Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 06-12-2024
Ran by kater (administrator) on MEDÚZA (HP HP Laptop 15s-eq2xxx) (08-12-2024 21:37:46)
Running from C:\Users\kater\Desktop\FRST64.exe
Loaded Profiles: kater
Platform: Microsoft Windows 11 Home Version 23H2 22631.4460 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\BridgeCommunication.exe
(DriverStore\FileRepository\u0401681.inf_amd64_636ae48616d7efc4\B401510\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0401681.inf_amd64_636ae48616d7efc4\B401510\atieclxx.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_2.1.4.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe
(ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <16>
(SECOMN64.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOCL64.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0401681.inf_amd64_636ae48616d7efc4\B401510\atiesrxx.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\SysInfoCap.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe <2>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_af49968a824c7864\RtkAudUService64.exe <3>
(services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe
(sihost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> DesktopExtension) C:\Program Files\WindowsApps\ad2f1837.myhp_38.52440.1105.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\ad2f1837.myhp_38.52440.1105.0_x64__v10z8vjag6ke6\HP.myHP.exe
(svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WPS\1.9.253.1\neo\core\mc-neo-host.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoftwindows.client.webexperience_524.30502.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.4383_none_e957b12c42d242a6\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_af49968a824c7864\RtkAudUService64.exe [1964328 2024-03-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-21-2903539764-2176869251-1691060526-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [539152 2024-09-20] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-2903539764-2176869251-1691060526-1001\...\Run: [MicrosoftEdgeAutoLaunch_66090DDE054034F9917E2C99F86CD904] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911232 2024-12-05] (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2E37CACC-BBA4-4898-9020-55E0A7189F72} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1003016 2024-11-13] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {948AFCB8-0BD4-46D0-9FA9-257B4831DC9D} - System32\Tasks\HP\Consent Manager Launcher => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {7C8B3A68-5291-47DB-B5C0-54344A5E5670} - System32\Tasks\McAfee Sustainability => C:\Program Files\McAfee\WPS\1.9.253.1\sustainability\mc-sustainability.exe [777720 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {89A1CB5D-3142-4CC4-9614-3E8ADE6EBA44} - System32\Tasks\McAfee\DAD.WPS.Execute.Updates => C:\Program Files\McAfee\WPS\1.9.253.1\dad\mc-dad.exe [4369656 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {4AA94866-D075-40AC-9290-0B93134E2D42} - System32\Tasks\McAfee\McPcoScanner => C:\Program Files\McAfee\WPS\1.9.253.1\pcoscanner\mc-pco-scanner.exe [736112 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {923CFF31-4B59-424A-ACC9-B184B1A0ECF0} - System32\Tasks\McAfee\WPS\amwebapitriggertask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {923CFF31-4B59-424A-ACC9-B184B1A0ECF0} - System32\Tasks\McAfee\WPS\amwebapitriggertask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {D2479431-1A9E-418F-B3B7-153074B89D96} - System32\Tasks\McAfee\WPS\datupdatetask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {D2479431-1A9E-418F-B3B7-153074B89D96} - System32\Tasks\McAfee\WPS\datupdatetask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {A625A1EF-C803-4DC3-974E-317478AF9CAA} - System32\Tasks\McAfee\WPS\McAfee Hotfix => C:\Program Files\McAfee\WPS\1.9.253.1\dad\3.21.6\mc-dad.exe [2641432 2024-06-21] (McAfee, LLC -> McAfee, LLC)
Task: {ABA11CED-DF1E-4C38-8815-E2CEE1CA2725} - System32\Tasks\McAfee\WPS\odsscheduledtask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {ABA11CED-DF1E-4C38-8815-E2CEE1CA2725} - System32\Tasks\McAfee\WPS\odsscheduledtask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {10DC282D-A4E2-4B41-9512-8B7BD479D1F5} - System32\Tasks\McAfee\WPS\systemrebootedtask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {10DC282D-A4E2-4B41-9512-8B7BD479D1F5} - System32\Tasks\McAfee\WPS\systemrebootedtask => {1A62D23B-93C2-468A-B6B0-FFB2A23C1C0D} C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {AFD104D5-DBC1-4B4D-A9D9-334EBB911114} - System32\Tasks\McAfee\WPS\Update => {81A7CB63-BB07-4DAD-8E72-07B3A9BB08E2} C:\Program Files\McAfee\WPS\1.9.253.1\mc-update.exe [5071576 2024-04-08] (McAfee, LLC -> McAfee, LLC)
Task: {D1681141-B600-4409-875C-7B827E9A822A} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {B90A4D59-17FF-4CE2-B5F8-F487066B2B4D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28644032 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA23E49F-BF04-46AA-9D23-47F8C667F0DA} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {0BECB3AF-2EAA-4063-A855-FE7C3A423F44} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312408 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {BFBD1EA8-F3DD-4A28-B039-A1AD4449140E} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [187600 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {4DCD541C-BCAA-4268-9AC0-946230D4CAF2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{b6f7a6ce-2b08-4a32-9ed7-7dede6a81a7a}: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{b6f7a6ce-2b08-4a32-9ed7-7dede6a81a7a}: [DhcpDomain] home

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\kater\AppData\Local\Microsoft\Edge\User Data\Default [2024-12-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\kater\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-08]
Edge Extension: (Edge relevant text changes) - C:\Users\kater\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-12-08]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-12-08] (Microsoft Corporation -> Microsoft Corporation)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13652176 2024-12-08] (Microsoft Corporation -> Microsoft Corporation)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\AppHelperCap.exe [912480 2024-11-10] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\DiagsCap.exe [910944 2024-11-10] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\NetworkCap.exe [906848 2024-11-10] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_8a181b75f1f43801\x64\SysInfoCap.exe [911480 2024-11-10] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe [569008 2024-05-07] (HP Inc. -> HP Inc.)
R2 mc-fw-host; C:\Program Files\McAfee\WPS\1.9.253.1\mc-fw-host.exe [2304928 2024-04-08] (McAfee, LLC -> McAfee, LLC)
S3 mc-wps-update; C:\Program Files\McAfee\WPS\1.9.253.1\mc-update.exe [5071576 2024-04-08] (McAfee, LLC -> McAfee, LLC)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [926176 2024-12-08] (McAfee, LLC -> McAfee, LLC)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [2909208 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [128376 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AMDAfdAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_b8f7ebeb2ea11a27\amdacpafd.sys [435632 2023-12-18] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [56248 2024-03-27] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0401681.inf_amd64_636ae48616d7efc4\B401510\amdkmdag.sys [106583664 2024-03-27] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [144816 2022-07-28] (Alcorlink Corp. -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [218592 2024-10-26] (Microsoft Windows -> Microsoft Corporation)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
S0 mfeelam; C:\WINDOWS\System32\DRIVERS\mfeelam.sys [18400 2024-04-08] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R0 mfesec; C:\WINDOWS\System32\DRIVERS\mfesec.sys [82144 2024-04-08] (McAfee, LLC -> McAfee, LLC)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [51192 2024-09-17] (OpenVPN Inc. -> The OpenVPN Project)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [94208 2024-10-26] (Microsoft Windows -> )
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [48536 2022-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [438544 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [90384 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [29680 2024-09-17] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP)
U3 aspnet_state; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-12-08 21:37 - 2024-12-08 21:38 - 000017643 _____ C:\Users\kater\Desktop\FRST.txt
2024-12-08 21:37 - 2024-12-08 21:36 - 002402304 _____ (Farbar) C:\Users\kater\Desktop\FRST64.exe
2024-12-08 21:36 - 2024-12-08 21:37 - 000000000 ____D C:\FRST
2024-12-08 21:36 - 2024-12-08 21:36 - 002402304 _____ (Farbar) C:\Users\kater\Downloads\FRST64.exe
2024-12-08 21:29 - 2024-12-08 21:29 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-12-08 21:28 - 2024-12-08 21:28 - 000002456 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk
2024-12-08 21:19 - 2024-12-08 21:19 - 000000000 ____D C:\Users\kater\AppData\Local\Comms
2024-12-08 21:17 - 2024-12-08 21:17 - 000000000 ____D C:\Users\kater\AppData\Local\VirtualStore
2024-12-08 21:05 - 2024-12-08 21:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard
2024-12-08 21:00 - 2024-12-08 21:00 - 000000000 ____D C:\Users\kater\AppData\Local\McAfee
2024-12-08 20:50 - 2024-12-08 20:50 - 000000000 ___HD C:\OneDriveTemp
2024-12-08 20:48 - 2024-12-08 21:33 - 000000000 ___RD C:\Users\kater\OneDrive
2024-12-08 20:48 - 2024-12-08 20:50 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2903539764-2176869251-1691060526-1001
2024-12-08 20:48 - 2024-12-08 20:50 - 000003362 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2903539764-2176869251-1691060526-1001
2024-12-08 20:48 - 2024-12-08 20:50 - 000002388 _____ C:\Users\kater\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-12-08 20:48 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater\AppData\Roaming\HP
2024-12-08 20:48 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater\AppData\LocalLow\AMD
2024-12-08 20:48 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater\AppData\Local\HP
2024-12-08 20:48 - 2024-12-08 20:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2024-12-08 20:47 - 2024-12-08 21:38 - 000000000 ____D C:\Users\kater\AppData\Local\Packages
2024-12-08 20:47 - 2024-12-08 21:38 - 000000000 ____D C:\Users\kater\AppData\Local\D3DSCache
2024-12-08 20:47 - 2024-12-08 21:32 - 000000000 ____D C:\Users\kater\AppData\Local\ConnectedDevicesPlatform
2024-12-08 20:47 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater\AppData\Local\Publishers
2024-12-08 20:47 - 2024-12-08 20:47 - 000000000 ___SD C:\Users\kater\AppData\Roaming\Microsoft\Crypto
2024-12-08 20:47 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Roaming\Microsoft\Vault
2024-12-08 20:47 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Roaming\Adobe
2024-12-08 20:47 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Local\SoundResearch
2024-12-08 20:47 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Local\AMD
2024-12-08 20:44 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Local\PlaceholderTileLogoFolder
2024-12-08 20:44 - 2024-12-08 20:44 - 000000000 ___SD C:\Users\kater\AppData\Roaming\Microsoft\SystemCertificates
2024-12-08 20:43 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater\AppData\Roaming\Microsoft\Spelling
2024-12-08 20:43 - 2024-12-08 20:48 - 000000000 ____D C:\Users\kater
2024-12-08 20:43 - 2024-12-08 20:47 - 000000000 ____D C:\Users\kater\AppData\Roaming\Microsoft\Windows
2024-12-08 20:43 - 2024-12-08 20:43 - 000000020 ___SH C:\Users\kater\ntuser.ini
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Šablony
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Soubory cookie
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Poslední
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Okolní tiskárny
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Okolní síť
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Nabídka Start
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Dokumenty
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Documents\Obrázky
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Documents\Hudba
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Documents\Filmy
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\Data aplikací
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 _SHDL C:\Users\kater\AppData\Local\Data aplikací
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 ___SD C:\Users\kater\AppData\Roaming\Microsoft\Protect
2024-12-08 20:43 - 2024-12-08 20:43 - 000000000 ___SD C:\Users\kater\AppData\Roaming\Microsoft\Credentials
2024-12-08 20:43 - 2024-12-08 20:32 - 000000000 ____D C:\Users\kater\AppData\Roaming\Microsoft\Network
2024-12-08 20:40 - 2024-12-08 20:40 - 001715708 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-12-08 20:40 - 2024-12-08 20:40 - 000726386 _____ C:\WINDOWS\system32\perfh005.dat
2024-12-08 20:40 - 2024-12-08 20:40 - 000150618 _____ C:\WINDOWS\system32\perfc005.dat
2024-12-08 20:32 - 2024-12-08 21:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-12-08 20:32 - 2024-12-08 20:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2024-12-08 20:32 - 2024-12-08 20:42 - 000003340 _____ C:\WINDOWS\system32\Tasks\McAfee Sustainability
2024-12-08 20:32 - 2024-12-08 20:32 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-12-08 20:32 - 2024-12-08 20:32 - 000003344 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-12-08 20:32 - 2024-12-08 20:32 - 000002854 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3308053628-1712835693-922227856-500
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Šablony
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Poslední
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Okolní síť
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Dokumenty
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\Data aplikací
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\Default User
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Users\All Users
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Šablony
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Plocha
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Dokumenty
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\ProgramData\Data aplikací
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 _SHDL C:\Documents and Settings
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2024-12-08 20:32 - 2024-12-08 20:32 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network
2024-12-08 20:32 - 2023-08-13 04:51 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3760371559-3234557124-1364022314-500
2024-12-08 20:32 - 2022-11-03 05:36 - 000003392 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-353709614-2291778256-2954742011-500
2024-12-08 20:26 - 2024-12-08 21:33 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-12-08 20:26 - 2024-12-08 21:32 - 000591088 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-12-08 20:26 - 2024-12-08 21:32 - 000012288 ___SH C:\DumpStack.log.tmp
2024-12-08 20:26 - 2024-12-08 21:32 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK
2024-12-08 20:26 - 2024-12-08 20:38 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-12-08 20:26 - 2024-12-08 20:38 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-12-08 20:26 - 2024-12-08 20:31 - 000000000 ____D C:\ProgramData\Realtek
2024-12-08 20:26 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\AMD
2024-12-08 20:26 - 2024-12-08 20:30 - 000000000 ____D C:\ProgramData\HP
2024-12-08 20:26 - 2024-12-08 20:26 - 000000000 ____D C:\WINDOWS\system32\config\BFS
2024-12-08 20:26 - 2024-12-08 20:26 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2024-12-08 20:26 - 2024-12-08 20:26 - 000000000 ____D C:\Program Files\AMD
2024-12-08 20:16 - 2024-12-08 20:29 - 000000000 ____D C:\Program Files\HP
2024-12-08 20:16 - 2024-12-08 20:16 - 000000000 __HDL C:\System.sav
2024-12-08 20:15 - 2024-12-08 20:32 - 000000000 ____D C:\WINDOWS\Panther
2024-12-08 20:15 - 2024-12-08 20:15 - 000000000 ____D C:\WINDOWS\Firmware
2024-12-08 20:14 - 2024-12-08 20:14 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2024-12-08 20:14 - 2024-12-08 20:14 - 000000000 ____D C:\WINDOWS\Setup
2024-12-08 20:13 - 2024-12-08 21:03 - 000000000 ____D C:\WINDOWS\HoloShell
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\TextInput
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\ProgramData\ssh
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\Program Files\Reference Assemblies
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\Program Files\MSBuild
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2024-12-08 20:13 - 2024-12-08 20:13 - 000000000 ____D C:\Program Files (x86)\MSBuild
2024-12-08 20:12 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2024-12-08 20:12 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\WCN
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\winrm
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\slmgr
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\cs
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\0409
2024-12-08 20:12 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\DigitalLocker
2024-12-08 20:11 - 2024-12-08 21:38 - 000000000 ___HD C:\Program Files\WindowsApps
2024-12-08 20:11 - 2024-12-08 21:38 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-12-08 20:11 - 2024-12-08 21:32 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-12-08 20:11 - 2024-12-08 21:32 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-12-08 20:11 - 2024-12-08 21:30 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-12-08 20:11 - 2024-12-08 21:03 - 000000000 ___RD C:\WINDOWS\PrintDialog
2024-12-08 20:11 - 2024-12-08 21:03 - 000000000 ____D C:\ProgramData\USOPrivate
2024-12-08 20:11 - 2024-12-08 20:50 - 000000000 ____D C:\WINDOWS\appcompat
2024-12-08 20:11 - 2024-12-08 20:47 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-12-08 20:11 - 2024-12-08 20:33 - 000000000 ____D C:\WINDOWS\system32\AppLocker
2024-12-08 20:11 - 2024-12-08 20:32 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2024-12-08 20:11 - 2024-12-08 20:32 - 000000000 ____D C:\WINDOWS\ServiceState
2024-12-08 20:11 - 2024-12-08 20:32 - 000000000 ____D C:\Program Files\Windows NT
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ___SD C:\WINDOWS\system32\F12
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ___RD C:\Program Files (x86)
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\spool
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\OCR
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\WINDOWS\IME
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2024-12-08 20:11 - 2024-12-08 20:30 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2024-12-08 20:11 - 2024-12-08 20:29 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows
2024-12-08 20:11 - 2024-12-08 20:29 - 000000000 ____D C:\Program Files\Common Files\System
2024-12-08 20:11 - 2024-12-08 20:15 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SystemResources
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\SystemApps
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\MUI
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\id-ID
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2024-12-08 20:11 - 2024-12-08 20:13 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ___SD C:\WINDOWS\system32\dsc
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\setup
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\migwiz
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\system32\Com
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\Help
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\WINDOWS\BrowserCore
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\Program Files\Windows Defender
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\Program Files (x86)\Windows NT
2024-12-08 20:11 - 2024-12-08 20:12 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 __SHD C:\Program Files\Windows Sidebar
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 __RHD C:\Users\Public\Libraries
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\system32\UNP
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\system32\Nui
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\system32\lxss
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\system32\Configuration
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\WUModels
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Web
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\WaaS
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Vss
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\UUS
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\tracing
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\TAPI
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\winevt
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\WebThreatDefSvc
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\ras
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\PointOfService
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Pbr
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\NDF
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Keywords
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Ipmi
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\IME
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\icsxml
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\ias
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\DriverState
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\downlevel
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\DDFs
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\config\TxR
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\config\Journal
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\Bthprops
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\System
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SKB
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\schemas
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\SchCache
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\ShellComponents
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\security
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Resources
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\rescache
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Registration
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Provisioning
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\PLA
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Performance
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\ModemLogs
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Media
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\L2Schemas
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\InputMethod
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\InboxApps
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\IdentityCRL
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Globalization
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\DiagTrack
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Cursors
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Containers
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\Branding
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Spelling
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\ProgramData\USOShared
2024-12-08 20:11 - 2024-12-08 20:11 - 000000000 ____D C:\Program Files\ModifiableWindowsApps
2024-12-08 20:11 - 2024-12-08 20:10 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config
2024-12-08 20:11 - 2024-12-08 20:10 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config
2024-12-08 20:11 - 2024-12-08 20:10 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
2024-12-08 20:10 - 2024-12-08 21:36 - 000000000 ____D C:\WINDOWS\INF
2024-12-08 20:08 - 2024-12-08 21:30 - 101711872 _____ C:\WINDOWS\system32\config\SOFTWARE
2024-12-08 20:08 - 2024-12-08 21:30 - 039059456 _____ C:\WINDOWS\system32\config\SYSTEM
2024-12-08 20:08 - 2024-12-08 21:30 - 001835008 _____ C:\WINDOWS\system32\config\DEFAULT
2024-12-08 20:08 - 2024-12-08 21:30 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2024-12-08 20:08 - 2024-12-08 21:30 - 000131072 _____ C:\WINDOWS\system32\config\SAM
2024-12-08 20:08 - 2024-12-08 21:30 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY
2024-12-08 20:08 - 2024-12-08 21:04 - 000000000 ____D C:\WINDOWS\servicing
2024-12-08 20:08 - 2024-12-08 21:04 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-12-08 20:08 - 2024-12-08 20:11 - 000000000 ____D C:\WINDOWS\system32\SMI
2024-12-08 20:08 - 2024-12-08 20:08 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
2024-12-08 20:01 - 2024-12-08 20:16 - 000000000 ___HD C:\$SysReset

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-12-08 21:38 - 2022-11-03 05:35 - 000000000 ____D C:\ProgramData\Packages
2024-12-08 21:30 - 2023-08-13 05:00 - 000000000 ____D C:\Program Files\Microsoft Office
2024-12-08 21:00 - 2024-04-08 21:19 - 000000000 ____D C:\ProgramData\McAfee
2024-12-08 20:53 - 2024-04-08 21:20 - 000000000 ____D C:\Program Files\McAfee
2024-12-08 20:48 - 2022-11-03 05:35 - 000000000 __RHD C:\Users\Public\AccountPictures
2024-12-08 20:32 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2024-12-08 20:30 - 2024-04-08 21:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2024-12-08 20:30 - 2024-04-08 21:18 - 000000000 ____D C:\WINDOWS\HP
2024-12-08 20:30 - 2024-04-08 21:13 - 000000000 ____D C:\Program Files (x86)\Realtek
2024-12-08 20:30 - 2023-08-13 05:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2024-12-08 20:30 - 2023-08-13 05:00 - 000000000 ____D C:\Program Files\Microsoft Office 15
2024-12-08 20:30 - 2023-08-13 04:59 - 000000000 ___RD C:\Program Files\Online Services
2024-12-08 20:30 - 2023-08-13 04:59 - 000000000 ___RD C:\Program Files (x86)\Online Services
2024-12-08 20:30 - 2023-08-13 04:59 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2024-12-08 20:30 - 2023-08-13 04:58 - 000000000 ____D C:\Program Files (x86)\HP
2024-12-08 20:29 - 2023-08-13 05:49 - 000000000 ___HD C:\hp
2024-12-08 20:29 - 2023-08-13 04:59 - 000000000 ____D C:\Program Files\HPCommRecovery
2024-12-08 20:29 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\MsDtc

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================