Žádám o kontrolu logu
Napsal: 09 zář 2024 17:11
snad jen preventivní, po startu PC se otevře několik oken CMD, jen probliknou, nevidím, co se spouští.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-08.2024
Ran by Notebook (administrator) on DESKTOP-KUQVMH0 (HP HP EliteBook 840 G4) (08-09-2024 19:53:52)
Running from C:\Users\Notebook\Downloads\FRST64.exe
Loaded Profiles: Notebook
Platform: Microsoft Windows 11 Pro Version 23H2 22631.4037 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2403.20861.0_x64__8wekyb3d8bbwe\GetHelp.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Trend Micro Inc.) [File not signed] C:\Users\Notebook\Downloads\HijackThis.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.24900.10.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.67\msedgewebview2.exe <6>
(C:\Users\Notebook\Downloads\HijackThis.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2407.8.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe <2>
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Program Files\CONEXANT\SA3\HP-NB-AIO\SmartAudio3.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc) C:\Program Files\CONEXANT\Flow\Flow.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.ScreenSketch_11.2407.3.0_x64__8wekyb3d8bbwe\SnippingTool\SnippingTool.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <30>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Conexant Systems LLC.) [File not signed] C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c2ac023763d5d3ad\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Synaptics Incorporated -> Conexant) C:\Windows\System32\MicTray64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2768801601-2812237603-1931968749-1000\...\Run: [MicrosoftEdgeAutoLaunch_C38187068E33660174D3DA429E599093] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741256 2024-09-05] (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {ADB2D8B6-2D0E-4702-A040-FE3CE49FB9B1} - System32\Tasks\Microsoft\Windows\Conexant\MicTray => C:\Windows\System32\MicTray64.exe [5009512 2020-06-13] (Synaptics Incorporated -> Conexant)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {3C85A416-0AFA-48DE-88B9-03E7E5FC9751} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BB990219-ADC3-4183-9409-33C728DD8CA6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {58AAD633-2E28-48B3-B79E-D06F29D8B297} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7D98C75F-2510-4949-8D06-05CCD6F1449C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\14E64627F69646140524736343: [DhcpNameServer] 192.168.181.206
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\94E6455625E65447F58416C4B6F46714: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\94E6475627E65647F5B4271607B6F66716: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\D455A5E6F6A6D6F6D264275656: [DhcpNameServer] 213.211.53.19 1.1.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default [2024-09-08]
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-08]
Edge Extension: (Edge relevant text changes) - C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-07-12]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CxAudioSvc; C:\Windows\CxSvc\CxAudioSvc.exe [96432 2020-09-08] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 CxUtilSvc; C:\Windows\CxSvc\CxUtilSvc.exe [166400 2019-06-25] (Conexant Systems LLC.) [File not signed]
R2 fpCsEvtSvc; C:\Windows\system32\fpCSEvtSvc.exe [29544 2018-07-19] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 HotKeyServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe [1497672 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe [541152 2024-04-30] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe [605152 2024-04-30] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe [1427024 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522096 2024-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [90976 2018-07-19] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe [3199648 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe [133704 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [544768 2023-12-04] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [188416 2023-12-04] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 MpKslb65967b3; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{73BC52A9-8E31-4D66-8593-F760C8963EC4}\MpKslDrv.sys [271640 2024-09-08] (Microsoft Windows -> Microsoft Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22080 2024-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [602504 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-09-08 19:53 - 2024-09-08 19:54 - 000013961 _____ C:\Users\Notebook\Downloads\FRST.txt
2024-09-08 19:52 - 2024-09-08 19:54 - 000000000 ____D C:\FRST
2024-09-08 19:52 - 2024-09-08 19:52 - 002397184 _____ (Farbar) C:\Users\Notebook\Downloads\FRST64.exe
2024-09-08 19:47 - 2024-09-08 19:47 - 000388608 _____ (Trend Micro Inc.) C:\Users\Notebook\Downloads\HijackThis.exe
2024-09-07 15:58 - 2024-09-07 16:04 - 000000000 ____D C:\Users\Notebook\Desktop\USB
2024-08-21 18:26 - 2024-08-21 18:26 - 000692356 _____ C:\Windows\system32\perfh005.dat
2024-08-21 18:26 - 2024-08-21 18:26 - 000143226 _____ C:\Windows\system32\perfc005.dat
2024-08-19 20:27 - 2024-08-19 20:27 - 003195959 _____ C:\Users\Notebook\Downloads\EDC_návrh_smlouvy_1668020240819.pdf
2024-08-19 20:23 - 2024-08-19 20:23 - 000000000 ____D C:\Users\Notebook\AppData\LocalLow\Temp
2024-08-19 20:18 - 2024-08-19 20:18 - 025490740 _____ C:\Users\Notebook\Downloads\EDC - 03 Základní orientace v Portálu.mp4
2024-08-19 20:17 - 2024-08-19 20:17 - 022345096 _____ C:\Users\Notebook\Downloads\EDC - 06 Nastavení sdílení krok 3 Registrace EANo.mp4
2024-08-19 20:16 - 2024-08-19 20:16 - 019170907 _____ C:\Users\Notebook\Downloads\EDC - 01 Registrace účastníka.mp4
2024-08-19 20:15 - 2024-08-19 20:15 - 014616883 _____ C:\Users\Notebook\Downloads\EDC - 04 Nastavení sdílení krok 1 Registrace EANd.mp4
2024-08-17 13:51 - 2024-08-17 13:51 - 000000000 ____D C:\ProgramData\office6
2024-08-17 13:50 - 2024-08-17 13:50 - 000000000 ___HD C:\Users\Notebook\Documents\KingsoftData
2024-08-17 13:50 - 2024-08-17 13:50 - 000000000 ____D C:\ProgramData\Kingsoft
2024-08-14 19:49 - 2024-08-14 19:49 - 000026169 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-08-14 19:48 - 2024-08-14 19:48 - 000026169 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-08-13 15:32 - 2024-08-13 15:32 - 010902890 _____ C:\Users\Notebook\Downloads\YAMAHA-YZF-R125-SERVICE-MANUAL.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-09-08 19:50 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-09-08 19:48 - 2024-07-12 19:29 - 000000000 ____D C:\Users\Notebook\AppData\Local\VirtualStore
2024-09-08 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp
2024-09-08 19:40 - 2024-07-12 17:55 - 000000000 __SHD C:\Users\Notebook\IntelGraphicsProfiles
2024-09-08 19:40 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-09-08 19:40 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness
2024-09-08 10:02 - 2024-07-12 19:57 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\uTorrent
2024-09-07 21:20 - 2024-07-12 17:35 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-09-07 21:20 - 2024-07-12 17:35 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-09-07 21:19 - 2024-07-12 17:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-09-07 16:10 - 2024-07-12 17:51 - 000000000 ____D C:\Users\Notebook\AppData\Local\D3DSCache
2024-09-07 15:55 - 2024-07-17 21:12 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\.minecraft
2024-09-07 15:50 - 2023-10-09 18:59 - 000000000 ____D C:\Users\Notebook\Downloads\Image Scan LIDL
2024-09-07 10:10 - 2024-07-12 17:49 - 000000000 ____D C:\Users\Notebook\AppData\Local\Packages
2024-09-07 10:06 - 2024-07-12 17:37 - 000000000 ____D C:\ProgramData\Packages
2024-09-07 09:51 - 2024-07-12 17:50 - 000000000 ____D C:\Users\Notebook\AppData\Local\PlaceholderTileLogoFolder
2024-08-31 12:17 - 2024-07-12 17:51 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768801601-2812237603-1931968749-1000
2024-08-31 12:17 - 2024-07-12 17:51 - 000003386 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768801601-2812237603-1931968749-1000
2024-08-31 12:17 - 2024-07-12 17:51 - 000002390 _____ C:\Users\Notebook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-08-28 21:36 - 2024-07-12 18:25 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\hpqLog
2024-08-27 15:39 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\AppLocker
2024-08-21 18:26 - 2024-07-12 17:41 - 001629502 _____ C:\Windows\system32\PerfStringBackup.INI
2024-08-21 18:26 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF
2024-08-21 18:22 - 2024-07-12 17:55 - 000000000 ____D C:\Intel
2024-08-21 18:22 - 2024-07-12 17:51 - 000000000 ____D C:\ProgramData\Synaptics
2024-08-21 18:22 - 2024-07-12 17:34 - 000012288 ___SH C:\DumpStack.log.tmp
2024-08-21 18:22 - 2024-07-12 17:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-08-21 18:22 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState
2024-08-21 18:22 - 2022-05-07 07:17 - 000786432 _____ C:\Windows\system32\config\BBI
2024-08-15 03:52 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-08-15 03:36 - 2024-07-12 17:34 - 000295616 _____ C:\Windows\system32\FNTCACHE.DAT
2024-08-15 03:35 - 2023-12-04 08:26 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 ___SD C:\Windows\system32\AppV
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\WUModels
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\UUS
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemApps
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinMetadata
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Sgrm
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\PolicyDefinitions
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr
2024-08-14 19:52 - 2022-05-07 07:25 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2024-08-14 19:52 - 2022-05-07 07:24 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2024-08-14 19:52 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp
2024-08-14 18:17 - 2024-07-12 17:56 - 000000000 ____D C:\Windows\system32\MRT
2024-08-14 18:16 - 2024-07-12 17:56 - 197093640 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-08.2024
Ran by Notebook (administrator) on DESKTOP-KUQVMH0 (HP HP EliteBook 840 G4) (08-09-2024 19:53:52)
Running from C:\Users\Notebook\Downloads\FRST64.exe
Loaded Profiles: Notebook
Platform: Microsoft Windows 11 Pro Version 23H2 22631.4037 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.GetHelp_10.2403.20861.0_x64__8wekyb3d8bbwe\GetHelp.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Trend Micro Inc.) [File not signed] C:\Users\Notebook\Downloads\HijackThis.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.24900.10.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.67\msedgewebview2.exe <6>
(C:\Users\Notebook\Downloads\HijackThis.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2407.8.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe <2>
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Program Files\CONEXANT\SA3\HP-NB-AIO\SmartAudio3.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc) C:\Program Files\CONEXANT\Flow\Flow.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxEM.exe
(explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.ScreenSketch_11.2407.3.0_x64__8wekyb3d8bbwe\SnippingTool\SnippingTool.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <30>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Conexant Systems LLC.) [File not signed] C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c2ac023763d5d3ad\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Windows\System32\fpCSEvtSvc.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.4.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (Synaptics Incorporated -> Conexant) C:\Windows\System32\MicTray64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-2768801601-2812237603-1931968749-1000\...\Run: [MicrosoftEdgeAutoLaunch_C38187068E33660174D3DA429E599093] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741256 2024-09-05] (Microsoft Corporation -> Microsoft Corporation)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {ADB2D8B6-2D0E-4702-A040-FE3CE49FB9B1} - System32\Tasks\Microsoft\Windows\Conexant\MicTray => C:\Windows\System32\MicTray64.exe [5009512 2020-06-13] (Synaptics Incorporated -> Conexant)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {3C85A416-0AFA-48DE-88B9-03E7E5FC9751} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BB990219-ADC3-4183-9409-33C728DD8CA6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {58AAD633-2E28-48B3-B79E-D06F29D8B297} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7D98C75F-2510-4949-8D06-05CCD6F1449C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\14E64627F69646140524736343: [DhcpNameServer] 192.168.181.206
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\94E6455625E65447F58416C4B6F46714: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\94E6475627E65647F5B4271607B6F66716: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{384f2298-1390-49d3-aada-1884af2ea2e7}\D455A5E6F6A6D6F6D264275656: [DhcpNameServer] 213.211.53.19 1.1.1.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default [2024-09-08]
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-08]
Edge Extension: (Edge relevant text changes) - C:\Users\Notebook\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-07-12]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.411.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2024-03-13] (Oracle America, Inc. -> Oracle Corporation)
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CxAudioSvc; C:\Windows\CxSvc\CxAudioSvc.exe [96432 2020-09-08] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 CxUtilSvc; C:\Windows\CxSvc\CxUtilSvc.exe [166400 2019-06-25] (Conexant Systems LLC.) [File not signed]
R2 fpCsEvtSvc; C:\Windows\system32\fpCSEvtSvc.exe [29544 2018-07-19] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 HotKeyServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe [1497672 2024-04-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe [541152 2024-04-30] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe [605152 2024-04-30] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe [1427024 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522096 2024-08-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [90976 2018-07-19] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe [3199648 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe [133704 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [544768 2023-12-04] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [188416 2023-12-04] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 MpKslb65967b3; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{73BC52A9-8E31-4D66-8593-F760C8963EC4}\MpKslDrv.sys [271640 2024-09-08] (Microsoft Windows -> Microsoft Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22080 2024-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [602504 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-09-08 19:53 - 2024-09-08 19:54 - 000013961 _____ C:\Users\Notebook\Downloads\FRST.txt
2024-09-08 19:52 - 2024-09-08 19:54 - 000000000 ____D C:\FRST
2024-09-08 19:52 - 2024-09-08 19:52 - 002397184 _____ (Farbar) C:\Users\Notebook\Downloads\FRST64.exe
2024-09-08 19:47 - 2024-09-08 19:47 - 000388608 _____ (Trend Micro Inc.) C:\Users\Notebook\Downloads\HijackThis.exe
2024-09-07 15:58 - 2024-09-07 16:04 - 000000000 ____D C:\Users\Notebook\Desktop\USB
2024-08-21 18:26 - 2024-08-21 18:26 - 000692356 _____ C:\Windows\system32\perfh005.dat
2024-08-21 18:26 - 2024-08-21 18:26 - 000143226 _____ C:\Windows\system32\perfc005.dat
2024-08-19 20:27 - 2024-08-19 20:27 - 003195959 _____ C:\Users\Notebook\Downloads\EDC_návrh_smlouvy_1668020240819.pdf
2024-08-19 20:23 - 2024-08-19 20:23 - 000000000 ____D C:\Users\Notebook\AppData\LocalLow\Temp
2024-08-19 20:18 - 2024-08-19 20:18 - 025490740 _____ C:\Users\Notebook\Downloads\EDC - 03 Základní orientace v Portálu.mp4
2024-08-19 20:17 - 2024-08-19 20:17 - 022345096 _____ C:\Users\Notebook\Downloads\EDC - 06 Nastavení sdílení krok 3 Registrace EANo.mp4
2024-08-19 20:16 - 2024-08-19 20:16 - 019170907 _____ C:\Users\Notebook\Downloads\EDC - 01 Registrace účastníka.mp4
2024-08-19 20:15 - 2024-08-19 20:15 - 014616883 _____ C:\Users\Notebook\Downloads\EDC - 04 Nastavení sdílení krok 1 Registrace EANd.mp4
2024-08-17 13:51 - 2024-08-17 13:51 - 000000000 ____D C:\ProgramData\office6
2024-08-17 13:50 - 2024-08-17 13:50 - 000000000 ___HD C:\Users\Notebook\Documents\KingsoftData
2024-08-17 13:50 - 2024-08-17 13:50 - 000000000 ____D C:\ProgramData\Kingsoft
2024-08-14 19:49 - 2024-08-14 19:49 - 000026169 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-08-14 19:48 - 2024-08-14 19:48 - 000026169 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2024-08-13 15:32 - 2024-08-13 15:32 - 010902890 _____ C:\Users\Notebook\Downloads\YAMAHA-YZF-R125-SERVICE-MANUAL.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-09-08 19:50 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-09-08 19:48 - 2024-07-12 19:29 - 000000000 ____D C:\Users\Notebook\AppData\Local\VirtualStore
2024-09-08 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp
2024-09-08 19:40 - 2024-07-12 17:55 - 000000000 __SHD C:\Users\Notebook\IntelGraphicsProfiles
2024-09-08 19:40 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-09-08 19:40 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness
2024-09-08 10:02 - 2024-07-12 19:57 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\uTorrent
2024-09-07 21:20 - 2024-07-12 17:35 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-09-07 21:20 - 2024-07-12 17:35 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-09-07 21:19 - 2024-07-12 17:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-09-07 16:10 - 2024-07-12 17:51 - 000000000 ____D C:\Users\Notebook\AppData\Local\D3DSCache
2024-09-07 15:55 - 2024-07-17 21:12 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\.minecraft
2024-09-07 15:50 - 2023-10-09 18:59 - 000000000 ____D C:\Users\Notebook\Downloads\Image Scan LIDL
2024-09-07 10:10 - 2024-07-12 17:49 - 000000000 ____D C:\Users\Notebook\AppData\Local\Packages
2024-09-07 10:06 - 2024-07-12 17:37 - 000000000 ____D C:\ProgramData\Packages
2024-09-07 09:51 - 2024-07-12 17:50 - 000000000 ____D C:\Users\Notebook\AppData\Local\PlaceholderTileLogoFolder
2024-08-31 12:17 - 2024-07-12 17:51 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2768801601-2812237603-1931968749-1000
2024-08-31 12:17 - 2024-07-12 17:51 - 000003386 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2768801601-2812237603-1931968749-1000
2024-08-31 12:17 - 2024-07-12 17:51 - 000002390 _____ C:\Users\Notebook\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-08-28 21:36 - 2024-07-12 18:25 - 000000000 ____D C:\Users\Notebook\AppData\Roaming\hpqLog
2024-08-27 15:39 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\AppLocker
2024-08-21 18:26 - 2024-07-12 17:41 - 001629502 _____ C:\Windows\system32\PerfStringBackup.INI
2024-08-21 18:26 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF
2024-08-21 18:22 - 2024-07-12 17:55 - 000000000 ____D C:\Intel
2024-08-21 18:22 - 2024-07-12 17:51 - 000000000 ____D C:\ProgramData\Synaptics
2024-08-21 18:22 - 2024-07-12 17:34 - 000012288 ___SH C:\DumpStack.log.tmp
2024-08-21 18:22 - 2024-07-12 17:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-08-21 18:22 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState
2024-08-21 18:22 - 2022-05-07 07:17 - 000786432 _____ C:\Windows\system32\config\BBI
2024-08-15 03:52 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2024-08-15 03:36 - 2024-07-12 17:34 - 000295616 _____ C:\Windows\system32\FNTCACHE.DAT
2024-08-15 03:35 - 2023-12-04 08:26 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 ___SD C:\Windows\system32\AppV
2024-08-15 03:35 - 2022-05-07 12:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\WUModels
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\UUS
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemApps
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinMetadata
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Sgrm
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\PolicyDefinitions
2024-08-15 03:35 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr
2024-08-14 19:52 - 2022-05-07 07:25 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2024-08-14 19:52 - 2022-05-07 07:24 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2024-08-14 19:52 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp
2024-08-14 18:17 - 2024-07-12 17:56 - 000000000 ____D C:\Windows\system32\MRT
2024-08-14 18:16 - 2024-07-12 17:56 - 197093640 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================