Welcome back
Personal
Your scan analyticsPowerShell command executed: "C:\Users\***\AppData\Local\CapCut\cleaner.exe"
Command line was obfuscated and launched through a short-lived parent process.
Unsigned library loaded by a non-system path during session startup.
Trusted signed application observed with no tampering behavior.
Pattern matches random executable naming used by temporary loaders.