kontrola nového NB
Napsal: 22 čer 2024 15:09
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 19.06.2024
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (22-06-2024 16:03:42)
Running from C:\Users\igorv\Desktop\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 23H2 22631.3737 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() <==== ATTENTION [zero byte? (Error=3)] C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe#A707A99392B6A6AD
(C:\Users\igorv\Downloads\adwcleaner.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2405.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe <2>
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\BridgeCommunication.exe
(Malwarebytes Inc. -> Malwarebytes) C:\Users\igorv\Downloads\adwcleaner.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.12.463\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe <2>
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.3662_none_e93555b642ec4d03\TiWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe [1971496 2024-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [HPTouchpointManagerTray] => C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe [9544288 2024-05-16] (HP Inc. -> Hewlett-Packard Development Company, L.P.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883560 2024-06-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2D148F22-59B8-4E83-998E-5A4D1E42C0E0} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{0A083088-27BB-4BA5-AFBA-394BA4650294} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe [4623976 2024-06-13] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [258048 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {8BDAA2F0-25EB-4D55-BAFB-192917B9BC68} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [703536 2024-05-13] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {542BC035-4D85-47F6-ADF9-BE43400AA9ED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-05-13] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {A81B04E9-D2FF-4F05-92FD-12AACD84ABA3} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [76870640 2023-08-02] (HP Inc. -> HP)
Task: {850E01A1-85A7-4873-ADBF-3861793B7E89} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [264152 2024-01-30] (HP Inc. -> HP Inc.)
Task: {67F09B4E-DBF1-4A32-A14B-10A83D743C8D} - System32\Tasks\HPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [2972832 2024-05-27] (HP Inc. -> )
Task: {DB9100AE-1E15-477A-BCCD-283B03DF9CB3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {8BC311F8-F9EC-43FB-9972-9CF2E1EB17AB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {55056D61-752E-4354-807F-0FAAC58F47FF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {EC262A46-FEDC-4008-BC21-2562F15E73AF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {6E10F8D3-E6A6-4571-B035-8C5C2D247F55} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [169648 2024-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {9FEE36A9-B8AA-4F5A-B2DC-226E52FE26A0} - System32\Tasks\Microsoft\Windows\Application Experience\PcaWallpaperAppDetect => C:\windows\system32\rundll32.exe [73728 2024-05-19] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaWallpaperAppDetect
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {B1D6A067-6D9F-4CC5-9891-52D656E8B353} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FC403840-40B2-458C-A8FD-3608DD1414B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AF24115A-3712-4FF3-9DD7-A600B282B7C3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9646BDB4-86F7-4A9F-BA9A-92872DBD1B11} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C4290FFB-CB2B-4AC5-B1B6-46CF5FFD8B10} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2024-04-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] local
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default [2024-06-22]
Edge HomePage: Default -> hxxp://www.google.sk/
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-18]
Edge Extension: (HP Dynamic Audio) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iahgjpkfebmcdcaifedofgakoancmoli [2024-05-25]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-05-18]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-05-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-05-18] (Microsoft Corporation -> Microsoft Corporation)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14012384 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
S2 FMAPOService; C:\windows\System32\FMService64.exe [990240 2023-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
S2 HotKeyServiceUWP; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe [1497672 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\AppHelperCap.exe [926672 2024-05-07] (HP Inc. -> HP Inc.)
S2 HPAudioAnalytics; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe [541152 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\DiagsCap.exe [925648 2024-05-07] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [7765600 2024-05-16] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [2713696 2024-05-16] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\NetworkCap.exe [921552 2024-05-07] (HP Inc. -> HP Inc.)
S2 hpsvcsscan; C:\windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_2d93188f2a23173f\x64\hpsvcsscan.exe [7018048 2024-03-22] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe [925648 2024-05-07] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe [568896 2024-05-07] (HP Inc. -> HP Inc.)
S2 LanWlanWwanSwitchingServiceUWP; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe [605152 2024-04-30] (HP Inc. -> HP Inc.)
S2 LensUpdateService; c:\Program Files (x86)\oz-client\LensUpdateService.exe [1168464 2023-07-28] (Plantronics, Inc. -> Poly, Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe [1505416 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.12.463\SecurityUpdateService.exe [4778328 2024-01-04] (Bromium UK Limited -> HP)
S2 WbfPolicyService110; C:\windows\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_35b9bee9d8906e7d\WbfPolicyService110.exe [715704 2023-12-13] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe [3236728 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe [133704 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X]
S3 hpqcaslwmiex; "C:\Program Files (x86)\HP\Shared\hpqwmiex.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\windows\System32\drivers\amdfendrmgr.sys [25584 2023-06-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\windows\System32\DriverStore\FileRepository\u0402449.inf_amd64_e17abfc6b744fd4c\B402316\amdkmdag.sys [99613832 2024-05-04] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\windows\System32\drivers\amdwirelessbutton.sys [42768 2023-04-26] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
S3 BthA2dp; C:\windows\System32\drivers\BthA2dp.sys [544768 2023-07-12] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\windows\System32\drivers\bthhfenum.sys [184320 2023-07-12] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\windows\System32\drivers\bthmodem.sys [106496 2023-07-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\windows\System32\drivers\fse.sys [218608 2024-06-16] (Microsoft Windows -> Microsoft Corporation)
R1 googledrivefs31357; C:\windows\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2024-05-21] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [26648 2022-06-24] (HP Inc. -> HP Inc.)
R3 MTKBTFilterx64; C:\windows\System32\drivers\mtkbtfilterx.sys [523600 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
R3 mtkwlex; C:\windows\System32\drivers\mtkwl6ex.sys [1707280 2023-12-07] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
R3 rt68cx21; C:\windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_043a02d7d5d8270f\rt68cx21x64.sys [752496 2024-01-16] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
S3 vmbusproxy; C:\windows\system32\drivers\vmbusproxy.sys [94208 2024-05-18] (Microsoft Windows -> )
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [22080 2024-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [602520 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [105880 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-06-22 16:03 - 2024-06-22 16:04 - 000020949 _____ C:\Users\igorv\Desktop\FRST.txt
2024-06-22 16:03 - 2024-06-22 16:03 - 000000000 ____D C:\FRST
2024-06-22 16:01 - 2024-06-22 16:02 - 000000000 ____D C:\AdwCleaner
2024-06-22 16:00 - 2024-06-22 16:00 - 008790880 _____ (Malwarebytes) C:\Users\igorv\Downloads\adwcleaner.exe
2024-06-22 15:59 - 2024-06-22 15:59 - 002395648 _____ (Farbar) C:\Users\igorv\Desktop\FRST64.exe
2024-06-22 15:56 - 2024-06-22 15:56 - 012245967 _____ C:\Users\igorv\Desktop\hwi_804.zip
2024-06-22 13:31 - 2024-03-05 21:56 - 000016368 _____ (HP Inc.) C:\windows\system32\Drivers\AMDchipsetVer.dll
2024-06-18 19:13 - 2024-06-18 19:13 - 000003484 _____ C:\windows\system32\Tasks\ModifyLinkUpdate
2024-06-18 19:13 - 2024-06-18 19:13 - 000000000 ____D C:\windows\LastGood.Tmp
2024-06-18 19:13 - 2024-05-04 00:43 - 000842672 _____ C:\windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000842672 _____ C:\windows\system32\vulkaninfo.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000725024 _____ C:\windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000725024 _____ C:\windows\SysWOW64\vulkaninfo.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000678320 _____ C:\windows\system32\vulkan-1-999-0-0-0.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000678320 _____ C:\windows\system32\vulkan-1.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000662864 _____ C:\windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000662864 _____ C:\windows\SysWOW64\vulkan-1.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000606240 _____ C:\windows\system32\GameManager64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000549000 _____ C:\windows\system32\libsmi_guest.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000541840 _____ C:\windows\system32\libsmi_host.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000502416 _____ C:\windows\system32\EEURestart.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000459808 _____ C:\windows\SysWOW64\GameManager32.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000206768 _____ C:\windows\system32\mantle64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000185776 _____ C:\windows\system32\mantleaxl64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000163360 _____ C:\windows\SysWOW64\mantle32.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000147384 _____ C:\windows\SysWOW64\mantleaxl32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 002083360 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\atiadlxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 001602592 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\atiadlxy.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 001602592 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\atiadlxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000960032 _____ (AMD) C:\windows\system32\atieclxx.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000535472 _____ C:\windows\system32\atieah64.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000473016 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\atidemgy.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000404408 _____ C:\windows\SysWOW64\atieah32.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000266272 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atig6txx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000226736 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atigktxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000210256 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\aticfx64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000196128 _____ (AMD) C:\windows\system32\atimuixx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000183728 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atisamu64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000173152 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\aticfx32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000146976 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atisamu32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000138376 _____ C:\windows\system32\amdxc64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000074784 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\ati2erec.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 011756544 _____ C:\windows\system32\amdsmi.exe
2024-06-18 19:13 - 2024-05-04 00:41 - 002186168 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdsasrv64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 001331456 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdsacli64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 001054216 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdsacli32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000943648 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdlvr64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000770992 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdlvr32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000568464 _____ C:\windows\system32\amdgfxinfo64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000432264 _____ C:\windows\SysWOW64\amdgfxinfo32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000187584 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdihk32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000113696 _____ C:\windows\SysWOW64\amdxc32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 105774624 _____ C:\windows\system32\amd_comgr.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 089154592 _____ C:\windows\SysWOW64\amd_comgr32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 004385416 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdadlx64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 004189832 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdadlx32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000801416 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\Rapidfire64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000678432 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\Rapidfire.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000542240 _____ C:\windows\system32\dgtrayicon.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000524208 _____ (Khronos Group) C:\windows\system32\OpenCL.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000471072 _____ C:\windows\system32\amdlogum.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000389552 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000360888 _____ C:\windows\system32\clinfo.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000176560 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdmmcl6.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000051344 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\RapidFireServer64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000048160 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\RapidFireServer.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 016643720 _____ (Advanced Micro Devices Inc.) C:\windows\system32\amdhip64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 001725544 _____ (AMD) C:\windows\system32\amf-mft-mjpeg-decoder64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 001400120 _____ (AMD) C:\windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000567744 _____ C:\windows\system32\amdmiracast.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000176960 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdave64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000167256 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdpcom64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000167040 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atimpc64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000156624 _____ C:\windows\system32\atidxx64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000151104 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\amdave32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000145440 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdmmcl.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000136592 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atimpc32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000136480 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\amdpcom32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000129632 _____ C:\windows\SysWOW64\atidxx32.dll
2024-06-18 19:13 - 2024-05-04 00:05 - 103836664 _____ C:\windows\system32\amdxc64.so
2024-06-16 13:48 - 2024-06-16 13:48 - 000024821 _____ C:\windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-06-16 13:46 - 2024-06-16 13:46 - 000024821 _____ C:\windows\system32\IntegratedServicesRegionPolicySet.json
2024-06-16 13:38 - 2024-06-16 13:43 - 000000000 ___HD C:\$WinREAgent
2024-06-06 09:17 - 2024-06-06 09:17 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-05-29 16:50 - 2024-06-15 22:02 - 000000000 ____D C:\Users\igorv\AppData\Roaming\vlc
2024-05-29 16:49 - 2024-05-29 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2024-05-29 16:49 - 2024-05-29 16:49 - 000000000 ____D C:\Program Files\VideoLAN
2024-05-24 09:41 - 2024-05-24 09:41 - 000001277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Wolf Security .lnk
2024-05-24 09:41 - 2024-05-24 09:41 - 000000000 ____D C:\Program Files\PackageManagement
2024-05-24 09:37 - 2024-05-24 09:37 - 000000028 ____H C:\.GamingRoot
2024-05-24 09:37 - 2024-05-24 09:37 - 000000000 ____D C:\XboxGames
2024-05-23 22:48 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2024-05-23 22:43 - 2024-05-23 22:43 - 000003842 _____ C:\windows\system32\Tasks\HPInsightsUpdater
2024-05-23 22:43 - 2024-05-23 22:43 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2024-05-23 22:38 - 2024-05-23 22:38 - 000000000 ____D C:\Users\Default\AppData\Local\HP
2024-05-23 15:14 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Word
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\UProof
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Proof
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Office
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\AddIns
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-06-22 16:03 - 2023-09-05 13:26 - 000000000 ____D C:\ProgramData\HP
2024-06-22 16:03 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-06-22 16:02 - 2024-05-22 10:08 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Hewlett-Packard
2024-06-22 16:02 - 2023-11-18 03:23 - 000000000 _RSHD C:\hp
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\Program Files\HP
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\Program Files (x86)\HP
2024-06-22 15:57 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemTemp
2024-06-22 15:02 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2024-06-22 14:12 - 2022-05-07 07:22 - 000000000 ____D C:\windows\INF
2024-06-22 14:08 - 2024-01-26 15:41 - 000803640 _____ C:\windows\system32\PerfStringBackup.INI
2024-06-22 14:05 - 2022-05-07 07:24 - 000000000 ____D C:\windows\AppReadiness
2024-06-22 14:01 - 2024-01-26 15:37 - 000001623 _____ C:\windows\system32\config\VSMIDK
2024-06-22 14:01 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2024-06-22 14:01 - 2023-09-05 13:19 - 000000006 ____H C:\windows\Tasks\SA.DAT
2024-06-22 14:01 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ServiceState
2024-06-22 14:00 - 2022-05-07 07:17 - 000786432 _____ C:\windows\system32\config\BBI
2024-06-22 13:34 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2024-06-22 13:31 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2024-06-22 13:13 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-06-21 20:27 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-06-21 18:07 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Roaming\hpqLog
2024-06-21 17:15 - 2023-09-05 13:19 - 000000000 ____D C:\windows\system32\SleepStudy
2024-06-19 17:25 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\AppLocker
2024-06-18 19:14 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2024-06-18 19:14 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2024-06-18 19:13 - 2024-05-21 08:56 - 000000000 ____D C:\3
2024-06-18 09:09 - 2024-05-21 08:47 - 000002174 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2024-06-16 14:56 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-06-16 14:42 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2024-06-16 13:57 - 2023-09-05 13:19 - 000629032 _____ C:\windows\system32\FNTCACHE.DAT
2024-06-16 13:56 - 2024-05-18 10:38 - 000000000 ____D C:\windows\system32\Microsoft-Edge-WebView
2024-06-16 13:56 - 2024-05-18 10:38 - 000000000 ____D C:\windows\InboxApps
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___SD C:\windows\system32\UNP
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___RD C:\windows\PrintDialog
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\UUS
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\WinMetadata
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\setup
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\Dism
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemResources
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\WinMetadata
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\ShellExperiences
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\Sgrm
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\setup
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\PerceptionSimulation
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\oobe
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\migwiz
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\Dism
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\appraiser
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ShellExperiences
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ShellComponents
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\BrowserCore
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\bcastdvr
2024-06-16 13:56 - 2022-05-07 07:17 - 000000000 ____D C:\windows\servicing
2024-06-16 13:53 - 2022-05-07 07:17 - 000000000 ____D C:\windows\CbsTemp
2024-06-16 13:52 - 2022-05-07 08:10 - 000036864 _____ (Microsoft Corporation) C:\windows\system32\OEMDefaultAssociations.dll
2024-06-16 13:52 - 2022-05-07 08:10 - 000024383 _____ C:\windows\system32\OEMDefaultAssociations.xml
2024-06-16 13:48 - 2023-09-05 13:21 - 003216384 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll
2024-06-16 13:38 - 2024-05-19 10:31 - 000000000 ____D C:\windows\system32\MRT
2024-06-16 13:31 - 2024-05-19 10:31 - 199048176 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2024-06-06 19:33 - 2023-09-05 13:19 - 000003632 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-06-06 19:33 - 2023-09-05 13:19 - 000003508 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-06-06 08:21 - 2023-09-05 13:19 - 000000000 ____D C:\windows\system32\Drivers\wd
2024-06-01 15:47 - 2024-05-21 08:56 - 000000000 ____D C:\4
2024-05-24 09:43 - 2024-05-21 13:22 - 000000000 ____D C:\Users\Default\AppData\Roaming\hpqLog
2024-05-24 09:42 - 2024-01-26 15:47 - 000000000 ____D C:\windows\HP
2024-05-24 09:37 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2024-05-23 22:19 - 2024-05-18 10:43 - 000000000 ___RD C:\Users\igorv\OneDrive
2024-05-23 19:09 - 2024-05-18 10:58 - 000000000 ____D C:\windows\system32\Tasks\Hewlett-Packard
2024-05-23 19:08 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\HP
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (22-06-2024 16:03:42)
Running from C:\Users\igorv\Desktop\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 23H2 22631.3737 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() <==== ATTENTION [zero byte? (Error=3)] C:\Program Files (x86)\HP\HP Notifications\HPNotifications.exe#A707A99392B6A6AD
(C:\Users\igorv\Downloads\adwcleaner.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2405.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe <2>
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\BridgeCommunication.exe
(Malwarebytes Inc. -> Malwarebytes) C:\Users\igorv\Downloads\adwcleaner.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.12.463\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe <2>
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.22621.3662_none_e93555b642ec4d03\TiWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe [1971496 2024-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [HPTouchpointManagerTray] => C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe [9544288 2024-05-16] (HP Inc. -> Hewlett-Packard Development Company, L.P.)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883560 2024-06-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\92.0.1.0\GoogleDriveFS.exe [61245728 2024-06-18] (Google LLC -> Google, Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2D148F22-59B8-4E83-998E-5A4D1E42C0E0} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6537.0{0A083088-27BB-4BA5-AFBA-394BA4650294} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6537.0\updater.exe [4623976 2024-06-13] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [323584 2024-06-16] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [258048 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {8BDAA2F0-25EB-4D55-BAFB-192917B9BC68} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [703536 2024-05-13] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {542BC035-4D85-47F6-ADF9-BE43400AA9ED} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-05-13] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {A81B04E9-D2FF-4F05-92FD-12AACD84ABA3} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [76870640 2023-08-02] (HP Inc. -> HP)
Task: {850E01A1-85A7-4873-ADBF-3861793B7E89} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [264152 2024-01-30] (HP Inc. -> HP Inc.)
Task: {67F09B4E-DBF1-4A32-A14B-10A83D743C8D} - System32\Tasks\HPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [2972832 2024-05-27] (HP Inc. -> )
Task: {DB9100AE-1E15-477A-BCCD-283B03DF9CB3} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {8BC311F8-F9EC-43FB-9972-9CF2E1EB17AB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499424 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {55056D61-752E-4354-807F-0FAAC58F47FF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {EC262A46-FEDC-4008-BC21-2562F15E73AF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [309800 2024-06-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {6E10F8D3-E6A6-4571-B035-8C5C2D247F55} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [169648 2024-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {9FEE36A9-B8AA-4F5A-B2DC-226E52FE26A0} - System32\Tasks\Microsoft\Windows\Application Experience\PcaWallpaperAppDetect => C:\windows\system32\rundll32.exe [73728 2024-05-19] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaWallpaperAppDetect
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {B1D6A067-6D9F-4CC5-9891-52D656E8B353} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {FC403840-40B2-458C-A8FD-3608DD1414B0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AF24115A-3712-4FF3-9DD7-A600B282B7C3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {9646BDB4-86F7-4A9F-BA9A-92872DBD1B11} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpCmdRun.exe [1678960 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C4290FFB-CB2B-4AC5-B1B6-46CF5FFD8B10} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030584 2024-04-23] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] local
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default [2024-06-22]
Edge HomePage: Default -> hxxp://www.google.sk/
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-05-18]
Edge Extension: (HP Dynamic Audio) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iahgjpkfebmcdcaifedofgakoancmoli [2024-05-25]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-05-18]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-05-18] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-05-18] (Microsoft Corporation -> Microsoft Corporation)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14012384 2024-06-07] (Microsoft Corporation -> Microsoft Corporation)
S2 FMAPOService; C:\windows\System32\FMService64.exe [990240 2023-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
S2 HotKeyServiceUWP; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe [1497672 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPAppHelperCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\AppHelperCap.exe [926672 2024-05-07] (HP Inc. -> HP Inc.)
S2 HPAudioAnalytics; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe [541152 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\DiagsCap.exe [925648 2024-05-07] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [7765600 2024-05-16] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [2713696 2024-05-16] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\NetworkCap.exe [921552 2024-05-07] (HP Inc. -> HP Inc.)
S2 hpsvcsscan; C:\windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_2d93188f2a23173f\x64\hpsvcsscan.exe [7018048 2024-03-22] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_16fa6198551a36ef\x64\SysInfoCap.exe [925648 2024-05-07] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe [568896 2024-05-07] (HP Inc. -> HP Inc.)
S2 LanWlanWwanSwitchingServiceUWP; C:\windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe [605152 2024-04-30] (HP Inc. -> HP Inc.)
S2 LensUpdateService; c:\Program Files (x86)\oz-client\LensUpdateService.exe [1168464 2023-07-28] (Plantronics, Inc. -> Poly, Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MpDefenderCoreService.exe [1505416 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.12.463\SecurityUpdateService.exe [4778328 2024-01-04] (Bromium UK Limited -> HP)
S2 WbfPolicyService110; C:\windows\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_35b9bee9d8906e7d\WbfPolicyService110.exe [715704 2023-12-13] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\NisSrv.exe [3236728 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24050.7-0\MsMpEng.exe [133704 2024-06-06] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 HP Comm Recover; "C:\Program Files\HPCommRecovery\HPCommRecovery.exe" [X]
S3 hpqcaslwmiex; "C:\Program Files (x86)\HP\Shared\hpqwmiex.exe" [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\windows\System32\drivers\amdfendrmgr.sys [25584 2023-06-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\windows\System32\DriverStore\FileRepository\u0402449.inf_amd64_e17abfc6b744fd4c\B402316\amdkmdag.sys [99613832 2024-05-04] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\windows\System32\drivers\amdwirelessbutton.sys [42768 2023-04-26] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
S3 BthA2dp; C:\windows\System32\drivers\BthA2dp.sys [544768 2023-07-12] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\windows\System32\drivers\bthhfenum.sys [184320 2023-07-12] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\windows\System32\drivers\bthmodem.sys [106496 2023-07-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\windows\System32\drivers\fse.sys [218608 2024-06-16] (Microsoft Windows -> Microsoft Corporation)
R1 googledrivefs31357; C:\windows\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2024-05-21] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_a955fa431e522f5e\x64\hpcustomcapdriver.sys [26648 2022-06-24] (HP Inc. -> HP Inc.)
R3 MTKBTFilterx64; C:\windows\System32\drivers\mtkbtfilterx.sys [523600 2024-01-25] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
R3 mtkwlex; C:\windows\System32\drivers\mtkwl6ex.sys [1707280 2023-12-07] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.)
R3 rt68cx21; C:\windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_043a02d7d5d8270f\rt68cx21x64.sys [752496 2024-01-16] (Realtek Semiconductor Corp. -> Realtek)
S3 rtcx21; C:\windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
S3 vmbusproxy; C:\windows\system32\drivers\vmbusproxy.sys [94208 2024-05-18] (Microsoft Windows -> )
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [22080 2024-06-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [602520 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [105880 2024-06-06] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-06-22 16:03 - 2024-06-22 16:04 - 000020949 _____ C:\Users\igorv\Desktop\FRST.txt
2024-06-22 16:03 - 2024-06-22 16:03 - 000000000 ____D C:\FRST
2024-06-22 16:01 - 2024-06-22 16:02 - 000000000 ____D C:\AdwCleaner
2024-06-22 16:00 - 2024-06-22 16:00 - 008790880 _____ (Malwarebytes) C:\Users\igorv\Downloads\adwcleaner.exe
2024-06-22 15:59 - 2024-06-22 15:59 - 002395648 _____ (Farbar) C:\Users\igorv\Desktop\FRST64.exe
2024-06-22 15:56 - 2024-06-22 15:56 - 012245967 _____ C:\Users\igorv\Desktop\hwi_804.zip
2024-06-22 13:31 - 2024-03-05 21:56 - 000016368 _____ (HP Inc.) C:\windows\system32\Drivers\AMDchipsetVer.dll
2024-06-18 19:13 - 2024-06-18 19:13 - 000003484 _____ C:\windows\system32\Tasks\ModifyLinkUpdate
2024-06-18 19:13 - 2024-06-18 19:13 - 000000000 ____D C:\windows\LastGood.Tmp
2024-06-18 19:13 - 2024-05-04 00:43 - 000842672 _____ C:\windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000842672 _____ C:\windows\system32\vulkaninfo.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000725024 _____ C:\windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000725024 _____ C:\windows\SysWOW64\vulkaninfo.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000678320 _____ C:\windows\system32\vulkan-1-999-0-0-0.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000678320 _____ C:\windows\system32\vulkan-1.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000662864 _____ C:\windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000662864 _____ C:\windows\SysWOW64\vulkan-1.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000606240 _____ C:\windows\system32\GameManager64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000549000 _____ C:\windows\system32\libsmi_guest.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000541840 _____ C:\windows\system32\libsmi_host.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000502416 _____ C:\windows\system32\EEURestart.exe
2024-06-18 19:13 - 2024-05-04 00:43 - 000459808 _____ C:\windows\SysWOW64\GameManager32.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000206768 _____ C:\windows\system32\mantle64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000185776 _____ C:\windows\system32\mantleaxl64.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000163360 _____ C:\windows\SysWOW64\mantle32.dll
2024-06-18 19:13 - 2024-05-04 00:43 - 000147384 _____ C:\windows\SysWOW64\mantleaxl32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 002083360 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\atiadlxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 001602592 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\atiadlxy.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 001602592 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\atiadlxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000960032 _____ (AMD) C:\windows\system32\atieclxx.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000535472 _____ C:\windows\system32\atieah64.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000473016 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\atidemgy.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000404408 _____ C:\windows\SysWOW64\atieah32.exe
2024-06-18 19:13 - 2024-05-04 00:42 - 000266272 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atig6txx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000226736 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atigktxx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000210256 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\aticfx64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000196128 _____ (AMD) C:\windows\system32\atimuixx.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000183728 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atisamu64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000173152 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\aticfx32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000146976 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atisamu32.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000138376 _____ C:\windows\system32\amdxc64.dll
2024-06-18 19:13 - 2024-05-04 00:42 - 000074784 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\ati2erec.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 011756544 _____ C:\windows\system32\amdsmi.exe
2024-06-18 19:13 - 2024-05-04 00:41 - 002186168 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdsasrv64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 001331456 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdsacli64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 001054216 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdsacli32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000943648 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdlvr64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000770992 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdlvr32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000568464 _____ C:\windows\system32\amdgfxinfo64.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000432264 _____ C:\windows\SysWOW64\amdgfxinfo32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000187584 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdihk32.dll
2024-06-18 19:13 - 2024-05-04 00:41 - 000113696 _____ C:\windows\SysWOW64\amdxc32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 105774624 _____ C:\windows\system32\amd_comgr.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 089154592 _____ C:\windows\SysWOW64\amd_comgr32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 004385416 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\amdadlx64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 004189832 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\amdadlx32.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000801416 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\Rapidfire64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000678432 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\Rapidfire.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000542240 _____ C:\windows\system32\dgtrayicon.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000524208 _____ (Khronos Group) C:\windows\system32\OpenCL.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000471072 _____ C:\windows\system32\amdlogum.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000389552 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000360888 _____ C:\windows\system32\clinfo.exe
2024-06-18 19:13 - 2024-05-04 00:40 - 000176560 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdmmcl6.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000051344 _____ (Advanced Micro Devices, Inc.) C:\windows\system32\RapidFireServer64.dll
2024-06-18 19:13 - 2024-05-04 00:40 - 000048160 _____ (Advanced Micro Devices, Inc.) C:\windows\SysWOW64\RapidFireServer.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 016643720 _____ (Advanced Micro Devices Inc.) C:\windows\system32\amdhip64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 001725544 _____ (AMD) C:\windows\system32\amf-mft-mjpeg-decoder64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 001400120 _____ (AMD) C:\windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000567744 _____ C:\windows\system32\amdmiracast.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000176960 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdave64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000167256 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdpcom64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000167040 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\atimpc64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000156624 _____ C:\windows\system32\atidxx64.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000151104 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\amdave32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000145440 _____ (Advanced Micro Devices, Inc. ) C:\windows\system32\amdmmcl.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000136592 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\atimpc32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000136480 _____ (Advanced Micro Devices, Inc. ) C:\windows\SysWOW64\amdpcom32.dll
2024-06-18 19:13 - 2024-05-04 00:39 - 000129632 _____ C:\windows\SysWOW64\atidxx32.dll
2024-06-18 19:13 - 2024-05-04 00:05 - 103836664 _____ C:\windows\system32\amdxc64.so
2024-06-16 13:48 - 2024-06-16 13:48 - 000024821 _____ C:\windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-06-16 13:46 - 2024-06-16 13:46 - 000024821 _____ C:\windows\system32\IntegratedServicesRegionPolicySet.json
2024-06-16 13:38 - 2024-06-16 13:43 - 000000000 ___HD C:\$WinREAgent
2024-06-06 09:17 - 2024-06-06 09:17 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-05-29 16:50 - 2024-06-15 22:02 - 000000000 ____D C:\Users\igorv\AppData\Roaming\vlc
2024-05-29 16:49 - 2024-05-29 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2024-05-29 16:49 - 2024-05-29 16:49 - 000000000 ____D C:\Program Files\VideoLAN
2024-05-24 09:41 - 2024-05-24 09:41 - 000001277 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Wolf Security .lnk
2024-05-24 09:41 - 2024-05-24 09:41 - 000000000 ____D C:\Program Files\PackageManagement
2024-05-24 09:37 - 2024-05-24 09:37 - 000000028 ____H C:\.GamingRoot
2024-05-24 09:37 - 2024-05-24 09:37 - 000000000 ____D C:\XboxGames
2024-05-23 22:48 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2024-05-23 22:43 - 2024-05-23 22:43 - 000003842 _____ C:\windows\system32\Tasks\HPInsightsUpdater
2024-05-23 22:43 - 2024-05-23 22:43 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2024-05-23 22:38 - 2024-05-23 22:38 - 000000000 ____D C:\Users\Default\AppData\Local\HP
2024-05-23 15:14 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Word
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\UProof
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Proof
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Office
2024-05-23 10:04 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\AddIns
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-06-22 16:03 - 2023-09-05 13:26 - 000000000 ____D C:\ProgramData\HP
2024-06-22 16:03 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-06-22 16:02 - 2024-05-22 10:08 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Hewlett-Packard
2024-06-22 16:02 - 2023-11-18 03:23 - 000000000 _RSHD C:\hp
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\Program Files\HP
2024-06-22 16:02 - 2023-09-05 13:27 - 000000000 ____D C:\Program Files (x86)\HP
2024-06-22 15:57 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemTemp
2024-06-22 15:02 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2024-06-22 14:12 - 2022-05-07 07:22 - 000000000 ____D C:\windows\INF
2024-06-22 14:08 - 2024-01-26 15:41 - 000803640 _____ C:\windows\system32\PerfStringBackup.INI
2024-06-22 14:05 - 2022-05-07 07:24 - 000000000 ____D C:\windows\AppReadiness
2024-06-22 14:01 - 2024-01-26 15:37 - 000001623 _____ C:\windows\system32\config\VSMIDK
2024-06-22 14:01 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2024-06-22 14:01 - 2023-09-05 13:19 - 000000006 ____H C:\windows\Tasks\SA.DAT
2024-06-22 14:01 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ServiceState
2024-06-22 14:00 - 2022-05-07 07:17 - 000786432 _____ C:\windows\system32\config\BBI
2024-06-22 13:34 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2024-06-22 13:31 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2024-06-22 13:13 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-06-21 20:27 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-06-21 18:07 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Roaming\hpqLog
2024-06-21 17:15 - 2023-09-05 13:19 - 000000000 ____D C:\windows\system32\SleepStudy
2024-06-19 17:25 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\AppLocker
2024-06-18 19:14 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2024-06-18 19:14 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2024-06-18 19:13 - 2024-05-21 08:56 - 000000000 ____D C:\3
2024-06-18 09:09 - 2024-05-21 08:47 - 000002174 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2024-06-16 14:56 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-06-16 14:42 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2024-06-16 13:57 - 2023-09-05 13:19 - 000629032 _____ C:\windows\system32\FNTCACHE.DAT
2024-06-16 13:56 - 2024-05-18 10:38 - 000000000 ____D C:\windows\system32\Microsoft-Edge-WebView
2024-06-16 13:56 - 2024-05-18 10:38 - 000000000 ____D C:\windows\InboxApps
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___SD C:\windows\system32\UNP
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___RD C:\windows\PrintDialog
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\UUS
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\WinMetadata
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\setup
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SysWOW64\Dism
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemResources
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\WinMetadata
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\ShellExperiences
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\Sgrm
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\setup
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\PerceptionSimulation
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\oobe
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\migwiz
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\Dism
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\appraiser
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ShellExperiences
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ShellComponents
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\BrowserCore
2024-06-16 13:56 - 2022-05-07 07:24 - 000000000 ____D C:\windows\bcastdvr
2024-06-16 13:56 - 2022-05-07 07:17 - 000000000 ____D C:\windows\servicing
2024-06-16 13:53 - 2022-05-07 07:17 - 000000000 ____D C:\windows\CbsTemp
2024-06-16 13:52 - 2022-05-07 08:10 - 000036864 _____ (Microsoft Corporation) C:\windows\system32\OEMDefaultAssociations.dll
2024-06-16 13:52 - 2022-05-07 08:10 - 000024383 _____ C:\windows\system32\OEMDefaultAssociations.xml
2024-06-16 13:48 - 2023-09-05 13:21 - 003216384 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll
2024-06-16 13:38 - 2024-05-19 10:31 - 000000000 ____D C:\windows\system32\MRT
2024-06-16 13:31 - 2024-05-19 10:31 - 199048176 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2024-06-06 19:33 - 2023-09-05 13:19 - 000003632 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-06-06 19:33 - 2023-09-05 13:19 - 000003508 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-06-06 08:21 - 2023-09-05 13:19 - 000000000 ____D C:\windows\system32\Drivers\wd
2024-06-01 15:47 - 2024-05-21 08:56 - 000000000 ____D C:\4
2024-05-24 09:43 - 2024-05-21 13:22 - 000000000 ____D C:\Users\Default\AppData\Roaming\hpqLog
2024-05-24 09:42 - 2024-01-26 15:47 - 000000000 ____D C:\windows\HP
2024-05-24 09:37 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2024-05-23 22:19 - 2024-05-18 10:43 - 000000000 ___RD C:\Users\igorv\OneDrive
2024-05-23 19:09 - 2024-05-18 10:58 - 000000000 ____D C:\windows\system32\Tasks\Hewlett-Packard
2024-05-23 19:08 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\HP
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================