ladydrupal0 ha scritto:1 Se, dopo aver reinstallato LibreOffice Calc e avviato solo il programma (senza aprire alcun file), continui a vedere la finestra nera,
sembra che il problema non sia legato a Python o a LibreOffice stesso, ma a qualche altro processo o servizio nel sistema.
Script o macro nei file di Calc: Questi si attivano solo quando apri documenti specifici. Se non li apri, non dovrebbero eseguirsi.
Componenti aggiuntivi o impostazioni personalizzate: La reinstallazione dovrebbe aver eliminato eventuali add-ons o configurazioni
che avrebbero potuto causare il problema.
2 Per escludere definitivamente che sia colpa di una configurazione, estensione o script personalizzato che usa Python: Chiudi completamente LibreOffice.
Vai su C:\Users\TuoUtente\AppData\Roaming\LibreOffice\4\user (sostituisci "TuoUtente" con il tuo nome utente).
Cancella o rinomina la cartella user.
Riavvia LibreOffice, che creerà automaticamente una nuova cartella user con le impostazioni di default.
Questo resetterà tutte le personalizzazioni, eliminando eventuali problemi legati a macro o estensioni che potrebbero causare la
finestra nera.
3 Se la finestra nera continua a presentarsi anche dopo aver fatto queste operazioni, dovremo fare ulteriori controlli:3.1 Scarica FRST (Farbar Recovery Scan Tool) da qui Avvia il programma e genererai due log chiamati FRST.txt e Addition.txt.
Salva questi file e condividili sul forum per un'analisi.
3.2 Scarica Autoruns da qui. Estrai il file e apri il programma.
Autoruns ti mostrerà una lista di tutti i processi e servizi attivi. Controlla le sezioni Logon e Scheduled Tasks per vedere se c'è
qualcosa di strano.
Salva un log (File → Save) e condividilo sul forum per farlo esaminare.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-09-2024
Ran by dolo2 (administrator) on GINODALCOL (HP HP Envy Laptop 17-cw0xxx) (19-10-2024 09:16:15)
Running from C:\Users\dolo2\Downloads\FRST64.exe
Loaded Profiles: dolo2
Platform: Microsoft Windows 11 Home Version 23H2 22631.4317 (X64) Language: Italiano (Italia)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Norton\Suite\NortonSvc.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswEngSrv.exe
(C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.24900.130.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\130.0.2849.46\msedgewebview2.exe <7>
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPSystemEventUtility_1.7.1.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityBackground.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <40>
(explorer.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <4>
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonUI.exe <4>
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.186.0915.0004\FileSyncHelper.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpDefenderCoreService.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\afwServ.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\AvDump.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\nllToolsSvc.exe
(services.exe ->) (NortonLifeLock Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonSvc.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\aswidsagent.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\wsc_proxy.exe
(sihost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> DesktopExtension) C:\Program Files\WindowsApps\AD2F1837.myHP_38.52440.1105.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24091.30.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2440.9.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_38.52440.1105.0_x64__v10z8vjag6ke6\HP.myHP.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.186.0915.0004\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.5.0.0_x64__8wekyb3d8bbwe\WidgetService\WidgetService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_807802da47ae00a3\RtkAudUService64.exe [1971496 2024-02-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [HPOneAgentService] => C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2106920 2024-08-13] (HP Inc. -> HP Inc; HP Development Company, L.P.)
HKLM\...\Run: [NortonUI.exe] => C:\Program Files\Norton\Suite\AvLaunch.exe [428648 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.)
HKLM-x32\...\Run: [DNS7reminder] => C:\Program Files (x86)\Nuance\NaturallySpeaking15\Ereg\Ereg.exe [3144536 2017-03-01] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [539152 2024-05-03] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [MicrosoftEdgeAutoLaunch_8DA4C8276900DD4414BC6BFCAF4FA47D] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [3794984 2024-10-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919312 2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45227312 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Run: [HP ENVY 5000 (NET)] => C:\Program Files\HP\HP ENVY 5000 series\Bin\ScanToPCActivationApp.exe [4069976 2022-06-15] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-3098768321-600776327-2169861063-1001\...\MountPoints2: {453c8b60-d8ab-11ee-9680-30f6ef64ef5f} - "E:\AutoRun.exe"
HKU\S-1-5-18\...\RunOnce: [Application Restart #2] => C:\Program Files\WindowsApps\AD2F1837.HPThermalControl_1.11.60.0_x64__v10z8vjag6ke6\SysWin32Process\HPCC.Bg.BackgroundSys.exe [198672 2024-06-12] (ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc.)
HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Program Files\WindowsApps\AD2F1837.HPThermalControl_1.11.58.0_x64__v10z8vjag6ke6\SysWin32Process\HPCC.Bg.BackgroundSys.exe (No File)
HKU\S-1-5-18\...\RunOnce: [Application Restart #3] => C:\Program Files\WindowsApps\AD2F1837.HPThermalControl_1.11.59.0_x64__v10z8vjag6ke6\SysWin32Process\HPCC.Bg.BackgroundSys.exe (No File)
HKLM\...\Windows x64\Print Processors\Samsung Network PC Fax Print Processor: C:\Windows\System32\spool\prtprocs\x64\NetFaxProc64.dll [146944 2022-03-07] (HP Development Company, L.P.) [File not signed]
HKLM\...\Windows x64\Print Processors\ssm4mPC: C:\Windows\System32\spool\prtprocs\x64\ssm4mpc.dll [61736 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\Samsung Network PC Fax Port: C:\windows\system32\NetFaxPort64.dll [586240 2022-10-19] (HP Development Company, L.P.) [File not signed]
HKLM\...\Print\Monitors\ssm4m Langmon: C:\windows\system32\ssm4mlm.dll [40744 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\129.0.6668.89\Installer\chrmstp.exe [2024-10-03] (Google LLC -> Google LLC)
Startup: C:\Users\dolo2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Invia a OneNote.lnk [2024-08-18]
ShortcutTarget: Invia a OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {D087AAD4-8325-4DEB-B5F8-F7F70EC7AC74} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E62F8560-DB2B-44BB-83DD-CB91589AA07F} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5983536 2024-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "ef14840d-8c40-4100-963a-8a2dd2e64a6b" --version "6.29.11342" --silent
Task: {01074F43-799E-4C07-8960-0CA58A1BEFE9} - System32\Tasks\CCleanerSkipUAC - dolo2 => C:\Program Files\CCleaner\CCleaner.exe [39090480 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
Task: {94B82A2A-C705-4436-B498-BAD3E29BCFF8} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [31000 2024-05-02] (Garmin International, Inc. -> )
Task: {1EEB5D47-ED76-4FFA-9E67-CDAA07DBEC36} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{5DCCF2D6-E5B2-4633-AA48-B1302DB5EFA7} => "C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe" --wake --system (No File)
Task: {2395D5F2-6B82-4D92-8923-9BD3B19FFA06} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{869C0B33-C682-4737-95D2-26DA211527D0} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC)
Task: {3E2E8903-43B0-4981-99D4-35820DA2AA6F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [138328 2024-09-25] (HP Inc. -> HP Inc.)
Task: {1F455146-36B4-4DE2-AEAC-90FC85A2A182} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [231472 2024-09-25] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {3EEFFDB9-9998-495E-9DD7-619509C75886} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161744 2024-09-25] (HP Inc. -> HP Inc.)
Task: {B7F3860D-78B8-4BA2-A590-38D88E618BD4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1161744 2024-09-25] (HP Inc. -> HP Inc.)
Task: {96C1597F-9CDA-4D14-9582-2F443E57444C} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {B8C4E7C9-4F2E-47DD-93FC-8766967D4AB4} - System32\Tasks\HP\HP PSDr\HP PSDr Printer Health Monitor => C:\Program Files (x86)\HP\HP Support Framework\Modules\PSDR\HPPSDrPrinterHealthMonitor.exe [64160 2024-09-25] (HP Inc. -> HP Inc.)
Task: {8A1CDA5F-DF59-42EE-A5A9-08978784D8BF} - System32\Tasks\HPCustParticipation HP ENVY 5000 series => C:\Program Files\HP\HP ENVY 5000 series\Bin\HPCustPartic.exe [6666840 2022-06-16] (HP Inc. -> HP Inc.)
Task: {E82EF486-77C1-43FF-A89A-D8BFDBB3E95C} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{A59BC4A0-0F57-4F97-95E4-641AB5C3A9B0}\HPOneAgent.exe [1169520 2024-09-12] (HP Inc. -> HP Inc.)
Task: {0DB2ECC2-BD23-42F1-8139-323D230F7234} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617448 2024-10-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {F09B6006-B278-4353-B13F-741706CDF53D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28617448 2024-10-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {98A9E6C0-B3BF-4D4D-9D9A-2A93F11221CD} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {6FF6797E-BEC8-496E-ADD6-47DA8422977C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {8ECBE5E4-2177-424B-95E9-35A84BEE5874} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [187328 2024-09-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {754CB3DF-ECF1-4E4F-88E0-3CB9560CB9B7} - System32\Tasks\Norton Utility\ActiveSync-NortonUtility => C:\Program Files\Norton Utilities\ActiveBridge.exe -> C:\Program Files\Norton Utilities\-appexecutable NUP.exe -ammode
Task: {3CB81FE2-E299-433B-80AB-D6AB57222D2D} - System32\Tasks\Norton\Norton 360 Patcher => C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe [8459880 2024-10-08] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {E28EAA87-8A87-4178-9B87-C19677881181} - System32\Tasks\Norton\Norton VPN Bug Report => C:\Program Files\Norton\Suite\AvBugReport.exe [5916264 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 187 --programpath "C:\Program Files\Norton\Suite" --configpath "C:\ProgramData\Norton\VPN" --path "C:\ProgramData\Norton\VPN\log" --path "C:\ProgramData\Norton\Icarus\Logs" --logpath "C:\ProgramData\Norton\VPN\log" --guid e62a99b2-2999-4300-879a-0f627988bf24
Task: {8DB18B57-9479-44D7-B67D-6E4ED037D4EA} - System32\Tasks\Norton\Overseer => C:\Program Files\Common Files\Norton\Overseer\overseer.exe [2511976 2024-10-03] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {8C745BEB-5E5B-4AEB-B42E-2DE326D2965D} - System32\Tasks\Norton\Suite Emergency Update => C:\Program Files\Norton\Suite\AvEmUpdate.exe [5207144 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
Task: {D9AE86AC-C36B-4228-B9FB-49181B1C81FE} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {3D8C3E72-4F63-49B7-B03D-1FD8AE0AD59D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {E953C02F-57F9-4229-8437-B80419807CD5} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {5214BB4D-7D43-4FCF-9123-F258E34EA76D} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EADDB12D-F902-4157-A5AA-9D0F7A130E3B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BCA5C403-3964-4D26-941B-F01254BA901E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D8B615DE-3A1E-423E-9569-04DE17957BD9} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {C4137416-B00A-4B8E-9C3C-3DAD0F763EF0} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1224766E-1F2C-47A6-A1A9-1454267756E7} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-06-11] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {857B4E56-A57B-45D2-968E-5F8A88D27E35} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209176 2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {49BCF3AB-DDC2-4CF8-B001-C0EB1E36BEF2} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3098768321-600776327-2169861063-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209176 2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {E0F55BC6-16E2-4950-8CC2-5A319F124F18} - System32\Tasks\Uninstaller_SkipUac_dolo2 => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [9909256 2023-12-04] (IObit CO., LTD -> IObit) -> C:\Program Files (x86)\IObit\IObit Uninstaller\\/UninstallExplorer
Task: {4EB8AE58-A9F4-4E0C-A448-FF1DDC92946D} - System32\Tasks\WiseCleaner\WRCSkipUAC => C:\Program Files (x86)\Wise\Wise Registry Cleaner\WiseRegCleaner.exe [10674584 2024-06-11] (Lespeed Technology Co., Ltd -> WiseCleaner.com) -> C:\Program Files (x86)\Wise\Wise Registry Cleaner\\$UAC
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\windows\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}: [DhcpDomain] homenet.telecomitalia.it
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}\14E64627F69646140544037383: [DhcpNameServer] 192.168.172.104
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}\449425543445D29497D42303730302355627965637: [DhcpDomain] SISO_DOMAIN
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}\7416C61687970214332302537473231313: [DhcpNameServer] 192.168.187.98
Tcpip\..\Interfaces\{5e4c8158-155d-4379-997d-3c1c8f4e3ae9}\75562605F636B65647D213733444: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-19]
Edge Extension: (Google Traduttore) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-09-10]
Edge Extension: (Estensione Web di Dragon) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ddaloccgjfibfpkalenodgehlhkgoahe [2024-01-16]
Edge Extension: (Documenti Google offline) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-10-11]
Edge Extension: (Google Mail Checker) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\glbpkcehjkihaknkjifkehdpjfngbdga [2024-01-16]
Edge Extension: (Adblock Plus - ad-blocker gratuito) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-10-11]
Edge Extension: (Edge relevant text changes) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Button for Google Calendar) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lfjnmopldodmmdhddmeacgjnjeakjpki [2024-09-10]
Edge Extension: (Contatti) - C:\Users\dolo2\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pjpambjkhcilibnmeihhfgdkhfelbdkj [2024-01-16]
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: nuance.com/DgnRia2_x86_64 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\x64\npDgnRia2_x64.dll [2020-11-01] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: nuance.com/DgnRia2 -> C:\Program Files (x86)\Nuance\NaturallySpeaking15\Program\npDgnRia2.dll [2020-11-01] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default [2024-10-19]
CHR Notifications: Default -> hxxps://areariservata.ing.it; hxxps://calendar.google.com; hxxps://meet.google.com; hxxps://webmail.pec.it; hxxps://www.agrieuro.com; hxxps://www.youtube.com
CHR HomePage: Default -> hxxps://news.google.it/news/headlines?ned=it&hl=it
CHR StartupUrls: Default -> "hxxps://news.google.it/nwshp?hl=it&tab=wn&ei=TwDcU8ntLsn-4QTc_YDIDw&ved=0CAsQqS4oCA"
CHR Extension: (Google Traduttore) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-09-06]
CHR Extension: (Adblock Plus - ad-blocker gratuito) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-10-16]
CHR Extension: (Sinonimi Contrari) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkfohgoaimodlniknkkjgdcfglmoejcp [2023-12-17]
CHR Extension: (Button for Google Calendar) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\lfjnmopldodmmdhddmeacgjnjeakjpki [2024-09-07]
CHR Extension: (Google Avvisi email) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2024-08-01]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-17]
CHR Extension: (Contatti) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjpambjkhcilibnmeihhfgdkhfelbdkj [2023-12-17]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Guest Profile [2024-10-17]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-10-17]
CHR Extension: (Documenti Google offline) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-13]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-13]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4 [2024-10-17]
CHR Extension: (Contacts+ for Gmail) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\cnaibnehbbinoohhjafknihmlopdhhip [2024-08-19]
CHR Extension: (Notifier for Gmail™) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\dcjichoefijpinlfnjghokpkojhlhkgl [2024-01-13]
CHR Extension: (NordVPN - VPN proxy for privacy and security) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\fjoaledfpmneenckfbpdfhkmimnjocfa [2024-08-19]
CHR Extension: (Documenti Google offline) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-13]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-13]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 5 [2024-10-17]
CHR Extension: (NordVPN - VPN proxy for privacy and security) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\fjoaledfpmneenckfbpdfhkmimnjocfa [2024-08-19]
CHR Extension: (Documenti Google offline) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-13]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-13]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6 [2024-10-17]
CHR HomePage: Profile 6 -> hxxps://news.google.it/nwshp?hl=it&tab=wn&ei=TwDcU8ntLsn-4QTc_YDIDw&ved=0CAsQqS4oCA
CHR StartupUrls: Profile 6 -> "hxxps://news.google.com/topstories?hl=it&tab=wn&ei=TwDcU8ntLsn-4QTc_YDIDw&ved=0CAsQqS4oCA&gl=IT&ceid=IT:it"
CHR Extension: (Adblock Plus - ad-blocker gratuito) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-09-04]
CHR Extension: (BlockSite: Block Websites & Stay Focused) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\eiimnmioipafcokbfikbljfdeojpcgbh [2024-08-18]
CHR Extension: (NordVPN - VPN proxy for privacy and security) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fjoaledfpmneenckfbpdfhkmimnjocfa [2024-08-17]
CHR Extension: (Norton Safe Web) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\fnpbeacklnhmkkilekogeiekaglbmmka [2024-03-30]
CHR Extension: (Documenti Google offline) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-15]
CHR Extension: (Copia e Incolla in Office Online) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\ifbmcpbgkhlpfcodhjhdbllhiaomkdej [2024-05-11]
CHR Extension: (Norton Home Page) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\mhffmephdchhhbfjmdpoaldedhhdanbn [2024-09-04]
CHR Extension: (Norton Safe) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\mpnlkmlkncncpgnnkmkgoobfpnjmblnk [2024-08-12]
CHR Extension: (Pagamenti Chrome Web Store) - C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\Profile 6\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-03-30]
CHR Profile: C:\Users\dolo2\AppData\Local\Google\Chrome\User Data\System Profile [2024-03-30]
CHR HKLM-x32\...\Chrome\Extension: [fjoaledfpmneenckfbpdfhkmimnjocfa]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-08-20] (Apple Inc. -> Apple Inc.)
S4 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-10-15] (Gen Digital Inc. -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13861080 2024-10-05] (Microsoft Corporation -> Microsoft Corporation)
S4 dptftcs; C:\windows\System32\DriverStore\FileRepository\dtt_sw.inf_amd64_a56d66a9d40a4cb2\ipfsvc.exe [558176 2023-10-23] (Intel Corporation -> Intel Corporation)
S4 DragonLoggerService; C:\Program Files (x86)\Common Files\Nuance\loggerservice.exe [167992 2020-11-02] (Nuance Communications, Inc. -> Nuance Communications, Inc.)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.186.0915.0004\FileSyncHelper.exe [3525136 2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
S4 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S4 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2106920 2024-08-13] (HP Inc. -> HP Inc; HP Development Company, L.P.)
S4 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [927848 2024-09-25] (HP Inc. -> HP Inc.)
S4 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [926304 2024-09-25] (HP Inc. -> HP Inc.)
S4 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [922208 2024-09-25] (HP Inc. -> HP Inc.)
S4 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-08-07] (HP Inc. -> HP Inc.)
S4 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
S4 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [927336 2024-09-25] (HP Inc. -> HP Inc.)
S4 HpTouchpointAnalyticsService; C:\windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_7dcf4ebd9d1b4772\x64\TouchpointAnalyticsClientService.exe [569008 2024-05-07] (HP Inc. -> HP Inc.)
S4 Intel(R) Platform License Manager Service; C:\windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_4e9e8c349f3a1aca\lib\PlatformLicenseManagerService.exe [741584 2023-10-25] (Intel Corporation -> Intel(R) Corporation)
S4 IntelAudioService; C:\windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_1a2771f8240f6822\AS\IAS\IntelAudioService.exe [540320 2023-11-07] (Intel Corporation -> Intel)
S4 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [167432 2023-11-09] (IObit CO., LTD -> IObit)
S4 ipfsvc; C:\windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_7b0f1310c58d1db9\ipf_uf.exe [3006560 2023-12-08] (Intel Corporation -> Intel Corporation)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-09-24] (The Document Foundation -> The Document Foundation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpDefenderCoreService.exe [1418736 2024-01-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 nllbIDSAgent; C:\Program Files\Norton\Suite\aswidsagent.exe [7521896 2024-10-15] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R2 Norton Antivirus; C:\Program Files\Norton\Suite\NortonSvc.exe [776296 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 Norton Firewall; C:\Program Files\Norton\Suite\afwServ.exe [2345576 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 Norton Tools; C:\Program Files\Norton\Suite\nllToolsSvc.exe [1223272 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 nortonAvDumper64; C:\Program Files\Norton\Suite\AvDump.exe [3487336 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
S4 NortonVpn; C:\Program Files\Norton\Suite\VpnSvc.exe [12690536 2024-10-15] (NortonLifeLock Inc. -> Gen Digital Inc.)
R2 NortonWscReporter; C:\Program Files\Norton\Suite\wsc_proxy.exe [76552 2024-10-03] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S4 NVDisplay.ContainerLocalSystem; C:\windows\System32\DriverStore\FileRepository\nvhmi.inf_amd64_29990e31b476266d\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.186.0915.0004\OneDriveUpdaterService.exe [3869200 2024-10-15] (Microsoft Corporation -> Microsoft Corporation)
S4 Samsung Network Fax Server; C:\windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [700928 2022-10-19] (HP Development Company, L.P.) [File not signed]
S4 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [22388024 2024-06-13] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-01-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-01-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 WsAppService3; C:\Program Files (x86)\Wondershare\WAF3\3.0.0.308\WsAppService3.exe [83232 2019-06-26] (Wondershare Technology Co.,Ltd -> Wondershare)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 csaudio; C:\windows\System32\DriverStore\FileRepository\csaudio.inf_amd64_1711aa9be1c7d802\csaudio.sys [404520 2024-06-03] (Cirrus Logic Inc -> Windows (R) Win 7 DDK provider)
S3 CtaChildDriver; C:\windows\System32\drivers\CtaChildDriver.sys [40424 2023-05-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 dg_ssudbus; C:\windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R0 fse; C:\windows\System32\drivers\fse.sys [218488 2024-09-12] (Microsoft Windows -> Microsoft Corporation)
S3 GSCAuxDriver; C:\windows\System32\DriverStore\FileRepository\gscauxdriver.inf_amd64_1cdec79b010cf065\GSCAuxDriverx64.sys [93672 2023-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
S3 GSCx64; C:\windows\System32\DriverStore\FileRepository\gscheci.inf_amd64_b9e8b3b7b7afc367\TeeDriverGSCW8x64.sys [263656 2023-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 HPCustomCapDriver; C:\windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R3 HpSpsNotification; C:\windows\System32\DriverStore\FileRepository\hpspsnotification.inf_amd64_15be15983f897eb1\HpSpsNotification.sys [57232 2022-11-22] (HP Inc. -> HP Development Company, L.P.)
R3 iaLPSS2_GPIO2_ADL; C:\windows\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_f138ad86bb3bd676\iaLPSS2_GPIO2_ADL.sys [141400 2024-01-01] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_ADL; C:\windows\System32\DriverStore\FileRepository\ialpss2_i2c_adl.inf_amd64_f860ba3068379bd3\iaLPSS2_I2C_ADL.sys [211544 2024-01-01] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_SPI_ADL; C:\windows\System32\DriverStore\FileRepository\ialpss2_spi_adl.inf_amd64_334c460fea9b11a4\iaLPSS2_SPI_ADL.sys [171608 2023-05-25] (Intel Corporation -> Intel Corporation)
S3 iaLPSS2_UART2_ADL; C:\windows\System32\DriverStore\FileRepository\ialpss2_uart2_adl.inf_amd64_43d5df63d19fde70\iaLPSS2_UART2_ADL.sys [329320 2023-05-25] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\windows\System32\DriverStore\FileRepository\gna.inf_amd64_6f93b7542fd3ead9\gna.sys [88656 2023-08-28] (Intel Corporation -> Intel Corporation)
S3 Intel_NF_I2C; C:\windows\System32\DriverStore\FileRepository\intel_nf_i2c_child.inf_amd64_a329fd450939b60d\Intel_NF_I2C.sys [207336 2023-05-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R3 ipf_acpi; C:\windows\System32\DriverStore\FileRepository\ipf_acpi.inf_amd64_21b95771f6ee4839\ipf_acpi.sys [88160 2023-12-08] (Intel Corporation -> Intel Corporation)
R3 ipf_cpu; C:\windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_7b0f1310c58d1db9\ipf_cpu.sys [85600 2023-12-08] (Intel Corporation -> Intel Corporation)
R3 ipf_lf; C:\windows\System32\DriverStore\FileRepository\ipf_cpu.inf_amd64_7b0f1310c58d1db9\ipf_lf.sys [484960 2023-12-08] (Intel Corporation -> Intel Corporation)
S3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [28240 2023-09-15] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
S3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37112 2023-01-13] (IObit Information Technology -> IObit)
S3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [36432 2023-09-15] (Microsoft Windows Hardware Compatibility Publisher -> IObit)
S3 LT6911Au; C:\windows\System32\DriverStore\FileRepository\lt6911au.inf_amd64_2b6f1caa749a235e\LT6911Au.sys [66736 2023-06-12] (Intel Corporation -> Intel(R) Corporation)
R0 nllArDisk; C:\windows\System32\drivers\nllArDisk.sys [20536 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllArPot; C:\windows\System32\drivers\nllArPot.sys [233016 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllbidsdriver; C:\windows\System32\drivers\nllbidsdriver.sys [381496 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbidsh; C:\windows\System32\drivers\nllbidsh.sys [294960 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbuniv; C:\windows\System32\drivers\nllbuniv.sys [84536 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllElam; C:\windows\System32\drivers\nllElam.sys [27744 2024-10-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 nllKbd; C:\windows\System32\drivers\nllKbd.sys [28752 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllMonFlt; C:\windows\System32\drivers\nllMonFlt.sys [273976 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllNetHub; C:\windows\System32\drivers\nllNetHub.sys [550456 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllRdr; C:\windows\System32\drivers\nllRdr2.sys [97848 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllRvrt; C:\windows\System32\drivers\nllRvrt.sys [69176 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSnx; C:\windows\System32\drivers\nllSnx.sys [951352 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSP; C:\windows\System32\drivers\nllSP.sys [1202232 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 nllStm; C:\windows\System32\drivers\nllStm.sys [203832 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllVmm; C:\windows\System32\drivers\nllVmm.sys [307256 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 nllVpnRdr; C:\windows\System32\drivers\nllVpnRdr.sys [79440 2024-10-15] (Microsoft Windows Hardware Compatibility Publisher -> NortonLifelock Inc.)
R3 NvModuleTracker; C:\windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvpcf; C:\windows\System32\drivers\nvpcf.sys [237216 2024-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ovpn-dco; C:\windows\System32\drivers\ovpn-dco.sys [92664 2024-07-03] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
U5 PROCMON24; C:\Windows\System32\Drivers\PROCMON24.sys [82344 2024-10-19] (Microsoft Windows Hardware Compatibility Publisher -> Sysinternals -
www.sysinternals.com)
R1 rtf64; C:\windows\system32\DRIVERS\rtf64x64.sys [67496 2022-07-29] (Realtek Semiconductor Corp. -> Realtek)
S3 rtux64w10; C:\windows\System32\DriverStore\FileRepository\rtux64w10.inf_amd64_03831aeaaa2c730e\rtux64w10.sys [683520 2022-05-07] (Microsoft Windows -> Realtek Corporation)
R2 SSPORT; C:\windows\system32\Drivers\SSPORT.sys [14224 2023-03-29] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc)
S3 ssudmdm; C:\windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 vmbusproxy; C:\windows\system32\drivers\vmbusproxy.sys [94208 2024-01-13] (Microsoft Windows -> )
S3 WdBoot; C:\windows\system32\drivers\wd\WdBoot.sys [55856 2024-01-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\windows\system32\drivers\wd\WdFilter.sys [594304 2024-01-13] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [105856 2024-01-13] (Microsoft Windows -> Microsoft Corporation)
S3 WireGuard; C:\windows\System32\drivers\wireguard.sys [489368 2024-08-16] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 cpuz158; \??\C:\windows\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-10-19 09:16 - 2024-10-19 09:16 - 000043298 _____ C:\Users\dolo2\Downloads\FRST.txt
2024-10-19 09:15 - 2024-10-19 09:16 - 000000000 ____D C:\FRST
2024-10-19 09:14 - 2024-10-19 09:14 - 002397696 _____ (Farbar) C:\Users\dolo2\Downloads\FRST64.exe
2024-10-19 08:47 - 2024-10-19 08:47 - 003013762 _____ C:\Users\dolo2\Downloads\ProcessMonitor (1).zip
2024-10-19 08:42 - 2024-10-19 08:42 - 000000000 ____D C:\Users\dolo2\Downloads\ProcessMonitor
2024-10-19 08:41 - 2024-10-19 08:41 - 003013762 _____ C:\Users\dolo2\Downloads\ProcessMonitor.zip
2024-10-18 13:21 - 2024-10-18 13:21 - 000089275 _____ C:\Users\dolo2\Downloads\report_2024-10-18_07-21-21.pdf
2024-10-18 13:08 - 2024-10-18 13:08 - 000003380 _____ C:\windows\system32\Tasks\CCleanerCrashReporting
2024-10-18 13:08 - 2024-10-18 13:08 - 000000666 _____ C:\windows\Tasks\CCleanerCrashReporting.job
2024-10-17 13:03 - 2024-10-17 13:03 - 000021459 _____ C:\Users\dolo2\Downloads\wise_transaction_invoice__transfer__1261139200__4109757397__it.pdf
2024-10-17 11:17 - 2024-10-17 11:17 - 000342982 _____ C:\Users\dolo2\Downloads\Bonifico (48).pdf
2024-10-17 10:37 - 2024-10-17 10:37 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\OpenOffice
2024-10-17 10:36 - 2024-10-17 10:36 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.15
2024-10-17 10:36 - 2024-10-17 10:36 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4
2024-10-17 10:32 - 2024-10-17 10:32 - 012390400 _____ (Apache Software Foundation) C:\Users\dolo2\Downloads\Apache_OpenOffice_4.1.15_Win_x86_langpack_it.exe
2024-10-17 10:30 - 2024-10-17 10:34 - 137712360 _____ (Apache Software Foundation) C:\Users\dolo2\Downloads\Apache_OpenOffice_4.1.15_Win_x86_install_it.exe
2024-10-17 10:29 - 2024-10-17 10:29 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\LibreOffice
2024-10-17 10:28 - 2024-10-17 10:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2024-10-17 10:28 - 2024-10-17 10:28 - 000000000 ____D C:\Program Files\LibreOffice
2024-10-17 10:27 - 2024-10-17 10:27 - 363298816 _____ C:\Users\dolo2\Downloads\LibreOffice_24.8.2_Win_x86-64.msi
2024-10-17 10:27 - 2024-10-17 10:27 - 003690496 _____ C:\Users\dolo2\Downloads\LibreOffice_24.8.2_Win_x86-64_helppack_it.msi
2024-10-17 10:11 - 2024-10-17 10:11 - 000830242 _____ C:\windows\system32\perfh010.dat
2024-10-17 10:11 - 2024-10-17 10:11 - 000167274 _____ C:\windows\system32\perfc010.dat
2024-10-16 13:35 - 2024-10-16 13:35 - 000316449 _____ C:\Users\dolo2\Downloads\invoice 174 SN.pdf
2024-10-16 08:59 - 2024-10-15 12:01 - 000315496 _____ (Gen Digital Inc.) C:\windows\system32\nllBoot.exe
2024-10-15 17:19 - 2024-10-18 15:34 - 000019464 _____ C:\Users\dolo2\OneDrive\Desktop\PRELIEVI DAI CONTI mod. 1.ods
2024-10-15 10:30 - 2024-10-15 10:30 - 000003194 _____ C:\windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-10-15 10:30 - 2024-10-15 10:30 - 000002167 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-10-14 17:27 - 2024-10-14 17:27 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-10-13 17:59 - 2024-10-13 17:59 - 002932380 _____ C:\Users\dolo2\Downloads\Autoruns.zip
2024-10-13 17:59 - 2024-10-13 17:59 - 000000000 ____D C:\Users\dolo2\Downloads\Autoruns
2024-10-13 17:39 - 2024-10-13 17:42 - 000000000 ___HD C:\$SysReset
2024-10-13 17:29 - 2024-10-13 17:29 - 000000214 _____ C:\windows\Tasks\CreateExplorerShellUnelevatedTask.job
2024-10-12 10:39 - 2024-10-12 10:39 - 000037469 _____ C:\Users\dolo2\Downloads\Coordinate bancarie tascabili_CAI_20241012103955.pdf
2024-10-12 10:37 - 2024-10-12 10:37 - 000532049 _____ C:\Users\dolo2\Downloads\Dettaglio movimento_CAI_20241012103729.pdf
2024-10-12 10:36 - 2024-10-12 10:36 - 000532049 _____ C:\Users\dolo2\Downloads\Dettaglio movimento_CAI_20241012103708.pdf
2024-10-11 17:22 - 2024-10-18 13:13 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\Microsoft\MMC
2024-10-11 17:15 - 2024-10-11 17:15 - 183365808 _____ (HP Inc.) C:\Users\dolo2\Downloads\sp155262.exe
2024-10-11 17:07 - 2024-10-11 17:07 - 011019432 _____ (HP Inc.) C:\Users\dolo2\Downloads\sp154693.exe
2024-10-11 15:39 - 2024-10-16 12:25 - 000000000 ____D C:\Users\dolo2\AppData\Local\NVIDIA Corporation
2024-10-11 15:39 - 2024-10-11 15:39 - 000003976 _____ C:\windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:39 - 2024-10-11 15:39 - 000003940 _____ C:\windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:39 - 2024-10-11 15:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2024-10-11 15:39 - 2024-06-11 22:19 - 002900520 _____ (NVIDIA Corporation) C:\windows\system32\nvspcap64.dll
2024-10-11 15:39 - 2024-06-11 22:19 - 002231336 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvspcap.dll
2024-10-11 15:39 - 2024-06-11 22:18 - 001296936 _____ (NVIDIA Corporation) C:\windows\system32\NvRtmpStreamer64.dll
2024-10-11 15:39 - 2024-06-11 21:50 - 000086568 _____ C:\windows\system32\FvSDK_x64.dll
2024-10-11 15:39 - 2024-06-11 21:50 - 000075304 _____ C:\windows\SysWOW64\FvSDK_x86.dll
2024-10-11 15:38 - 2024-10-11 15:39 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2024-10-11 15:38 - 2024-10-11 15:38 - 000004308 _____ C:\windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003894 _____ C:\windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003858 _____ C:\windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003858 _____ C:\windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003858 _____ C:\windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003858 _____ C:\windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000003654 _____ C:\windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-10-11 15:38 - 2024-10-11 15:38 - 000000000 ____D C:\windows\system32\Drivers\NVIDIA Corporation
2024-10-11 15:38 - 2024-03-26 21:11 - 000180760 _____ (NVIDIA Corporation) C:\windows\system32\nvaudcap64v.dll
2024-10-11 15:38 - 2024-03-26 21:11 - 000159768 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvaudcap32v.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 002060648 _____ C:\windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-10-11 15:37 - 2024-09-28 23:03 - 002060648 _____ C:\windows\system32\vulkaninfo.exe
2024-10-11 15:37 - 2024-09-28 23:03 - 001600360 _____ C:\windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-10-11 15:37 - 2024-09-28 23:03 - 001600360 _____ C:\windows\SysWOW64\vulkaninfo.exe
2024-10-11 15:37 - 2024-09-28 23:03 - 001452392 _____ C:\windows\system32\vulkan-1-999-0-0-0.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 001452392 _____ C:\windows\system32\vulkan-1.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 001301864 _____ C:\windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 001301864 _____ C:\windows\SysWOW64\vulkan-1.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 000477816 _____ (Khronos Group) C:\windows\system32\OpenCL.dll
2024-10-11 15:37 - 2024-09-28 23:03 - 000374920 _____ (Khronos Group) C:\windows\SysWOW64\OpenCL.dll
2024-10-11 15:37 - 2024-09-28 23:00 - 001114232 _____ (NVIDIA Corporation) C:\windows\system32\nvml.dll
2024-10-11 15:37 - 2024-09-28 23:00 - 000670240 _____ (NVIDIA Corporation) C:\windows\system32\nvofapi64.dll
2024-10-11 15:37 - 2024-09-28 23:00 - 000505488 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvofapi.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 076307592 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvlddmkm.sys
2024-10-11 15:37 - 2024-09-28 22:59 - 025450104 _____ C:\windows\system32\nvidia-pcc.exe
2024-10-11 15:37 - 2024-09-28 22:59 - 002184824 _____ (NVIDIA Corporation) C:\windows\system32\NvFBC64.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 001634952 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvFBC.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 001554568 _____ (NVIDIA Corporation) C:\windows\system32\NvIFR64.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 001209480 _____ (NVIDIA Corporation) C:\windows\SysWOW64\NvIFR.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 001041528 _____ (NVIDIA Corporation) C:\windows\system32\nvEncodeAPI64.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 000863352 _____ (NVIDIA Corporation) C:\windows\system32\nvidia-smi.exe
2024-10-11 15:37 - 2024-09-28 22:59 - 000801416 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvEncodeAPI.dll
2024-10-11 15:37 - 2024-09-28 22:59 - 000461944 _____ (NVIDIA Corporation) C:\windows\system32\nvdebugdump.exe
2024-10-11 15:37 - 2024-09-28 22:58 - 017737352 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuvid.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 016811128 _____ (NVIDIA Corporation) C:\windows\system32\nvcuvid.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 006952568 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvcuda.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 005909624 _____ (NVIDIA Corporation) C:\windows\system32\nvcpl.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 005435528 _____ (NVIDIA Corporation) C:\windows\system32\nvcudadebugger.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 003807880 _____ (NVIDIA Corporation) C:\windows\system32\nvcuda.dll
2024-10-11 15:37 - 2024-09-28 22:58 - 000853640 _____ (NVIDIA Corporation) C:\windows\system32\MCU.exe
2024-10-11 15:37 - 2024-09-28 22:57 - 007157504 _____ (NVIDIA Corporation) C:\windows\system32\nvapi64.dll
2024-10-11 15:37 - 2024-09-28 22:57 - 006234672 _____ (NVIDIA Corporation) C:\windows\SysWOW64\nvapi.dll
2024-10-11 15:37 - 2024-09-27 02:17 - 000132691 _____ C:\windows\system32\nvinfo.pb
2024-10-11 15:36 - 2024-09-27 02:17 - 000237216 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvpcf.sys
2024-10-11 15:36 - 2024-03-26 21:11 - 000059928 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvad64v.sys
2024-10-11 15:34 - 2024-10-11 15:34 - 711706536 _____ (NVIDIA Corporation) C:\Users\dolo2\Downloads\565.90-notebook-win10-win11-64bit-international-dch-whql.exe
2024-10-11 13:54 - 2024-10-11 13:54 - 000000000 ____D C:\Users\dolo2\ansel
2024-10-11 13:53 - 2024-10-11 13:53 - 131655600 _____ (NVIDIA Corporation) C:\Users\dolo2\Downloads\GeForce_Experience_v3.28.0.417.exe
2024-10-11 13:53 - 2024-03-26 19:21 - 000060240 _____ (NVIDIA Corporation) C:\windows\system32\Drivers\nvvhci.sys
2024-10-11 13:39 - 2024-10-11 13:39 - 003459165 _____ C:\Users\dolo2\Downloads\process-explorer-17-06.zip
2024-10-11 13:39 - 2024-10-11 13:39 - 000000000 ____D C:\Users\dolo2\Downloads\process-explorer-17-06
2024-10-11 09:06 - 2024-10-11 09:06 - 016666754 _____ C:\Users\dolo2\Downloads\guida-ai-servizi-2024.pdf
2024-10-11 09:03 - 2024-10-11 09:03 - 000239659 _____ C:\Users\dolo2\Downloads\tariffario-conlegno-2024.pdf
2024-10-10 17:48 - 2024-10-10 17:48 - 000561240 _____ C:\Users\dolo2\Downloads\Ricevuta della distinta SEPA Istantanea_CAI_20241010174802.pdf
2024-10-10 17:41 - 2024-10-10 17:41 - 000342971 _____ C:\Users\dolo2\Downloads\Bonifico (47).pdf
2024-10-10 14:42 - 2024-10-10 14:42 - 000530185 _____ C:\Users\dolo2\Downloads\Ricevuta della distinta SEPA_CAI_20241010144210.pdf
2024-10-10 14:39 - 2024-10-10 14:39 - 000530186 _____ C:\Users\dolo2\Downloads\Ricevuta della distinta SEPA_CAI_20241010143909.pdf
2024-10-08 16:54 - 2024-10-08 16:54 - 008790880 _____ (Malwarebytes) C:\Users\dolo2\Downloads\adwcleaner.exe
2024-10-08 16:51 - 2024-10-08 16:51 - 002549600 _____ (Malwarebytes) C:\Users\dolo2\Downloads\MBSetup.exe
2024-10-07 12:30 - 2024-10-07 12:30 - 000035567 _____ C:\Users\dolo2\Downloads\SCHEMA_CONTRATTO_DI_LOCAZIONE3__6_.pdf
2024-10-04 13:30 - 2024-10-12 09:52 - 000030239 _____ C:\Users\dolo2\AppData\LocalLow\5642129d91fd36633bafcdfcb905f769dd89380fe5f84073508767d36ed1ce04
2024-10-04 13:30 - 2024-10-12 09:52 - 000000130 _____ C:\Users\dolo2\AppData\LocalLow\c66ea2d0c43a5ab0f82ad7cad0e5b71023e6a7c78bf47e45c6fedaab1806b45d
2024-10-04 13:13 - 2024-10-04 13:13 - 000342987 _____ C:\Users\dolo2\Downloads\CBILL (5).pdf
2024-10-03 12:43 - 2024-10-03 12:43 - 000530588 _____ C:\Users\dolo2\Downloads\Ricevuta della distinta SEPA_CAI_20241003124325.pdf
2024-10-03 08:58 - 2024-10-16 08:59 - 000000000 ____D C:\windows\system32\Tasks\Norton
2024-10-03 08:58 - 2024-10-03 08:58 - 000050976 _____ (Avast Software) C:\windows\system32\icarus_rvrt.exe
2024-10-03 08:58 - 2024-10-03 08:58 - 000001990 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360.lnk
2024-10-03 08:58 - 2024-10-03 08:58 - 000000000 ____D C:\Program Files\Norton
2024-10-03 08:58 - 2024-10-03 08:58 - 000000000 ____D C:\Program Files\Common Files\Norton
2024-10-02 14:23 - 2024-10-02 14:23 - 000342894 _____ C:\Users\dolo2\Downloads\Bonifico (46).pdf
2024-10-02 12:58 - 2024-10-02 12:58 - 000021572 _____ C:\Users\dolo2\Downloads\wise_transaction_invoice__transfer__1242353470__4022967525__it.pdf
2024-10-02 09:54 - 2024-10-02 09:54 - 000000000 ____D C:\Users\dolo2\AppData\Local\INetHistory
2024-10-02 09:53 - 2024-10-18 08:59 - 000011216 _____ C:\Users\dolo2\AppData\LocalLow\d9ec534cb2b823c433950a0b29f3bf43af91d7e4baf3bdf47287f351b9b522df
2024-10-02 09:53 - 2024-10-02 09:53 - 000000026 _____ C:\Users\dolo2\AppData\LocalLow\6d7c2a7b445f7857f49fc3983f8d03f9864b9f42ad3aef83d8710cdc776beb38
2024-10-02 09:06 - 2024-10-03 09:00 - 000000000 ____D C:\windows\system32\Tasks\Remediation
2024-09-27 12:44 - 2024-09-27 12:44 - 000852043 _____ C:\Users\dolo2\Downloads\24_09_2024_Carta_International_Debit_Commercial__rapporto_0000015297059.pdf
2024-09-26 13:32 - 2024-10-18 12:12 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2024-09-20 16:40 - 2024-09-20 16:40 - 001128518 _____ C:\Users\dolo2\Downloads\richiesta BPS controfirmata.pdf
2024-09-20 16:40 - 2024-09-20 16:40 - 001128518 _____ C:\Users\dolo2\Downloads\richiesta BPS controfirmata (1).pdf
2024-09-20 15:12 - 2024-09-20 15:12 - 000342846 _____ C:\Users\dolo2\Downloads\Bonifico (45).pdf
2024-09-19 09:09 - 2024-09-19 09:09 - 000342318 _____ C:\Users\dolo2\Downloads\OPrid (15).pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-10-19 09:14 - 2023-12-17 19:03 - 000000000 ____D C:\Users\dolo2\OneDrive\Desktop\OPERATIVO
2024-10-19 09:05 - 2024-01-13 16:13 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2024-10-19 09:02 - 2024-05-21 09:17 - 000033501 _____ C:\Users\dolo2\AppData\LocalLow\96b4e09f9d106d02c2df9d25efab0623acb10b2aa352982ff915d2fb958abe41
2024-10-19 09:02 - 2024-05-21 09:17 - 000000130 _____ C:\Users\dolo2\AppData\LocalLow\aae5869fa0bec4d8d27610345766f7ef02e2889cb0620366db786ae3c9e60f86
2024-10-19 08:56 - 2024-05-10 08:30 - 000353610 _____ C:\Users\dolo2\AppData\LocalLow\5fc18818885154e2f8f5ba65eec1eefad757bab62ecbde0aab33b042f4d9d547
2024-10-19 08:56 - 2024-05-10 08:30 - 000000130 _____ C:\Users\dolo2\AppData\LocalLow\9561ed9a0b78144747fa26e4c4fd2a49defb5e38fac37da7863fcf98aeb7cb48
2024-10-19 08:56 - 2023-12-17 18:32 - 000000000 ____D C:\Users\dolo2\AppData\Local\D3DSCache
2024-10-19 08:55 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-10-19 08:40 - 2024-05-14 13:00 - 000011216 _____ C:\Users\dolo2\AppData\LocalLow\ef54eddb2ded8674d924a92863f229125f4b7962e4f7fe0c46c7682970b66a1d
2024-10-19 08:28 - 2023-12-17 18:32 - 000000000 ___RD C:\Users\dolo2\OneDrive
2024-10-19 08:28 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2024-10-19 08:28 - 2022-05-07 07:24 - 000000000 ____D C:\windows\AppReadiness
2024-10-18 16:35 - 2024-05-27 11:20 - 000000000 ____D C:\ProgramData\firebird
2024-10-18 16:28 - 2022-11-03 06:32 - 000000000 ____D C:\windows\system32\SleepStudy
2024-10-18 15:27 - 2023-12-17 18:53 - 000000000 ____D C:\Program Files\CCleaner
2024-10-18 13:10 - 2022-11-03 06:32 - 000003676 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-10-18 13:10 - 2022-11-03 06:32 - 000003452 _____ C:\windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-10-18 13:08 - 2024-07-02 09:25 - 000003936 _____ C:\windows\system32\Tasks\CCleaner Update
2024-10-18 13:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemTemp
2024-10-18 12:25 - 2023-11-07 16:28 - 000000000 ____D C:\ProgramData\NVIDIA
2024-10-18 12:12 - 2024-01-13 16:13 - 000001062 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2024-10-18 12:12 - 2024-01-13 16:13 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-10-18 11:23 - 2024-08-23 16:51 - 000000000 ____D C:\Users\dolo2\Documents\Danea Easyfatt
2024-10-17 14:47 - 2023-11-07 16:28 - 000000000 ____D C:\ProgramData\Package Cache
2024-10-17 11:55 - 2024-01-15 12:24 - 000000000 ____D C:\ProgramData\boost_interprocess
2024-10-17 11:55 - 2024-01-15 12:10 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\Samsung
2024-10-17 10:35 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-10-17 10:29 - 2023-12-17 18:50 - 000000000 ____D C:\Users\dolo2\AppData\Local\NVIDIA
2024-10-17 10:11 - 2022-11-03 06:39 - 001929174 _____ C:\windows\system32\PerfStringBackup.INI
2024-10-17 10:11 - 2022-05-07 07:22 - 000000000 ____D C:\windows\INF
2024-10-17 10:04 - 2024-01-13 16:59 - 000000000 ____D C:\ProgramData\Norton
2024-10-17 10:04 - 2022-11-03 06:32 - 000602608 _____ C:\windows\system32\FNTCACHE.DAT
2024-10-17 10:04 - 2022-11-03 06:32 - 000012288 ___SH C:\DumpStack.log.tmp
2024-10-17 10:04 - 2022-11-03 06:32 - 000000006 ____H C:\windows\Tasks\SA.DAT
2024-10-17 10:04 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ServiceState
2024-10-17 10:03 - 2022-05-07 07:17 - 001048576 _____ C:\windows\system32\config\BBI
2024-10-17 09:47 - 2023-12-17 19:39 - 000000000 ____D C:\Users\dolo2\AppData\Local\CrashDumps
2024-10-17 09:45 - 2023-12-17 19:21 - 000000000 ____D C:\ProgramData\ProductData3
2024-10-17 09:43 - 2024-01-13 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2024-10-17 09:43 - 2024-01-13 16:34 - 000000000 ____D C:\Program Files (x86)\Ashampoo
2024-10-16 08:59 - 2024-08-20 15:43 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-10-16 08:59 - 2022-05-07 07:24 - 000000000 ___HD C:\windows\ELAMBKUP
2024-10-16 08:58 - 2023-07-05 09:21 - 000001623 _____ C:\windows\system32\config\VSMIDK
2024-10-15 10:30 - 2023-12-17 18:32 - 000003592 _____ C:\windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3098768321-600776327-2169861063-1001
2024-10-14 17:29 - 2023-07-05 09:27 - 000000000 ____D C:\Program Files\Microsoft Office
2024-10-13 17:32 - 2023-12-17 18:26 - 000000000 ____D C:\Users\dolo2\AppData\Local\ConnectedDevicesPlatform
2024-10-12 08:38 - 2022-11-03 06:32 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-10-11 17:16 - 2024-05-09 08:21 - 000000000 ____D C:\SWSetup
2024-10-11 17:16 - 2023-07-05 09:25 - 000000000 ____D C:\Program Files\HP
2024-10-11 17:08 - 2023-12-17 18:01 - 000000000 ____D C:\Users\dolo2
2024-10-11 15:39 - 2023-11-07 16:28 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-10-11 15:39 - 2023-11-07 16:27 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2024-10-11 15:38 - 2024-01-24 13:27 - 000000000 ____D C:\Users\dolo2\AppData\LocalLow\NVIDIA
2024-10-10 15:00 - 2023-12-17 18:21 - 000000000 ____D C:\windows\system32\Microsoft-Edge-WebView
2024-10-10 15:00 - 2022-05-07 08:10 - 000000000 ____D C:\windows\system32\OpenSSH
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ___RD C:\windows\ImmersiveControlPanel
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemResources
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\SystemApps
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\Sgrm
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\oobe
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\system32\appraiser
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\ShellExperiences
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\Provisioning
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\IME
2024-10-10 15:00 - 2022-05-07 07:24 - 000000000 ____D C:\windows\bcastdvr
2024-10-10 15:00 - 2022-05-07 07:17 - 000000000 ____D C:\windows\servicing
2024-10-10 12:11 - 2024-06-13 10:29 - 000000130 _____ C:\Users\dolo2\AppData\LocalLow\0d8ce0cf35aa7c7d3119ff805ea411913e9063dbbfde48d90472b24757f677cb
2024-10-10 12:10 - 2024-06-13 10:29 - 000202671 _____ C:\Users\dolo2\AppData\LocalLow\d7ab55b136db7af61d358961466174c44b88e0abcf74413efc14283cf253191f
2024-10-09 09:49 - 2024-01-13 16:35 - 000000000 ____D C:\windows\system32\MRT
2024-10-09 09:44 - 2024-01-13 16:35 - 201324920 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2024-10-09 09:44 - 2022-05-07 07:17 - 000000000 ____D C:\windows\CbsTemp
2024-10-09 09:42 - 2022-11-03 06:34 - 003213312 _____ (Microsoft Corporation) C:\windows\SysWOW64\PrintConfig.dll
2024-10-09 09:28 - 2024-05-12 14:48 - 000021931 _____ C:\Users\dolo2\AppData\LocalLow\1dc6c00a8ccb1ba456966b5f470493e9b53380f303883ce5012e6c64eb5a9a36
2024-10-08 08:58 - 2024-05-10 08:21 - 000000130 _____ C:\Users\dolo2\AppData\LocalLow\10a4dca5d4e4c061e5be589b05c7453a289bc5897d5dfde751f9ade306a1ddcc
2024-10-03 17:24 - 2023-12-17 18:56 - 000002212 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-10-03 09:29 - 2024-01-13 17:18 - 000000000 ____D C:\Users\dolo2\AppData\Local\Norton
2024-10-03 09:04 - 2024-01-13 17:00 - 000000000 ____D C:\Program Files (x86)\NortonInstaller
2024-10-03 09:00 - 2024-01-13 17:00 - 000000000 ____D C:\ProgramData\NortonInstaller
2024-10-03 09:00 - 2022-05-07 07:17 - 000032768 _____ C:\windows\system32\config\ELAM
2024-10-03 08:57 - 2023-12-17 18:49 - 000000000 ____D C:\windows\system32\Tasks\Hewlett-Packard
2024-10-02 09:54 - 2023-12-17 18:01 - 000000000 ____D C:\Users\dolo2\AppData\Local\PlaceholderTileLogoFolder
2024-10-02 09:54 - 2023-12-17 18:01 - 000000000 ____D C:\Users\dolo2\AppData\Local\Packages
2024-10-02 09:47 - 2024-01-13 17:02 - 000000000 ____D C:\Users\dolo2\AppData\LocalLow\Norton
2024-10-01 09:14 - 2024-01-16 10:33 - 000002554 _____ C:\windows\SysWOW64\pubfreeware.ini
2024-10-01 09:05 - 2024-01-13 17:51 - 000000000 ____D C:\Program Files\Common Files\AV
2024-10-01 08:32 - 2022-11-03 06:35 - 000000000 ____D C:\ProgramData\Packages
2024-10-01 08:29 - 2024-01-13 17:34 - 000000000 ____D C:\Program Files\TeamViewer
2024-09-30 09:51 - 2024-01-13 19:28 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\Norton
2024-09-20 16:45 - 2024-01-13 15:36 - 000021093 _____ C:\Users\dolo2\OneDrive\Desktop\DA FARE 2024.odt
2024-09-20 16:35 - 2024-05-11 15:17 - 000130622 _____ C:\Users\dolo2\AppData\LocalLow\c6ca929478c6d9d6f4f442d7ca81241987d49bc20dae00b537cf8de99c162409
2024-09-20 10:46 - 2023-12-17 19:20 - 000000000 ____D C:\Users\dolo2\AppData\Roaming\IObit
2024-09-20 10:46 - 2023-12-17 19:20 - 000000000 ____D C:\ProgramData\IObit
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================