Prosím o kontrolu logu. Notebook K.O
Napsal: 27 srp 2025 08:38
Zdravím vás, přitelkyně se chystá na VŠ tak jsem ji chtěl trochu pročistit notas ale když jsem ho zapnul tak jsem se nestačil divit, totalně zpomaleny , skoro až nereagující na nic, než jsem se dostal tady na internet a udělal log tak mi to trvalo snad 2 hodiny. A nevím zda má v notasu nějaky vir nebo to ma tak sprasené s prominutím.. Kdyby jste mi koukli na log byl bych rád, děkuji moc ...
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2025
Ran by ASUS (administrator) on LAPTOP-VMGBARE1 (ASUSTeK COMPUTER INC. VivoBook 15_ASUS Laptop X540BA) (27-08-2025 09:23:19)
Running from C:\Users\ASUS\Downloads\FRST64.exe
Loaded Profiles: ASUS
Platform: Microsoft Windows 10 Home Version 22H2 19045.5965 (X64) Language: Angličtina (Spojené království) -> Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\AvastBrowserInstallerIncremental-138.0.31254.169.exe
(C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe ->) (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBox.Agent.exe
(C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\AvastBrowserInstallerIncremental-138.0.31254.169.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\CR_D91B7.tmp\setup.exe <2>
(C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\MicrosoftEdge_X64_139.0.3405.111_138.0.3351.121.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\EDGEMITMP_8A6A2.tmp\setup.exe <2>
(C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\MicrosoftEdge_X64_139.0.3405.111_138.0.3351.121.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe <2>
(DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\Core\mchost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MAT\McPvTray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.19029.20208\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\Microsoft.SharePoint.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0368645.inf_amd64_e3bcafce55b93e88\B368128\atiesrxx.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_a5d3270da26fb113\ICEsoundService64.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(svchost.exe ->) (649690DD-9BE8-48E7-8019-88DCA877AF4E -> McAfee LLC) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\VUL\McVulCtr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\backup\1E1FA7B6-97A6-47A6-A975-511B4E01DC97\OfficeC2RClient.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <4>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
Failed to access process -> chrome.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\138.0.3351.121\Installer\setup.exe [7369808 2025-08-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [AvastBrowserAutoLaunch_6B8827C8557D4EEC6F8BF086C3C85B1D] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --onboarding-at-startup --auto-launch-at-startup --profile-directory="Default" (No File)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\ASUS\AppData\Local\Microsoft\Teams\Update.exe [2593704 2024-09-30] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [Microsoft.Lists] => C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\Microsoft.SharePoint.exe [1042824 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45988576 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [91703144 2025-08-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" [92313984 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Uninstall 25.115.0615.0002] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.115.0615.0002" [0 2025-07-30] () <==== ATTENTION [zero byte File/Folder]
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Uninstall 25.127.0701.0006] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.127.0701.0006" (No File)
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\Windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.66\Installer\chrmstp.exe [2025-08-05] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\138.0.31254.169\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {BC4EA6EB-666C-4354-9F9C-13793DFB310A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {0D290E78-714D-4D2C-B5FA-D952ADC26AE5} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [609592 2018-07-10] (ASUSTek Computer Inc. -> )
Task: {7B421FEC-11D8-4C05-9B26-07A324965A8A} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4415456 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {5C02713B-E393-44FC-BB9B-AEF9C46B9AF7} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {991361E3-380F-413B-877D-D3C5C391897D} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {0FA0D877-C023-4FBD-8325-0514F3D3DC51} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --type=heartbeat --hourly (No File)
Task: {82800861-8E46-4905-A1C8-CAE80B80A694} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --type=heartbeat --logon (No File)
Task: {5B0FE904-9149-45C4-89E2-16F525F713F0} - System32\Tasks\AvastBrowserProtectS-1-5-21-476374901-2804322293-3472495308-1001 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe --runonce (No File)
Task: {D634B6E3-18AB-4A8B-859E-1907132A6FEA} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
Task: {A46D429C-3601-47C5-B7A1-32A5C2A900C1} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
Task: {56F62CAE-8FD4-429C-B636-F84CC741F90D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6E8D1C6B-7D95-45DC-A956-2EABE2D0FDB8} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "437b749e-884b-4f7b-b606-bc6e0eca6286" --version "6.39.0.11548" --silent
Task: {0DEF8E81-A3B3-4203-B1B9-96F106C5B8A9} - System32\Tasks\CCleanerSkipUAC - ASUS => C:\Program Files\CCleaner\CCleaner.exe [39822560 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {31A02A61-23C9-4C3B-870C-AA13731E4ABA} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{054CC7B1-6F74-477D-BA58-5DADF93216A4} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [6813336 2025-08-06] (Google LLC -> Google LLC)
Task: {7F765E9D-D78F-4307-BAE9-1C12A2A99F67} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16889712 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {A51474DC-EBF6-4113-BD14-49D4D9382B6E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28813696 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {DCACE44A-92EB-4D26-B665-BAF07AC3A507} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [70048 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {33B6DDBE-2FEA-422F-8E8F-30D33D9305DD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28813696 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {FF42EA98-B5C6-48C9-8413-4D3EB71327F7} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311152 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {23C5E8DF-5EB8-4C6D-8768-FAD1DE4C0516} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311152 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {CAAB408F-8946-4B0C-94DE-ACF679A610CF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1355064 2025-08-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {A9C4218D-F08F-415F-83CB-13E1B74498EC} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4586528 2025-07-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {32355D11-B4DA-4D7C-B2B0-059D04BD4E42} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\System32\MRT.exe [216824056 2025-07-05] (Microsoft Windows -> Microsoft Corporation) -> C:\Windows\system32\/EHB /HeartbeatFailure "SubmitHeartbeatReportData" /HeartbeatError "0x80072ee7"
Task: {94DF49BE-1877-4A85-B19A-1B481C4F97BD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CB8D7D01-1932-40C6-BA35-C2C160771436} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {42752F08-9361-4CBB-895B-19076BF577B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3032BF73-A7FC-4A80-92E7-0D97260FFA2E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {129CC289-1425-4962-8D72-9B5DEDEA8407} - System32\Tasks\OneDrive Startup Task-S-1-5-21-476374901-2804322293-3472495308-1001 => C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\OneDriveLauncher.exe [723816 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\54C696E6B616: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\865627E616: [DhcpNameServer] 8.8.8.8 4.4.4.4
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\960586F6E65602B427963747DFE6B61602C33302824392: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\45F6D61E16102D202960586F6E656: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\75966496F5A7163696: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\E455D4542594F514152373: [DhcpNameServer] 192.168.0.1 0.0.0.0
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-27]
Edge Extension: (Google Docs Offline) - C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-12]
Edge Extension: (Edge relevant text changes) - C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-13]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [No File]
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default [2025-08-27]
CHR Notifications: Default -> hxxps://www.netflix.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-08-27]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-27]
CHR Extension: (Kopírování a vkládání v Office Online) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2022-11-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-12]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-476374901-2804322293-3472495308-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 0147091756278518mcinstcleanup; C:\ProgramData\McInstTemp0147091756278518\McInst.exe [864720 2021-01-14] (McAfee, LLC -> McAfee, LLC)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R2 AsusAppService; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusAppService\AsusAppService.exe [1176544 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSLiveUpdateAgent; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe [1411528 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSOptimization; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusOptimization\AsusOptimization.exe [206592 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSwitch; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSwitch\AsusSwitch.exe [652744 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemAnalysis; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4415456 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [599808 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13283728 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\Windows\CxSvc\CxAudioSvc.exe [77216 2020-07-28] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.)
S2 CxUIUSvc; C:\Windows\System32\CxUIUSvc32.exe [114960 2020-07-28] (Synaptics Incorporated -> Conexant Systems, Inc.)
R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [299320 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2025-07-09] (HP Inc. -> HP Inc.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [951024 2025-08-27] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe [1926976 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe [4352456 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe [270056 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 AvastSecureBrowserElevationService; "C:\Program Files (x86)\AVAST Software\Browser\Application\138.0.31254.169\elevation_service.exe" [X]
S3 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S2 mfemms; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S3 mfevtp; no ImagePath
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AsusPTPDrv; C:\Windows\System32\drivers\AsusPTPFilter.sys [112856 2020-05-18] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R3 AsusSAIO; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSAIO.sys [51256 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 HIDSwitch; C:\Windows\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [278944 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20016 2025-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [601520 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100768 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath
S0 cfwids; system32\drivers\cfwids.sys [X]
R0 mfeaack; system32\drivers\mfeaack.sys [X]
R0 mfeavfk; system32\drivers\mfeavfk.sys [X]
S0 mfeelamk; system32\drivers\mfeelamk.sys [X]
S0 mfefirek; system32\drivers\mfefirek.sys [X]
R0 mfehidk; system32\drivers\mfehidk.sys [X]
R0 mfeplk; system32\drivers\mfeplk.sys [X]
R0 mfewfpk; system32\drivers\mfewfpk.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-27 09:23 - 2025-08-27 09:26 - 000029807 _____ C:\Users\ASUS\Downloads\FRST.txt
2025-08-27 09:22 - 2025-08-27 09:24 - 000000000 ____D C:\FRST
2025-08-27 09:19 - 2025-08-27 09:20 - 002409472 _____ (Farbar) C:\Users\ASUS\Downloads\FRST64.exe
2025-08-27 09:08 - 2025-08-27 09:08 - 000000000 ____D C:\ProgramData\McInstTemp0147091756278518
2025-08-27 08:41 - 2025-08-27 08:41 - 000000000 ____D C:\ProgramData\Piriform
2025-08-27 08:38 - 2025-08-27 08:39 - 000003384 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2025-08-27 08:38 - 2025-08-27 08:39 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2025-08-27 08:38 - 2025-08-27 08:38 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2025-08-27 08:38 - 2025-08-27 08:38 - 000002900 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - ASUS
2025-08-27 08:36 - 2025-08-27 08:44 - 000000000 ____D C:\Program Files\CCleaner
2025-08-27 08:27 - 2025-08-27 08:32 - 088367400 _____ (Gen Digital Inc.) C:\Users\ASUS\Downloads\ccsetup639.exe
2025-08-05 12:44 - 2025-08-05 12:44 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-27 09:28 - 2021-02-15 11:56 - 223939376 ____C C:\Windows\system32\MRT.exe
2025-08-27 09:27 - 2020-05-13 05:21 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-08-27 09:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-08-27 09:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-08-27 09:19 - 2020-11-28 20:00 - 000000000 ____D C:\Users\ASUS\AppData\Local\D3DSCache
2025-08-27 09:18 - 2021-12-26 01:30 - 000000000 ____D C:\Windows\SystemTemp
2025-08-27 09:17 - 2021-02-12 18:49 - 000000000 ____D C:\Users\ASUS\AppData\Local\CrashDumps
2025-08-27 09:16 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-08-27 09:16 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-08-27 09:16 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2025-08-27 09:14 - 2020-05-13 05:22 - 000000000 ____D C:\Program Files\Microsoft Office
2025-08-27 09:12 - 2020-11-28 19:23 - 000000000 ____D C:\ProgramData\McAfee
2025-08-27 09:08 - 2020-11-28 19:23 - 000000000 ____D C:\Program Files\Common Files\McAfee
2025-08-27 09:03 - 2025-02-06 05:02 - 000003568 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2021-12-12 18:33 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2020-11-28 20:07 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2020-11-28 20:00 - 000000000 ____D C:\Users\ASUS\AppData\Local\Packages
2025-08-27 09:03 - 2020-11-28 19:59 - 000002376 _____ C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-08-27 09:02 - 2021-02-12 18:09 - 000000000 ____D C:\ProgramData\Avast Software
2025-08-27 08:53 - 2021-03-27 17:12 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Zoom
2025-08-27 08:53 - 2021-02-12 18:46 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Microsoft\Teams
2025-08-27 08:52 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-08-27 08:50 - 2020-05-13 06:02 - 000000000 ____D C:\Windows\Panther
2025-08-27 08:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2025-08-27 08:22 - 2020-05-13 05:18 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-08-27 06:08 - 2025-01-20 04:38 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-08-08 21:09 - 2020-12-05 15:36 - 000002878 _____ C:\Windows\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2025-08-05 22:25 - 2021-02-12 18:52 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Microsoft\Word
2025-08-05 22:21 - 2021-02-12 18:03 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-08-05 12:43 - 2020-11-28 20:18 - 000000000 ____D C:\ProgramData\Packages
2025-08-05 10:56 - 2025-05-27 23:53 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-08-04 03:32 - 2022-12-14 17:45 - 000000000 ___RD C:\Users\ASUS\OneDrive - Vysoká škola PRIGO, z.ú
2025-08-01 05:11 - 2020-05-13 05:21 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-08-01 05:11 - 2020-05-13 05:21 - 000003514 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-07-30 19:26 - 2022-01-21 10:51 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2025-07-30 19:25 - 2025-02-23 11:30 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2025
Ran by ASUS (administrator) on LAPTOP-VMGBARE1 (ASUSTeK COMPUTER INC. VivoBook 15_ASUS Laptop X540BA) (27-08-2025 09:23:19)
Running from C:\Users\ASUS\Downloads\FRST64.exe
Loaded Profiles: ASUS
Platform: Microsoft Windows 10 Home Version 22H2 19045.5965 (X64) Language: Angličtina (Spojené království) -> Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\AvastBrowserInstallerIncremental-138.0.31254.169.exe
(C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe ->) (ASUSTek Computer Inc. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBox.Agent.exe
(C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\AvastBrowserInstallerIncremental-138.0.31254.169.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files (x86)\AVAST Software\Browser\Update\Install\{A8E88F2A-B62F-48E6-A3BB-86B737CFB407}\CR_D91B7.tmp\setup.exe <2>
(C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\MicrosoftEdge_X64_139.0.3405.111_138.0.3351.121.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\EDGEMITMP_8A6A2.tmp\setup.exe <2>
(C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{57C3997D-C13A-4F13-8194-1ED7E5E41ACF}\MicrosoftEdge_X64_139.0.3405.111_138.0.3351.121.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe <2>
(DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\Core\mchost.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe
(McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MAT\McPvTray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\Updates\16.0.19029.20208\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\Microsoft.SharePoint.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0368645.inf_amd64_e3bcafce55b93e88\B368128\atiesrxx.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe
(services.exe ->) (ASUSTek Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (Conexant Systems LLC -> Conexant Systems, Inc.) C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\DriverStore\FileRepository\icesoundapo64.inf_amd64_a5d3270da26fb113\ICEsoundService64.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(svchost.exe ->) (649690DD-9BE8-48E7-8019-88DCA877AF4E -> McAfee LLC) C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_2.1.68.0_x64__wafk5atnkzcwy\mcafee-security.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(svchost.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\VUL\McVulCtr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\backup\1E1FA7B6-97A6-47A6-A975-511B4E01DC97\OfficeC2RClient.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <4>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
Failed to access process -> chrome.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\138.0.3351.121\Installer\setup.exe [7369808 2025-08-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [AvastBrowserAutoLaunch_6B8827C8557D4EEC6F8BF086C3C85B1D] => "C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe" --check-run=src=logon --onboarding-at-startup --auto-launch-at-startup --profile-directory="Default" (No File)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\ASUS\AppData\Local\Microsoft\Teams\Update.exe [2593704 2024-09-30] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [Microsoft.Lists] => C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\Microsoft.SharePoint.exe [1042824 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45988576 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [91703144 2025-08-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" [92313984 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Uninstall 25.115.0615.0002] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.115.0615.0002" [0 2025-07-30] () <==== ATTENTION [zero byte File/Folder]
HKU\S-1-5-21-476374901-2804322293-3472495308-1001\...\RunOnce: [Uninstall 25.127.0701.0006] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.127.0701.0006" (No File)
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\Windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.66\Installer\chrmstp.exe [2025-08-05] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> "C:\Program Files (x86)\AVAST Software\Browser\Application\138.0.31254.169\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
BootExecute: autocheck autochk * icarus_rvrt.exe
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {BC4EA6EB-666C-4354-9F9C-13793DFB310A} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.)
Task: {0D290E78-714D-4D2C-B5FA-D952ADC26AE5} - System32\Tasks\ASUS Hello => C:\Program Files (x86)\ASUS\ASUS Hello\ASUSHelloBG.exe [609592 2018-07-10] (ASUSTek Computer Inc. -> )
Task: {7B421FEC-11D8-4C05-9B26-07A324965A8A} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4415456 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {5C02713B-E393-44FC-BB9B-AEF9C46B9AF7} - System32\Tasks\ATK Package 36D18D69AFC3 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {991361E3-380F-413B-877D-D3C5C391897D} - System32\Tasks\ATK Package A22126881260 => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-24] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.)
Task: {0FA0D877-C023-4FBD-8325-0514F3D3DC51} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --type=heartbeat --hourly (No File)
Task: {82800861-8E46-4905-A1C8-CAE80B80A694} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe --type=heartbeat --logon (No File)
Task: {5B0FE904-9149-45C4-89E2-16F525F713F0} - System32\Tasks\AvastBrowserProtectS-1-5-21-476374901-2804322293-3472495308-1001 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe --runonce (No File)
Task: {D634B6E3-18AB-4A8B-859E-1907132A6FEA} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
Task: {A46D429C-3601-47C5-B7A1-32A5C2A900C1} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
Task: {56F62CAE-8FD4-429C-B636-F84CC741F90D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6E8D1C6B-7D95-45DC-A956-2EABE2D0FDB8} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6140640 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "437b749e-884b-4f7b-b606-bc6e0eca6286" --version "6.39.0.11548" --silent
Task: {0DEF8E81-A3B3-4203-B1B9-96F106C5B8A9} - System32\Tasks\CCleanerSkipUAC - ASUS => C:\Program Files\CCleaner\CCleaner.exe [39822560 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {31A02A61-23C9-4C3B-870C-AA13731E4ABA} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{054CC7B1-6F74-477D-BA58-5DADF93216A4} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [6813336 2025-08-06] (Google LLC -> Google LLC)
Task: {7F765E9D-D78F-4307-BAE9-1C12A2A99F67} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16889712 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {A51474DC-EBF6-4113-BD14-49D4D9382B6E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28813696 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {DCACE44A-92EB-4D26-B665-BAF07AC3A507} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [70048 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {33B6DDBE-2FEA-422F-8E8F-30D33D9305DD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28813696 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
Task: {FF42EA98-B5C6-48C9-8413-4D3EB71327F7} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311152 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {23C5E8DF-5EB8-4C6D-8768-FAD1DE4C0516} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311152 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {CAAB408F-8946-4B0C-94DE-ACF679A610CF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1355064 2025-08-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {A9C4218D-F08F-415F-83CB-13E1B74498EC} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4586528 2025-07-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {32355D11-B4DA-4D7C-B2B0-059D04BD4E42} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\Windows\System32\MRT.exe [216824056 2025-07-05] (Microsoft Windows -> Microsoft Corporation) -> C:\Windows\system32\/EHB /HeartbeatFailure "SubmitHeartbeatReportData" /HeartbeatError "0x80072ee7"
Task: {94DF49BE-1877-4A85-B19A-1B481C4F97BD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CB8D7D01-1932-40C6-BA35-C2C160771436} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {42752F08-9361-4CBB-895B-19076BF577B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3032BF73-A7FC-4A80-92E7-0D97260FFA2E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {129CC289-1425-4962-8D72-9B5DEDEA8407} - System32\Tasks\OneDrive Startup Task-S-1-5-21-476374901-2804322293-3472495308-1001 => C:\Users\ASUS\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\OneDriveLauncher.exe [723816 2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\54C696E6B616: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\865627E616: [DhcpNameServer] 8.8.8.8 4.4.4.4
Tcpip\..\Interfaces\{619f83fc-1845-4bac-a7e6-4023b588cff7}\960586F6E65602B427963747DFE6B61602C33302824392: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\45F6D61E16102D202960586F6E656: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\75966496F5A7163696: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{6eac6221-0a5e-4cc6-9e15-5501ef51b08f}\E455D4542594F514152373: [DhcpNameServer] 192.168.0.1 0.0.0.0
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-27]
Edge Extension: (Google Docs Offline) - C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-12]
Edge Extension: (Edge relevant text changes) - C:\Users\ASUS\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-13]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-08-27] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [No File]
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [No File]
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default [2025-08-27]
CHR Notifications: Default -> hxxps://www.netflix.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-08-27]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-08-27]
CHR Extension: (Dokumenty Google offline) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-08-27]
CHR Extension: (Kopírování a vkládání v Office Online) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2022-11-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ASUS\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-12]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-476374901-2804322293-3472495308-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 0147091756278518mcinstcleanup; C:\ProgramData\McInstTemp0147091756278518\McInst.exe [864720 2021-01-14] (McAfee, LLC -> McAfee, LLC)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R2 AsusAppService; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusAppService\AsusAppService.exe [1176544 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSLiveUpdateAgent; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSoftwareManager\AsusSoftwareManager.exe [1411528 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSOptimization; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\AsusOptimization\AsusOptimization.exe [206592 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSwitch; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSwitch\AsusSwitch.exe [652744 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemAnalysis; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSystemAnalysis.exe [4415456 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [599808 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-14] (Avast Software s.r.o. -> AVAST Software)
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-08-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13283728 2025-08-18] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\Windows\CxSvc\CxAudioSvc.exe [77216 2020-07-28] (Microsoft Windows Hardware Compatibility Publisher -> Conexant Systems LLC.)
S2 CxUIUSvc; C:\Windows\System32\CxUIUSvc32.exe [114960 2020-07-28] (Synaptics Incorporated -> Conexant Systems, Inc.)
R2 GiftBox.Service; C:\Program Files (x86)\ASUS\ASUS GiftBox Service\GiftBoxService.exe [299320 2019-04-09] (ASUSTek Computer Inc. -> ASUSTeK Computer Inc.)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2025-07-09] (HP Inc. -> HP Inc.)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [951024 2025-08-27] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe [1926976 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe [4352456 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe [270056 2025-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 AvastSecureBrowserElevationService; "C:\Program Files (x86)\AVAST Software\Browser\Application\138.0.31254.169\elevation_service.exe" [X]
S3 mfefire; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S2 mfemms; "C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe" [X]
S3 mfevtp; no ImagePath
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AsusPTPDrv; C:\Windows\System32\drivers\AsusPTPFilter.sys [112856 2020-05-18] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.)
R3 AsusSAIO; C:\Windows\System32\DriverStore\FileRepository\asussci.inf_amd64_cf6ed9db8bd1e032\ASUSSystemAnalysis\AsusSAIO.sys [51256 2025-05-27] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R3 HIDSwitch; C:\Windows\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [278944 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20016 2025-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [601520 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100768 2025-03-13] (Microsoft Windows -> Microsoft Corporation)
U1 aswbdisk; no ImagePath
S0 cfwids; system32\drivers\cfwids.sys [X]
R0 mfeaack; system32\drivers\mfeaack.sys [X]
R0 mfeavfk; system32\drivers\mfeavfk.sys [X]
S0 mfeelamk; system32\drivers\mfeelamk.sys [X]
S0 mfefirek; system32\drivers\mfefirek.sys [X]
R0 mfehidk; system32\drivers\mfehidk.sys [X]
R0 mfeplk; system32\drivers\mfeplk.sys [X]
R0 mfewfpk; system32\drivers\mfewfpk.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-27 09:23 - 2025-08-27 09:26 - 000029807 _____ C:\Users\ASUS\Downloads\FRST.txt
2025-08-27 09:22 - 2025-08-27 09:24 - 000000000 ____D C:\FRST
2025-08-27 09:19 - 2025-08-27 09:20 - 002409472 _____ (Farbar) C:\Users\ASUS\Downloads\FRST64.exe
2025-08-27 09:08 - 2025-08-27 09:08 - 000000000 ____D C:\ProgramData\McInstTemp0147091756278518
2025-08-27 08:41 - 2025-08-27 08:41 - 000000000 ____D C:\ProgramData\Piriform
2025-08-27 08:38 - 2025-08-27 08:39 - 000003384 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2025-08-27 08:38 - 2025-08-27 08:39 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2025-08-27 08:38 - 2025-08-27 08:38 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2025-08-27 08:38 - 2025-08-27 08:38 - 000002900 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - ASUS
2025-08-27 08:36 - 2025-08-27 08:44 - 000000000 ____D C:\Program Files\CCleaner
2025-08-27 08:27 - 2025-08-27 08:32 - 088367400 _____ (Gen Digital Inc.) C:\Users\ASUS\Downloads\ccsetup639.exe
2025-08-05 12:44 - 2025-08-05 12:44 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-08-27 09:28 - 2021-02-15 11:56 - 223939376 ____C C:\Windows\system32\MRT.exe
2025-08-27 09:27 - 2020-05-13 05:21 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-08-27 09:27 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-08-27 09:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-08-27 09:19 - 2020-11-28 20:00 - 000000000 ____D C:\Users\ASUS\AppData\Local\D3DSCache
2025-08-27 09:18 - 2021-12-26 01:30 - 000000000 ____D C:\Windows\SystemTemp
2025-08-27 09:17 - 2021-02-12 18:49 - 000000000 ____D C:\Users\ASUS\AppData\Local\CrashDumps
2025-08-27 09:16 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-08-27 09:16 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-08-27 09:16 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2025-08-27 09:14 - 2020-05-13 05:22 - 000000000 ____D C:\Program Files\Microsoft Office
2025-08-27 09:12 - 2020-11-28 19:23 - 000000000 ____D C:\ProgramData\McAfee
2025-08-27 09:08 - 2020-11-28 19:23 - 000000000 ____D C:\Program Files\Common Files\McAfee
2025-08-27 09:03 - 2025-02-06 05:02 - 000003568 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2021-12-12 18:33 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2020-11-28 20:07 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-476374901-2804322293-3472495308-1001
2025-08-27 09:03 - 2020-11-28 20:00 - 000000000 ____D C:\Users\ASUS\AppData\Local\Packages
2025-08-27 09:03 - 2020-11-28 19:59 - 000002376 _____ C:\Users\ASUS\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-08-27 09:02 - 2021-02-12 18:09 - 000000000 ____D C:\ProgramData\Avast Software
2025-08-27 08:53 - 2021-03-27 17:12 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Zoom
2025-08-27 08:53 - 2021-02-12 18:46 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Microsoft\Teams
2025-08-27 08:52 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-08-27 08:50 - 2020-05-13 06:02 - 000000000 ____D C:\Windows\Panther
2025-08-27 08:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2025-08-27 08:22 - 2020-05-13 05:18 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-08-27 06:08 - 2025-01-20 04:38 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-08-08 21:09 - 2020-12-05 15:36 - 000002878 _____ C:\Windows\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2025-08-05 22:25 - 2021-02-12 18:52 - 000000000 ____D C:\Users\ASUS\AppData\Roaming\Microsoft\Word
2025-08-05 22:21 - 2021-02-12 18:03 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-08-05 12:43 - 2020-11-28 20:18 - 000000000 ____D C:\ProgramData\Packages
2025-08-05 10:56 - 2025-05-27 23:53 - 000002138 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-08-04 03:32 - 2022-12-14 17:45 - 000000000 ___RD C:\Users\ASUS\OneDrive - Vysoká škola PRIGO, z.ú
2025-08-01 05:11 - 2020-05-13 05:21 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-08-01 05:11 - 2020-05-13 05:21 - 000003514 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-07-30 19:26 - 2022-01-21 10:51 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2025-07-30 19:25 - 2025-02-23 11:30 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================