Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-08-2025 Ran by Harrie (administrator) on DESKTOP-A6AKPPA (Dell Inc. Latitude E6540) (21-08-2025 20:26:22) Running from C:\Users\Harrie\Downloads\FRST64.exe Loaded Profiles: Harrie Platform: Microsoft Windows 10 Pro Version 22H2 19045.6218 (X64) Language: English (United States) Default browser: Edge Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe (atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe (C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ELECTRIC CO., LTD. -> ALPSALPINE CO., LTD.) C:\Program Files\DellTPad\hidfind.exe (C:\Program Files\DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <40> (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Hewlett-Packard Company -> Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\HidMonitorSvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2502.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.ScreenSketch_10.2008.3001.0_x64__8wekyb3d8bbwe\ScreenSketch.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Harrie\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.6151_none_7e2f7fd67c740ce3\TiWorker.exe ==================== Registry (Whitelisted) =================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8474880 2015-05-27] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1403800 2015-05-27] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [779152 2019-12-12] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard Company -> Hewlett-Packard) HKU\S-1-5-21-1667265265-2760767167-578562356-1001\...\Run: [MicrosoftEdgeAutoLaunch_326804A41C0466296E02A554E861CDBF] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4117544 2025-08-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1667265265-2760767167-578562356-1001\...\MountPoints2: {36bc64dc-5dfa-11ef-b922-80000b62971e} - "F:\Setup.exe" HKU\S-1-5-21-1667265265-2760767167-578562356-1001\...\MountPoints2: {ab3b24db-66d7-11ea-b864-34e6d7182129} - "F:\Setup.exe" HKU\S-1-5-21-1667265265-2760767167-578562356-1001\...\MountPoints2: {d357cb19-de0e-11ed-b8ed-80000b62971e} - "D:\Setup.exe" HKLM\...\Print\Monitors\HP be2a Status Monitor: C:\WINDOWS\system32\hpinkstsbe2aLM.dll [468576 2018-06-15] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP C311 Status Monitor: C:\WINDOWS\system32\hpinkstsC311LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP ENVY 5530 series): C:\WINDOWS\system32\HPDiscoPMC311.dll [763912 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\139.0.7258.139\Installer\chrmstp.exe [2025-08-21] (Google LLC -> Google LLC) Startup: C:\Users\Harrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Monitor Ink Alerts - HP ENVY 5530 series.lnk [2020-10-18] ==================== Scheduled Tasks (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {43FE7793-E461-4984-8F6B-D390E5309584} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2025-03-21] (Adobe Inc. -> Adobe Inc.) Task: {8859CF0C-B725-481F-BC8C-23942B7297FB} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7340.0{4BE4DF8F-603C-4090-BDCB-5B99D8F14113} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7340.0\updater.exe [5948568 2025-08-06] (Google LLC -> Google LLC) Task: {14C7766A-111B-4D73-9778-63D4FB456A3F} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [81928 2025-07-08] (HP Inc. -> HP Inc.) Task: {EB44FC16-9ECD-4FE5-AE75-A27D3295558F} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [81928 2025-07-08] (HP Inc. -> HP Inc.) Task: {BAD3A38F-66BE-42B9-B8C7-BDE36D8683AF} - System32\Tasks\HPCustParticipation HP ENVY 5530 series => C:\Program Files\HP\HP ENVY 5530 series\Bin\HPCustPartic.exe [5745672 2014-07-21] (Hewlett Packard -> Hewlett-Packard Development Company, LP) Task: {85D82C21-D728-4146-80E8-21D7E30E93A0} - System32\Tasks\InPixio\Mini Message => C:\Program Files\InPixio\Photo Studio 12\MiniMessage.exe [197120 2022-11-17] (Avanquest Software) [File not signed] Task: {8A705F9D-9DBB-413D-98FC-2D889B3061FA} - System32\Tasks\InPixio\Update Photo Studio 12 => C:\Program Files\InPixio\Photo Studio 12\RunUpdate.exe [212280 2022-11-17] (AVANQUEST SOFTWARE SAS -> Avanquest Software) Task: {E723AFCB-5489-46CB-8368-B33D5AC387AF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2BF44EB0-7EC7-4F37-AE0B-43C73CF8FF2A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6EF98042-06AF-4EF2-AE61-00887964BC0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8AE22E59-2DC3-4A6A-A8F2-49A3CAD927E9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25070.5-0\MpCmdRun.exe [1778240 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {89215B03-6BEB-4189-A83D-711BD0AAD771} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1667265265-2760767167-578562356-1001 => C:\Users\Harrie\AppData\Local\Microsoft\OneDrive\25.140.0720.0001\OneDriveLauncher.exe [723816 2025-08-18] (Microsoft Corporation -> Microsoft Corporation) Task: {A969B33F-623B-4012-857A-627796ACA531} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1403800 2015-05-27] (Realtek Semiconductor Corp -> Realtek Semiconductor) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.2.254 Tcpip\..\Interfaces\{87ee7aff-bb56-4194-87f4-7551580505c6}: [DhcpNameServer] 192.168.2.254 Tcpip\..\Interfaces\{87ee7aff-bb56-4194-87f4-7551580505c6}: [DhcpDomain] home Tcpip\..\Interfaces\{babcbc25-bdd6-432c-a0ad-1a1be8e1cc34}: [DhcpNameServer] 192.168.2.254 Tcpip\..\Interfaces\{babcbc25-bdd6-432c-a0ad-1a1be8e1cc34}: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Harrie\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-21] Edge HomePage: Default -> hxxp://www.jannet-sieraden.nl/ Edge StartupUrls: Default -> "hxxps://jannet-sieraden.nl/" Edge DefaultSearchURL: Default -> {bing:baseURL}search?q={searchTerms}&{bing:cvid}{bing:msb}{google:assistedQueryStats} Edge Extension: (Google Docs Offline) - C:\Users\Harrie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-25] Edge Extension: (Edge relevant text changes) - C:\Users\Harrie\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] FireFox: ======== FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-07-15] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Harrie\AppData\Local\Google\Chrome\User Data\Default [2025-08-21] CHR Extension: (Offline Documenten) - C:\Users\Harrie\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-16] CHR Extension: (Betalingen via Chrome Web Store) - C:\Users\Harrie\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR HKU\S-1-5-21-1667265265-2760767167-578562356-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Services (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.) R2 ApHidMonitorService; C:\Program Files\DellTPad\HidMonitorSvc.exe [114960 2019-12-12] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2025-07-08] (HP Inc. -> HP Inc.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\MpDefenderCoreService.exe [2050952 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [918456 2025-08-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [16468792 2022-11-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\NisSrv.exe [4517784 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.25070.5-0\MsMpEng.exe [282464 2025-08-20] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Drivers (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed] S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed] R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2018-03-29] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [332184 2025-08-20] (Microsoft Windows -> Microsoft Corporation) R0 stdcfltn; C:\WINDOWS\System32\DRIVERS\stdcfltn.sys [23216 2015-01-09] (STMicroelectronics -> ST Microelectronics) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-08-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627120 2025-08-20] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [101792 2025-08-20] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One month (created) (Whitelisted) ========= (If an entry is included in the fixlist, the file/folder will be moved.) 2025-08-21 20:26 - 2025-08-21 20:27 - 000015247 _____ C:\Users\Harrie\Downloads\FRST.txt 2025-08-21 20:26 - 2025-08-21 20:26 - 000000000 ____D C:\FRST 2025-08-21 20:15 - 2025-08-21 20:15 - 002409472 _____ (Farbar) C:\Users\Harrie\Downloads\FRST64.exe 2025-08-21 14:50 - 2025-08-21 14:50 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-08-21 14:48 - 2025-08-21 14:48 - 011065272 _____ (Google LLC) C:\Users\Harrie\Downloads\ChromeSetup.exe 2025-08-21 14:48 - 2025-08-21 14:48 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem 2025-08-20 07:39 - 2025-08-20 07:39 - 000435507 _____ C:\Users\Harrie\OneDrive\Documents\configuration.xml 2025-08-15 10:51 - 2025-08-21 14:52 - 000795742 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-08-13 10:54 - 2025-08-13 10:54 - 000023734 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-08-13 10:53 - 2025-08-13 10:53 - 000023734 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-08-07 07:01 - 2025-08-07 07:01 - 000002599 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSL.lnk 2025-08-07 07:01 - 2025-08-07 07:01 - 000002546 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSL Settings.lnk 2025-08-07 07:00 - 2025-08-07 07:01 - 000000000 ____D C:\Program Files\WSL ==================== One month (modified) ================== (If an entry is included in the fixlist, the file/folder will be moved.) 2025-08-21 20:09 - 2020-01-06 12:01 - 000000000 __SHD C:\Users\Harrie\IntelGraphicsProfiles 2025-08-21 20:09 - 2020-01-06 12:00 - 000000000 ___RD C:\Users\Harrie\OneDrive 2025-08-21 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-08-21 14:52 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2025-08-21 14:50 - 2022-04-04 18:54 - 000000000 ____D C:\Program Files\Google 2025-08-21 14:50 - 2021-12-16 18:57 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-08-21 14:48 - 2020-01-19 15:15 - 000000000 ____D C:\Program Files (x86)\Google 2025-08-21 14:47 - 2024-08-20 19:59 - 000001134 _____ C:\WINDOWS\system32\config\VSMIDK 2025-08-21 14:47 - 2022-12-14 10:51 - 000000000 ____D C:\Program Files\TeamViewer 2025-08-21 14:47 - 2020-12-01 21:20 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-08-21 14:47 - 2020-12-01 21:12 - 000008192 ___SH C:\DumpStack.log.tmp 2025-08-21 14:46 - 2019-12-07 11:03 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2025-08-21 13:12 - 2020-12-01 21:12 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-08-21 12:18 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-08-21 12:16 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2025-08-21 12:13 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2025-08-20 13:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-08-20 13:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-08-20 12:31 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-08-20 12:30 - 2020-12-01 21:13 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-08-20 08:58 - 2020-11-25 18:50 - 000000000 ___DC C:\WINDOWS\Panther 2025-08-20 08:47 - 2024-05-22 20:17 - 000000000 ____D C:\WINDOWS\Minidump 2025-08-20 08:47 - 2020-01-15 21:51 - 000000000 ____D C:\Users\Harrie\AppData\Local\D3DSCache 2025-08-20 08:40 - 2020-01-06 11:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-08-19 13:11 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-08-18 14:49 - 2025-02-06 08:50 - 000003572 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1667265265-2760767167-578562356-1001 2025-08-18 14:49 - 2024-12-17 12:49 - 000002382 _____ C:\Users\Harrie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-08-18 14:49 - 2021-12-14 17:20 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1667265265-2760767167-578562356-1001 2025-08-18 14:49 - 2020-12-01 21:20 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1667265265-2760767167-578562356-1001 2025-08-18 14:08 - 2024-04-01 19:51 - 000000000 ____D C:\Users\Harrie\AppData\Local\CrashDumps 2025-08-18 10:31 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2025-08-18 10:25 - 2020-01-06 12:13 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2025-08-17 19:56 - 2020-06-19 07:45 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-08-15 10:59 - 2020-01-06 11:57 - 000000000 ____D C:\Users\Harrie\AppData\Local\Packages 2025-08-15 10:44 - 2022-05-06 19:22 - 000000000 ____D C:\Users\Harrie\AppData\Local\ElevatedDiagnostics 2025-08-13 11:39 - 2022-05-16 13:15 - 000297072 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-08-13 11:37 - 2024-08-20 19:58 - 000000000 ___SD C:\WINDOWS\system32\lxss 2025-08-13 11:37 - 2024-07-13 11:49 - 000000000 ____D C:\WINDOWS\system32\compatrel 2025-08-13 11:37 - 2020-12-02 05:58 - 000000000 ____D C:\WINDOWS\en-GB 2025-08-13 11:37 - 2019-12-07 11:54 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2025-08-13 11:37 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-08-13 11:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2025-08-13 11:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-08-13 11:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-08-13 07:06 - 2020-01-06 12:19 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-08-13 07:04 - 2020-01-06 12:19 - 223939376 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-08-02 06:47 - 2020-12-01 21:20 - 000003536 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-08-02 06:47 - 2020-12-01 21:20 - 000003410 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-07-26 11:54 - 2020-01-06 12:10 - 000000000 ____D C:\Users\Harrie\AppData\Local\PlaceholderTileLogoFolder 2025-07-26 11:54 - 2020-01-06 12:05 - 000000000 ____D C:\ProgramData\Packages ==================== SigCheck ============================ (There is no automatic fix for files that do not pass verification.) ==================== End of FRST.txt ========================