13:45 - 2025-03-27 13:45 - 087299296 _____ (Wireshark development team) C:\Users\dell\Downloads\Wireshark-4.4.5-x64.exe
2025-03-26 18:01 - 2025-03-26 18:01 - 001023112 _____ C:\Users\dell\Downloads\prilohy_28070.zip
2025-03-26 17:59 - 2025-03-26 17:59 - 000143909 _____ C:\Users\dell\Downloads\Silnik_standard_EN (1).pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 002505608 _____ C:\Users\dell\Downloads\SKYROLL-PL-Instrukcja-montazu.pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 000447967 _____ C:\Users\dell\Downloads\Naped_Standardowy_N-6SH (1).pdf
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\H7eTP9sO
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\7G7AS4r-
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 08:05 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-04-19 08:01 - 2023-11-08 22:55 - 000000000 ____D C:\FRST
2025-04-19 07:57 - 2023-07-18 17:38 - 000000000 ____D C:\Users\dell\AppData\Local\Avast Software
2025-04-19 07:38 - 2021-12-17 15:29 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-04-19 07:31 - 2022-02-11 04:51 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-04-19 07:26 - 2025-03-19 13:47 - 000003384 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-04-19 07:26 - 2024-05-23 16:45 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-04-19 07:26 - 2024-05-23 16:45 - 000000000 ____D C:\Program Files\CCleaner
2025-04-19 07:22 - 2024-05-23 16:45 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-04-19 05:44 - 2023-01-21 07:19 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-04-19 05:44 - 2020-06-07 17:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-19 05:43 - 2023-08-05 09:52 - 000000000 ____D C:\Users\dell\AppData\Local\D3DSCache
2025-04-18 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-18 18:32 - 2020-09-16 17:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-04-18 05:57 - 2025-02-06 04:57 - 000003100 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2024-05-23 16:45 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - dell
2025-04-18 05:57 - 2022-03-07 22:09 - 000003432 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2025-04-18 05:57 - 2022-03-07 22:09 - 000003208 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2025-04-18 05:57 - 2021-12-13 17:03 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2021-05-23 06:06 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-04-18 05:57 - 2020-10-27 10:53 - 000002174 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog
2025-04-18 05:57 - 2020-09-16 18:15 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-18 05:57 - 2020-09-16 18:15 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-18 05:57 - 2020-09-16 18:15 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2020-09-16 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-04-17 16:35 - 2023-10-23 21:10 - 000000000 ____D C:\Users\dell\AppData\Local\CrashDumps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-04-17 06:33 - 2020-09-16 18:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-04-17 06:33 - 2020-09-16 17:46 - 000008192 ___SH C:\DumpStack.log.tmp
2025-04-17 06:33 - 2019-12-27 14:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-04-16 18:43 - 2022-03-07 22:11 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-04-16 18:43 - 2022-03-07 22:11 - 000002323 _____ C:\Users\Public\Desktop\Brave.lnk
2025-04-16 05:25 - 2019-12-27 14:10 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-04-09 21:19 - 2020-01-06 21:04 - 000000000 ____D C:\Users\dell\AppData\Roaming\Microsoft\Excel
2025-04-09 16:47 - 2020-09-16 18:03 - 001797018 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-04-09 16:47 - 2019-12-07 16:43 - 000751046 _____ C:\WINDOWS\system32\perfh005.dat
2025-04-09 16:47 - 2019-12-07 16:43 - 000162620 _____ C:\WINDOWS\system32\perfc005.dat
2025-04-09 16:47 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-04-09 16:42 - 2019-12-27 14:12 - 000000000 ____D C:\ProgramData\AVAST Software
2025-04-09 16:39 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-04-09 16:38 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-04-09 15:55 - 2019-12-27 14:17 - 000393272 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-04-09 15:55 - 2019-12-27 14:17 - 000391760 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-04-09 15:54 - 2020-10-26 13:39 - 000282680 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-04-09 15:54 - 2020-04-21 03:56 - 000553528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 001427512 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000942672 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000296528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000248376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000098872 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000084560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000069688 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000037944 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000020536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-04-03 20:43 - 2020-08-06 19:53 - 000007603 _____ C:\Users\dell\AppData\Local\Resmon.ResmonCfg
2025-03-30 10:29 - 2023-10-11 13:56 - 000000000 ____D C:\Program Files\RUXIM
2025-03-23 15:19 - 2019-12-28 01:40 - 000000000 ____D C:\Users\dell\AppData\Roaming\FileZilla
==================== Files in the root of some directories ========
2021-02-27 13:49 - 2024-04-22 13:42 - 000000128 _____ () C:\Users\dell\AppData\Roaming\winscp.rnd
2020-02-08 15:38 - 2024-12-28 14:57 - 000000128 _____ () C:\Users\dell\AppData\Local\PUTTY.RND
2020-08-06 19:53 - 2025-04-03 20:43 - 000007603 _____ () C:\Users\dell\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Addition:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01-04-2025
Ran by dell (administrator) on DESKTOP-KOJPAA1 (Dell Inc. OptiPlex 790) (19-04-2025 07:59:35)
Running from C:\Users\dell\Desktop\FRST64.exe
Loaded Profiles: dell
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5608 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe
(Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <6>
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15>
(Proton AG -> ) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(services.exe ->) (ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireguardService.exe
(services.exe ->) (Proton AG -> ProtonVPN) C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [455976 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-23] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [BrStsInd00] => C:\Program Files (x86)\BrownyInd\Brother\BrIndicator.exe [1885184 2012-12-18] (Brother Industries, Ltd.) [File not signed]
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-08-30] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45882672 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-2768368715-448560682-1686515321-1001\...\Run: [ProtonVPN] => C:\Program Files\Proton\VPN\ProtonVPN.Launcher.exe [12921496 2025-02-17] (Proton AG -> ProtonVPN)
HKLM\...\Print\Monitors\EPSON SX130 Series 64MonitorBE: C:\WINDOWS\system32\E_ILMHJE.DLL [120320 2019-12-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\Installer\chrmstp.exe [2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {DD10294D-7B66-44B6-B0F3-D275FB676335} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {A6D369DF-82E9-4B5D-A24C-EAA32F8FFC64} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8594216 2025-03-27] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {D00C6E67-C339-4538-A145-B764F0C917F9} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5293864 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {267AF93A-C565-470E-8941-49A8B1B8D2A3} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2564904 2024-11-21] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E9BB7EB6-2B6C-402C-8858-A969EA730834} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {2CF545D6-2E30-49EC-8A9B-9F1495BDF95A} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {42DE5B2A-8442-45AF-81DC-07514B71BEA2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {97420A35-0F7F-4509-BA42-5F72F06563F7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "8854c426-c0c0-472d-94c9-909e1c9df923" --version "6.35.0.11488" --silent
Task: {C42AD8B8-0700-471F-9D41-9E3807213984} - System32\Tasks\CCleanerSkipUAC - dell => C:\Program Files\CCleaner\CCleaner.exe [39622960 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {CC3EB9C8-F4C0-4F81-BED4-8353DAB220BE} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [65440 2020-11-05] (Microsoft Corporation -> Microsoft)
Task: {5BC39C72-3523-435E-B422-D5B9AB9AB562} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-16] (Mozilla Corporation -> Mozilla Foundation)
Task: {90D671E2-59CB-4775-9B4E-ADB5DDF2884B} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [862 2020-06-09] () [File not signed]
Task: {110A5E3C-5FE6-41B6-AB3F-3BBEB54BFF35} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001 => C:\Users\dell\AppData\Local\Microsoft\OneDrive\25.051.0317.0003\OneDriveLauncher.exe [674624 2025-04-17] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{341de5c2-24bc-4e7a-ac38-0fb87a34a109}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{ac128890-bdb1-ce5c-d1db-efb01de370b2}: [NameServer] 10.2.0.1
Edge:
=======
Edge Profile: C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-19]
Edge Extension: (Dokumenty Google offline) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-23]hxxps://clients2.google.com/service/update2/crx
Edge Extension: (Edge relevant text changes) - C:\Users\dell\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-10]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx
FireFox:
========
FF DefaultProfile: mtod2os8.default
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default [2023-11-09]
FF Homepage: Mozilla\Firefox\Profiles\mtod2os8.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\mtod2os8.default -> about:newtab
FF Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\mtod2os8.default\Extensions\sp@avast.com.xpi [2019-12-27]
FF ProfilePath: C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 [2025-04-19]
FF NetworkProxy: Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315 -> autoconfig_url", "hxxp://1.1.1.1/"
FF Extension: (AdBlocker Ultimate) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adblockultimate@adblockultimate.net.xpi [2025-04-14]
FF Extension: (Blokátor reklam AdGuard) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\adguardadblocker@adguard.com.xpi [2025-01-09]
FF Extension: (DeepL: AI překladač a editor textů) - C:\Users\dell\AppData\Roaming\Mozilla\Firefox\Profiles\9vw2px8t.default-release-1695374340315\Extensions\firefox-extension@deepl.com.xpi [2024-11-05]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
Brave:
=======
BRA Profile: C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-04-19]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-12-15]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-12-15]
BRA Extension: (Brave NTP background images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-12-15]
BRA Extension: (Wallet Data Files Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2024-01-23]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-chat Apps (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\cjoooeeofnfjohnalnghhmdlalopplja [2024-12-15]
BRA Extension: (Brave NTP sponsored images) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2024-12-15]
BRA Extension: (Brave Ad Block Updater (AdGuard Chinese (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbljdmoohhbifebddjnbbljgencmpjlb [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Bulgarian (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\fdmemomgcgpopbhhmdkdedkphkglhopj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList China (中文) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmnnhojoekmmehfpmeegehbmifiijobb [2024-12-15]
BRA Extension: (Brave Ads Resources) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2024-06-26]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-12-15]
BRA Extension: (Brave SpeedReader Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-05-13]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-Newsletter (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdddfellohomdnfkdhombbddhojklibj [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-12-15]
BRA Extension: (Brave Ad Block Updater (Fanboy's Social (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\nbkknaieglghmocpollinelcggiehfco [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CJX's Annoyance (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\npcnkjiaolpnapjleimicclmdcccoeme [2024-12-15]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2024-12-15]
BRA Extension: (Brave Ad Block Updater (CZE, SVK: EasyList Czech and Slovak)) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omkkefoeihpbpebhhbhmjekpnegokpbj [2022-07-29]
BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2024-12-15]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-10-26]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Recommendations (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\phdmgpanpejkbmbljlhcehpadabljfbk [2024-12-15]
BRA Extension: (Brave Ad Block Updater (uBlock Annoyances (used with Fanboy's Annoyances) (plaintext))) - C:\Users\dell\AppData\Local\BraveSoftware\Brave-Browser\User Data\pnoagbonokhdnppohfeemefhjbbofplk [2024-05-16]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY SOLUTIONS LIMITED -> ABBYY)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7500072 2025-04-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [807208 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [859432 2025-04-09] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-06-02] (Avast Software s.r.o. -> AVAST Software)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\135.1.77.100\elevation_service.exe [3512848 2025-04-16] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [162968 2022-03-07] (Brave Software, Inc. -> BraveSoftware Inc.)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-04-09] (Gen Digital Inc. -> Gen Digital Inc.)
R3 ProtonVPN Service; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPNService.exe [464608 2025-02-17] (Proton AG -> ProtonVPN)
R3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v3.5.3\ProtonVPN.WireGuardService.exe [464104 2025-02-17] (Proton AG -> ProtonVPN)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-04-30] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-27] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [20536 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [248376 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393272 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [296528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [84560 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [37944 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [282680 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [553528 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [98872 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [69688 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [942672 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1427512 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [207440 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [391760 2025-04-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 kmloop; C:\WINDOWS\System32\drivers\loop.sys [17408 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
S4 npcap_wifi; C:\WINDOWS\system32\DRIVERS\npcap.sys [83728 2020-08-25] (Insecure.Com LLC -> Insecure.Com LLC.)
R3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v3.5.3\Resources\ProtonVPN.CalloutDriver.sys [40360 2025-02-10] (Proton AG -> Proton AG)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-27] (Microsoft Windows -> Microsoft Corporation)
R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2025-03-18] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2025-03-14] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 07:59 - 2025-04-19 08:02 - 000024074 _____ C:\Users\dell\Desktop\FRST.txt
2025-04-19 07:58 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Desktop\FRST64.exe
2025-04-19 07:55 - 2025-04-19 07:55 - 002404864 _____ (Farbar) C:\Users\dell\Downloads\FRST64.exe
2025-04-18 17:41 - 2025-04-18 17:41 - 000000000 ___HD C:\$WinREAgent
2025-04-16 05:25 - 2025-04-16 05:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-04-16 04:36 - 2025-04-17 06:33 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-04-09 15:55 - 2025-04-09 15:54 - 000316200 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2025-04-09 07:21 - 2025-04-17 11:11 - 000002374 _____ C:\Users\dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-04-05 17:17 - 2025-04-05 17:17 - 000007612 _____ C:\Users\dell\Downloads\E5kqmdJx
2025-04-05 17:16 - 2025-04-05 17:16 - 000007612 _____ C:\Users\dell\Downloads\ynh-Cn_C
2025-04-02 18:11 - 2025-04-02 18:11 - 000151740 _____ C:\Users\dell\Downloads\Jablotron_Faktura_2515139767_5488530.pdf
2025-04-01 08:39 - 2025-04-01 08:39 - 001952980 _____ C:\Users\dell\Downloads\Prvodce_balenm_-_CZ.pdf
2025-04-01 08:20 - 2025-04-01 21:57 - 000000000 ____D C:\Users\dell\Documents\Okna_střešni
2025-03-27 13:45 - 2025-03-27 13:45 - 087299296 _____ (Wireshark development team) C:\Users\dell\Downloads\Wireshark-4.4.5-x64.exe
2025-03-26 18:01 - 2025-03-26 18:01 - 001023112 _____ C:\Users\dell\Downloads\prilohy_28070.zip
2025-03-26 17:59 - 2025-03-26 17:59 - 000143909 _____ C:\Users\dell\Downloads\Silnik_standard_EN (1).pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 002505608 _____ C:\Users\dell\Downloads\SKYROLL-PL-Instrukcja-montazu.pdf
2025-03-26 17:57 - 2025-03-26 17:57 - 000447967 _____ C:\Users\dell\Downloads\Naped_Standardowy_N-6SH (1).pdf
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\H7eTP9sO
2025-03-20 14:14 - 2025-03-20 14:14 - 000000000 _____ C:\Users\dell\Downloads\7G7AS4r-
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-04-19 08:05 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-04-19 08:01 - 2023-11-08 22:55 - 000000000 ____D C:\FRST
2025-04-19 07:57 - 2023-07-18 17:38 - 000000000 ____D C:\Users\dell\AppData\Local\Avast Software
2025-04-19 07:38 - 2021-12-17 15:29 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-04-19 07:31 - 2022-02-11 04:51 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-04-19 07:26 - 2025-03-19 13:47 - 000003384 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2025-04-19 07:26 - 2024-05-23 16:45 - 000000670 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2025-04-19 07:26 - 2024-05-23 16:45 - 000000000 ____D C:\Program Files\CCleaner
2025-04-19 07:22 - 2024-05-23 16:45 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2025-04-19 05:44 - 2023-01-21 07:19 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-04-19 05:44 - 2020-06-07 17:11 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-04-19 05:43 - 2023-08-05 09:52 - 000000000 ____D C:\Users\dell\AppData\Local\D3DSCache
2025-04-18 18:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-04-18 18:32 - 2020-09-16 17:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-04-18 05:57 - 2025-02-06 04:57 - 000003100 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2024-05-23 16:45 - 000002250 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - dell
2025-04-18 05:57 - 2022-03-07 22:09 - 000003432 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA
2025-04-18 05:57 - 2022-03-07 22:09 - 000003208 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore
2025-04-18 05:57 - 2021-12-13 17:03 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2021-05-23 06:06 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-04-18 05:57 - 2020-10-27 10:53 - 000002174 _____ C:\WINDOWS\system32\Tasks\npcapwatchdog
2025-04-18 05:57 - 2020-09-16 18:15 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-04-18 05:57 - 2020-09-16 18:15 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-04-18 05:57 - 2020-09-16 18:15 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768368715-448560682-1686515321-1001
2025-04-18 05:57 - 2020-09-16 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-04-17 16:35 - 2023-10-23 21:10 - 000000000 ____D C:\Users\dell\AppData\Local\CrashDumps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-04-17 11:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-04-17 06:33 - 2020-09-16 18:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-04-17 06:33 - 2020-09-16 17:46 - 000008192 ___SH C:\DumpStack.log.tmp
2025-04-17 06:33 - 2019-12-27 14:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-04-16 18:43 - 2022-03-07 22:11 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-04-16 18:43 - 2022-03-07 22:11 - 000002323 _____ C:\Users\Public\Desktop\Brave.lnk
2025-04-16 05:25 - 2019-12-27 14:10 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-04-09 21:19 - 2020-01-06 21:04 - 000000000 ____D C:\Users\dell\AppData\Roaming\Microsoft\Excel
2025-04-09 16:47 - 2020-09-16 18:03 - 001797018 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-04-09 16:47 - 2019-12-07 16:43 - 000751046 _____ C:\WINDOWS\system32\perfh005.dat
2025-04-09 16:47 - 2019-12-07 16:43 - 000162620 _____ C:\WINDOWS\system32\perfc005.dat
2025-04-09 16:47 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-04-09 16:42 - 2019-12-27 14:12 - 000000000 ____D C:\ProgramData\AVAST Software
2025-04-09 16:39 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-04-09 16:38 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-04-09 15:55 - 2019-12-27 14:17 - 000393272 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-04-09 15:55 - 2019-12-27 14:17 - 000391760 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-04-09 15:54 - 2020-10-26 13:39 - 000282680 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-04-09 15:54 - 2020-04-21 03:56 - 000553528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 001427512 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000942672 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000296528 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000248376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000098872 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000084560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000069688 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000037944 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-04-09 15:54 - 2019-12-27 14:17 - 000020536 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-04-03 20:43 - 2020-08-06 19:53 - 000007603 _____ C:\Users\dell\AppData\Local\Resmon.ResmonCfg
2025-03-30 10:29 - 2023-10-11 13:56 - 000000000 ____D C:\Program Files\RUXIM
2025-03-23 15:19 - 2019-12-28 01:40 - 000000000 ____D C:\Users\dell\AppData\Roaming\FileZilla
==================== Files in the root of some directories ========
2021-02-27 13:49 - 2024-04-22 13:42 - 000000128 _____ () C:\Users\dell\AppData\Roaming\winscp.rnd
2020-02-08 15:38 - 2024-12-28 14:57 - 000000128 _____ () C:\Users\dell\AppData\Local\PUTTY.RND
2020-08-06 19:53 - 2025-04-03 20:43 - 000007603 _____ () C:\Users\dell\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================