I recently noticed a bunch of weird programs/tcp ports being allowed through my Defender firewall recently. I had some other peculiar stuff as well. Every once in a while I see my screen flicker like someone is remotely logging in/out so that has me concerned. Also.. a service was running for SSH but I think that might be from messing with VM stuff. My System32 Folder is also shared by default and I'm not sure why. To make things more weird, I have one drive that's formatted as exFAT. I have folders that had a modified date of a future date as well so I'm pretty sure there's something going on. I'm also concerned there could be something with VMware/Android SDK/my phone involved in all of this. I have my boot manager setup weird too where my BIOS is UEFI + Legacy (grub and windows manager together on two separate drives lol... disorganized) so that's a bit disconcerting. I started learning programming a while back too so there might be some stuff on here that's ill advised security wise. I also felt like I was getting weird google search results at times but that could just be me. There's more too if you need more info.
Anyway here are my logs.
Addition (2).txt
FRST (3).txt
Anyway here are my logs.
Addition (2).txt
FRST (3).txt