Fix result of Farbar Recovery Scan Tool (x64) Version: 08-05-2017
Ran by Veruška (12-05-2017 21:50:23) Run:1
Running from C:\Users\Dixina\Desktop
Loaded Profiles: Veruška (Available Profiles: Veruška & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation)
HKU\S-1-5-21-2079334890-2881135925-3774209045-1000\...\Run: [background_fault] => C:\Users\Dixina\AppData\Local\background_fault\aswRD.exe [1419576 2017-05-09] (AVAST Software) <===== ATTENTION
IFEO\GoogleUpdate.exe: [Debugger] 324095823984.exe
IFEO\GoogleUpdaterService.exe: [Debugger] 8736459873644.exe
ShellExecuteHooks: No Name - {73538FB6-AB7F-11E6-9B77-64006A5CFC23} - -> No File
ShellExecuteHooks: No Name - {A65771C6-0D5A-11E7-9DEF-64006A5CFC23} - -> No File
ShellExecuteHooks: No Name - {7261736E-0E31-11E7-9182-64006A5CFC23} - -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
GroupPolicy: Restriction - Chrome <======= ATTENTION
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
SearchScopes: HKLM -> {031511DA-D699-4EE4-945D-193FE7F3C84A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKLM-x32 -> {031511DA-D699-4EE4-945D-193FE7F3C84A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
SearchScopes: HKU\S-1-5-21-2079334890-2881135925-3774209045-1000 -> {031511DA-D699-4EE4-945D-193FE7F3C84A} URL = hxxp://
www.bing.com/search?q={searchTerms}&for ... -SearchBox
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [No File]
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [No File]
CHR Profile: C:\Users\Dixina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData [2017-05-11] <==== ATTENTION
S2 NPASRE; C:\Users\Dixina\AppData\Local\NPASRE\Snare.dll [X]
U3 idsvc; no ImagePath
S1 ZAM; \??\C:\WINDOWS\System32\drivers\zam64.sys [X]
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
C:\Users\Dixina\AppData\Local\background_fault\aswRD.exe
C:\Users\Dixina\AppData\Local\Temp
Task: {08F3B3E0-DAA9-412C-9DE5-C98BB9122850} - System32\Tasks\{9484E766-82AE-495D-A9A6-338DD05C641E} => pcalua.exe -a "C:\Program Files (x86)\ShopperPro\SPremove.exe" <==== ATTENTION
Task: {1994D25A-A92F-4DF0-88C2-98B93C8AF2AE} - \Qulersyqfot -> No File <==== ATTENTION
Task: {1CBDE7AA-852B-4CC7-891C-6708AAF335C4} - System32\Tasks\Oxj02jOfyktYB02qGq3jN => C:\Users\Dixina\AppData\Roaming\Oxj02jOfyktYB02qGq3jN.exe <==== ATTENTION
Task: {29694D47-A85E-4740-9B9B-976A0B0AEFD3} - no filepath
Task: {37819CA9-D937-43DB-B6B0-EF802E12675E} - System32\Tasks\{E2E330A4-BA59-4C99-80D9-8B28B845AE8D} => pcalua.exe -a J:\Setup.exe -d J:\
Task: {360EB8D5-05E4-4EC5-BA39-2E9B7D8C91EF} - System32\Tasks\{2E9D819B-041F-481A-B702-8B39009B4484} => pcalua.exe -a "C:\Program Files (x86)\HDPlus-V1.9\Uninstall.exe" -c /fcp=1
Task: {5FF5141F-1F7C-4262-B3FF-0B2AE0440DBC} - System32\Tasks\{6C5D5C7A-3FD3-4FB7-AF52-5A38C3B954BA} => pcalua.exe -a J:\Setup.exe -d J:\
Task: {6BE4A982-C936-40FB-BD26-0A0FED16533A} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {747FA102-32FA-4F4C-B1FD-C933DDD4BC78} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {74EA1F84-B901-4304-A933-B51D68013C89} - no filepath
Task: {784B5579-9AD2-4232-AC91-CB7FA2A50814} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {79EBCCCA-C02D-4DF7-9E2D-3014726D49B7} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {7A3A3889-7B27-4DC8-94BB-5800DEA18937} - System32\Tasks\{DC9AD8C8-6EA6-4189-8F88-A59859223ED5} => pcalua.exe -a "C:\Program Files (x86)\Norton Security Scan\Engine\4.1.0.28\InstWrap.exe"
Task: {7C03A4A1-2D39-42C5-B9AE-14328FE6D943} - System32\Tasks\{0E2CFB36-AB51-45E2-937E-51609B0459D4} => pcalua.exe -a J:\Spanish\ZOO_TYCN\INSTALAR.EXE -d J:\Spanish\ZOO_TYCN
Task: {7D69A257-01D0-4C5F-9943-4628E95DF190} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {7FE02310-AFAB-4CD8-88FB-EE88F308DF2A} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {8FE84CD9-9848-47E2-A479-47274F3C4EF6} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {C0AC4DF6-C709-4313-A054-9FC8F1D6A2F2} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {C87C1F5E-0FE1-4E64-8ABE-BCFBF70C7173} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {D77FEBC4-CEBB-484D-B81A-F3E5D76E8BFB} - \OfficeSoftwareProtectionPlatform\SvcRestartTask -> No File <==== ATTENTION
Task: {DC74FE42-9E07-4CBB-8AE4-FE94A2B7BAF8} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {EED0A157-67D6-4EFB-A732-F742393D5BDF} - no filepath
Task: {EF3A0F94-A3C5-4CD8-88BB-6400D26325CE} - System32\Tasks\{1310A5A9-EE85-4EC6-91AC-63ACB3C0E415} => pcalua.exe -a "C:\ProgramData\Red AdBlocker\Red AdBlocker.exe" -c /progname=Red AdBlocker /progver=3.4.2 /progpub=Red AdBlocker /proguninstallurl=asdahjka.com /deleteappfolder=0 /VERYSILENT
Task: {F038F787-2B14-4ECF-819D-4C3B11813A22} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {F43649F1-F29A-46A5-A7C2-D2BB1189BAB1} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {FEF6E97D-9187-467F-AC25-52F455E5A5A9} - \Test TimeTrigger -> No File <==== ATTENTION
Task: C:\WINDOWS\Tasks\Oxj02jOfyktYB02qGq3jN.job => C:\Users\Dixina\AppData\Roaming\Oxj02jOfyktYB02qGq3jN.exe <==== ATTENTION
EmptyTemp:
End
*****************
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully
HKU\S-1-5-21-2079334890-2881135925-3774209045-1000\Software\Microsoft\Windows\CurrentVersion\Run\\background_fault => value removed successfully
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\GoogleUpdate.exe => key removed successfully
HKLM\Software\microsoft\windows nt\currentversion\Image File Execution Options\GoogleUpdaterService.exe => key removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{73538FB6-AB7F-11E6-9B77-64006A5CFC23} => value removed successfully
HKCR\CLSID\{73538FB6-AB7F-11E6-9B77-64006A5CFC23} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{A65771C6-0D5A-11E7-9DEF-64006A5CFC23} => value removed successfully
HKCR\CLSID\{A65771C6-0D5A-11E7-9DEF-64006A5CFC23} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\explorer\ShellExecuteHooks\\{7261736E-0E31-11E7-9182-64006A5CFC23} => value removed successfully
HKCR\CLSID\{7261736E-0E31-11E7-9182-64006A5CFC23} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => key removed successfully
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => key not found.
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Policies\Google => key removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Start Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key removed successfully
HKCR\CLSID\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key removed successfully
HKCR\Wow6432Node\CLSID\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key not found.
HKU\S-1-5-21-2079334890-2881135925-3774209045-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key removed successfully
HKCR\CLSID\{031511DA-D699-4EE4-945D-193FE7F3C84A} => key not found.
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3 => key removed successfully
HKLM\Software\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9 => key removed successfully
C:\Users\Dixina\AppData\Local\Google\Chrome\User Data\ChromeDefaultData => moved successfully
HKLM\System\CurrentControlSet\Services\NPASRE => key removed successfully
NPASRE => service removed successfully
HKLM\System\CurrentControlSet\Services\idsvc => key removed successfully
idsvc => service removed successfully
HKLM\System\CurrentControlSet\Services\ZAM => key removed successfully
ZAM => service removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
C:\Users\Dixina\AppData\Local\background_fault\aswRD.exe => moved successfully
"C:\Users\Dixina\AppData\Local\Temp" folder move:
Could not move "C:\Users\Dixina\AppData\Local\Temp" => Scheduled to move on reboot.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{08F3B3E0-DAA9-412C-9DE5-C98BB9122850} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{08F3B3E0-DAA9-412C-9DE5-C98BB9122850} => key removed successfully
C:\WINDOWS\System32\Tasks\{9484E766-82AE-495D-A9A6-338DD05C641E} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{9484E766-82AE-495D-A9A6-338DD05C641E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1994D25A-A92F-4DF0-88C2-98B93C8AF2AE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1994D25A-A92F-4DF0-88C2-98B93C8AF2AE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Qulersyqfot => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{1CBDE7AA-852B-4CC7-891C-6708AAF335C4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1CBDE7AA-852B-4CC7-891C-6708AAF335C4} => key removed successfully
C:\WINDOWS\System32\Tasks\Oxj02jOfyktYB02qGq3jN => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Oxj02jOfyktYB02qGq3jN => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{29694D47-A85E-4740-9B9B-976A0B0AEFD3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{29694D47-A85E-4740-9B9B-976A0B0AEFD3} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{37819CA9-D937-43DB-B6B0-EF802E12675E} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{37819CA9-D937-43DB-B6B0-EF802E12675E} => key removed successfully
C:\WINDOWS\System32\Tasks\{E2E330A4-BA59-4C99-80D9-8B28B845AE8D} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{E2E330A4-BA59-4C99-80D9-8B28B845AE8D} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{360EB8D5-05E4-4EC5-BA39-2E9B7D8C91EF} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{360EB8D5-05E4-4EC5-BA39-2E9B7D8C91EF} => key removed successfully
C:\WINDOWS\System32\Tasks\{2E9D819B-041F-481A-B702-8B39009B4484} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{2E9D819B-041F-481A-B702-8B39009B4484} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5FF5141F-1F7C-4262-B3FF-0B2AE0440DBC} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5FF5141F-1F7C-4262-B3FF-0B2AE0440DBC} => key removed successfully
C:\WINDOWS\System32\Tasks\{6C5D5C7A-3FD3-4FB7-AF52-5A38C3B954BA} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{6C5D5C7A-3FD3-4FB7-AF52-5A38C3B954BA} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6BE4A982-C936-40FB-BD26-0A0FED16533A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6BE4A982-C936-40FB-BD26-0A0FED16533A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{747FA102-32FA-4F4C-B1FD-C933DDD4BC78} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{747FA102-32FA-4F4C-B1FD-C933DDD4BC78} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{74EA1F84-B901-4304-A933-B51D68013C89} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{74EA1F84-B901-4304-A933-B51D68013C89} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{784B5579-9AD2-4232-AC91-CB7FA2A50814} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{784B5579-9AD2-4232-AC91-CB7FA2A50814} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{79EBCCCA-C02D-4DF7-9E2D-3014726D49B7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{79EBCCCA-C02D-4DF7-9E2D-3014726D49B7} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7A3A3889-7B27-4DC8-94BB-5800DEA18937} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7A3A3889-7B27-4DC8-94BB-5800DEA18937} => key removed successfully
C:\WINDOWS\System32\Tasks\{DC9AD8C8-6EA6-4189-8F88-A59859223ED5} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{DC9AD8C8-6EA6-4189-8F88-A59859223ED5} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7C03A4A1-2D39-42C5-B9AE-14328FE6D943} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7C03A4A1-2D39-42C5-B9AE-14328FE6D943} => key removed successfully
C:\WINDOWS\System32\Tasks\{0E2CFB36-AB51-45E2-937E-51609B0459D4} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{0E2CFB36-AB51-45E2-937E-51609B0459D4} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7D69A257-01D0-4C5F-9943-4628E95DF190} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7D69A257-01D0-4C5F-9943-4628E95DF190} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7FE02310-AFAB-4CD8-88FB-EE88F308DF2A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7FE02310-AFAB-4CD8-88FB-EE88F308DF2A} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8FE84CD9-9848-47E2-A479-47274F3C4EF6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8FE84CD9-9848-47E2-A479-47274F3C4EF6} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C0AC4DF6-C709-4313-A054-9FC8F1D6A2F2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C0AC4DF6-C709-4313-A054-9FC8F1D6A2F2} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C87C1F5E-0FE1-4E64-8ABE-BCFBF70C7173} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C87C1F5E-0FE1-4E64-8ABE-BCFBF70C7173} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D77FEBC4-CEBB-484D-B81A-F3E5D76E8BFB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D77FEBC4-CEBB-484D-B81A-F3E5D76E8BFB} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OfficeSoftwareProtectionPlatform\SvcRestartTask => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC74FE42-9E07-4CBB-8AE4-FE94A2B7BAF8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC74FE42-9E07-4CBB-8AE4-FE94A2B7BAF8} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EED0A157-67D6-4EFB-A732-F742393D5BDF} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EED0A157-67D6-4EFB-A732-F742393D5BDF} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EF3A0F94-A3C5-4CD8-88BB-6400D26325CE} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EF3A0F94-A3C5-4CD8-88BB-6400D26325CE} => key removed successfully
C:\WINDOWS\System32\Tasks\{1310A5A9-EE85-4EC6-91AC-63ACB3C0E415} => moved successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{1310A5A9-EE85-4EC6-91AC-63ACB3C0E415} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F038F787-2B14-4ECF-819D-4C3B11813A22} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F038F787-2B14-4ECF-819D-4C3B11813A22} => key removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => not found.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{F43649F1-F29A-46A5-A7C2-D2BB1189BAB1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F43649F1-F29A-46A5-A7C2-D2BB1189BAB1} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FEF6E97D-9187-467F-AC25-52F455E5A5A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FEF6E97D-9187-467F-AC25-52F455E5A5A9} => key removed successfully
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Test TimeTrigger => key not found.
C:\WINDOWS\Tasks\Oxj02jOfyktYB02qGq3jN.job => moved successfully
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 148412914 B
Java, Flash, Steam htmlcache => 492 B
Windows/system/drivers => 290016 B
Edge => 111024 B
Chrome => 438272 B
Firefox => 173321861 B
Opera => 1346560 B
Temp, IE cache, history, cookies, recent:
Default => 39273 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 64176939 B
LocalService => 0 B
NetworkService => 2116170 B
Dixina => 148853009 B
DefaultAppPool => 39206 B
RecycleBin => 4139170 B
EmptyTemp: => 518.1 MB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 12-05-2017 21:54:24)
C:\Users\Dixina\AppData\Local\Temp => moved successfully
==== End of Fixlog 21:54:43 ====