16.01.
2023 1:14:03 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
16.01.2023 1:14:03 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
SYSTEM32\SC.exe
Anti-malware scan finished at: 16.01.2023 1:14:26 AM
Anti-malware scan started at: 16.01.2023 1:14:28 AM
16.01.2023 1:17:57 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
16.01.2023 1:17:57 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
SYSTEM32\SC.exe
Delete Marked Items Auto Start Apps->Scheduled Tasks 2. C:\WINDOWS\SYSNATIVE\TASKS\
HP\Consent Manager Launcher=C:\WINDOWS\SYSTEM32\SC.exe
-------------------------------------------------------
16.01.2023 1:21:30 AM Approved File Replacement
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-
D47AEEBAD591\8cb20d75.BUD
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-
D47AEEBAD591\8cb20d75.gpd
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-D47AEEBAD591\
HPOneDriver-Autoconfig.ser
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-D47AEEBAD591\
STDDTYPE.ser
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-D47AEEBAD591\
STDSCHEM.ser
Delete: \??\C:\WINDOWS\system32\spool\V4Dirs\6516F223-B660-40F5-B614-D47AEEBAD591
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PSCRIPT5.DLL
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PSCRIPT5.DLL
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PS5UI.DLL
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PS5UI.DLL
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PSCRIPT.HLP
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PSCRIPT.HLP
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PSCRPTFE.NTF
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PSCRPTFE.NTF
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PSCRIPT.NTF
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PSCRIPT.NTF
Rename: Source: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\New\PS_SCHM.GDL
Destination: \??\C:\WINDOWS\system32\spool\DRIVERS\x64\3\PS_SCHM.GDL
Delete: \??\C:\Program Files (x86)\Adobe\Acrobat Reader DC\Resource\Font\
CourierStd.otf
Delete: \??\C:\ProgramData\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}
Delete: \??\C:\Program Files (x86)\Common Files\Adobe\Acrobat\Setup\{AC76BA86-7AD7-
1033-7B44-AC0F074E4100}
Delete: \??\C:\ProgramData\Adobe\Setup\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}
Delete: \??\C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\WebResources
Delete: \??\C:\Program Files (x86)\Common Files\Adobe\Acrobat\Setup\{AC76BA86-7AD7-
1033-7B44-AC0F074E4100}
Delete: \??\C:\Config.Msi\d35e67.rbf
Delete: \??\C:\Config.Msi\d35e92.rbf
Delete: \??\C:\Config.Msi\d35eb7.rbf
Delete: \??\C:\Config.Msi\d35ec0.rbf
Delete: \??\C:\Config.Msi\d35ec1.rbf
Delete: \??\C:\Config.Msi\d35ed8.rbf
Delete: \??\C:\Config.Msi\d35ed9.rbf
Delete: \??\C:\Config.Msi\d35edd.rbf
Delete: \??\C:\Config.Msi\d35edf.rbf
Delete: \??\C:\Config.Msi\d35ee0.rbf
Delete: \??\C:\Config.Msi\d35ee1.rbf
Delete: \??\C:\Config.Msi\d35ee3.rbf
Delete: \??\C:\Config.Msi\d35ee4.rbf
Delete: \??\C:\Config.Msi\d35ee6.rbf
Delete: \??\C:\Config.Msi\d35ee8.rbf
Delete: \??\C:\Config.Msi\d35ee9.rbf
Delete: \??\C:\Config.Msi\d35eeb.rbf
Delete: \??\C:\Config.Msi\d35eec.rbf
Delete: \??\C:\Config.Msi\d35eed.rbf
Delete: \??\C:\Config.Msi\d35ef2.rbf
Delete: \??\C:\Config.Msi\d35efc.rbf
Delete: \??\C:\Config.Msi\d35f25.rbf
Delete: \??\C:\Config.Msi\d35f37.rbf
Delete: \??\C:\Config.Msi\d35f38.rbf
Delete: \??\C:\Config.Msi\d35f3b.rbf
Delete: \??\C:\Config.Msi\d35f3c.rbf
Delete: \??\C:\Config.Msi\d35f3d.rbf
Delete: \??\C:\Config.Msi\d35f3e.rbf
Delete: \??\C:\Config.Msi\d35f41.rbf
Delete: \??\C:\Config.Msi\d35f60.rbf
Delete: \??\C:\Config.Msi\d35f79.rbf
Delete: \??\C:\Config.Msi\d35fb0.rbf
Delete: \??\C:\Users\Student\AppData\Local\Temp\iu-14D2N.tmp\_unins.tmp
Delete: \??\C:\Users\Student\AppData\Local\Temp\iu-14D2N.tmp
Delete: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher
16.01.2023 1:21:41 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
16.01.2023 1:23:23 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
16.01.2023 1:23:23 AM Registry Run
Unknown: AdobeBridge =
16.01.2023 1:23:23 AM Registry Run
Unknown: Adobe Reader Synchronizer = "C:\Program Files (x86)\Adobe\Acrobat Reader
DC\Reader\AdobeCollabSync.exe"
16.01.2023 1:23:23 AM Startup Folder
Unknown: Auto-Launch Support - 2022.lnk = C:\USERS\STUDENT\DESKTOP\AUTO-LAUNCH
SUPPORT - 2022.PDF
16.01.2023 1:23:23 AM Scheduled Tasks 2
Unknown: C:\WINDOWS\SYSNATIVE\TASKS\HP\HP Support Assistant\sp134317 = C:\
HPSWSETUP\SP134317\HPSETUP.EXE
16.01.2023 1:23:25 AM Search Provider
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:23:25 AM Search Provider for All Users
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:23:25 AM Search Provider for All Users(x64)
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:23:25 AM Search Provider(x64)
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:23:25 AM Google Chrome Settings
Unknown: session.startup_urls = ["http:\/\/pslogin.strayer.edu\/"]
16.01.2023 1:23:25 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.alternate_urls =
["{google:baseURL}#q={searchTerms}","{google:baseURL}search#q={searchTerms}","{goog
le:baseURL}webhp#q={searchTerms}","{google:baseURL}s#q={searchTerms}","{google:base
URL}s?q={searchTerms}"]
16.01.2023 1:23:25 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.url =
{google:baseURL}search?q={searchTerms}&{google:RLZ}
{google:originalQueryForSuggestion}{google:assistedQueryStats}
{google:searchFieldtrialParameter}{google:iOSSearchLanguage}{google:prefetchSource}
{google:searchClient}{google:sourceId}
{google:contextualSearchVersion}ie={inputEncoding}
16.01.2023 1:23:25 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.image_url =
{google:baseSearchByImageURL}upload
16.01.2023 1:23:25 AM Google Chrome Settings
Unknown: homepage = http://pslogin.strayer.edu/
16.01.2023 1:23:25 AM Google Chrome Notifications
Unknown: 0 = https://grandsavingscenter.com:443,*
16.01.2023 1:23:25 AM Google Chrome Notifications
Unknown: 1 = https://www.pinterest.com:443,*
16.01.2023 1:23:25 AM Google Chrome Notifications
Unknown: 3 = https://g.therewardboost.com:443,*
16.01.2023 1:23:25 AM Google Chrome Notifications
Unknown: 4 = https://1st-premierlending.com:443,*
16.01.2023 1:23:26 AM Google Chrome Notifications
Unknown: 6 = https://aboutmanual.com:443,*
16.01.2023 1:23:26 AM Google Chrome Notifications
Unknown: 7 = https://www.paramountplus.com:443,*
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: ihmafllikibpmigkcoadcmckbfhibefp = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\edge_feedback
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: iglcjdemknebjbklcgkfaebgojjphkec = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\microsoft_web_store
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: fikbjbembnmfhppjfnmfkahdhfohhjmg = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\media_internals_services
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: jdiccldimpdaibmpdkjnbmckianbfold = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\microsoft_voices
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: fogppepbgmgkpdkinbojbibkhoffpief = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\edge_collections
16.01.2023 1:23:29 AM FireFox Components and Extensions
Unknown: LogiSmoothFirefoxExt = C:\Program Files\Logitech\SetPointP\
LogiSmoothFirefoxExt\
16.01.2023 1:23:29 AM FireFox Components and Extensions
Unknown: adobe_acrobat-1.0-windows = C:\Program Files\Adobe\Acrobat DC\Acrobat\
Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: apcnhnfabpjbhehcnlebhdpidhmdhlon = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\apcnhnfabpjbhehcnlebhdpidhmdhlon
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: einnffiilpmgldkapbikhkeicohlaapj = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\einnffiilpmgldkapbikhkeicohlaapj
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: nenlahapcbofgnanklpelkaejcehkggg = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\nenlahapcbofgnanklpelkaejcehkggg
16.01.2023 1:23:29 AM Google Chrome Addons
Unknown: nbmoafcmbajniiapeidgficgifbfmjfo = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\nbmoafcmbajniiapeidgficgifbfmjfo
16.01.2023 1:23:30 AM Google Chrome Addons
Unknown: bmnlcjabgnpnenekpadlanbbkooimhnj = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj
16.01.2023 1:23:30 AM Google Chrome Addons
Unknown: fbgcedjacmlbgleddnoacbnijgmiolem = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\fbgcedjacmlbgleddnoacbnijgmiolem
16.01.2023 1:24:42 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
16.01.2023 1:24:42 AM Registry Run
Unknown: AdobeBridge =
16.01.2023 1:24:42 AM Registry Run
Unknown: Adobe Reader Synchronizer = "C:\Program Files (x86)\Adobe\Acrobat Reader
DC\Reader\AdobeCollabSync.exe"
16.01.2023 1:24:42 AM Startup Folder
Unknown: Auto-Launch Support - 2022.lnk = C:\USERS\STUDENT\DESKTOP\AUTO-LAUNCH
SUPPORT - 2022.PDF
16.01.2023 1:24:42 AM Scheduled Tasks 2
Unknown: C:\WINDOWS\SYSNATIVE\TASKS\HP\HP Support Assistant\sp134317 = C:\
HPSWSETUP\SP134317\HPSETUP.EXE
16.01.2023 1:24:44 AM Search Provider
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:24:44 AM Search Provider for All Users
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:24:44 AM Search Provider for All Users(x64)
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:24:44 AM Search Provider(x64)
Unknown: {467599B8-76AD-4F7E-BD9C-74E0F4167C7B} =
http://www.amazon.com/s/ref=azs_osd_iea?ie=UTF-8&tag=hp-us2-vsb-20&link
%5Fcode=qs&index=aps&field-keywords={searchTerms}
16.01.2023 1:24:44 AM Google Chrome Settings
Unknown: session.startup_urls = ["http:\/\/pslogin.strayer.edu\/"]
16.01.2023 1:24:44 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.alternate_urls =
["{google:baseURL}#q={searchTerms}","{google:baseURL}search#q={searchTerms}","{goog
le:baseURL}webhp#q={searchTerms}","{google:baseURL}s#q={searchTerms}","{google:base
URL}s?q={searchTerms}"]
16.01.2023 1:24:44 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.url =
{google:baseURL}search?q={searchTerms}&{google:RLZ}
{google:originalQueryForSuggestion}{google:assistedQueryStats}
{google:searchFieldtrialParameter}{google:iOSSearchLanguage}{google:prefetchSource}
{google:searchClient}{google:sourceId}
{google:contextualSearchVersion}ie={inputEncoding}
16.01.2023 1:24:44 AM Google Chrome Settings
Unknown: default_search_provider_data.template_url_data.image_url =
{google:baseSearchByImageURL}upload
16.01.2023 1:24:44 AM Google Chrome Settings
Unknown: homepage = http://pslogin.strayer.edu/
16.01.2023 1:24:44 AM Google Chrome Notifications
Unknown: 0 = https://grandsavingscenter.com:443,*
16.01.2023 1:24:45 AM Google Chrome Notifications
Unknown: 1 = https://www.pinterest.com:443,*
16.01.2023 1:24:45 AM Google Chrome Notifications
Unknown: 3 = https://g.therewardboost.com:443,*
16.01.2023 1:24:45 AM Google Chrome Notifications
Unknown: 4 = https://1st-premierlending.com:443,*
16.01.2023 1:24:45 AM Google Chrome Notifications
Unknown: 6 = https://aboutmanual.com:443,*
16.01.2023 1:24:45 AM Google Chrome Notifications
Unknown: 7 = https://www.paramountplus.com:443,*
16.01.2023 1:24:48 AM Google Chrome Addons
Unknown: ihmafllikibpmigkcoadcmckbfhibefp = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\edge_feedback
16.01.2023 1:24:48 AM Google Chrome Addons
Unknown: iglcjdemknebjbklcgkfaebgojjphkec = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\microsoft_web_store
16.01.2023 1:24:48 AM Google Chrome Addons
Unknown: fikbjbembnmfhppjfnmfkahdhfohhjmg = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\media_internals_services
16.01.2023 1:24:48 AM Google Chrome Addons
Unknown: jdiccldimpdaibmpdkjnbmckianbfold = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\microsoft_voices
16.01.2023 1:24:48 AM Google Chrome Addons
Unknown: fogppepbgmgkpdkinbojbibkhoffpief = C:\Program Files (x86)\Microsoft\Edge\
Application\84.0.522.73\resources\edge_collections
16.01.2023 1:24:49 AM FireFox Components and Extensions
Unknown: LogiSmoothFirefoxExt = C:\Program Files\Logitech\SetPointP\
LogiSmoothFirefoxExt\
16.01.2023 1:24:49 AM FireFox Components and Extensions
Unknown: adobe_acrobat-1.0-windows = C:\Program Files\Adobe\Acrobat DC\Acrobat\
Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: apcnhnfabpjbhehcnlebhdpidhmdhlon = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\apcnhnfabpjbhehcnlebhdpidhmdhlon
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: einnffiilpmgldkapbikhkeicohlaapj = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\einnffiilpmgldkapbikhkeicohlaapj
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: nenlahapcbofgnanklpelkaejcehkggg = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\nenlahapcbofgnanklpelkaejcehkggg
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: nbmoafcmbajniiapeidgficgifbfmjfo = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\nbmoafcmbajniiapeidgficgifbfmjfo
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: bmnlcjabgnpnenekpadlanbbkooimhnj = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj
16.01.2023 1:24:49 AM Google Chrome Addons
Unknown: fbgcedjacmlbgleddnoacbnijgmiolem = C:\Users\Student\AppData\Local\Google\
Chrome\User Data\Default\Extensions\fbgcedjacmlbgleddnoacbnijgmiolem
Anti-malware scan finished at: 16.01.2023 1:28:26 AM
Anti-malware scan started at: 16.01.2023 11:44:39 AM
1/16/2023 11:45:42 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
Anti-malware scan finished at: 1/16/2023 11:46:29 AM
Anti-malware scan started at: 16.01.2023 3:46:39 PM
16.01.2023 3:47:24 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
Anti-malware scan finished at: 16.01.2023 3:48:05 PM
Anti-malware scan started at: 17.01.2023 3:27:59 AM
17.01.2023 3:29:22 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
Anti-malware scan finished at: 17.01.2023 3:30:13 AM
Anti-malware scan started at: 17.01.2023 7:36:46 AM
17.01.2023 7:38:05 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
17.01.2023 7:38:05 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
17.01.2023 7:38:05 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 17.01.2023 7:39:57 AM
Anti-malware scan started at: 17.01.2023 12:29:14 PM
17.01.2023 12:30:14 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
17.01.2023 12:30:14 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
17.01.2023 12:30:14 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 17.01.2023 12:31:20 PM
Anti-malware scan started at: 17.01.2023 5:17:40 PM
17.01.2023 5:18:47 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
17.01.2023 5:18:47 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
17.01.2023 5:18:47 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 17.01.2023 5:19:53 PM
Anti-malware scan started at: 17.01.2023 11:30:38 PM
17.01.2023 11:32:11 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
17.01.2023 11:32:11 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
17.01.2023 11:32:11 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan started at: 17.01.2023 11:38:43 PM
1/17/2023 11:40:16 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
1/17/2023 11:40:17 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
1/17/2023 11:40:17 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 1/17/2023 11:41:30 PM
Anti-malware scan started at: 18.01.2023 11:12:23 PM
1/18/2023 11:14:58 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
1/18/2023 11:14:58 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
1/18/2023 11:14:59 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 1/18/2023 11:17:07 PM
Anti-malware scan started at: 19.01.2023 4:20:41 AM
1/20/2023 1:00:24 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
1/20/2023 1:00:24 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
1/20/2023 1:00:24 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 1/20/2023 1:01:54 AM
Anti-malware scan started at: 20.01.2023 5:02:18 AM
20.01.2023 5:03:05 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
20.01.2023 5:03:05 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
20.01.2023 5:03:05 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 20.01.2023 5:03:51 AM
Anti-malware scan started at: 20.01.2023 11:34:11 AM
20.01.2023 11:35:08 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
20.01.2023 11:35:08 AM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
20.01.2023 11:35:08 AM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
20.01.2023 11:35:54 AM Auto Services
Suspicious: HPPrintScanDoctorService = C:\PROGRAM FILES\HPPRINTSCANDOCTOR\
HPPRINTSCANDOCTORSERVICE.EXE
Anti-malware scan finished at: 20.01.2023 11:35:54 AM
Anti-malware scan started at: 20.01.2023 4:35:29 PM
20.01.2023 5:38:45 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\ImplicitAppShortcuts\8bb47c5e24b897e\OneLaunch.lnk = C:\Users\Student\
AppData\Local\OneLaunch\5.9.3\chromium\chromium.exe
20.01.2023 5:38:46 PM User Shortcuts
Unknown: C:\Users\Student\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
User Pinned\TaskBar\Tombstones\Snipping Tool.lnk = C:\Windows\System32\
SnippingTool.exe
20.01.2023 5:38:46 PM Scheduled Tasks 2
Suspicious: C:\WINDOWS\SYSNATIVE\TASKS\HP\Consent Manager Launcher = C:\WINDOWS\
system32\SC.exe
Anti-malware scan finished at: 20.01.2023 5:39:47 PM