Fix result of Farbar Recovery Scan Tool (x64) Version: 16-09-2024 Ran by Dee Skelley (05-10-2024 11:53:34) Run:1 Running from C:\Users\Dee Skelley\Desktop Loaded Profiles: Dee Skelley Boot Mode: Normal ============================================== fixlist content: ***************** Start:: CreateRestorePoint: CloseProcesses: AV: Kaspersky Security Cloud (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23} FW: Kaspersky Security Cloud (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58} Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1189.1 - AVAST Software) Hidden AlternateDataStreams: C:\ProgramData\ntuser.dat.LOG2:CCE2DBB696 [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat{ca52b842-3aa0-11ec-84df-3085a9b34157}.TM.blf:D0B775491F [3442] AlternateDataStreams: C:\ProgramData\ntuser.dat{ca52b842-3aa0-11ec-84df-3085a9b34157}.TMContainer00000000000000000002.regtrans-ms:5915CEE35F [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk:980850BA8A [3442] AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442] AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [10018] HKLM\...\StartupApproved\Run: => "RZSurroundHelper" HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe" HKLM\...\StartupApproved\Run: => "Riot Vanguard" HKU\S-1-5-21-2958740073-524152327-740456925-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_C9176D295DD1B25034BE632CD236401C" FirewallRules: [{0E233C12-FD45-4C9E-A652-776AC35A8846}] => (Allow) C:\Users\Dee Skelley\Downloads\radeon-software-adrenalin-2020-21.7.1-minimalsetup-210714_web.exe => No File FirewallRules: [{E717B377-50FA-4C73-BA76-363FA1602785}] => (Allow) C:\Users\Dee Skelley\Downloads\radeon-software-adrenalin-2020-21.7.1-minimalsetup-210714_web.exe => No File FirewallRules: [{EFB169AB-2D2D-45BD-9337-6990F6ACFC44}] => (Allow) C:\Users\Dee Skelley\Downloads\radeon-software-adrenalin-2020-21.7.1-minimalsetup-210714_web.exe => No File FirewallRules: [{8D586DB2-183C-4899-89A3-607005E89F96}] => (Allow) C:\Users\Dee Skelley\Downloads\radeon-software-adrenalin-2020-21.7.1-minimalsetup-210714_web.exe => No File HKLM\...\Run: [RZSurroundHelper] => C:\Windows\system32\RZSurroundHelper.exe (No File) HKU\S-1-5-21-2958740073-524152327-740456925-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\Razer\RzAppEngine\rzappengine.exe --application-host=apps.razer.com --start-hidden --no-sandbox --disable-gpu --disable-background-timer-throttling --disable-extensions --new-window (the data entry has 232 more characters). (No File) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION S2 AODDriver4.3.0; \??\C:\Program Files\AMD\Performance Profile Client\amd64\AODDriver2.sys [X] 2024-10-04 18:16 - 2024-10-04 18:16 - 000249584 _____ (Gen Digital Inc.) C:\Users\Dee Skelley\Downloads\avast_free_antivirus_setup_online.exe 2024-10-04 18:16 - 2024-10-04 18:16 - 000249584 _____ (Gen Digital Inc.) C:\Users\Dee Skelley\Desktop\avast_free_antivirus_setup_online.exe EmptyTemp: End:: ***************** Restore point was successfully created. Processes closed successfully. "AV: Kaspersky Security Cloud (Enabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}" => removed successfully "FW: Kaspersky Security Cloud (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58}" => removed successfully "HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{19C3AB22-3718-4E4D-B203-242F5001565B}\\SystemComponent" => removed successfully C:\ProgramData\ntuser.dat.LOG2 => ":CCE2DBB696" ADS removed successfully C:\ProgramData\ntuser.dat{ca52b842-3aa0-11ec-84df-3085a9b34157}.TM.blf => ":D0B775491F" ADS removed successfully C:\ProgramData\ntuser.dat{ca52b842-3aa0-11ec-84df-3085a9b34157}.TMContainer00000000000000000002.regtrans-ms => ":5915CEE35F" ADS removed successfully C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini => ":B1DA6C571C" ADS removed successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk => ":980850BA8A" ADS removed successfully C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk => ":F20EF51E1F" ADS removed successfully C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\RZSurroundHelper" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\RZSurroundHelper" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\DriverUpdUI.exe" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\DriverUpdUI.exe" => not found "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\Riot Vanguard" => removed successfully "HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\Riot Vanguard" => not found "HKU\S-1-5-21-2958740073-524152327-740456925-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run\\AvastBrowserAutoLaunch_C9176D295DD1B25034BE632CD236401C" => removed successfully "HKU\S-1-5-21-2958740073-524152327-740456925-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AvastBrowserAutoLaunch_C9176D295DD1B25034BE632CD236401C" => not found "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0E233C12-FD45-4C9E-A652-776AC35A8846}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E717B377-50FA-4C73-BA76-363FA1602785}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EFB169AB-2D2D-45BD-9337-6990F6ACFC44}" => removed successfully "HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8D586DB2-183C-4899-89A3-607005E89F96}" => removed successfully "HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\RZSurroundHelper" => not found "HKU\S-1-5-21-2958740073-524152327-740456925-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Application Restart #1" => removed successfully HKLM\SOFTWARE\Policies\Mozilla => removed successfully HKLM\System\CurrentControlSet\Services\AODDriver4.3.0 => removed successfully AODDriver4.3.0 => service removed successfully C:\Users\Dee Skelley\Downloads\avast_free_antivirus_setup_online.exe => moved successfully C:\Users\Dee Skelley\Desktop\avast_free_antivirus_setup_online.exe => moved successfully =========== EmptyTemp: ========== FlushDNS => completed BITS transfer queue => 1310720 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 48629710 B Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 254955935 B Windows/system/drivers => 7260219 B Edge => 0 B Chrome => 14226339 B Firefox => 85794573 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 0 B systemprofile32 => 0 B LocalService => 1264946 B NetworkService => 228005778 B Dee Skelley => 295152148 B OVRLibraryService => 295152148 B RecycleBin => 7074221535 B EmptyTemp: => 7.7 GB temporary data Removed. ================================ The system needed a reboot. ==== End of Fixlog 11:55:32 ====