Hi @IT_WinSec,
Thanks for your quick and thorough reply. A bit off topic here and there but I got myself to thank for that for not being entirely clear in my questions and making some typo’s here and there.
So back to my questions and your reply’s.
Question 1: How is that even possible? If the fix is recent shouldn't the new driver have a higher drivernumber?
Answer: They didn't change the driver number. Reason : Well, I don't know.
My reply: Thanks
Question 2: Where can I find a working updated driver
Answer: Here is the latest one >> https://support.hp.com/us-en/document/c05827409
My reply: Yeah that one worked, may be my download was just corrupted twice yesterday.
Question 3: Can I safely remove HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTP\ or even HKEY_LOCAL_MACHINE\SOFTWARE\
Answer: Something with “all due respect” which I totally deserved, because I provided the wrong regkey for my question. The question should have been.
Can I safely remove:
HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTP\
or even
HKEY_LOCAL_MACHINE\SOFTWARE\ Synaptics\
Meaning can I remove anything associated to the SynTP driver or even anything associated to Synaptics as a whole. I wanted to know this because HKEY_LOCAL_MACHINE\SOFTWARE\Synaptics\SynTP\default contains the keymapping values for each key in my registry and that doesn’t feel right. Kind of feels suspicious.
Question 4: How can I check if my system is breached and a keylogger is active?
Answer: My point is not to focus on one single Synaptic driver vulnerability (which is patched now) but to focus on the bigger picture.
My reply: I agree, but I still think there is a difference between a) a bug which results in an error. b) a bug which results in a vulnerability and c) malicious source code in your touchpad driver, because even the smallest of testing procedures could have detected that.
Since there are keymapping values present in my registry I was just curious if they would be there even if the keylogger is de-activited or if the keys being there mean that in my case the keylogger was activated.