start:: CreateRestorePoint: CloseProcesses: Hosts: HKLM\...\StartupApproved\Run: => "Riot Vanguard" HKU\S-1-5-21-4096584185-1925986385-498076580-1001\...\StartupApproved\Run: => "Discord" HKU\S-1-5-21-4096584185-1925986385-498076580-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_DD8B7A8D2D8ADB6080EF4FA88EB605B0" HKU\S-1-5-21-4096584185-1925986385-498076580-1001\...\StartupApproved\Run: => "EpicGamesLauncher" HKU\S-1-5-21-4096584185-1925986385-498076580-1001\...\StartupApproved\Run: => "Steam" FirewallRules: [{538587E5-344A-4739-BCAF-4DCFFA7E148F}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe <15> (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\AvastBrowserCrashHandler64.exe HKU\S-1-5-21-4096584185-1925986385-498076580-1001\...\Run: [AvastBrowserAutoLaunch_DD8B7A8D2D8ADB6080EF4FA88EB605B0] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2097736 2020-09-09] (Avast Software s.r.o. -> AVAST Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\85.0.5815.103\Installer\chrmstp.exe [2020-09-21] (Avast Software s.r.o. -> AVAST Software) Task: {30152488-72C2-42D2-A340-D1B8ACB3C04E} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-01] (Avast Software s.r.o. -> AVAST Software) Task: {4B605779-9453-4915-A779-85CD7E6AA7CF} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [2097736 2020-09-09] (Avast Software s.r.o. -> AVAST Software) Task: {F974DD6D-AA8B-4B0F-B697-C81D572AC8A3} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-01] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-01] (Avast Software s.r.o. -> AVAST Software) FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1065.0\npAvastBrowserUpdate3.dll [2020-09-01] (Avast Software s.r.o. -> AVAST Software S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-01] (Avast Software s.r.o. -> AVAST Software) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [194200 2020-09-01] (Avast Software s.r.o. -> AVAST Software) S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\85.0.5815.103\elevation_service.exe [1343624 2020-09-09] (Avast Software s.r.o. -> AVAST Software) C:\Windows\Temp\*.* C:\Users\CurrentUserName\AppData\Local\Temp\*.* cmd: ipconfig /flushdns end::