Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-03-2023 Ran by ncosa (administrator) on DESKTOP-3KUJ4II (HP 750-287c) (04-03-2023 15:59:19) Running from C:\Users\ncosa\Downloads Loaded Profiles: ncosa Platform: Microsoft Windows 10 Home Version 21H2 19044.2604 (X64) Language: English (United States) Default browser: Edge Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe ->) (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe (C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Windows\System32\mfevtps.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (cmd.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MbamBgNativeMsg.exe (DriverStore\FileRepository\ki130266.inf_amd64_e83ea833b4430f79\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130266.inf_amd64_e83ea833b4430f79\igfxEM.exe (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <14> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\ncosa\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WaaSMedicAgent.exe (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (CyberLink Corp. -> ) C:\Program Files\CyberLink\Shared files\RichVideo64.exe (services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel CASE -> Intel Corporation) C:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (services.exe ->) (Intel Corporation -> IntelĀ® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (services.exe ->) (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130266.inf_amd64_e83ea833b4430f79\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130266.inf_amd64_e83ea833b4430f79\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\ki130266.inf_amd64_e83ea833b4430f79\IntelCpHeciSvc.exe (services.exe ->) (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Privacy\MBVPNService.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\5.4.105.0\McCSPServiceHost.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <3> (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_22_7\mcapexe.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe (services.exe ->) (MUSARUBRA US LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (services.exe ->) (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (svchost.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe (svchost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\UPDMGR\10.0.130.1\mcupdatemgr.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21374.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23012.167.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe Failed to access process -> cmd.exe Failed to access process -> mDNSResponder.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102800 2021-08-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKU\S-1-5-21-337906635-1539487379-4115542375-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38966072 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-337906635-1539487379-4115542375-1001\...\Run: [Malwarebytes Privacy] => C:\Program Files\Malwarebytes\Privacy\UI\MBPrivacy.exe [376480 2023-01-27] (Malwarebytes Inc. -> Malwarebytes) HKU\S-1-5-21-337906635-1539487379-4115542375-1001\...\Run: [MicrosoftEdgeAutoLaunch_E21185FF3F5B928958968B27B874BEEB] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243408 2023-03-01] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-337906635-1539487379-4115542375-1001\...\Run: [BingWallpaperApp] => C:\Users\ncosa\AppData\Local\Microsoft\BingWallpaperApp\BingWallpaperApp.exe [14033312 2022-10-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-337906635-1539487379-4115542375-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\PhotoScreensaver.scr [581120 2022-08-09] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\WINDOWS\system32\hpbprtmon.dll [432648 2015-07-10] (Microsoft Windows Hardware Compatibility Publisher -> HP) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\110.0.5481.178\Installer\chrmstp.exe [2023-02-22] (Google LLC -> Google LLC) Startup: C:\Users\ncosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2021-11-28] ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Scheduled Tasks (Whitelisted) ============ (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {087C8A5C-CA32-4C9E-B320-EBA0C66A2599} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334600 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {13C010B0-BCDE-414B-9E42-2D547844F8B4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-27] (Google LLC -> Google LLC) Task: {206B6472-CDB6-4720-A3FA-AFCDE85E5C38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {293E5C45-CAD4-4962-86AE-085E54599006} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168920 2023-02-01] (Microsoft Corporation -> Microsoft Corporation) Task: {2CC98D25-AFE6-4DA4-BE95-0EE82B66B0C8} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [768288 2022-03-24] (McAfee, LLC -> McAfee, LLC) Task: {2FC12775-F082-422E-A736-269875DAC366} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4560872 2022-09-22] (McAfee, LLC -> McAfee, LLC) Task: {32DD490E-B547-45B8-B734-E02ACC2DF727} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102800 2021-08-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {3B2A546A-D54A-438B-9412-810BCEBF04A1} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1698000 2015-06-05] (Intel(R) Software -> Intel Corporation) Task: {3CB0C3A7-A111-4829-8ED0-5AFEC755CD30} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec-Logon => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-23] (Intel(R) Software Asset Manager -> Intel Corporation) Task: {4C556D35-CAB7-43C2-9E48-BA782CCCE31E} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform) Task: {5A1C82DE-E56C-4AB9-A0B0-195B02632C96} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-27] (Google LLC -> Google LLC) Task: {5A7EBC4C-08DC-408B-909D-212C4B4C7720} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [594448 2015-09-27] (Hewlett-Packard Company -> Hewlett-Packard) Task: {6ABE23C2-FEED-43DB-BB7F-39961BEEC0F2} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [457744 2015-09-28] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {81F3483A-C197-4CBB-BCE6-C017F77659D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {83829719-3AFE-4FD8-AEDA-EA42604590DF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Active Health Launcher => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [178776 2015-09-24] (Hewlett-Packard Company -> Hewlett-Packard) Task: {8D4B0531-A50C-41DD-8BAE-B51C52814984} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {92CB2043-6DF4-4637-9AC0-863150C534CD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [457744 2015-09-28] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {95B1D969-BB58-42E5-AADD-F73B4ADC2AA0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334600 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {98DEFC9D-6B5A-490D-86C8-9FB80BF2586D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\First Boot => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF_Utils.exe [29384 2015-09-28] (Hewlett-Packard Company -> Hewlett-Packard Company) Task: {9F301EC0-0A20-4A2E-BC7A-A5C14BD89BAD} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File) Task: {AF44169E-2D8F-40AF-80C0-97E28882AEC1} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [932376 2022-10-13] (McAfee, LLC -> McAfee, LLC) "C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" was unlocked. <==== ATTENTION Task: {B4D40DCD-05AD-4F28-86D1-275BF175DDE5} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [932376 2022-10-13] (McAfee, LLC -> McAfee, LLC) Task: {BD46F8CB-F4D4-4723-9ED0-D02D6A29AA13} - System32\Tasks\HPPSDrTelemetryWatch => C:\Program Files (x86)\HP\Diagnostics\TelemetryWatch\PSDrTelemetryWatch.exe [32928 2021-12-08] (HP Inc. -> ) Task: {C6B14BEA-7E3F-4D3C-84CE-C1C308CF1915} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C80FAC08-2240-4338-8455-F3801C589903} - System32\Tasks\IntelWiDi-Upgrade-91ba0caa-28a7-4f47-8d08-f71b4b10fbec => C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-23] (Intel(R) Software Asset Manager -> Intel Corporation) Task: {CECF49E7-6183-4A83-9467-AEC29CFBD9C1} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\DADUpdater.exe [4092968 2022-09-08] (McAfee, LLC -> McAfee, LLC) Task: {D1221EAD-685F-4C8D-9B86-FA23E2A4E012} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {D98D64B6-DFE4-472D-A020-0F5DC9D03F2C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {E927338B-3130-4216-ABD2-1023C80BBD1B} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [594448 2015-09-27] (Hewlett-Packard Company -> Hewlett-Packard) Task: {F5E43CBF-C782-447D-A57E-B478F694EDB8} - System32\Tasks\CCleanerSkipUAC - ncosa => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {F6D1973A-F4CB-41E4-B7E7-448743C95DCB} - System32\Tasks\HPCeeScheduleForncosa => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard) Task: {F8F5EC8F-5A58-4AD2-9309-51710A3805AB} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "7e4be6b6-d649-467d-a8e7-6da938f6217f" --version "6.09.10300" --silent (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForncosa.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 75.75.75.75 75.75.76.76 Tcpip\..\Interfaces\{34f9bc7f-56a3-42c7-8f9a-600bac6ca2d1}: [DhcpNameServer] 75.75.75.75 75.75.76.76 Tcpip\..\Interfaces\{60aaa59f-571f-4ae4-823b-f61bc46edb6c}: [DhcpNameServer] 75.75.75.75 75.75.76.76 Tcpip\..\Interfaces\{7c4d57f8-141d-4d47-bd94-6af745ece38e}: [NameServer] 10.64.0.1 Edge: ======= Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found] Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found] Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found] Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found] Edge DefaultProfile: Default Edge Profile: C:\Users\ncosa\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-04] Edge Notifications: Default -> hxxps://www.gobankingrates.com; hxxps://www.marketwatch.com Edge HomePage: Default -> bing.com Edge DefaultSearchURL: Default -> hxxps://www.bing.com/search?PC=U474&q={searchTerms} Edge Extension: (Microsoft Bing Homepage and Search Engine) - C:\Users\ncosa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hcfdaddfkgbmekbgcepcnpfiopaigpnn [2022-11-01] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\ncosa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-02-22] Edge Extension: (Edge relevant text changes) - C:\Users\ncosa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-02-02] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => not found FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2023-01-11] (McAfee, LLC -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-07] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2023-01-10] (McAfee, LLC -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-07] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\ncosa\AppData\Local\Google\Chrome\User Data\Default [2023-03-04] CHR HomePage: Default -> msn.com CHR DefaultSearchURL: Default -> hxxps://www.bing.com/search?FORM=BWGCDF&PC=__PARAM__&q={searchTerms} CHR DefaultSuggestURL: Default -> hxxps://www.bing.com/osjson.aspx?FORM=BWGCDF&PC=__PARAM__&query={searchTerms} CHR Extension: (Google Docs Offline) - C:\Users\ncosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-24] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\ncosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-02-22] CHR Extension: (MSN Homepage, Bing Search & Trending Topics) - C:\Users\ncosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\medgkifjblgfagaamokjbagbgocccepj [2022-08-26] CHR Extension: (Chrome Web Store Payments) - C:\Users\ncosa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR HKU\S-1-5-21-337906635-1539487379-4115542375-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [medgkifjblgfagaamokjbagbgocccepj] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 0030451677274424mcinstcleanup; C:\ProgramData\McInstTemp0030451677274424\mcinst.exe [929008 2022-10-17] (McAfee, LLC -> McAfee, LLC) R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1001272 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) S4 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12554240 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2023-03-02] (HP Inc. -> HP Inc.) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [25800 2015-09-28] (Hewlett-Packard Company -> Hewlett-Packard Company) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed] S3 Intel(R) WiDi SAM; C:\Program Files (x86)\Intel Corporation\Intel WiDi\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [19088 2015-06-23] (Intel(R) Software Asset Manager -> Intel Corporation) R2 IRMTService; c:\Program Files\Intel\Intel(R) Ready Mode Technology\IRMTService.exe [181520 2015-07-13] (Intel CASE -> Intel Corporation) S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9002208 2023-02-23] (Malwarebytes Inc. -> Malwarebytes) R2 MBVpnService; C:\Program Files\Malwarebytes\Privacy\MBVpnService.exe [3953848 2023-01-27] (Malwarebytes Inc -> Malwarebytes) R3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Privacy\MBVpnTunnelService.exe [2883768 2023-01-27] (Malwarebytes Inc -> Malwarebytes) R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_22_7\McApExe.exe [816696 2022-10-17] (McAfee, LLC -> McAfee, LLC) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [379896 2015-07-03] (McAfee, Inc. -> McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\5.4.105.0\\McCSPServiceHost.exe [3379584 ] (McAfee, LLC -> McAfee, LLC) S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [1215944 2022-09-15] (MUSARUBRA US LLC -> McAfee, LLC) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1571608 2022-10-09] (McAfee, LLC -> McAfee, LLC) R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4248712 2022-10-13] (McAfee, LLC -> McAfee, LLC) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [389896 2014-04-14] (CyberLink Corp. -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation) S2 McOobeSv2; "C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe" /McCoreSvc [X] ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed] R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [77888 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 IntelReadyModeDriver; C:\WINDOWS\System32\drivers\IntelReadyModeDriver.sys [33512 2015-07-13] (Intel CASE -> Intel Corporation) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2023-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-04-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198112 2023-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77736 2023-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-02-13] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181816 2023-02-23] (Malwarebytes Inc. -> Malwarebytes) R3 mbtun; C:\WINDOWS\system32\DRIVERS\mbtun.sys [110104 2023-01-27] (Malwarebytes Inc. -> Malwarebytes) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [476224 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [349760 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [84440 2022-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Trellix US LLC.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [445504 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [920128 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [665424 2022-07-07] (Musarubra US LLC -> Trellix US LLC.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [119632 2022-07-07] (Musarubra US LLC -> Trellix US LLC.) R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [112712 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [234584 2022-09-15] (Musarubra US LLC -> Trellix US LLC.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-02-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-02-14] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-02-14] (Microsoft Windows -> Microsoft Corporation) S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [38176 2020-07-27] (WireGuard LLC -> WireGuard LLC) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2023-03-04 15:59 - 2023-03-04 16:01 - 000030751 _____ C:\Users\ncosa\Downloads\FRST.txt 2023-03-04 15:58 - 2023-03-04 16:00 - 000000000 ____D C:\FRST 2023-03-04 15:55 - 2023-03-04 15:57 - 002378752 _____ (Farbar) C:\Users\ncosa\Downloads\FRST64.exe 2023-03-04 15:55 - 2023-03-04 15:55 - 002378752 _____ (Farbar) C:\Users\ncosa\Downloads\Unconfirmed 578512.crdownload 2023-03-04 14:12 - 2023-03-04 14:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2023-02-24 13:33 - 2023-02-24 13:33 - 000000000 ____D C:\ProgramData\McInstTemp0030451677274424 2023-02-23 16:23 - 2023-02-23 16:23 - 000181816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2023-02-14 16:08 - 2023-02-14 16:08 - 000000000 ___HD C:\$WinREAgent 2023-02-13 09:19 - 2023-02-13 09:19 - 000000000 ____H C:\Users\ncosa\BIT3E9B.tmp 2023-02-03 16:31 - 2023-02-03 16:31 - 000087818 _____ C:\Users\ncosa\Downloads\benefit-verification-letter (2).pdf 2023-02-03 16:21 - 2023-02-03 16:21 - 000087801 _____ C:\Users\ncosa\Downloads\benefit-verification-letter (1).pdf ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2023-03-04 15:35 - 2020-08-27 06:26 - 000000000 ____D C:\Program Files (x86)\Google 2023-03-04 15:25 - 2019-12-07 01:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-03-04 14:25 - 2020-06-25 04:16 - 000000000 ____D C:\Users\ncosa\OneDrive\Documents\Excel - Home 2023-03-04 14:14 - 2021-02-28 16:16 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2023-03-04 14:11 - 2021-12-16 21:25 - 000004166 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{23420931-490E-4849-ACFF-A827F8BDF394} 2023-03-04 14:11 - 2019-12-07 01:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-03-04 14:04 - 2020-06-25 02:06 - 000000000 ____D C:\Program Files\CCleaner 2023-03-04 14:04 - 2020-06-24 20:46 - 000000000 ___RD C:\Users\ncosa\OneDrive 2023-03-04 14:02 - 2020-06-24 20:40 - 000000000 __SHD C:\Users\ncosa\IntelGraphicsProfiles 2023-03-04 08:39 - 2019-12-07 01:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-03-04 08:39 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-03-04 08:38 - 2021-02-28 15:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-03-04 07:36 - 2020-06-24 20:46 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-03-04 07:36 - 2020-06-24 20:46 - 000002283 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-03-04 07:28 - 2021-12-11 05:29 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-337906635-1539487379-4115542375-1001 2023-03-04 07:28 - 2021-02-28 16:16 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-337906635-1539487379-4115542375-1001 2023-03-04 07:28 - 2021-02-28 15:03 - 000002386 _____ C:\Users\ncosa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-03-02 07:24 - 2021-06-02 10:44 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2023-03-02 07:20 - 2022-03-22 06:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2023-03-01 10:47 - 2022-07-27 03:59 - 000000000 ____D C:\Users\ncosa\AppData\LocalLow\IGDump 2023-02-27 07:53 - 2019-12-07 01:13 - 000000000 ____D C:\WINDOWS\INF 2023-02-24 14:54 - 2020-09-15 09:25 - 000000000 ____D C:\Program Files\Microsoft Office 2023-02-24 13:33 - 2016-06-01 16:36 - 000000000 ____D C:\Program Files\McAfee 2023-02-24 13:33 - 2016-06-01 16:36 - 000000000 ____D C:\Program Files (x86)\McAfee 2023-02-24 09:03 - 2020-09-09 07:54 - 000000000 ____D C:\Users\ncosa\AppData\Local\CrashDumps 2023-02-23 15:53 - 2020-06-24 20:40 - 000000000 ____D C:\Users\ncosa\AppData\Local\Packages 2023-02-22 12:38 - 2020-08-27 06:31 - 000002254 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-02-22 12:38 - 2020-08-27 06:31 - 000002213 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-02-14 16:56 - 2021-02-28 16:06 - 000934922 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-02-14 16:50 - 2023-01-29 12:36 - 000000000 ____D C:\ProgramData\McInstTemp0288111675024583 2023-02-14 16:50 - 2021-02-28 15:48 - 000461112 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-02-14 16:49 - 2022-11-08 10:36 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-02-14 16:49 - 2022-01-20 20:22 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForncosa.job 2023-02-14 16:49 - 2021-02-28 16:16 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-02-14 16:49 - 2021-02-28 15:48 - 000008192 ___SH C:\DumpStack.log.tmp 2023-02-14 16:48 - 2019-12-07 01:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-02-14 16:46 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-02-14 16:45 - 2019-12-07 01:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-02-14 16:43 - 2019-12-07 01:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-02-14 16:34 - 2021-02-28 15:52 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-02-14 15:59 - 2020-06-24 21:23 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-02-14 15:49 - 2020-06-24 21:23 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-02-14 15:46 - 2020-06-24 23:13 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-02-14 13:34 - 2022-11-08 10:36 - 000003474 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-02-14 13:34 - 2021-02-28 16:16 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-02-13 09:19 - 2022-01-20 20:22 - 000003256 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForncosa 2023-02-13 09:19 - 2021-02-28 15:03 - 000000000 ____D C:\Users\ncosa 2023-02-08 17:03 - 2021-02-28 16:16 - 000003536 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-02-08 17:03 - 2021-02-28 16:16 - 000003412 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================