Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Poprosím o preventivku

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
ReZisten
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 01 led 2010 14:07

Poprosím o preventivku

#1 Příspěvek od ReZisten »

Zdravím, poprosím o preventivní kontrolu synova PC, děkuji

Log z RSITu:

Logfile of random's system information tool 1.10 (written by random/random)
Run by SWAN at 2019-06-30 16:19:10
Microsoft Windows 10 Pro
System drive C: has 58 GB (19%) free of 299 GB
Total RAM: 3282 MB (10% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:19:39, on 30.6.2019
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Unable to get Internet Explorer version!
Boot mode: Normal

Running processes:
C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\SWAN.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: AMD SteadyVideo BHO - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Super-Charger] C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [Gaijin.Net Agent] "C:\Users\SWAN\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe"
O4 - HKCU\..\Run: [EPLTarget\P0000000000000000] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE /EPT "EPLTarget\P0000000000000000" /M "XP-610 Series"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\SWAN\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKCU\..\Run: [EPLTarget\P0000000000000001] C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE /EPT "EPLTarget\P0000000000000001" /M "XP-610 Series"
O4 - HKCU\..\Run: [Spotify] C:\Users\SWAN\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\Program Files\Microsoft Office 15\Root\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O8 - Extra context menu item: Se&nd to OneNote - res://C:\Program Files\Microsoft Office 15\Root\Office15\ONBttnIE.dll/105
O9 - Extra button: Odeslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do OneNotu - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Volání kliknutím v Lyncu - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O18 - Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O18 - Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: AMD FUEL Service - Advanced Micro Devices, Inc. - C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Služba %1!s! Update (avg) (avg) - AVG Technologies - C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe
O23 - Service: AVG Antivirus - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\Antivirus\AVGSvc.exe
O23 - Service: avgbIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\Antivirus\aswidsagent.exe
O23 - Service: Služba %1!s! Update (avgm) (avgm) - AVG Technologies - C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe
O23 - Service: AVG Secure Browser Elevation Service (AVGSecureBrowserElevationService) - AVG Technologies - C:\Program Files (x86)\AVG\Browser\Application\74.0.791.133\elevation_service.exe
O23 - Service: AvgWscReporter - AVG Technologies CZ, s.r.o. - C:\Program Files\AVG\Antivirus\wsc_proxy.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: Disc Soft Lite Bus Service - Disc Soft Ltd - C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: EPSON V3 Service4(06) (EPSON_PM_RPCV4_06) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Macrovision Europe Ltd. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Foxit Reader Service (FoxitReaderService) - Foxit Software Inc. - C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe
O23 - Service: Google Chrome Elevation Service (GoogleChromeElevationService) - Google LLC - C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\elevation_service.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: MSI_SuperCharger - MSI - C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Origin Client Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginClientService.exe
O23 - Service: Origin Web Helper Service - Electronic Arts - C:\Program Files (x86)\Origin\OriginWebHelperService.exe
O23 - Service: @%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101 (perceptionsimulation) - Unknown owner - C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe (file missing)
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: PnkBstrB - Unknown owner - C:\Windows\system32\PnkBstrB.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender Advanced Threat Protection\MsSense.exe,-1001 (Sense) - Unknown owner - C:\Program Files (x86)\Windows Defender Advanced Threat Protection\MsSense.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\System32\SgrmBroker.exe,-100 (SgrmBroker) - Unknown owner - C:\WINDOWS\system32\SgrmBroker.exe (file missing)
O23 - Service: @firewallapi.dll,-50323 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)

--
End of file - 13460 bytes

======Listing Processes======










"fontdrvhost.exe"
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k netsvcs -p
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p
C:\WINDOWS\system32\atiesrxx.exe

C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k appmodel -p
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p

C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
"C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe" /launchService
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE"
"C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe"
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
"C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe"
"C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe" -s
"C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe"
C:\WINDOWS\system32\mqsvc.exe
C:\WINDOWS\system32\svchost.exe -k iissvcs
dashost.exe {3abfcd81-8fff-4121-a28fbc80a568562a}
C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
"C:\Program Files (x86)\Origin\OriginWebHelperService.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k netsvcs
"C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe" -NetMsmqActivator



"C:\Program Files (x86)\AVG\Browser\Update\1.4.155.333\AVGBrowserCrashHandler.exe"
"C:\Program Files (x86)\AVG\Browser\Update\1.4.155.333\AVGBrowserCrashHandler64.exe"

C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
"C:\Program Files\iPod\bin\iPodService.exe"
AVGUI.exe /nogui
C:\WINDOWS\system32\svchost.exe -k LocalService -p
dummy /ccupdate
C:\WINDOWS\system32\WLANExt.exe 2460698499968
\??\C:\WINDOWS\system32\conhost.exe 0x4
dummy /ccupdate

C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"dwm.exe"
"fontdrvhost.exe"
atieclxx
"ctfmon.exe"
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p
C:\WINDOWS\system32\DllHost.exe /Processid:{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\SettingSyncHost.exe -Embedding
"C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe" -ServerName:WindowsDefaultLockScreen.AppX7y4nbzq37zn4ks9k7amqjywdat7d3j2z.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe" -s
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --flag-switches-begin --flag-switches-end --restore-last-session --flag-switches-begin --flag-switches-end
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler "--user-data-dir=C:\Users\SWAN\AppData\Local\Google\Chrome\User Data" /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Crashpad" "--metrics-dir=C:\Users\SWAN\AppData\Local\Google\Chrome\User Data" --url=https://clients2.google.com/cr/report --annotation=channel= --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=75.0.3770.100 --initial-client-data=0x220,0x224,0x228,0x21c,0x22c,0x71a5a9d0,0x71a5a9e0,0x71a5a9ec
AVGUI.exe /nogui
"C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=watcher --main-thread-id=82072 --on-initialized-event-handle=756 --parent-handle=760 /prefetch:6
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --gpu-preferences=KAAAAAAAAADgAAAgAQAAAAAAAAAAAGAAAAAAAAAAAAAIAAAAAAAAACgAAAAEAAAAIAAAAAAAAAAoAAAAAAAAADAAAAAAAAAAOAAAAAAAAAAQAAAAAAAAAAAAAAAFAAAAEAAAAAAAAAAAAAAABgAAABAAAAAAAAAAAQAAAAUAAAAQAAAAAAAAAAEAAAAGAAAA --service-request-channel-token=18222167741766742935 --mojo-platform-channel-handle=1988 --ignored=" --type=renderer " /prefetch:2
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=utility --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --service-sandbox-type=network --service-request-channel-token=6622364739778133261 --mojo-platform-channel-handle=2308 /prefetch:8
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --extension-process --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=1525222912855923364 --renderer-client-id=5 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3236 /prefetch:1
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=4705533764189596062 --renderer-client-id=25 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5900 /prefetch:1
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Windows\SystemApps\InputApp_cw5n1h2txyewy\WindowsInternal.ComposableShell.Experiences.TextInput.InputApp.exe" -ServerName:App.AppXagta193n5rpf7mheremt3yyfa1g555vc.mca
C:\WINDOWS\system32\svchost.exe -k PrintWorkflow
C:\WINDOWS\system32\ApplicationFrameHost.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=8214698075045357840 --renderer-client-id=75 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=3024 /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=15274494946212188274 --renderer-client-id=76 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5940 /prefetch:1
C:\WINDOWS\system32\AUDIODG.EXE 0x464
C:\WINDOWS\system32\msiexec.exe /V
C:\WINDOWS\sysWOW64\wbem\wmiprvse.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=4294403578285832703 --renderer-client-id=91 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6800 /prefetch:1
C:\WINDOWS\system32\wbem\WmiApSrv.exe
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=8959032180211119403 --renderer-client-id=104 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=6388 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe226_ Global\UsGthrCtrlFltPipeMssGthrPipe226 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 752 756 764 8192 760
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --field-trial-handle=1864,5518839303608606692,10625116205762419565,131072 --lang=cs --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --device-scale-factor=1 --num-raster-threads=1 --service-request-channel-token=7959543017287604628 --renderer-client-id=108 --no-v8-untrusted-code-mitigations --mojo-platform-channel-handle=5904 /prefetch:1
"C:\Users\SWAN\Desktop\RSITx64.exe"

======Scheduled tasks folder======

C:\WINDOWS\tasks\EPSON XP-610 Series Invitation {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job - C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE /EXE:"{2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-610 Series Invitation {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE /EXE:"{F046D536-3200-4F23-BAD7-73FA9472B4DD}" /F:"Invitation"
C:\WINDOWS\tasks\EPSON XP-610 Series Update {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job - C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE /EXE:"{2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}" /F:"Update"
C:\WINDOWS\tasks\EPSON XP-610 Series Update {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job - C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE /EXE:"{F046D536-3200-4F23-BAD7-73FA9472B4DD}" /F:"Update"

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01 205416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}]
SteadyVideoBHO Class - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14 81024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-01-29 571456]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office15\URLREDIR.DLL [2012-10-01 877720]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~2\Office15\GROOVEEX.DLL [2012-10-01 2322576]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-29 234560]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01 139368]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C680BAE-655C-4E3D-8FC4-E6A520C3D928}]
SteadyVideoBHO Class - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14 69760]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-29 473152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL [2012-10-01 704664]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2012-10-01 1720976]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-29 186944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2018-09-15 83968]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [2017-01-29 9181696]
"AVGUI.exe"=C:\Program Files\AVG\Antivirus\AvLaunch.exe [2019-05-27 309680]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Gaijin.Net Agent"=C:\Users\SWAN\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2018-09-25 2125384]
"EPLTarget\P0000000000000000"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE [2013-01-24 297024]
"OneDrive"=C:\Users\SWAN\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2019-06-16 1586488]
"EPLTarget\P0000000000000001"=C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE [2013-01-24 297024]
"Spotify"=C:\Users\SWAN\AppData\Roaming\Spotify\Spotify.exe [2019-06-25 25386912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Smart Cleaning]
C:\Program Files\CCleaner\CCleaner64.exe [2019-02-05 19645800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
D:\Programy\iTunes\iTunesHelper.exe [2018-11-15 301880]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Super-Charger"=C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [2013-03-08 506864]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2015-11-04 767176]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2019-04-02 5890504]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MBAMService]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1
"SoftwareSASGeneration"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221
"NoDrives"=0

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDrives"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2019-06-30 16:19:10 ----D---- C:\rsit
2019-06-19 15:50:13 ----D---- C:\Program Files\UNP
2019-06-15 13:24:09 ----D---- C:\Program Files\VST Plugins
2019-06-14 14:31:59 ----A---- C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2019-06-13 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2019-06-13 16:05:34 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2019-06-13 16:05:33 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2019-06-13 16:05:33 ----A---- C:\WINDOWS\SYSWOW64\fveapibase.dll
2019-06-13 16:05:33 ----A---- C:\WINDOWS\SYSWOW64\fveapi.dll
2019-06-13 16:05:33 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2019-06-13 16:05:32 ----A---- C:\WINDOWS\system32\fveapibase.dll
2019-06-13 16:05:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2019-06-13 16:05:20 ----A---- C:\WINDOWS\system32\HoloSI.PCShell.dll
2019-06-13 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\msjet40.dll
2019-06-13 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2019-06-13 16:05:18 ----A---- C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-06-13 16:05:18 ----A---- C:\WINDOWS\system32\AssignedAccessManager.dll
2019-06-13 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2019-06-13 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\msltus40.dll
2019-06-13 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\msexcl40.dll
2019-06-13 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2019-06-13 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2019-06-13 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2019-06-13 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2019-06-13 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2019-06-13 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2019-06-13 16:05:13 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2019-06-13 16:05:12 ----A---- C:\WINDOWS\SYSWOW64\msrd3x40.dll
2019-06-13 16:05:12 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2019-06-13 16:05:12 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2019-06-13 16:05:12 ----A---- C:\WINDOWS\SYSWOW64\esentutl.exe
2019-06-13 16:05:11 ----A---- C:\WINDOWS\system32\wwansvc.dll
2019-06-13 16:05:11 ----A---- C:\WINDOWS\system32\SIHClient.exe
2019-06-13 16:05:09 ----A---- C:\WINDOWS\system32\msi.dll
2019-06-13 16:05:07 ----A---- C:\WINDOWS\system32\mshtml.dll
2019-06-13 16:05:07 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2019-06-13 16:05:06 ----A---- C:\WINDOWS\system32\jscript9.dll
2019-06-13 16:05:06 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2019-06-13 16:05:05 ----A---- C:\WINDOWS\system32\ieframe.dll
2019-06-13 16:05:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2019-06-13 16:05:04 ----A---- C:\WINDOWS\system32\Chakradiag.dll
2019-06-13 16:05:04 ----A---- C:\WINDOWS\system32\Chakra.dll
2019-06-13 16:05:03 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2019-06-13 16:05:01 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2019-06-13 16:05:01 ----A---- C:\WINDOWS\system32\ieproxy.dll
2019-06-13 16:05:01 ----A---- C:\WINDOWS\system32\esentutl.exe
2019-06-13 16:05:01 ----A---- C:\WINDOWS\system32\edgehtml.dll
2019-06-13 16:05:00 ----A---- C:\WINDOWS\system32\StorSvc.dll
2019-06-13 16:04:58 ----A---- C:\WINDOWS\system32\spacebridge.dll
2019-06-13 16:04:58 ----A---- C:\WINDOWS\system32\bcastdvruserservice.dll
2019-06-13 16:04:57 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2019-06-13 16:04:57 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2019-06-13 16:04:57 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2019-06-13 16:04:56 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2019-06-13 16:04:56 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2019-06-13 16:04:56 ----A---- C:\WINDOWS\SYSWOW64\mf3216.dll
2019-06-13 16:04:56 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\usoapi.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\policymanager.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\credprovhost.dll
2019-06-13 16:04:55 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2019-06-13 16:04:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryCore.dll
2019-06-13 16:04:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2019-06-13 16:04:54 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryUpgrade.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryPS.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryClient.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepositoryBroker.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\Windows.StateRepository.dll
2019-06-13 16:04:53 ----A---- C:\WINDOWS\SYSWOW64\StateRepository.Core.dll
2019-06-13 16:04:52 ----RA---- C:\WINDOWS\SYSWOW64\icuin.dll
2019-06-13 16:04:52 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2019-06-13 16:04:52 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2019-06-13 16:04:51 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2019-06-13 16:04:51 ----A---- C:\WINDOWS\SYSWOW64\taskcomp.dll
2019-06-13 16:04:51 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2019-06-13 16:04:51 ----A---- C:\WINDOWS\SYSWOW64\AssignedAccessRuntime.dll
2019-06-13 16:04:50 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2019-06-13 16:04:50 ----A---- C:\WINDOWS\SYSWOW64\TokenBrokerUI.dll
2019-06-13 16:04:36 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.dll
2019-06-13 16:04:36 ----A---- C:\WINDOWS\SYSWOW64\sppcext.dll
2019-06-13 16:04:36 ----A---- C:\WINDOWS\SYSWOW64\slcext.dll
2019-06-13 16:04:35 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2019-06-13 16:04:35 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Web.Core.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\SYSWOW64\CompPkgSup.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\system32\WebRuntimeManager.dll
2019-06-13 16:04:34 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2019-06-13 16:04:33 ----A---- C:\WINDOWS\system32\policymanager.dll
2019-06-13 16:04:33 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2019-06-13 16:04:33 ----A---- C:\WINDOWS\system32\gdi32full.dll
2019-06-13 16:04:32 ----A---- C:\WINDOWS\system32\wininet.dll
2019-06-13 16:04:32 ----A---- C:\WINDOWS\system32\urlmon.dll
2019-06-13 16:04:32 ----A---- C:\WINDOWS\system32\mf3216.dll
2019-06-13 16:04:32 ----A---- C:\WINDOWS\system32\iertutil.dll
2019-06-13 16:04:32 ----A---- C:\WINDOWS\system32\credprovhost.dll
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\usermgr.dll
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2019-06-13 16:04:31 ----A---- C:\WINDOWS\system32\bcryptprimitives.dll
2019-06-13 16:04:30 ----A---- C:\WINDOWS\system32\wdigest.dll
2019-06-13 16:04:30 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2019-06-13 16:04:30 ----A---- C:\WINDOWS\system32\drivers\Classpnp.sys
2019-06-13 16:04:29 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2019-06-13 16:04:29 ----A---- C:\WINDOWS\system32\twinui.dll
2019-06-13 16:04:29 ----A---- C:\WINDOWS\system32\TokenBrokerUI.dll
2019-06-13 16:04:28 ----A---- C:\WINDOWS\system32\winresume.exe
2019-06-13 16:04:28 ----A---- C:\WINDOWS\system32\taskcomp.dll
2019-06-13 16:04:28 ----A---- C:\WINDOWS\system32\schedsvc.dll
2019-06-13 16:04:28 ----A---- C:\WINDOWS\system32\msctf.dll
2019-06-13 16:04:27 ----A---- C:\WINDOWS\system32\winload.exe
2019-06-13 16:04:26 ----A---- C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-06-13 16:04:26 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2019-06-13 16:04:26 ----A---- C:\WINDOWS\system32\NotificationController.dll
2019-06-13 16:04:26 ----A---- C:\WINDOWS\system32\AppResolver.dll
2019-06-13 16:04:25 ----A---- C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-06-13 16:04:23 ----A---- C:\WINDOWS\system32\shell32.dll
2019-06-13 16:04:23 ----A---- C:\WINDOWS\system32\pku2u.dll
2019-06-13 16:04:22 ----A---- C:\WINDOWS\system32\vbscript.dll
2019-06-13 16:04:22 ----A---- C:\WINDOWS\system32\sppsvc.exe
2019-06-13 16:04:22 ----A---- C:\WINDOWS\system32\sppcext.dll
2019-06-13 16:04:22 ----A---- C:\WINDOWS\system32\slcext.dll
2019-06-13 16:04:21 ----A---- C:\WINDOWS\system32\AxInstSv.dll
2019-06-13 16:04:20 ----A---- C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-06-13 16:04:20 ----A---- C:\WINDOWS\system32\hal.dll
2019-06-13 16:04:19 ----A---- C:\WINDOWS\system32\win32kfull.sys
2019-06-13 16:04:19 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2019-06-13 16:04:19 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2019-06-13 16:04:18 ----A---- C:\WINDOWS\system32\wpnapps.dll
2019-06-13 16:04:18 ----A---- C:\WINDOWS\system32\win32k.sys
2019-06-13 16:04:18 ----A---- C:\WINDOWS\system32\rdpcore.dll
2019-06-13 16:04:18 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-06-13 16:04:17 ----A---- C:\WINDOWS\system32\wpncore.dll
2019-06-13 16:04:17 ----A---- C:\WINDOWS\system32\storewuauth.dll
2019-06-13 16:04:17 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2019-06-13 16:04:17 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2019-06-13 16:04:16 ----A---- C:\WINDOWS\system32\win32kbase.sys
2019-06-13 16:04:16 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2019-06-13 16:04:15 ----A---- C:\WINDOWS\system32\FntCache.dll
2019-06-13 16:04:15 ----A---- C:\WINDOWS\system32\DWrite.dll
2019-06-13 16:04:14 ----A---- C:\WINDOWS\system32\cdp.dll
2019-06-13 16:04:14 ----A---- C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-06-13 16:04:13 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-06-13 16:04:13 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-06-13 16:04:13 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2019-06-13 16:04:13 ----A---- C:\WINDOWS\system32\smartscreen.exe
2019-06-13 16:04:12 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2019-06-13 16:04:11 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-06-13 16:04:11 ----A---- C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-06-13 16:04:10 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-06-13 16:04:10 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-06-13 16:04:10 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-06-13 16:04:10 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-06-13 16:04:08 ----A---- C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-13 16:04:08 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2019-06-13 16:04:08 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-06-13 16:03:52 ----A---- C:\WINDOWS\system32\audiosrv.dll
2019-06-13 16:03:52 ----A---- C:\WINDOWS\system32\AudioSes.dll
2019-06-13 16:03:52 ----A---- C:\WINDOWS\system32\AudioEng.dll
2019-06-13 16:03:52 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-06-13 16:03:52 ----A---- C:\WINDOWS\system32\audiodg.exe
2019-06-13 16:03:51 ----A---- C:\WINDOWS\system32\CompPkgSup.dll
2019-06-13 16:03:51 ----A---- C:\WINDOWS\system32\CompPkgSrv.exe
2019-06-13 16:03:51 ----A---- C:\WINDOWS\system32\browserbroker.dll
2019-06-13 16:03:49 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2019-06-13 16:03:48 ----A---- C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-06-13 16:03:48 ----A---- C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-06-13 16:03:48 ----A---- C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-06-13 16:03:47 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2019-06-13 16:03:47 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-13 16:03:47 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2019-06-13 16:03:46 ----A---- C:\WINDOWS\system32\wuuhext.dll
2019-06-13 16:03:46 ----A---- C:\WINDOWS\system32\wups.dll
2019-06-13 16:03:46 ----A---- C:\WINDOWS\system32\usocore.dll
2019-06-13 16:03:46 ----A---- C:\WINDOWS\system32\UsoClient.exe
2019-06-13 16:03:46 ----A---- C:\WINDOWS\system32\usoapi.dll
2019-06-13 16:03:45 ----A---- C:\WINDOWS\system32\wups2.dll
2019-06-13 16:03:45 ----A---- C:\WINDOWS\system32\wuaueng.dll
2019-06-13 16:03:45 ----A---- C:\WINDOWS\system32\wuapi.dll
2019-06-13 16:03:45 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2019-06-13 16:03:44 ----A---- C:\WINDOWS\system32\SDDS.dll
2019-06-13 16:03:44 ----A---- C:\WINDOWS\system32\mf.dll
2019-06-13 16:03:44 ----A---- C:\WINDOWS\system32\JpnServiceDS.dll
2019-06-13 16:03:44 ----A---- C:\WINDOWS\system32\FilterDS.dll
2019-06-13 16:03:44 ----A---- C:\WINDOWS\system32\DDDS.dll
2019-06-13 16:03:43 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2019-06-13 16:03:43 ----A---- C:\WINDOWS\system32\lsasrv.dll
2019-06-13 16:03:43 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2019-06-13 16:03:43 ----A---- C:\WINDOWS\system32\BingFilterDS.dll
2019-06-13 16:03:43 ----A---- C:\WINDOWS\system32\BingASDS.dll
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\srvsvc.dll
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\securekernel.exe
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\kerberos.dll
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\KerbClientShared.dll
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\esent.dll
2019-06-13 16:03:42 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2019-06-13 16:03:41 ----A---- C:\WINDOWS\SYSWOW64\userenv.dll
2019-06-13 16:03:41 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2019-06-13 16:03:41 ----A---- C:\WINDOWS\system32\userenv.dll
2019-06-13 16:03:41 ----A---- C:\WINDOWS\system32\tzres.dll
2019-06-13 16:03:41 ----A---- C:\WINDOWS\system32\ci.dll
2019-06-13 16:03:40 ----A---- C:\WINDOWS\system32\samsrv.dll
2019-06-13 16:03:40 ----A---- C:\WINDOWS\system32\msv1_0.dll
2019-06-13 16:03:39 ----RA---- C:\WINDOWS\system32\icuin.dll
2019-06-13 16:03:39 ----A---- C:\WINDOWS\system32\schannel.dll
2019-06-13 16:03:37 ----A---- C:\WINDOWS\system32\windows.storage.dll
2019-06-13 16:03:37 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2019-06-13 16:03:37 ----A---- C:\WINDOWS\system32\Windows.StateRepository.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\StateRepository.Core.dll
2019-06-13 16:03:36 ----A---- C:\WINDOWS\system32\drivers\winnat.sys
2019-06-13 16:03:35 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2019-06-13 16:03:35 ----A---- C:\WINDOWS\SYSWOW64\spacebridge.dll
2019-06-13 16:03:35 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2019-06-13 16:03:35 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2019-06-13 16:03:34 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2019-06-13 16:03:34 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2019-06-13 16:03:34 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2019-06-13 16:03:34 ----A---- C:\WINDOWS\SYSWOW64\KerbClientShared.dll
2019-06-13 16:03:34 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2019-06-13 16:03:30 ----A---- C:\WINDOWS\system32\hvloader.dll
2019-06-13 16:03:29 ----A---- C:\WINDOWS\system32\hvix64.exe
2019-06-13 16:03:29 ----A---- C:\WINDOWS\system32\hvax64.exe
2019-06-13 16:03:29 ----A---- C:\WINDOWS\system32\drivers\hvservice.sys
2019-06-13 16:03:29 ----A---- C:\WINDOWS\system32\drivers\bthport.sys
2019-06-13 16:03:28 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2019-06-13 16:03:28 ----A---- C:\WINDOWS\system32\drivers\spacedump.sys
2019-06-13 16:03:28 ----A---- C:\WINDOWS\system32\drivers\msiscsi.sys
2019-06-13 16:03:28 ----A---- C:\WINDOWS\system32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2019-06-13 16:03:27 ----A---- C:\WINDOWS\system32\drivers\spaceport.sys
2019-06-12 15:57:56 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-06-11 15:44:44 ----SH---- C:\bootTel.dat
2019-06-11 15:44:34 ----SHD---- C:\found.000

======List of files/folders modified in the last 1 month======

2019-06-30 16:19:24 ----D---- C:\Program Files\trend micro
2019-06-30 16:16:33 ----D---- C:\WINDOWS\Temp
2019-06-30 16:16:32 ----SHD---- C:\WINDOWS\Installer
2019-06-30 16:13:05 ----D---- C:\WINDOWS\system32\sru
2019-06-30 15:30:09 ----D---- C:\WINDOWS\system32\FxsTmp
2019-06-30 15:26:26 ----D---- C:\WINDOWS\system32\SleepStudy
2019-06-30 14:57:30 ----D---- C:\WINDOWS\system32\LogFiles
2019-06-30 14:57:30 ----D---- C:\WINDOWS\Logs
2019-06-30 14:54:25 ----D---- C:\WINDOWS\system32\config
2019-06-30 14:20:47 ----RD---- C:\WINDOWS\Microsoft.NET
2019-06-30 14:17:25 ----D---- C:\WINDOWS\Prefetch
2019-06-30 13:32:04 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2019-06-29 11:49:45 ----HD---- C:\Program Files\WindowsApps
2019-06-28 14:50:52 ----D---- C:\Users\SWAN\AppData\Roaming\Spotify
2019-06-28 14:21:11 ----SHD---- C:\System Volume Information
2019-06-28 13:50:43 ----D---- C:\Windows
2019-06-28 12:43:40 ----D---- C:\WINDOWS\INF
2019-06-28 12:43:39 ----D---- C:\WINDOWS\debug
2019-06-28 12:42:44 ----D---- C:\Program Files\CCleaner
2019-06-25 18:41:50 ----D---- C:\Program Files\UltraDefrag
2019-06-21 15:48:05 ----D---- C:\WINDOWS\system32\catroot2
2019-06-21 15:45:56 ----D---- C:\WINDOWS\WinSxS
2019-06-20 20:17:17 ----D---- C:\ProgramData\Packages
2019-06-20 15:39:38 ----D---- C:\WINDOWS\system32\drivers
2019-06-19 15:51:14 ----D---- C:\WINDOWS\AppReadiness
2019-06-19 15:50:13 ----RD---- C:\Program Files
2019-06-16 19:37:32 ----D---- C:\Users\SWAN\AppData\Roaming\Mp3tag
2019-06-16 18:14:47 ----D---- C:\WINDOWS\system32\Tasks
2019-06-15 14:02:22 ----D---- C:\ProgramData\Origin
2019-06-15 14:02:16 ----D---- C:\Users\SWAN\AppData\Roaming\Origin
2019-06-15 14:00:28 ----D---- C:\Program Files (x86)\VstPlugins
2019-06-15 13:51:13 ----D---- C:\Users\SWAN\AppData\Roaming\uTorrent
2019-06-15 10:11:08 ----D---- C:\Program Files (x86)\UOS
2019-06-14 14:32:29 ----D---- C:\WINDOWS\system32\DriverStore
2019-06-13 21:58:13 ----D---- C:\WINDOWS\SYSWOW64\migration
2019-06-13 21:58:13 ----D---- C:\WINDOWS\SysWOW64
2019-06-13 21:58:09 ----D---- C:\WINDOWS\system32\wbem
2019-06-13 21:58:09 ----D---- C:\WINDOWS\system32\migwiz
2019-06-13 21:58:09 ----D---- C:\WINDOWS\system32\migration
2019-06-13 21:58:09 ----D---- C:\WINDOWS\system32\cs-CZ
2019-06-13 21:58:08 ----D---- C:\WINDOWS\system32\Boot
2019-06-13 21:58:08 ----D---- C:\WINDOWS\System32
2019-06-13 21:58:01 ----RD---- C:\Program Files\Windows Defender
2019-06-13 21:58:01 ----D---- C:\WINDOWS\bcastdvr
2019-06-13 21:58:01 ----D---- C:\WINDOWS\apppatch
2019-06-13 21:58:01 ----D---- C:\Program Files\internet explorer
2019-06-13 21:58:01 ----D---- C:\Program Files (x86)\Internet Explorer
2019-06-13 16:09:04 ----D---- C:\WINDOWS\CbsTemp
2019-06-12 16:05:41 ----D---- C:\WINDOWS\system32\MRT
2019-06-12 16:05:41 ----D---- C:\WINDOWS\system32\MpEngineStore
2019-06-12 15:58:35 ----AC---- C:\WINDOWS\system32\MRT.exe
2019-06-11 15:54:42 ----D---- C:\WINDOWS\system32\Macromed
2019-06-11 15:54:39 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2019-06-10 19:43:50 ----D---- C:\WINDOWS\SoftwareDistribution
2019-06-10 18:46:01 ----D---- C:\Users\SWAN\AppData\Roaming\DAEMON Tools Lite
2019-05-31 20:03:36 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amd_sata;amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [2017-01-29 85704]
R0 amd_xata;amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [2017-01-29 43720]
R0 avgArDisk;avgArDisk; C:\WINDOWS\system32\drivers\avgArDisk.sys [2019-05-27 37160]
R0 avgbidsh;avgbidsh; C:\WINDOWS\system32\drivers\avgbidsh.sys [2019-05-27 206408]
R0 avgbuniv;avgbuniv; C:\WINDOWS\system32\drivers\avgbuniv.sys [2019-05-27 61520]
R0 avgElam;avgElam; C:\WINDOWS\system32\drivers\avgElam.sys [2019-02-12 15280]
R0 avgRvrt;avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [2019-05-27 87992]
R0 avgVmm;avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [2019-05-30 385904]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2019-01-08 55608]
R0 MsSecFlt;@%SystemRoot%\System32\Drivers\mssecflt.sys,-1001; C:\WINDOWS\system32\drivers\mssecflt.sys [2019-05-17 317240]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2018-09-15 40960]
R1 avgArPot;avgArPot; C:\WINDOWS\system32\drivers\avgArPot.sys [2019-05-27 207496]
R1 avgbidsdriver;avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdriver.sys [2019-05-27 263056]
R1 avgKbd;avgKbd; C:\WINDOWS\system32\drivers\avgKbd.sys [2019-05-27 42336]
R1 avgRdr;avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [2019-05-27 112360]
R1 avgSnx;avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [2019-05-27 1030832]
R1 avgSP;avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [2019-05-27 477632]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2018-09-15 63288]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2018-09-15 60416]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2018-09-15 8704]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [2015-01-05 26528]
R2 AODDriver4.2;AODDriver4.2; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
R2 avgMonFlt;avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [2019-06-20 168136]
R2 avgStm;avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [2019-06-17 225656]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2019-03-12 452096]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2019-01-08 51712]
R2 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2019-02-02 184320]
R2 rzpnk;rzpnk; \??\C:\Windows\system32\drivers\rzpnk.sys [2014-04-25 129856]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-12-16 21648880]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-12-16 674288]
R3 AtiHDAudioService;@oem60.inf,%ATIHdAudioDriver.SvcDesc%;AMD Function Driver for HD Audio Service; C:\WINDOWS\system32\drivers\AtihdWT6.sys [2015-05-28 102912]
R3 dtlitescsibus;@oem16.inf,%DTLITESCSIBUS.DeviceDesc%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2015-04-03 30352]
R3 Hamachi;@oem0.inf,%Hamachi.Service.DispName%;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2019-02-11 45680]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2017-01-29 5523456]
R3 MBAMSwissArmy;MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [2019-06-18 261032]
R3 NTIOLib_1_0_3;NTIOLib_1_0_3; \??\C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [2012-10-25 13368]
R3 RTL8167;@oem47.inf,%rtl8167.Service.DispName%;Realtek 8167 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt64win7.sys [2017-01-29 1037832]
R3 RtlWlanu;@netrtwlanu.inf,%RtlWlanu.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\System32\drivers\rtwlanu.sys [2018-09-15 8206848]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2018-09-15 42504]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2018-09-15 319488]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2018-09-15 885048]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2018-09-15 148480]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2018-09-15 124416]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2018-09-15 128512]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2018-09-15 75264]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2018-09-15 79872]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2018-09-15 58880]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2018-09-15 68608]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2018-09-15 41784]
S2 AODDriver4.3;AODDriver4.3; \??\C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [2014-02-11 59616]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2018-09-15 19968]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2018-09-15 18432]
S3 AppvStrm;@%systemroot%\system32\drivers\AppvStrm.sys,-101; C:\WINDOWS\system32\drivers\AppvStrm.sys [2018-09-15 137016]
S3 AppvVemgr;@%systemroot%\system32\drivers\AppvVemgr.sys,-101; C:\WINDOWS\system32\drivers\AppvVemgr.sys [2019-03-12 174392]
S3 AppvVfs;@%systemroot%\system32\drivers\AppvVfs.sys,-101; C:\WINDOWS\system32\drivers\AppvVfs.sys [2018-09-15 153400]
S3 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2019-03-12 104248]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2019-01-08 111104]
S3 BthLEEnum;@BthLEEnum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2019-06-13 90624]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2018-09-15 34816]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\drivers\BTHport.sys [2019-06-13 1229824]
S3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\drivers\BTHUSB.sys [2019-05-17 92672]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2018-09-15 40960]
S3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2018-09-15 63288]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2018-09-15 125952]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2018-09-15 20992]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2018-09-15 51512]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2018-09-15 60928]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2019-06-13 80400]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2018-09-15 27648]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2018-09-15 1866768]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2018-09-15 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2018-09-15 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2018-09-15 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2018-09-15 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2018-09-15 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2018-09-15 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2018-09-15 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2018-09-15 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2018-09-15 180736]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2018-09-15 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2018-09-15 566800]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2018-09-15 45568]
S3 ipadtst;ipadtst; \??\C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [2013-02-01 19952]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2018-09-15 42496]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2018-09-15 124928]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2018-09-15 515384]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2018-09-15 58680]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2019-03-12 290816]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2018-09-15 53760]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2018-09-15 1150496]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2018-09-15 153616]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2018-09-15 184320]
S3 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2018-09-15 148480]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2018-09-15 85504]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2018-09-15 117248]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2018-09-15 17408]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2019-04-10 981816]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2018-09-15 202240]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2018-09-15 108032]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2018-09-15 33280]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-12-16 255472]
R2 AMD FUEL Service;AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [2013-06-04 361984]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2018-10-16 85304]
R2 AVG Antivirus;AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [2019-05-27 409280]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 462096]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R2 CDPUserSvc_d5fffe0;Uživatelská služba platformy připojených zařízení_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
R2 EPSON_PM_RPCV4_06;EPSON V3 Service4(06); C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [2013-04-15 152640]
R2 FoxitReaderService;Foxit Reader Service; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [2016-11-15 1659592]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2019-04-02 3361736]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [2016-05-27 419248]
R2 MBAMService;Malwarebytes Service; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [2018-09-19 6347056]
R2 MSI_SuperCharger;MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [2013-02-20 161264]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2019-02-02 26112]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-09-15 136272]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-09-15 136272]
R2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2018-09-15 136272]
R2 OneSyncSvc_d5fffe0;Hostitel synchronizace_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R2 Origin Web Helper Service;Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2019-02-09 3171144]
R3 avgbIDSAgent;avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [2019-05-28 6893160]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 cbdhsvc_d5fffe0;Uživatelská služba schránky_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
R3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2018-11-15 659256]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 PrintWorkflowUserSvc_d5fffe0;PrintWorkflow_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S2 avg;Služba %1!s! Update (avg); C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [2018-11-02 165520]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2019-06-11 335416]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2018-09-15 52816]
S3 AssignedAccessManagerSvc;@%SystemRoot%\system32\assignedaccessmanagersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 avgm;Služba %1!s! Update (avgm); C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [2018-11-02 165520]
S3 AVGSecureBrowserElevationService;AVG Secure Browser Elevation Service; C:\Program Files (x86)\AVG\Browser\Application\74.0.791.133\elevation_service.exe [2019-05-14 1079480]
S3 AvgWscReporter;AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [2019-05-27 110048]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 BcastDVRUserService_d5fffe0;Uživatelská služba pro GameDVR a vysílání her_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 BluetoothUserService_d5fffe0;Služba pro podporu uživatelů Bluetooth_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 CaptureService_d5fffe0;CaptureService_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 ConsentUxUserSvc_d5fffe0;ConsentUX_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DevicePickerUserSvc_d5fffe0;DevicePicker_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DevicesFlowUserSvc_d5fffe0;Tok zařízení_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2019-05-17 92672]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [2015-02-27 1272592]
S3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2018-12-09 781440]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-08-31 654848]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2018-09-09 43632]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 GoogleChromeElevationService;Google Chrome Elevation Service; C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\elevation_service.exe [2019-06-18 954352]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-09 144200]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 MessagingService_d5fffe0;Služba zasílání zpráv_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 Origin Client Service;Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2019-02-09 2298688]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2012-12-08 178760]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2018-09-15 78848]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 PimIndexMaintenanceSvc_d5fffe0;Data kontaktů_d5fffe0; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 PnkBstrA;PnkBstrA; C:\WINDOWS\syswow64\PnkBstrA.exe [2014-03-19 66872]
S3 PnkBstrB;PnkBstrB; C:\WINDOWS\syswow64\PnkBstrB.exe [2014-03-19 103736]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2018-09-15 51696]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2018-09-15 51696]
S4 AppVClient;@%systemroot%\system32\AppVClient.exe,-102; C:\WINDOWS\system32\AppVClient.exe [2019-03-12 831288]

-----------------EOF-----------------

marek5816
Nováček
Nováček
Příspěvky: 77
Registrován: 19 kvě 2016 20:19

Re: Poprosím o preventivku

#2 Příspěvek od marek5816 »

Ahoj

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
:arrow: Potom znova sprav scan, a posli obidva logy z FRST (FRST.txt a Addition.txt) navod - https://forum.viry.cz/viewtopic.php?f=13&t=154679

ReZisten
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 01 led 2010 14:07

Re: Poprosím o preventivku

#3 Příspěvek od ReZisten »

Zde Log z ADW:

# -------------------------------
# Malwarebytes AdwCleaner 7.3.0.0
# -------------------------------
# Build: 04-04-2019
# Database: 2019-06-28.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 07-01-2019
# Duration: 00:00:12
# OS: Windows 10 Pro
# Cleaned: 982
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files (x86)\Common Files\IObit\Advanced SystemCare V7
Deleted C:\Users\SWAN\AppData\LocalLow\IObit\Advanced SystemCare V7
Deleted C:\Users\SWAN\AppData\Roaming\IOBIT\Driver Booster
Deleted C:\Users\SWAN\AppData\Roaming\IObit\Advanced SystemCare V7
Deleted C:\Users\SWAN\AppData\Roaming\Seznam.cz

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{100146CC-D870-443C-A544-2C5FD8B4E676}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1016AB90-C90F-4106-8475-19E2352DB53}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{101D4556-BA21-4621-8B92-2B4C62369E2E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{103B0D4E-5EDA-4998-826F-90F48CBEAD72}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1095D28C-79B8-4631-A58D-8856EDC0DAC1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{10CB6087-D457-4F57-95BF-51BCCBC52859}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{111B8C81-383A-4E67-B962-F9D499522E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1129760A-5A72-4E61-B676-33DAE5F4DF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{125367FD-FCF6-4BEB-A1FF-E567E8BF9042}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1317AB61-CECA-46B1-89A0-693ACA01B86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1366F7D9-BA15-4B25-ACED-7D19CA4A4FDC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13A678EE-E801-486B-A26-E51AF79534F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{13CCADB9-34BA-41FA-ADED-74D3BBE2AF26}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{14251899-785D-4482-83C2-B030A7A5A1D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{147360E-94F0-4733-B8F0-9C6CABC355D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{147DE90-29D7-438C-B474-010DDF577DC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15281E22-CCAD-49B3-A36-29ABCF909DF9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1533FF86-DFB3-42F3-B756-FBC72D830E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15741209-C230-4FD8-9BD3-3552E953BBA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15BDE45B-3D81-4B20-9493-3FBD68B942C1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{15D6BADF-511-49FC-B866-91EB5D2F670}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1620C416-7AF5-49CF-B94B-2835B5D1FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16439562-982C-4FD3-8A3A-B12D3CEC76F3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1675863D-5A49-40E3-BD46-C778B57B175}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16D6FB73-74EA-4993-958E-82801D344EEF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{16E3ECC8-134B-4BC8-A69-5C1C7FC3627D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{172D6926-3999-421D-B92C-43292D834325}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1740A250-21D3-490C-86E5-C41E1BDC1BA9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{175B801F-AE91-4465-B1EE-61809C466034}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{186ADEF1-4529-46C2-91DC-AEA8B318C923}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18AE899-271-42EA-A436-F650716368}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{18C05459-763A-431D-828D-C17B9C8E73E8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{197FF1B7-9369-4FC3-87CD-45B5F7E4CAAE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{19B8033B-4592-47AD-A825-2352F431B0A4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{19D9E3CA-9FE1-4378-8DD-51ADC4BE97D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A0F86C-181-4369-8B53-37E29764513F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A5174AF-D725-4261-BE9A-37B9B2D55CE9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1A607EE4-E46B-4499-BC6D-796FA4D981B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1AE814F8-4A29-42AA-9C6-23644AD2639}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1B7EB599-6925-4A9D-854-6EEFE9733AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1BB3A30C-1E59-4845-8B34-FA6B1280F1B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1BC72B23-247A-494E-BCC6-C25C61138259}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1BFF017E-7F02-45F3-B642-F1C937E8A8A3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C01DDB-CE1F-498E-A21F-948147504E20}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C0E4D05-8F21-4466-B9DE-9C3C8A289B65}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C3EF31-AFFF-4D10-BBFE-D099574E7027}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C5F52E4-D521-4C95-87DA-58496B2B174E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C69907C-7940-4BA2-826-80D69BADD785}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1C9FE07A-E510-4CAA-8EB0-51FAA5CD744B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1CDB589B-90AE-4234-8323-8130E4604269}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D14544-2B7C-4755-9E5-49C692889572}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D2B8062-6242-4770-B4AB-F33468DEDB5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D704CC9-E9DE-4623-983A-4A0781C9B23}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1D7F4D8B-546D-4B16-A486-8E9D7E3AAE8E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E0A000D-E584-4D7C-A258-25D3BA5C18A7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E36BDD0-E1F2-4E14-B247-357AFADA5A97}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E39138D-2AD8-45F8-8779-8F694136AB68}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E7B4F16-70B0-43B2-8DEA-2D2693EF73A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E9860EB-CAA5-4792-ABEF-D58D2124A530}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EAC57DE-95B9-4746-81AF-62FC74ECC548}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EAF2E7B-CEBD-47F8-81EF-BEB7C63B5C6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1EC37359-4413-40F8-BCC3-9DA88CC608D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1F359C0C-F712-4ADA-B713-E41A339F837}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1FF4CCC4-B3BE-486B-8911-53B6EBA19042}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2031D603-3854-43F9-89D1-64CF53DD9153}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{204BF903-383A-42B9-A8D-55C6A9339E5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20756584-35CD-48B4-B632-3D295A4279D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20ADFA72-93A5-4BC8-B236-91D68E91D43}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20EC735B-8162-4E8F-9D95-AD6417B16C8B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{20F22CE3-91BA-45C1-BCCA-DD3F4942667F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{210A126D-899B-402A-A1C2-1082A91FCC6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2119490-6B0A-4407-B143-C14E7AEACDE0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{21B0CD6E-953C-4978-A973-BE6A827214E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{220D7824-9FB2-4B4A-B2C7-DA4A14661F3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{220ED392-8F20-4553-AE8D-39AC6111820}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{230DAA80-C889-42EA-979E-13830595230}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23521F0F-F99B-4FDA-A645-1C6F69CE8453}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{236FF57C-26C9-4F83-9BD0-D949CA3FBE33}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23833109-3435-47BC-BC19-708CE8F331FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23E006BA-1EAD-4FDE-8015-D6D81715757}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{23FF4837-FD27-4557-B418-DEB189EFC56}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{248E89EA-E80E-4850-8B2E-7F8B7D41EB58}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24B2D4-A301-405C-B794-431E5133A8AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{24D2EB78-8DE2-47D4-82DC-17A36AA9D3D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{253545C2-AD36-436B-A44C-A09B8445E11}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{260CB1F7-819A-4B3F-BA24-95498D6079DA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26379DE7-EA17-44B5-B45A-C329242E84A1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{269E4287-94AD-4A53-A922-BFFBC2A7FA1B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26B29F34-42F2-4DF3-9994-701A897CB7A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26B4F950-E742-4AFC-A891-ABE096F6A6BB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{26F6DF04-214D-4825-BC67-319F9D557413}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{270C858E-262B-45F9-AC49-C150AB90F73B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27366795-E567-44FC-9EBE-548D7A3819A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2754139-BCA1-4B2E-B1F2-F4A64714AB12}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{279EBB4D-BC9-4D9A-92D-6575E6FF2B5C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{27D4B52D-45E9-4798-9B6-6D15154CA37}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{28C11F7D-9939-4835-91B-A3DFE41E552C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2933B689-7C0C-4449-A3D-C13F254FD3E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2957C3A2-65F0-4664-95BA-477941876E2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2978A537-E367-4127-A6CC-50F43D296510}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{29841201-EEA1-4F7B-B1D7-F43C43573DEA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{298E9F26-4C18-4A44-B52C-DA38DF4AAA4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A182834-DE00-4F4B-90BC-F2246EBE8D60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A48C155-65C2-4EC8-98F1-3E1520DC55C8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2A5D101D-F2E5-41F6-8C59-FE0E3E4E6B1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2AB13F4B-A53E-4498-8929-44D3EF693AB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2AE3CD89-D824-44BE-8051-957FBD8759D0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B1F4DBF-AA2E-4284-87B0-1EAF2F3ED9E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B728F88-3750-4E9A-BD8A-664AD645D9CF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2B85AE77-9F9A-4E4D-863E-58503404B8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C38C449-65CF-41FD-9EBF-27E54CB49F9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C4AC557-24D2-40AE-9BC1-2E9188CD6F90}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2C534E65-D649-4317-839-CB4AFE623B69}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CB8DFD5-5894-41C2-97D-5051844B294E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CCD3849-4B76-4947-9DD7-8FE4EA8FEC4F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2CF3C279-8D88-41CC-A76-DBE382CF577}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D69C2EC-1C6-4A88-9ECB-BD15FBBA0F7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9D1703-826E-46C6-9BCD-7C942771459E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2DC76187-972E-4466-B558-B74E37C36C59}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E174429-5E99-4A29-B56-963AE0C9B318}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E2F8AA8-850D-4C21-A8C5-A394164189B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E49B591-C820-40DF-B492-3F3BC2C071B4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2E860F56-E2CD-4E4A-9AD7-81BAAD9E5F4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2EBBEACC-49BE-441E-8BE5-E11FEF4C5B60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2ED6E05-9AA2-4603-9BFF-E8478FC2FF6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2EE83D2E-3C7-4099-B09F-9E1CCDC64DA1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2FA70BB6-BC57-44F0-8C6E-EA5AED6ADFC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3018B4EC-C5D4-4A64-AC5B-B01E6DD41819}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30291D56-8143-4C78-853-7D9F342BF7C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{309F48D-881E-4165-8214-498570F0B17B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30A0CB0C-DE7F-418F-A928-1EB70B831FE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30B2C606-4DD9-42A0-894A-5FD05761BBD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{30F5F2A6-85C6-41F3-82CF-AF2E98A3E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3102F812-5CF5-4B63-9165-1DB999A95A6D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{311C1732-5E55-4FD8-B024-8F9CB20FBA7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{313383F1-8007-4062-8D67-AF629EF31DC7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31344EA7-D0FA-496E-99AB-87631C7AC79}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{31524319-1B36-49EF-AF70-FC8E69CDEC66}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{326FF04F-9D2B-4D29-90F9-73DA16C63CB4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{32EA7974-CF49-4ACC-A732-6DF6B3FC93C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{333D5ADC-991A-4941-A0CB-47595D1ED29A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33536B4F-889E-4D68-A38A-BCE734CC381}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33727C14-E409-499B-9087-A2FBF1B55AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33AA4B85-500F-4F8E-8C36-84DCE523C316}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33BF1926-4889-4409-BE6E-FFAB633FA42B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33E01A9B-FF4E-4719-887B-27DB73361C6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{33ED7363-F590-4B8E-9323-F10E895A074}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{342839EB-EE6C-4E98-9353-E19A582484F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34826E9-CD42-4820-AF9F-EA871BD737D3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34A2BE09-BD4D-4EED-A6B9-AF7794817D1E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{34D6FFD2-7EB0-4CC1-81B8-88C45C925EF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{351EFD9B-B00-4206-9425-76A43AD363AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{352EFD9F-70D2-4708-9148-DA83675052ED}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{35A10244-2541-4C6F-98F2-39826246B22E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{35B33D74-140D-4579-ACF7-29984F2C35F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{35FC65D8-8A0C-4F85-9928-B58C479A5144}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3651D63C-D8A-4EC3-811B-526EA1993DFD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{36E8BA0C-3781-4044-9FE3-3468D866841D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{373A0CBF-446C-4C34-BBD2-3B28B313A9E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37A0C668-BD2C-4CAE-87D9-505A3C822F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{37F2477-C040-48CF-BD45-B32ECFC38CD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{380BF314-5472-4979-98C5-15D38D3DFB4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3852A767-DB75-4DFC-B39-6CFE33343515}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{387B1D8B-15BA-4BEB-BFA0-5418CA99815}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3882FB90-C8FA-4F64-AEC8-349FAC98A087}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{388F238B-E1BD-467F-A6BA-FF387BCB1B28}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{38B21134-952B-4B9B-BAB5-839A555EE1E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39050018-1ABE-4B3C-BB7E-DC617E87E8CE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39A5D212-EE31-4B3D-A536-E2CD99F59AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39B9F2E9-205D-49C4-944C-FA2526D1860}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39C156EF-E0D7-44FA-98CF-C4E786E83AC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39DBEC80-CDE1-4ABB-AD56-1352FA7F2DD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{39EBD484-3F78-46E6-84FF-BC1B67C0E1CC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3B07F471-3276-4262-8EAC-9AC74ECA634}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3BD7447B-26F5-42D8-B24F-76D5643DB981}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C11341A-9215-406C-8E78-FDEAA94191F3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C3AC5AF-2299-4916-BB2A-4336DCCC77E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C3D86B1-DB3-4468-8E5-C6A1CB345DEC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C46391-3F9B-4E66-BE37-BE7655E58BB0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C7E9588-7362-4268-B6E1-5D9E8E803295}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3C89FA2B-FA42-41A9-AC48-B26964D4946}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3CA9D2F3-8100-4BCD-A42E-BF8FFC6781C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3CCDEF81-683E-40A5-B0D4-5220619C3A81}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D2A609D-BA57-4C3D-96F2-6459BD907A4C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D622224-80D4-41F9-AAC7-38182428B827}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3D7D54A8-D9F8-4195-8D7C-6E7D82A219FD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3DA9C2C4-5AB8-45C3-959F-9D686C6395E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3DE759DE-DF85-4EAF-B324-58A1E17DCC75}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3E189082-2EAF-409D-8A2F-5F5DC7DE9B2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3EC06B21-DDF0-40E9-BC93-B9EF672B39B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F34C174-DE34-4296-86DA-5984CBFB64AA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F7121E7-31-4932-88A2-BE63B479A493}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3F743CB5-EC3-42C9-948-D1FBFF442D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3FC03304-B5F6-4EE3-896-2F1F9DA4D2E7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3FF027E-CC6C-4F01-AB64-7976708D7AD6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{3FF6DDD4-716C-4E6C-9666-1C588A31A962}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4109CFBB-99BD-4B7B-86D5-48F4340764C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4134C42-75D7-445F-9E9D-FB6BB3558C86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{413E899A-31D3-4E9B-A460-F6E356EF1970}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{41F35ED0-5077-4456-8FBA-5626683C9C29}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{421D2386-4C46-4715-A5F0-7B2CBE565C66}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{42DFC168-EDFC-4765-8FB8-92BE9FCAE5CB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4306BB7E-5C99-456A-86B3-F9B1452853}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{435CE7C-CD4-4433-A86-D68CBC56E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{437D1E87-D221-4F3C-BADB-4E36F68CC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43EB1E4A-E898-4095-8061-4FF0C3F1052}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43EC779B-40F6-436A-9070-ADAAD79A4BF9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{43F2D764-731-4081-8813-7BFBC16F205A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{440F7CB0-D38D-4C6D-9382-E5D348B3EC8D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44752C70-9E67-4FE9-B02B-8E726FB2F77}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{44B72C33-7398-47AF-9BF6-F4EC11F0837}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{452D28E5-2BA1-4352-8F86-94E2CEB71B23}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{45910C47-D557-47CE-B559-F22A16367677}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4608C5D2-24C4-470A-B896-955DC1968EDA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{47883EC1-BC76-43A6-833E-DE461066C99}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{479F9421-78B4-4F04-A735-744411ABF1AB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48085F1F-5A22-467C-8036-92BB4194D1D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{482F9BC6-851A-4FE1-9866-553B615404F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{48CC1A97-2E3A-44A4-9BD-49587E823C63}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{490684FB-FFA2-4604-A14B-33B3AED22596}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{490C58B2-C16D-414A-864-6A7748E01F63}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4992F8FF-83D1-4CFD-9BDB-956A398BD20}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{49BF6287-4EFD-4F1D-91D0-7F5D6CCC2667}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A26C84-4ABC-4B16-B38A-726DCC8F569F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A66B824-3146-454B-91A0-E591FA6CCB99}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4A9AF329-CBC4-4C9C-9ED3-A5E3B9D936C1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B2E5160-733F-4CE3-91DD-6A6B9A7ABAE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B717FAB-CECA-45E0-AC1D-E6862D8A6C73}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4B91F07E-32F3-4464-B4E1-9B8E9705D48}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4BA61B17-7EDB-426F-A734-97903C731EFD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C1E0383-51DB-4B5D-9D0-BF91C5AEF4D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4C4D3FDA-BEE4-45D8-9714-698EAF9F4294}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4D01DFA2-452F-4B50-A2D-1BCD3254899A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4DCA7162-F77B-4A52-AAEE-C6324B5544D2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E10D1B7-C473-4821-B3B5-CD8D6AFF5F53}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E2D9643-C1A5-424F-98B3-1671286E83F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E36FFC5-D10B-4C76-AD91-B978DA8FB5B5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4E5ACB21-A19B-4A0A-A6A3-76E4153D338}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EB4AC42-F03-4EBC-930-6612283C5157}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4EBF5EEB-F561-4A49-A35-472BDC9336E2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{4F56657B-4DCA-47FC-8A8F-2090C32F5920}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50238DEE-35C6-46A9-83B1-4888F1C7DF7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50A73746-1041-4327-B642-994A3173E51D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50C2A057-6D7-4297-9197-E59EB3503540}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50EC69D4-5B85-4743-BAE0-EE9344ED8A8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50F0BFDD-64EC-40F7-ABC0-83E34F937A9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5115F741-3C1-4E43-96C2-A5F6AD683E19}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51646514-87BA-49F3-A466-FA91802562FF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5167889C-C0E1-432B-83DE-F1DBCBBB8C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{51BBB9EE-194C-4563-A262-7DD3BD133CD3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{52ED7D7B-3782-4680-BCA1-1E1E8F73ED0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5305BCB1-28E9-4F08-AA88-4E537485B9FA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53422022-3914-4001-B8BB-737B2B4E9325}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{53FC9636-65DC-4A26-9B54-B3D32059C86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54795B4C-5219-4E49-8E37-8BF5C038C690}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{54C7BF39-85A7-4371-B7DE-83124FD7EE31}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55275727-9DC8-4C8E-B741-9FC87AD334B2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{555B9CE-8440-42AF-AABF-1426F4F22632}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{558198AA-6F5C-400B-954A-954C28F791DA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{559105A3-7F72-409F-AA10-75E9DD466718}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55A5C40B-C8-4488-B311-C2F68393984}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55B9F4F9-39EA-491E-B398-C5E6B16E6E6E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55F20EE9-7A93-49E5-BA65-33E9A345B27}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55F53C1A-5299-46FB-963A-C0267CD5B58}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{55FFB5F1-BE15-44B2-A3A0-37A0689786D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5654B560-8D62-455F-ABD6-B0627C449FF3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{566C0B88-115D-4C9D-847E-1334D12CD03D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56B0D089-2D8E-4ACE-BAEF-81DEBDEFB6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{56B2E985-760B-47BE-96B0-2D2D4363A42}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57288993-9C27-4731-B83B-F855F0701D14}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{57868A77-7CBB-4666-85F4-AF61B04A69C3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58261383-9756-4F9A-99B-A9EE6493F5F9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{582C018D-42DA-49F4-B27B-64E5E43656E1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{583352AE-F69-4A2C-AF88-EF35439FF928}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{585E9A57-DE2A-4948-8971-491BDBFE8CF8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{586AD741-7103-45EE-968F-20442625C84A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58850FD4-947E-4311-9090-2F1CA9C23E93}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58E8894F-DBF2-49E9-B0B8-3C8D3B702F1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{58FD31D8-9C38-478A-9D7B-D94737826DBE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5938C324-3F02-4904-A610-67AD70C2C6D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A40DA56-457E-4383-9FF0-1B9BF4962B8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5A6E1EF5-9A9C-4394-8694-7B918664132E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5ADAE4FE-9D7F-4174-8381-49DFCA2A9F16}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B13A46C-5244-4734-9AA-D3FAB657763C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B1D9FBC-EB5-4163-AF9C-2A8F45E5F313}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B43F16B-1937-40A0-92D-D5AE4853893D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B64E3D5-6624-4C5F-897C-A8C95B28477}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5B6EDD85-1125-4CF9-BC68-BA4B634414E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BBFA004-9828-4CF2-89B4-8FA99237A8F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BC001EF-9CF2-463C-83B8-9D2A192C2A85}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5BC3ABA5-71D2-4AEB-81CB-9C6A47B7A430}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C1FCE40-3356-405E-A7A5-B3607B255DE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C336B2A-7376-4139-B6D8-7193E4EAE88}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C64996E-77F9-40FC-B3FC-3DB05A25BCF1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C706A18-8C62-40BB-A29A-B6E74F985977}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C7404EE-8227-4CEB-B5AF-7BFABA67527}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C76EB6F-8004-48A6-82EA-B7795FF2778C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5C7FC260-6820-4A63-9C1A-6356B1B4CBAA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5CC58178-58A1-4A5F-91C9-EF41FF150C2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D508D1-2C63-421F-ABDE-CA3E269CCBB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D650325-E63D-4D54-946C-6F8797CF1B2B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D8C8004-ED0F-471E-B974-5A64CB5C374}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D8D7C9E-B3D8-4CB5-AC7-E9E72CA8BED9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5D9CB4C0-C516-476C-A9DD-51D263E9AE2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5DDC9EE8-B437-4433-B283-7AC7E057FE92}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E1B4CB2-2EC3-41C6-8C2D-3DC895AB40D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E2C0DE9-E205-4CC5-AA9-B674C258877}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E31B9-B084-4A32-926D-58FF25AB85E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E3B6727-1C3D-4848-97CF-B6A8DC2611E5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E3ED35B-8EA3-4FB6-BCC5-8C7C8E753A91}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E7EF206-F7B-44DC-872F-8DD874972AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E84CF67-3CE2-4578-AEF0-E79A1AECFE5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E9D8EA3-68A0-432F-BCFC-948BC65665A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5EE2E916-3467-4DE8-9193-43CDC43BF5D3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F37056F-710E-4631-B4E-259BE7A1EA4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F8305E4-B297-4EEA-BA5C-55111A5EF827}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5F935846-67DF-4FFC-BB38-D7D7F73E08D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FA22C00-F1CE-488B-9844-62BD149F6CB1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FC0B4-23D3-4E0E-87F8-F63B929784A2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FC3F2E7-2248-4581-8DED-4FD1BCB7FF35}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5FC64F2B-E5D7-4A8B-ACE4-24F0356E725E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{60351C4A-C3FC-4D35-8275-C718279A4EC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{604A38D3-AEB7-4B2D-B357-8C9136510DE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6057C468-79A4-43E4-A37C-748D5E39D5C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{612584EF-D29-495E-B98F-21E7183F9428}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{61F36C-D9DF-45DF-94DD-524A90282597}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62A1A832-6E3C-49B4-8CC6-1FE567536219}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{62BB7B0F-4A83-4D61-9644-F9CA617F47B0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{633185B4-E2DF-42D4-968C-338B949691A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{634869B9-5363-417E-A74A-42EC1131AEE7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{647FE58-B7FE-4B73-88BF-6753432CA87}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64D0A436-FC75-46C2-ADA2-3A322255761C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{64E13D1F-4B12-4897-9834-6358CAF5BC33}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{651F2562-7D4E-4C38-9FF7-AC80761FE1B3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{652715E2-54FB-4F02-8198-2CCC159DEEEE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65283EEF-95E-4A0F-ACB9-C22CE0E8AFE1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6582BD1-5583-4586-B83B-3DF7563B6B4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{659AA0BA-58-4B1C-84FE-731716CE4A4F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{65B409D7-2C8-4C32-B13D-16C37E5CB22}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{662E501B-DFE9-42EC-95C7-2F88EA5E54}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{666F99D4-928C-40C0-B4E6-6C461F30AE8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66C53E01-684E-49DF-B8BC-931583797963}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{66D20EB9-86BC-4DAF-958D-9416BEDA4011}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6706B34B-A1BD-4F4C-AC76-841A5B5ECC8E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67A55887-6C7-41B8-A89A-D284DD1B5B59}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67D052C4-EB0E-47D8-A69A-6DA878EA3AB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67D0C199-2E5F-47C0-87ED-147596957ECB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{67FCF27B-955F-469C-97B1-934E2C16FD88}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{680FFB27-9800-47E3-8DB4-B9A06D15B37B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{681AB53C-204E-4118-91F7-D76DBD2F332C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68BFF71C-9D6F-4203-8F44-7A90D5544AE8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68D69C5F-818B-4D13-B645-BEA4B66AA9C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69458062-D64D-4347-A84A-7653025FFB1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{695A7815-EB5-4217-AFF3-CE4A9D4BA3AC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6998CBE7-E6C5-4C8F-9FAC-F640C2C060DD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69B9E475-FD4C-4C65-A77C-6761F74A4D60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{69E389B7-23E-4D57-8278-45305E86A037}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A02FD51-89A6-47D0-853A-80C12FCA21D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A33508D-C1F3-408C-A822-49846FB24C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6A5CF579-ABBE-43D2-A068-4F80522B9968}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6AE27CA7-7C77-41C7-B26A-D14CB19F5C8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6AFA84E6-DF-432B-91E-D8319E6BE51}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6B3E0182-DC8-4C5F-B632-7B8E90A174B5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6B6E2358-D8CD-4F2B-94A4-24F5F7E19445}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6B8D320F-4233-4184-A943-4D9D1C5F14FB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6CEF57ED-F9BD-40D2-B471-C3B92921A1B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6CF70389-55B5-44D6-9874-BD529BECF24F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D10C8F3-6DA9-4B1D-BE61-51863982618}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D4692AB-91B4-4823-B63F-EF1676A4479}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D6357CA-DAB0-4CAA-BC89-161AA69B4D44}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6D8FBFF-CE96-4052-9418-FEC68281D16}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6DEA14F-F393-424E-BE68-ABD41CF2ECCC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6E4EAC7E-EF0E-4B2C-872E-374BCE83AA7E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6EC3555-C26B-4A8B-92AE-DBFCAD61EF33}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6EF16755-EE6F-4B33-8564-6ED21C78D5F0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6F1D718C-3A3-440B-AA74-3BEEAA3066A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6F26A0D3-B62E-462C-A56E-25CB343DAA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7022AFFB-186E-4B6B-B39A-4182EE397BE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7050626-BC0C-41EF-85E1-BF10353D7E61}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{706BE9C5-A773-4A65-BDBD-40522C9A6CFE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7075192E-3D94-404D-87AD-BA3E4DD10D2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{708795A4-A4D4-4479-AB4A-7FC695E4755B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{71434F0A-DB8D-456F-8772-9EC0B87F9BB7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{719EBB3B-37EA-4E3A-A23F-C56ED383A024}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7215FE16-4BA3-403D-BAB3-D0E7A772DA99}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72439962-555F-454D-B29D-EA2C0E0D4FE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{729DAB9E-F484-4FDC-9536-A052C98F33DD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7305297F-665B-411F-A0D3-1CB1BBDA3D7E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{730E9A50-9023-4B37-8A54-2F3B3507C33}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73629550-9DA1-4C23-8EA8-048D915D3E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73C77EE-EDAE-429F-A0E7-5EEE1B5F4A72}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{73EF0C74-F98C-49F3-B3FA-98B8A1B2E48D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74856927-72D7-4290-A949-718B2EAC8466}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{749B4770-A5-4156-BF3-892E3079ECD8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{75B26765-FBBC-44E3-BD45-50DB2E4F4D9C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{75C72B3E-56FB-4DE9-9C3-E1F6BC37016}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{75E337A5-53E4-4606-9CE2-E090E4141247}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{75FD323-8F63-4319-9681-196492707C83}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76296A57-B0FA-4E91-8423-E56E822721D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{763FD8E-8C76-4CFC-B196-1A6826AB1E4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{76AE9B2B-3F32-4459-A73-C93A6E358E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{772B4406-FF82-47EF-8611-7532D3C36C86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{78278DC3-F876-4679-B821-6BADA33DE7AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7838B16B-3509-4A4D-A57B-2012EEFA95F1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7856DA9F-FBA4-45D9-87AC-C5F03264213}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7865DBD4-81BF-4BAB-9DE7-1CCF41915560}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{787F0119-B774-426F-BD62-BC2744651F1C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{790684C2-D9D2-4470-9965-B4AA99B8379E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7910C9D1-EA5C-4639-93C1-DE4BC3549B10}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7911197-7BDB-4BCE-83CD-C543EBEAF3B3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{794CAA18-9F14-4318-968A-DA4A5EBBF9C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{796AE66F-A98E-410A-8783-63B3A3D5A15A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79731995-6035-4642-9E3C-CD22DED225D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7998C008-D5F8-48BA-9C6F-AA2C356E2417}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79AA12F9-B10A-416E-B0A4-F1B6FF9E7695}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79BE6174-F107-4045-B34-7C70C2FB238}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{79E32507-733F-4E2E-9AD7-8B43211A0C3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A164887-2610-416A-B65E-A8B7D38362}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7A506438-B671-4C5F-B248-4F5485E1D63}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AB7D1BF-5CD0-4DA5-A21E-61A3A4706579}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7AF3AACA-808E-4F43-A5CF-1EB6D5886E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B26F25E-DD7B-4030-BDC1-69577F83381}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7B6A5C32-7A0F-4C9A-9CED-85659840B553}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BACC054-18D2-4841-B616-104117B0AE39}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7BEFEEE3-FA08-4801-BCEB-DFF15DE9E96}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7C07E8A1-7EF-4F06-A7ED-DC505C562A9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CF0F871-BB12-425D-9269-567A1BBDC0A8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7CFC2DD8-FDFE-48F8-AFE2-672D1CD9D416}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7D905B5E-1723-4DE0-AEEB-6211D41201E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E1AC538-3B31-403A-912E-7B791E2F16A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E270D28-E37D-4134-8516-B04981E0D9FD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E3C55C4-426F-47B4-9610-EF2CE66F53}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7E808069-3BF4-42AD-83D0-EABF7D262D60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7EC93C29-2215-4127-BBBE-A068B5C0D04E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F219BBC-4DE6-4493-8EBB-137A3744C1D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F333546-B45A-46A2-B769-92E14C201738}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7F95AE9A-C268-48F6-B86D-39D48A4A7BE3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{7FC626FD-5496-4601-82F1-58FCEB3CF9E3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80010FB2-B07A-47B0-8FDE-41CA2EA1486}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8002BA13-DC9E-4A46-AFF6-1FF9767227F2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{800468C3-D82C-413D-B19F-B71D45578DCA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8030E6E5-6A62-44D2-807-10A3BD1ED360}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{805796FC-F681-4FAA-B59E-D2CAF4031C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{806F5E02-24D2-4014-B68-D9DEA8B3BBB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{809D714F-1C60-424C-946-D3B6D11F13C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80DE2ED1-F6A0-4C28-AE24-CC32A6D6CA0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{80E0661-798F-4B4A-B938-11FF58B99959}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{81300AB5-CF4A-4AD8-8733-1C7B3B266B61}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8173640A-C553-4142-9B1F-D5362595CF4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8185AA6A-B50F-41A0-95FA-E47FD844A74}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{818BFB2B-5397-49F3-B254-C1FEC3B927D5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82107411-72F8-42DD-A7AC-8A5531EAE1E2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82593B2D-333-431B-AD37-F1A22286353}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82BBEE48-2796-4D52-B815-74D8CE4B8E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82EB83F9-3E6D-41E7-897F-EFD8292E360}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{82F258AC-90B8-4DB4-9B67-DA4B4D53D74}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{830CBFA3-5563-442D-BAEE-BFBCE08B5C60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83527E80-5AD5-4653-AB35-3A2E39628895}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{837E891D-5819-403E-B53E-25C17FE2C89}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83EAF220-C9C7-4E9D-8514-CAE11616E8BE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{84043BB9-C42A-430D-9774-AF96DE223480}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{841C1C7A-9C8C-439D-AFE0-CF6D54C3734}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{844197A5-E5DE-4EA7-84FE-BECDD83E3BCD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8458E37F-3D33-4D6E-9853-552A7054B686}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{859A3A20-9572-4659-B588-9FE359E726CA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{85FFF9F7-6965-4921-9D6C-AB50E32509D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8648D74-F3C0-4868-AE3F-9BC9CE573A2E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{868A5E58-E2F0-4481-942-97C36CF79746}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{871130CC-7DF1-4AB9-A0D2-DD26B9BAB09A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{876C9446-2820-44A2-9AA5-87CD319F862}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{87A069B7-87C1-4C97-A67D-BA4BB7FDB1B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{883005E8-AFCC-47D9-B81D-F23BA4A414}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{88906309-C15C-4F39-8DDC-654859AB16}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8938458D-2EA9-4779-8539-498F5CDC1499}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89BF1AF6-FB5A-4798-A174-F81A5DA1BA4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89D125DD-6511-4AEC-89DD-5745A3585BA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89EA63B3-E781-4A64-8DD7-3B3B42C625AA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{89FBE7CC-2A47-4A26-A67B-F14227FC4FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A5AC0CE-8D3C-4739-9F93-B87C1F3FF344}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8A899F35-50E0-4572-8CD3-A682C4CF8AA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8AAA50ED-1255-4A1F-A0A9-6DB655BD8CBE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B026287-D0CF-4E2D-B197-E2D2B0342FB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8B859F14-F54D-4FBC-AE22-869CB3C496}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8BA3AD5B-AB3F-4463-9961-E188E4317F81}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8BCD181B-69E-493F-A138-C025B6C25043}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8BDA5266-D19C-48CD-9AD4-A8D79E727E7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C111791-1E2A-4AED-A7ED-B3888B4F9F1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C47DD30-8BA8-4625-9DEE-E265BD96794}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C693EEF-67A9-43F4-93CE-19C76FE7B9A8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8C6B1E05-AA4E-4D8F-AD6A-7FEECDC25057}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D234346-BD9C-41D8-894C-7FB95675139}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8D66CAB5-C297-4C69-BFA-F1DAA7DC74E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8DE38D00-9C7-456A-AF3B-86DF554C386C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E146F3C-C52B-45DA-A642-229856D3AB2E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8E1E994A-284B-4668-8AB3-EB76B70798D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8EED9B33-5EBE-4105-80A6-DF5A33D94772}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F2F86F3-6A51-4D7B-B43C-6C171AFF10AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F47AE97-2256-46BA-8F2-9FA2BE786B36}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8F650633-5C1B-4EBD-A8C8-864B9D2FBFF5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90683D5F-DF83-4A41-ADDE-51F965ADC797}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{90C6FDC5-5772-4B74-8FE-F4EC59DBE091}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{91026661-CC42-46DE-AFCA-D15AE1AC254B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9105331D-F2A1-4FAD-ADA7-249ACBA9F8F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{921E96A4-2D4D-467A-8624-9BB3181EC9B8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92BC80BA-DEC-4CC6-9584-E871FB43F6D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{92E39872-7929-4198-B953-1DFE687150E7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93231FAF-1511-4786-9C49-BCF6BA66BA0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{93264CF5-BF75-4B12-AE5B-19876AD34C23}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{932BA822-8CF7-4F45-B948-3639EB87819}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9341C93A-5EA4-4610-8D53-15336B34DC8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{939BF20E-A89-45AF-BA90-52311B20D01B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{949DF7E-3315-4857-91A3-8848C535D937}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{94D418C2-19B6-4BFC-A8DA-A89FEE467A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95302B6-600C-47FC-8275-9D7693554FF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9582F4CD-DB08-4FA6-910-F779CBF7184}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95A8AA4D-5FA-4BD3-8DC6-699BF885B6D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95CAC2C8-846F-4B53-8AD8-4871CE5C314}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95CD3E0D-4CDD-47E1-9D12-55DC6613E71}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{95D3B3C1-3A1F-4228-9E3-4FBDF599079}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9611E12F-95E1-4BFD-ACCA-36B6F15EE2DC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{963264E2-C2ED-4B43-B056-EC8485909B7B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9652EA56-6E3E-4955-84D4-8AE11FBC7C1B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96960AE1-1E1D-46DD-AB5E-3C84D45A562}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96EA0D05-1C46-4546-9F30-832953CA28AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{96FEB547-2242-4B80-B918-1AA23AFCE5D1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9700C78D-8DA9-4D94-92D1-6D9A9265E8D5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{970352F7-C3F7-439B-AD9C-75711FF47F8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9743E388-7328-484E-976-DC67CD3553F6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{974C8F7-4C74-4136-8797-1BBD29AA2B5F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{978003BF-436A-494C-9E71-7CB1557BE7AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9782C267-D9E6-4AE8-9BF2-3FA2DA6FBD4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97C6A2A8-5510-4FBF-98BE-4D77DD6B4573}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{97F65706-B58-4629-B8A7-FDC3263D3820}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{980FAFD-2C1F-4F21-96EB-886E6C90DFA2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{986A886C-6A40-4553-92B1-C39533D87C44}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9927985-CD09-4468-95D8-DC247494A60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A039861-E033-41B1-934C-D8A50922BB6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A58A068-DE06-45B2-99C-35629712A7FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A6E72BD-21E6-4825-9AAD-9E4192108890}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9A787B3A-1FDF-4197-8FF9-29D217586073}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9B6FA85-C687-4826-A6BE-7D76601CA79A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BD471B2-AF7B-4F0C-91E5-3352AF42B0CB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9BE0C9B-F02D-4ACC-B870-838C98915F2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C0E4227-4749-4B2A-8244-94BF7E12E53}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C20F267-E192-4DC8-88FC-63C0C166CF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C37B2C7-226C-414D-AFBA-67122B4A47A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C3E55A-C5C9-466E-8AC6-FF6F5BED9389}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C66B4F3-FF4C-40DA-A6AC-807041D0A179}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9C67E50C-D072-4C79-B58F-B0A5BD7C7B32}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9CCA795C-D141-47EC-95DB-E1516E24793F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D2785D0-225D-46EC-8A1-B95C9F3ADB3A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9D5F0647-5D97-4F3F-B4C2-11857B4D8244}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9DE0DCE2-BFD4-440E-B210-1E135636739}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9EA025EB-27C6-4C30-A912-DBFB8133D10}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F1B074C-45EB-426A-95B3-97BA21464FE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F3AD0D2-825-4622-AF4-1B67463F884}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9F8745CB-FB7B-4B2E-90A2-CEFA283F741}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9FBC1C0-DF6-444D-AD4F-B83A35BFFC5C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A0116CB1-D270-433B-82ED-3E267B8B463}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A06AC651-DD69-4A86-A847-FB997DB7A77}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1098621-D833-4771-9291-3D36A3733B0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A13290B5-B8F8-4AC6-86B2-8AD80191849}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A14DCDC6-431B-40D7-8655-4019C40E7DE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A1574ED0-97DD-4B9E-A49B-6727C7F0BFAB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A211EAF9-4AB1-4251-8A8C-73E68FF9D53A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A264143C-7E90-43F0-B07C-9DA3C6958B98}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A2C4198-356E-4A5D-96E0-B047C1FB9D8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3684B4D-A53F-46D5-B482-0FF299E342D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3C8D5F6-E90C-45A0-9784-1FCC9265971E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3D3E9AE-78F5-4152-B197-A0C0DB168E3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A3FC7738-40AD-4F48-94B2-1E924F9410AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A40FD4D4-262B-4962-8C49-EE825BF0AE8C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A43E95-1F4D-472B-8157-ECF7FD48AD1F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A4711D20-A751-41BB-A15D-5EA67D4CE58}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A4830DD5-9F65-4D39-8942-4045F3BD5B5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A51C8291-4B96-4BE9-B9C8-4B13C30CFA7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A54F418E-D09C-44FF-B3A0-B652FDA63E72}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A560F7BB-F4F6-47BF-947-C0C5C89A8E4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6373984-72CD-4BBE-992B-66FCBD8792AC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A6C7121E-9412-43F0-BDDD-5C99B17A4DA5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A7012552-842-40BA-A8F3-B7869F353830}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A7147C76-DD2F-4090-911A-465533CD8A6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A727A591-4F2B-4FCC-9C7B-D822F342D295}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A771047F-E774-4137-A324-598696712719}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A7B51163-B1C3-4C6E-AC2A-41AECB8AFE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A826BFF2-729B-45F7-95F6-188F3280551}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A85F1B93-6333-4A79-8944-A0A1BF15FA7D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A8C805B1-4964-4C44-A892-63E5D5AB8B48}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A92C49F6-F89E-4000-9F96-F616184F1D20}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A93C587D-4F3E-4068-B5E7-2D3A608F1BC9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A95432B9-51D2-448D-AEEA-A75BCABDDD71}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A9C367C4-F21B-4A38-83BB-98FB35C0ADB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A9E18B53-2066-477E-B1A6-6DC7D5C49148}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA07FAE9-21CE-452A-AB29-2BD0B3245B36}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA261B09-E812-4272-A283-A4CE789CFC54}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA3590F4-A713-4AD3-AD10-79321C976454}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA6151E4-E41E-4FFE-89CB-B971C75F14A3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AA8F69A9-2440-4E5F-AF2C-24ED6237E7AB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AADC91E7-BD81-4EA9-BD0-226E6B922FDC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAE5EA42-839-419D-BBC6-9C602E2A394}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AAF9D2CA-43FB-46A0-BEB-3882F928DCA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB1D6246-FC84-41FE-A7E4-E813F3883845}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB29D3BC-8BC9-4357-A37F-B793D1EAEBC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AB84D777-B48C-4A6F-BA4C-71A2683C030}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ABDA9387-9500-4418-B56E-F1C9DC4573E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC49554A-A484-4BDD-9ED5-AEABC8491363}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC5C7FF8-98C8-47F8-BB7B-A27BB954B992}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC65C35C-FF31-48B7-8273-44713A40849A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC6E9F1B-2F2D-4885-B223-4AE1D94B8AB4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AC73C003-EB24-4DA5-8734-94EDE95543A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ACCC5B72-39FE-409C-8FBF-B349CC19319}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AD611A47-2E4F-46FA-9D81-3EF7156A6889}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADB0BB1-8CB7-429B-A9E6-48DAD5FF98FF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADD9363-93A-4E91-91DD-D8F6B8ACA0E5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ADF1795B-4803-46D4-8B60-2C81AD94C41}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE37376F-C66A-4B1F-BAE0-EA33FDD41A17}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE3FBB15-DDE4-475B-B480-1A5E50FEAA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE4A935C-F738-4F2B-94CA-B86B27C664C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AE7C11F2-8B2A-4F5B-B28B-E9442ED0193F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF1F9F9F-25C5-42CC-B832-AD3E7F137597}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF350C49-E882-4303-B4B8-37FA1B5F28}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF37953E-9BE9-4402-A3C6-E2EABE7DC22E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AF5AFD4F-884D-454A-81BE-A52E60EEC26C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFC35CF1-2C5D-4CC4-A1FB-97D2A16BB019}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFF2383F-5700-4777-A990-EF448FB8940}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{AFF9C0F1-91F4-4CFB-9C78-A3A468B9190}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B07F5D37-B38E-4F36-AFF8-A3DB6255F314}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B09D0633-6AB7-4DD2-9BBC-8C194FEF13}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B13CA351-2C5B-4D95-90F7-96C2F5A842D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1665DFF-E6CA-4D51-8AFC-FC36BF59F7C0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B16B4EB2-FB-4B40-9454-B39D371838A9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B18AA841-51FE-49B9-AE70-18E58D7E309A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1916C8-CB7D-416F-A5DB-F01D8E1BB4FB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1E7BA46-E576-4504-A7E7-D9EACE879AD8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B1F179F3-2B5D-4C8D-96D0-97338F5E5343}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2041370-1F90-45C9-BC3E-1A31F16C6B2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B216D8A-90BB-42E5-83E6-9623247E8BBA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B292EEC2-24F-41B3-91F4-CC6022E3FA18}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B2DAA142-E3E7-42E2-B379-2249F75D5CAD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3303C4F-AE1D-4413-936F-CD95502FA93A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B38EF08B-1E8-4D97-B111-139B6264283D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3AD25BF-A4F2-4373-955B-BBA923FA1624}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B3E23FAA-4F3D-4C25-B760-824D132C60}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B465ED17-5196-42A2-8695-712996E76D0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B49B3C40-17C9-4759-A14-934B4D551D3F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4A2F1D5-EB22-4C69-BD7B-C61A36C5741E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B4DB730C-32A8-421B-8B6C-31EE1BDC6E45}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B565AE23-7EBB-4A13-914C-CBF509E8A73}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5A8E93F-59BB-4E06-A882-37E2920CECA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5AC8CF3-8E84-4473-8ABA-01E5EF85DAC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B5C2B132-98AA-4556-BD41-6B57205FEA10}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B61E76C7-2A3F-4FD6-8C99-67536275EFC3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B628CE65-F1DC-4028-80AB-67DC8EA1E3D8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6355324-EA0-484D-9286-8ECE9D32EDD0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B6CC0E35-1210-4351-919B-F37A59315321}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7CF933B-D311-422F-9C14-E852CA9A75A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7DC0575-DB67-4870-AAC2-8815FB9F881B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B7FA8E08-39B7-47DC-BB8-83FC90F04B1A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B851DFDD-5E2F-4CE8-9BF5-DA2F1B84DD20}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8550E0A-6BA3-4F0F-BC30-3012B54FD4C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B87F8285-6DB-41BA-AA50-D4D5976F1E44}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8D32B01-3523-44C2-A983-32413F293F7C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B8DE1AE4-122C-4F63-958A-3C6BEF94DCC0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B948D6FD-11CC-4FF4-BD41-CB371CDA47C8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B97DC5FD-7473-4B03-BC93-3571B5EFFAE2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{B9E2665E-99CF-4292-BA51-2A7AA3D3549}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BAB7AD51-FB6F-453A-A7FF-517F598442E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BABC832A-ABEC-4D12-82EB-3623F191C410}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BAD21A81-A5D8-4D30-B829-C8A93765AFC4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB261C1D-8333-4356-9ABD-B611FB69F39E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB2A25CB-EC4E-4743-A2F0-24EB1EE82B4A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BB874FC1-6D2-476D-BA24-36FC41239067}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BBE5AD7E-9D13-4EC6-8E0-439F4AF616FB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC01CC72-2BB-48D7-BD78-9B14DF8FEEF4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC09E713-8AF6-49E7-ABD0-86E1414674DF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC7072EC-4604-43A3-83AA-92ADD7A85986}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC7AC7CE-86E7-42A7-824-D4B7E1375DB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BC9560BA-4899-4064-B241-46F6A22BDBDF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCA70583-78EC-4093-B14C-C9A997E2A75B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCC0F4B6-12A2-4FE7-BFF8-796BD45573A3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCC9954B-2E0-4304-8531-A175486E335}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCC9B879-8D67-43E5-A6FF-51D0E573158F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BCEA2058-C8AD-4A13-8A8-8AE243F6DF6F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD0112CE-916F-4334-96AC-FA6EC7F217EE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BD063501-A6A3-47F3-B1BF-F0DFBEB87B2E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BDD248C1-71A4-4EEE-992E-C1EE1E5A46C1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BE2AEB48-821E-49CB-9E6B-DAEDD4A88E3F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF1C05C9-FE7A-4DA9-A09F-9503FC7CF3C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF4B556C-A352-4DB4-9240-2DC67FEB82B2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BF83EBAA-D2CD-4D27-A8B-E86B4662B610}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{BFEC49BA-86DB-4FA1-AAA7-FB5F3C2DF35}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0064BA8-7A13-4B5F-9AA6-4ADA42DCF671}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C00C1FA8-22AC-4947-A57-B2245CD1B870}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0727FF0-517-44E2-B3C6-7BDCDD1C8C2F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C0B618FE-6C93-4207-A0C-8ED8439BFB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C10F17FB-33E8-40FD-AD66-B82F32C3AF7E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C11357CA-C062-41A6-A2E7-197DA17E094}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C135502B-D83B-4E42-BA22-598591E8C7D2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C17175C3-E0FF-4173-AB9F-E4592A3ED898}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C185A022-35AF-4706-838B-5B7DA9CC3C21}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C19F2BCC-AF0E-498B-8C35-3B655E5B2A5B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C1A0F052-7531-4DFC-8A41-1FDE94B03E40}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C20E33F2-54F1-4A60-8F17-C3388A912596}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C27BBF7D-363E-4E1C-86C3-19D2BF48B5D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2A0AEB2-8D06-41B7-8889-CD49C973160}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2AD03BD-5C3A-4547-9AB4-ABE78913D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C2FCC800-55D9-40E6-BAC-54A5A711F3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C30EAF2B-E68A-4D19-AB38-A2C734A4D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C366D61C-5F7B-47B4-8E3F-9D7694EB8E2D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C383266B-395-4349-ACA4-3CDA7E254E9D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C385F11D-9FDB-4C90-9C3D-3F544EEB094}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C386C0C3-322F-4B17-BB97-DA97417796E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4139B32-5E29-4012-AB35-90C9A5D724B9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C45B7596-11E6-4AC4-8575-E5DE819B6DF5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C49CCFC6-B50B-4AD5-895E-7FAE77FC326}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4BF5EF7-F8F1-4478-967D-C73A4FCE64F0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C4E9A3F3-480A-41D8-986C-BE89AA84191C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C51DB688-78B3-4F6F-9974-B5141C3329DF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C537649C-C36C-4BED-B699-268B25DCA58A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C56025A1-44E4-4CCA-A11B-AADFBCCA2D4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5AFA127-D3B7-4C0F-8FEE-D4C4C0E4ED6F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5C42BF6-FD5D-4AB6-9E47-194A8B52B63}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5CAD47A-B05B-460B-91DE-2F704F71C97}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C5E61F6A-6548-4213-9513-87BDA9B240}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C61E63A2-3D94-433F-A3D8-37858E103BC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C621BBBC-BD98-44F5-9C39-B0FC4C68BA3C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C6449295-2574-468E-993E-D54D4AC6EE9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C6CC970E-3B93-4B34-9BAF-9C7E29AA4555}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C6FA3416-5D11-46C0-9143-57F26E4BF69E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C741F1A6-F227-4449-BDF6-687975B3AAB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C747A9B5-C899-4B52-B57F-F4AC748BF1C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C766E604-C15A-46D0-93C5-6CE8F3E87E2C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7A2D981-C90D-4CBD-9749-69588CC01A83}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7CBCC5-ECA5-483F-8F77-7469DA436B4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7EE8D0-7B51-4E82-9A8B-4CA3761FC441}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C82DA1AE-B469-4A3D-B474-5F1B5C5E9F7E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8B7049E-CFB0-4FA8-A2F8-3BD8316DBBD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C8BF7AE9-9781-4552-9B5E-ED579422D4CB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C947F92A-95CF-403B-B58F-5BA51FBD9691}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9A0CCF3-52BB-4F3F-807-4DFC7A8DE1C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9B8A7D1-67BA-440E-AB8D-5C961ACE3C48}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C9C3D6E4-3928-468E-9910-8E7A1628475}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA1B8B2-9F7F-4076-B5AD-16CA349B9725}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA30A389-83A4-4F52-8DFE-722A1D9FA6E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CA30A91B-A366-46C6-8379-CCFEBB6F6D3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CAF95CDA-5732-4C0E-B075-8DF320CE58DB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CB773CDF-B4D7-4FB3-BA54-58B48CEBC0F4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBA152C8-F53-448B-A796-C2602B112E3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CBB8D72-DCF0-488C-9DA8-16A7FF825083}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CC559EF6-595A-4083-867D-F5869F376217}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCC03840-3711-4545-AF2E-D06A923F5E85}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CCF6C735-3BA-4F19-A16B-32484D1DF78}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD133A41-4ED9-412A-AE97-7AD6D94C72E5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD40AD5B-396A-4639-BBCE-7B221A68BBF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD455B5-545B-4F01-BA7-49B662D9A82D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD45F686-5794-45FD-A50-118A37AE8CCC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD8FCAF1-218D-4065-B4E0-4190A160F3E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CD9DE973-9B46-44F5-92D7-81E67AD9BA6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDB398C9-A785-41AD-9CA5-666D61288EAD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDE0ACF3-DEC9-4061-9ECA-5E975C41CA56}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDE2007C-6F08-4A5E-86EB-A1C1C4396195}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDF26CD3-8B62-427C-819E-EA4F732BD1FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CDFCC27A-2E49-4B09-9D1-FF4778AD1418}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CE93FABB-EA7A-4B8B-9FF6-743567FB5D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CED8789-A93-4408-A237-5F29C31EEF47}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF12F3D3-92F9-46AA-9835-CB3EFA5EE53}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF164272-1B22-443B-91C8-2449506511F7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF1EEB11-67AE-463A-B4E2-3797B1F4F2F0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF21E8A9-C095-4543-856E-A24849B1CB3F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CF93230-1632-48DF-9A34-D332FCD3E3D7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{CFA8576F-AF4F-424C-A3B-8B92A328AA4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D0922B3C-750-4D67-8B65-EABB9542124}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D24B8EF3-E21-46BF-B948-7174992B60BC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D257A0C2-4DBE-4769-8B5F-ED2253868BDC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D25EFB80-B4A7-4AD6-BDB0-C152E2D16765}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D2765D25-557F-4B0C-A95F-7B3B9632ECA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D2862ACB-CEE2-44B0-8034-781BA717127C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D348D2AB-BB27-4821-BE5A-ED15F6A46E84}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D359745B-F6DE-4894-8927-855A7993EDE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D39ADF46-B5EB-417F-A0CE-49E1339F27B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4329A52-CF76-4773-9F88-AC5FA9C3D274}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D46D8F17-D1EB-4ADA-8B4B-B427B78B8095}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4AB6AD-A534-4196-8557-A31DB9CE8D8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4B8EC5F-F532-40C9-885D-6B744514F450}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4CB8FFE-7E2B-496B-AC45-41852AF2194A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4D10932-EC6A-4CF1-9A7B-891393D8CF29}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D4FF91B9-EEA2-4DC9-9BEF-2367DCA29C30}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D527900C-CAE1-450A-A178-BC11056FFF9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D52BBB0A-1D9E-4C51-AFD-8F2A37A9AFA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D5AD3675-C255-426F-966-4C7CC0454A26}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D62FEF4E-C7A9-4F9F-9322-6FCD974F7F70}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6636F9E-4EE2-4D30-A124-BB7F88D7D5EA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D6E95E21-6D62-48CF-BB27-8BAD2DC39C4E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D756DFE9-A78C-456E-A0C0-FFA145459141}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7CA766D-5976-4CC1-83F-29206248D1D7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D80F3CE8-4A29-4E44-9A98-A6D55930650}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D83CBE2D-66AD-498F-AF30-57A2B79D4E9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D897E79B-2F95-4308-A55B-F11B61A8AB8E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D8D90BEE-75C5-4D75-B271-CA6427106BC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9193F58-5176-4A2C-8552-9227315E9CA4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D96C9C78-29B7-494D-A887-BC8712F2B6E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D97E0564-1187-4CEE-86C7-12FF824138}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9A0E2BE-5437-4FB0-92B3-366AB6A13E8F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9A3433C-39A7-4A22-94EC-DA846B109EED}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9C855-7D00-42F6-88FE-56306BFCD014}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D9D0CC7B-C9E2-48E0-BDE3-B3DAEA7931D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA0CC6CC-54E6-412B-99E6-6E2C3228A49C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA2898AC-58CC-45A7-BEF8-1C4A74A1731}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA2D7CC-8323-43A1-8D50-583171D5B443}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA8B4B4D-952A-49C7-BBF9-82FB156D26F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DA9C1F5C-D5D9-456A-B6C2-A84CBA6894D3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DAA895D3-1336-45F8-AA4D-F392F6A7CE3B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DB6A0D31-8317-42DF-9187-D81E6EA23374}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DBBA6B0D-87F7-48B9-8552-41F45191159}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DC715C2F-968A-48C9-A27E-2616587FEC0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DCCFDC2D-5E50-4755-88B7-3A12651585}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD2F71F7-3FCF-43FD-96ED-9970A6854652}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD5050FD-2E9D-48F7-BE94-7F14E0E728F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD7F0B77-9A30-4DCE-AE8-F28FCFFDCF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DD90015B-D62B-4E12-8436-C22E05F7CD1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDC98FB2-EE7D-4F08-B231-7BA069C9C3BB}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDDF8C65-F5FE-4F09-AC71-2D77B747F150}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDDFCD2A-6793-4B2B-A837-6AAA55BB8160}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DDF33311-ECD-49B4-9AB8-97388D7DEC30}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE05D5D7-6EC0-40DA-9240-EC1D6CC6BAFE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE61B511-9EFD-4E5D-B1D1-634F286133B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE8B5E86-AE22-4F09-B6F-417F75F3BE37}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DE97DC7E-6733-44B5-9612-EA2D8B4B3C5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DECF7FB3-B526-4851-A4A7-6ADFDD5EDC46}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF21641B-856-4EFC-828C-AEBAC78BC3F4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{DF683991-1AAC-4A14-B1E2-514B11EC1AEC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E022A79E-E272-4397-BFED-9B4A4B2B6043}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E034AE21-1C0F-4B71-933E-315B7AA7BC9D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E038A405-A1D1-44D2-8E64-7EB6BDDD9B31}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E053A22E-DDFD-4AAE-8857-A0CD16632881}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E06E7881-EC06-40D0-B3C-F5D71DBF69E6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0A052BA-750A-4621-90AF-E3F79350F4A8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E12CA396-C447-4218-BF41-6B2B35DB759C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E14DE45D-20D6-4338-8DDA-109B1C91F7FC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1723051-53B0-4AD9-A2C4-D3F559FC2AD4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1A1A782-CF6F-40EA-9F5-D5888C62E0D9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1DEC27B-9851-4D0F-A184-42B97B95C97}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E221A8FB-158E-4551-8F18-81842D68EA3F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E228BDC2-9B24-44D8-ADA5-76FB86C9F4B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2617F82-7C3-41FA-90DD-77A413D550CE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E2D4C6E-DBF7-4035-9A39-3AB2AA7BDCCA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E30D25FD-95B9-4CF3-9E7-D72BDD33C0A4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E348A6C4-9807-4A78-B845-6DC1515FC412}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E34AEAB5-FB1F-4CA9-B8D6-2C6E23F5832}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E3692138-4AB5-4592-9E72-321AEE928E27}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E36D5CF7-9E14-4FFA-9F31-1DE1414CBC6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4A36486-4ACE-4474-8541-2718B1C18C5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4D40710-EC79-4480-BBB3-B28C4EC52784}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4D52443-31E-4549-8B97-327C680461}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4E0BFEC-4DAF-4D36-B072-D779512FE71}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4E127B8-70FF-49FD-A12E-9376D264F475}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E4EC0AE3-CBD5-4BE7-8F64-268DFC6F364}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E559B22A-B5AC-496B-AEB4-822EFF8EC6F1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5C1004C-B34B-4923-A1C7-7EA4B7323B4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5D15B65-3514-463D-BF93-ADA11AD94BE9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E5D24223-99F6-435D-9E15-353C82D1F0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E60BC8B3-ABCC-4382-8DC4-60A63016579C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6624125-583-4507-951D-3F8727FF22B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E665DC93-69A2-43C9-BD3B-DAD853BBEDA7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6712B28-E23F-474D-AAA4-A32ECE88CD5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B73178-B07-4CD7-8366-79114949EF6D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6EDAA75-1B79-4F6E-BC60-6CCCBFCCA479}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E745F0DD-31E8-426C-BE1A-F886B25E2F28}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E758566C-82BD-45ED-93FA-9271C4986B8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7865335-8224-4650-A014-A36572FDEAE9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E79DA3E-4073-4662-917D-C65EE45D0B1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7BA268F-B5A3-4612-BE46-707A917E812A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8253A33-4E43-43E6-8966-8EE6167EFAB5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8460D7F-6D5B-41B1-BE4C-174FA5594286}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E88038CA-2D16-46BF-A566-915862E71CBA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E890FEA-6653-4436-B62B-9CF5F122FCB9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E8928ED3-31C5-4044-A3CE-3EDDECF598AD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E92D9FF-ED68-4D1A-BA9A-EF435B80BCB7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E93CCA45-FC57-4017-9D3F-FC12B6BA8C71}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E93FE8E2-C5D4-4F87-8148-84F2643C5F89}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E944D95A-B2BE-4319-9A12-A01AB3398B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9A6AB90-BCEF-48F3-831F-3CB875CE247F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E9B243C0-7A44-4221-8A0-921AF05F3C73}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EA2718A-3EFA-4C8B-A225-ADC7FF733C3F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EADC66DC-B24-49CB-BC28-82BF2CB0885C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB08EBC1-CB26-4598-ABD-AEBF87C2CEC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB16223A-B109-4208-AE57-C5BD4586F1E9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB3E2AA9-3413-4681-9186-A7E464941311}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB43E776-3180-46A7-AA1C-B02DE8833C42}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB6659D3-772A-4742-8BE0-4DC1B12350DA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB66B714-8349-41BA-B6C9-18A0BA16717}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB6E9854-95EA-470B-9C1A-513842F7117}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB7A5502-207D-414C-9A5A-E1D357BAC167}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EB8A06A6-AA24-460E-BBE9-A3829E1D6B3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBA72C31-866A-4A3C-BE73-25C529EE91CE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EBFE9B52-D9B7-4593-9994-B4D5BA956CF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EC7894B6-3E5-49A4-B8F8-90323026B5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECAF53BF-9E11-4F6C-9D41-50CE6B7D3E2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECC621B1-9D55-4AC4-831D-9BA86AD2A2D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECCB77AF-8C46-47CC-829B-E83E5917D5C4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ECD5FD72-D5E5-4028-A873-9978EEFD7F7C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED0C1DB-69D9-4798-A726-91CDBC2872E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED6530A7-2C14-4191-AB1B-A82E4821147F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ED9A7DA4-5B0D-4396-849-9713B2A85AF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE823C93-C8E0-4FD3-8C35-16F4F2CD45F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EE96F386-657E-4C18-9BFA-EB58F464599D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEB36D3-836E-44F5-97D-F1A4D4E86EFF}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEB6838-C8FA-4AEE-A92E-7BA1FD7C609F}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF0C675B-DB66-427C-A9DF-6FB899A2614}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF2C092E-A703-4D27-91C6-D102AD751EE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF56EFDC-7AE3-4604-809E-3CE91CAC725A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EF9CAD81-8673-4DB1-A16-3530CA2DD5A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F020B5A-A8EA-4428-A231-F7EA43F6A9F7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F0C445FD-3B9D-4339-89B0-ECAEE1E758C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F107CB29-E973-4499-BF2-D6D312E445B7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F173F063-EE0F-47F1-887E-9DC5405B5AEE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F183D7E3-28AB-49FE-AF57-4E252B2E11BD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F19D4BA2-CF3F-43A2-AA89-18DB61804D2B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1C91B68-4673-4DAD-AC92-E9BBEDA05B6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F1CD0486-DC53-499E-8DE1-BE8F2E283F2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F3776D13-167A-4305-8D1F-5045B6871B7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F43B3512-CC1E-40F1-B1D7-9217F67BC1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F45286DE-3A08-4A78-893A-FC5D51C1359}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4C15F90-4881-48FD-8F6A-7FFEBA46ECE}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4CD4068-70-45F3-816B-20F3B7769BC}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F4EC6951-E16B-4463-9D12-6E94616D1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F53D4FBB-552C-4E55-911A-584F6B2F742}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5BFD16-1E4A-4816-9F48-E8F5337CD9DD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5C2FD92-9EA0-4F64-8F9C-DBC4CC8EFA86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F5CFD48C-494D-49CB-8737-879963DB19B8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F62CD8FF-24FA-4664-9FB3-77E2E4867F86}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6445905-CE3E-4C61-82C1-6B297D1DDB11}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6AAB0B-3CB9-4F54-BC14-BB6431A1660}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F6D935AF-D3DB-4498-B4B9-136671C39435}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F717E83C-6539-4275-8BE5-4A6EFA5D2D9C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F77A351F-1AAC-4BDD-A5C2-423C4AD7EA}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F791A5-CA0B-43E5-92DD-3804DF981A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7A73112-8CF5-4611-851A-BA1DD8EED93}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F7EE3C48-FEF-4511-88AD-E78278862F9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8421C41-4EC6-4FF7-8D79-90CE8914EA1C}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8579FE0-5B39-48AA-9CDA-49518167FA9}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F861DAB3-B030-4A69-B7A6-BD17579CA86A}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F871315E-917F-46D4-BDCB-98B8449ED2F1}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F87B9296-D79B-4254-9154-A08C44B791D0}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F88A862E-E336-42F3-A7D7-FA91E165B5A8}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8B422EF-2533-43C8-A673-A759C9F3FF7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F8C3DB77-A6C-4A69-9150-D1E6C2FEE53D}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F912DBE5-CD9-47F5-8F32-5EF3B61F131}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F91C646-F2F9-460E-84E5-1C2E6F91997}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F94B26F8-99A5-4C8B-93F9-5FF77D4741C4}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F961A337-EEA3-4E63-97C0-64CC7E31A1D5}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA03EB9B-9A80-40FF-8A1A-896DEC1CD15}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA0E2DBE-BF08-4BE6-8F5A-37A3364D885}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA21207F-FAF3-4FC8-A4AA-9C9866CC2C5E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA243525-95FD-4AAD-9218-88D1E893278E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FA313068-2CDF-45C5-84E2-A221799125B}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAE09BA4-DC0E-412F-859-96509E3795}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAED98F9-E180-4103-A1CA-281D41B65E37}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FAF7EDA-4FFF-4640-BBD3-3EF1BAF9863E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB3B2B2D-AE6C-4B85-87B7-B1D895D623F6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FB9E3B45-246C-4ECC-84CC-30425A8137B3}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC2889F2-C055-484F-8B41-A24440ECBE72}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC4EA174-84BF-4CAF-B97-8CFC42904369}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FC8869C1-D607-495C-881-AADCD524D9B2}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FCB3E11F-C6AC-4693-8B2A-A28E85A1F41}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FD0B333-578B-4826-8C13-47508D98EF7E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FDD7F242-312-4F21-AAD0-C7321B2156E}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FE07247B-4829-4700-9364-5A7C5C50E0DD}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF50B3E6-A72B-425D-8025-1B0EAC89D6}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF56A96-5FB1-4BBC-9CDB-8B1631AEB110}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FF6A703-82A-49D0-A07F-F9562E2740B7}
Deleted HKCU\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{FFB8F6-8B5C-4928-9C7C-27CAC5F1615}
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes|SuggestionsURL_JSON
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes|URL
Deleted HKCU\Software\Seznam.cz
Deleted HKLM\Software\Wow6432Node\IObit\Advanced SystemCare 7
Deleted HKLM\Software\Wow6432Node\IObit\Driver Booster

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [138410 octets] - [01/07/2019 15:41:43]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

ReZisten
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 01 led 2010 14:07

Re: Poprosím o preventivku

#4 Příspěvek od ReZisten »

FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-06-2019
Ran by SWAN (administrator) on SWAN-PC (MSI MS-7721) (01-07-2019 15:49:13)
Running from C:\Users\SWAN\Desktop
Loaded Profiles: SWAN (Available Profiles: SWAN)
Platform: Windows 10 Pro Version 1809 17763.557 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVG Netherlands B.V. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.4.155.333\AVGBrowserCrashHandler.exe
(AVG Netherlands B.V. -> AVG Technologies) C:\Program Files (x86)\AVG\Browser\Update\1.4.155.333\AVGBrowserCrashHandler64.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe
(Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Foxit Software Incorporated -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Malwarebytes Corporation -> Malwarebytes) C:\Users\SWAN\Desktop\adwcleaner_7.3.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9181696 2017-01-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [309680 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [506864 2013-03-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Run: [Gaijin.Net Agent] => C:\Users\SWAN\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2125384 2018-09-25] (Gaijin Network LTD -> Gaijin Entertainment)
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Run: [EPLTarget\P0000000000000001] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_IATILQE.EXE [297024 2013-01-24] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Run: [Spotify] => C:\Users\SWAN\AppData\Roaming\Spotify\Spotify.exe [25386912 2019-06-25] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\...\Drivers32: [msacm.vorbis] => C:\Windows\SysWOW64\vorbis.acm [1554944 2009-09-15] (HMS hxxp://hp.vector.co.jp/authors/VA012897/) [File not signed]
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{48F69C39-1356-4A7B-A899-70E3539D4982}] -> C:\Program Files (x86)\AVG\Browser\Application\74.0.791.133\Installer\chrmstp.exe [2019-05-23] (AVG Technologies USA, Inc. -> AVG Technologies)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\75.0.3770.100\Installer\chrmstp.exe [2019-06-20] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] ->
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00DC2D35-E5CC-46BE-BCCE-3D5FF6D6DD4C} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe
Task: {03DF4745-4E63-4BCE-BE64-313E94274BB4} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {03E427EE-F537-49B6-95BA-AE27E74A057C} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316}
Task: {06E0408D-865F-4968-931B-994B8A870FD5} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {0C85FD5E-8479-4CE1-9918-A658746D084D} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {274E6A60-04E7-45F1-9AF5-8720A3227BE2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [14679256 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3610F1EF-E32C-483F-85CA-1D27648C002F} - System32\Tasks\{996C2E56-CF8D-42B1-8BB4-5B25693FCF2F} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\unIosales\3xzfRV2iP452n4.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" ""
Task: {38A7E5EB-5BDB-44A5-A0CB-8611C403C98B} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E}
Task: {455FAF33-2070-4804-969D-5174EB082EAD} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB}
Task: {4FB12AAE-257E-4B64-8BA6-8AA0222CDF81} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61}
Task: {528933E0-C10D-4157-8589-EE21C8C994A9} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1}
Task: {5504F1AB-5B21-4F39-938A-784E9A93FB81} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {57097E1E-F755-4031-8FB2-A9C667F57AD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)
Task: {589DAEB1-19D3-4B07-A658-460B9CFF60D7} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A}
Task: {5D3B9262-B0C3-4B66-BD7A-1274D8139FC3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)
Task: {61E8D464-6C98-4658-B87B-448552DE725E} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2314008 2019-06-04] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {64F0B012-C0A9-4289-BDE1-FC6FB75EC1BB} - System32\Tasks\{466120E4-8C8C-4E51-8B69-F46BFC8B4EEF} => C:\Windows\system32\pcalua.exe -a E:\Autorun.exe -d E:\
Task: {6959ABD3-1070-4FD9-8744-3DF8A135BFD0} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {69A88827-1A8C-4D96-A3C2-793E4AC49E3C} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_207_pepper.exe [1452600 2019-06-11] (Adobe Inc. -> Adobe)
Task: {71C551CB-1657-4835-A13C-87E4D16F0EA9} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {73E602CC-8789-41A0-AB81-E3638267EFF8} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1642672 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {76EF653B-6228-4BB0-AA24-D6509BEE3D4D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-06-11] (Adobe Inc. -> Adobe)
Task: {7782C681-6BDF-43A8-B682-EBD5E7870393} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {89336325-52D8-40E6-901A-5DDE8395BC42} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {8AD212BB-6785-46E3-A683-8C6DA2D9E641} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8C5E4BFF-60F7-452D-8991-04DAF349CB0A} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {8CAC1675-DDDF-49A2-A52F-FEF4B92CDC33} - System32\Tasks\AVGUpdateTaskMachineCore => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [165520 2018-11-02] (AVG Netherlands B.V. -> AVG Technologies)
Task: {8D4736F8-A8B2-431D-8009-AFAFB642F929} - System32\Tasks\EPSON XP-610 Series Update {F046D536-3200-4F23-BAD7-73FA9472B4DD} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
Task: {8EA7FB19-561A-43A7-AD47-8CFDA5D00CEF} - System32\Tasks\{C3E3F5FC-6C4D-4BEB-AFB6-6E0AF263B50A} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\HD-V1.9\Uninstall.exe" -c /fcp=1
Task: {8F71AC29-E88F-403F-9659-0A8B5ABF81A4} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe
Task: {8F9384DB-6DA0-4146-A18A-66B0C840B60C} - System32\Tasks\{53B0608A-A69B-449C-9081-1514F98AC435} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp <==== ATTENTION
Task: {975CA11C-29B2-479B-8CCA-10CBACDCE9BD} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {9FCB9B0A-1605-4542-AB35-1D9C8074E1F6} - System32\Tasks\EPSON XP-610 Series Invitation {F046D536-3200-4F23-BAD7-73FA9472B4DD} => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
Task: {A288DD09-6487-43C8-BB4D-12C0F2584A73} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe
Task: {A2FE3E52-3986-48F0-9AE0-EA2AA5A1CF14} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969}
Task: {A6132231-63DC-4B7E-989A-7F5FFDDB3AE4} - System32\Tasks\{1CA0FA9F-C6F9-42E3-8D18-DFCEB9BCE8C7} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\Torntv V9.0\Uninstall.exe" -c /fromcontrolpanel=1
Task: {A6858A86-6B1F-4564-94E7-7B28F377E4B0} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {AFCFAD6C-C942-4724-8EEE-A8638EA78C1F} - System32\Tasks\EPSON XP-610 Series Invitation {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
Task: {B07CDC2B-CD1A-46E7-98A7-96D8AC0D5469} - System32\Tasks\{B99D28A7-9F65-43D0-9F08-97012174B353} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\We Love Deals\We Love Deals.exe" -c /s /n /i:"ExecuteCommands;UninstallCommands" ""
Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371}
Task: {B8BB81C1-3835-4933-A4A5-B6F760813976} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [1954464 2019-05-14] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {BA9D6900-DDC0-47F4-BA43-57CB108A29A9} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {BC24B21C-F140-4232-B28C-EB188E590558} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe [1954464 2019-05-14] (AVG Technologies USA, Inc. -> AVG Technologies)
Task: {C0CC8FC6-AFCD-44EF-AFB5-EB7B0758A1F4} - \{C2BAE604-973C-4300-B96B-A3EBE077AEB1} -> No File <==== ATTENTION
Task: {C7F296B9-254A-471B-B3E2-5CE93FF9A754} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616320 2018-01-08] (Apple Inc. -> Apple Inc.)
Task: {C8E0BF71-274C-46DD-915C-5589518413AA} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [2981808 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
Task: {CA51845E-070C-4B95-BA52-CCB338A966F5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {CBA8CAC1-7E10-4759-A25D-7CF5A389610C} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {DC98F61B-53A1-4E32-B562-0C6A91966862} - System32\Tasks\AVGUpdateTaskMachineUA => C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [165520 2018-11-02] (AVG Netherlands B.V. -> AVG Technologies)
Task: {E2DA047C-5A60-42E2-A778-8BFDC85C77DA} - System32\Tasks\EPSON XP-610 Series Update {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE [679488 2013-02-28] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
Task: {E829E330-F4B6-43DF-A74E-467D35E90B5C} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E8E61980-3B76-4872-8E49-96DBEC59B232} - System32\Tasks\{8AD2C5F6-A865-4382-AB5F-20B308586C86} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp <==== ATTENTION
Task: {ECC8BAA6-5412-488B-8FCD-61FCCCD18D5F} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe
Task: {F4709B81-72B8-4BE4-A042-D91D5C94253D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [375416 2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {FD96C816-E8A7-47C4-B713-1621870F44DB} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\EPSON XP-610 Series Invitation {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE
Task: C:\WINDOWS\Tasks\EPSON XP-610 Series Invitation {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE
Task: C:\WINDOWS\Tasks\EPSON XP-610 Series Update {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE:/EXE:{2CEC53D3-1048-4830-A3EB-6CDB033BFCB0} /F:UpdateSYSTEMĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi
Task: C:\WINDOWS\Tasks\EPSON XP-610 Series Update {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_ITSLQE.EXE:/EXE:{F046D536-3200-4F23-BAD7-73FA9472B4DD} /F:UpdateWORKGROUP\SWAN-PC$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\..\Interfaces\{0DA8CC2C-FE9D-44AE-B37E-E6316F216CD9}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{212ccb34-bd9a-47e4-8b8c-d9b116be0a04}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{4BDB8EF9-88CC-4624-83B4-ED7CB716502E}: [DhcpNameServer] 8.8.8.8 194.12.32.193 176.62.225.2

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\S-1-5-21-2071813083-1845976314-806757171-1000 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_121\bin\ssv.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)

FireFox:
========
FF ProfilePath: C:\Users\SWAN\AppData\Roaming\Nvu\Profiles\pefchsj5.default [2018-06-28]
FF Homepage: Nvu\Profiles\pefchsj5.default -> about:home
FF NewTab: Nvu\Profiles\pefchsj5.default -> about:newtab
FF Plugin: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-12-08] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-12-08] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-12-08] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2016-12-08] (Foxit Software Incorporated -> Foxit Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-01-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2012-10-01] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC)

Chrome:
=======
CHR Profile: C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default [2019-07-01]
CHR Extension: (Prezentace) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-28]
CHR Extension: (Dokumenty) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-28]
CHR Extension: (Disk Google) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-06-28]
CHR Extension: (YouTube) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-28]
CHR Extension: (Tabulky) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-29]
CHR Extension: (AdBlock) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-05-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-06-28]
CHR Extension: (Gmail) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-20]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [255472 2015-12-16] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-06-04] (Advanced Micro Devices, Inc.) [File not signed]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [85304 2018-10-16] (Apple Inc. -> Apple Inc.)
S2 avg; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [165520 2018-11-02] (AVG Netherlands B.V. -> AVG Technologies)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [409280 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [6893160 2019-05-28] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S3 avgm; C:\Program Files (x86)\AVG\Browser\Update\AVGBrowserUpdate.exe [165520 2018-11-02] (AVG Netherlands B.V. -> AVG Technologies)
S3 AVGSecureBrowserElevationService; C:\Program Files (x86)\AVG\Browser\Application\74.0.791.133\elevation_service.exe [1079480 2019-05-14] (AVG Technologies USA, Inc. -> AVG Technologies)
S3 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [110048 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272592 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [781440 2018-12-09] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON Corporation -> SEIKO EPSON CORPORATION)
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2014-08-31] (Macrovision Europe Ltd.) [File not signed]
R2 FoxitReaderService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitConnectedPDFService.exe [1659592 2016-11-15] (Foxit Software Incorporated -> Foxit Software Inc.)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes Corporation -> Malwarebytes)
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [161264 2013-02-20] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2298688 2019-02-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3171144 2019-02-09] (Electronic Arts, Inc. -> Electronic Arts)
S3 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [66872 2014-03-19] (Even Balance, Inc. -> )
S3 PnkBstrB; C:\Windows\SysWOW64\PnkBstrB.exe [103736 2014-03-19] (Even Balance, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5382448 2019-04-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3831576 2019-06-13] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [21648880 2015-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [674288 2015-12-16] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [85704 2017-01-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [43720 2017-01-29] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [102912 2015-05-28] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R0 avgArDisk; C:\WINDOWS\System32\drivers\avgArDisk.sys [37160 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [207496 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdriver.sys [263056 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsh.sys [206408 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniv.sys [61520 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\WINDOWS\System32\drivers\avgElam.sys [15280 2019-02-12] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\WINDOWS\System32\drivers\avgKbd.sys [42336 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [168136 2019-06-20] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [112360 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [87992 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [1030832 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [477632 2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [225656 2019-06-17] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [385904 2019-05-30] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30352 2015-04-03] (Disc Soft Ltd -> Disc Soft Ltd)
R3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2019-02-11] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-05] (Martin Malik - REALiX -> REALiX(tm))
S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [19952 2013-02-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Windows (R) Win 7 DDK provider)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [261032 2019-07-01] (Malwarebytes Corporation -> Malwarebytes)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [13368 2012-10-25] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [8206848 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation )
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [129856 2014-04-25] (Razer Inc. -> Razer, Inc.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
R3 usbfilter; C:\WINDOWS\System32\DRIVERS\usbfilter.sys [58536 2012-08-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
U3 idsvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-01 15:49 - 2019-07-01 15:51 - 000037963 _____ C:\Users\SWAN\Desktop\FRST.txt
2019-07-01 15:49 - 2019-07-01 15:49 - 000000000 ____D C:\FRST
2019-07-01 15:48 - 2019-07-01 15:48 - 002419200 _____ (Farbar) C:\Users\SWAN\Downloads\FRST64.exe
2019-07-01 15:48 - 2019-07-01 15:48 - 002419200 _____ (Farbar) C:\Users\SWAN\Desktop\FRST64.exe
2019-07-01 15:43 - 2019-07-01 15:43 - 000261032 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2019-07-01 15:40 - 2019-07-01 15:42 - 000000000 ____D C:\AdwCleaner
2019-07-01 15:39 - 2019-07-01 15:39 - 007025360 _____ (Malwarebytes) C:\Users\SWAN\Desktop\adwcleaner_7.3.exe
2019-07-01 15:38 - 2019-07-01 15:39 - 007025360 _____ (Malwarebytes) C:\Users\SWAN\Downloads\adwcleaner_7.3.exe
2019-06-30 16:19 - 2019-06-30 16:19 - 000000000 ____D C:\rsit
2019-06-30 16:18 - 2019-06-30 16:18 - 001222144 _____ C:\Users\SWAN\Desktop\RSITx64.exe
2019-06-30 16:17 - 2019-06-30 16:18 - 001222144 _____ C:\Users\SWAN\Downloads\RSITx64.exe
2019-06-19 15:50 - 2019-06-19 15:50 - 000000000 ____D C:\Program Files\UNP
2019-06-16 20:40 - 2019-06-16 20:43 - 1158380580 _____ C:\Users\SWAN\Downloads\Tohle-neni-Kalifornie_2016-09-27.mp4
2019-06-16 11:56 - 2019-06-16 11:57 - 031755626 _____ C:\Users\SWAN\Desktop\samplose.wav
2019-06-15 22:09 - 2019-06-15 22:09 - 001324898 _____ C:\Users\SWAN\Desktop\gghghe.wav
2019-06-15 22:08 - 2019-06-15 22:08 - 001324898 _____ C:\Users\SWAN\Desktop\sample4.wav
2019-06-15 22:07 - 2019-06-15 22:07 - 001324898 _____ C:\Users\SWAN\Desktop\sampkle.wav
2019-06-15 22:06 - 2019-06-15 22:06 - 002649626 _____ C:\Users\SWAN\Desktop\melody2.wav
2019-06-15 22:04 - 2019-06-15 22:04 - 002649626 _____ C:\Users\SWAN\Desktop\melody.wav
2019-06-15 21:43 - 2019-06-20 21:27 - 001322072 _____ C:\Users\SWAN\Desktop\15.6 e.flp
2019-06-15 13:34 - 2019-06-15 13:34 - 002122224 _____ ( ) C:\Users\SWAN\Downloads\setup_0351970078.exe
2019-06-15 13:24 - 2019-06-15 13:36 - 000000000 ____D C:\Program Files\VST Plugins
2019-06-15 13:22 - 2018-02-19 19:23 - 040479082 _____ (Lennar Digital ) C:\Users\SWAN\Downloads\AoN Sylenth1 v2.2.1.X Installer.exe
2019-06-15 13:20 - 2019-06-15 13:20 - 031910138 _____ C:\Users\SWAN\Downloads\Sylenth1.v2.2.1.X.INSTALLER.rar
2019-06-15 11:28 - 2019-06-15 11:29 - 521274973 _____ C:\Users\SWAN\Downloads\guitar sample pack vol. 3 by whiteblade.zip
2019-06-14 23:18 - 2019-06-14 23:18 - 005210636 _____ C:\Users\SWAN\Downloads\looperman-l-2550836-0165998-guitar-arp-and-chord.wav
2019-06-14 23:17 - 2019-06-14 23:17 - 001302794 _____ C:\Users\SWAN\Downloads\looperman-l-2519974-0167430-quiet-and-chill-chord-loop.wav
2019-06-14 23:16 - 2019-06-14 23:16 - 002335926 _____ C:\Users\SWAN\Downloads\looperman-l-0962325-0167173-ambient-chords.wav
2019-06-14 21:41 - 2019-06-14 21:42 - 246006301 _____ C:\Users\SWAN\Downloads\musicradar-uk-garage-samples.zip
2019-06-14 21:41 - 2019-06-14 21:41 - 100614496 _____ C:\Users\SWAN\Downloads\musicradar-dirty-grime-samples.zip
2019-06-13 16:05 - 2019-06-13 16:05 - 026808320 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 023438336 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 020816384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 018999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 012869120 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 012162048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 007875072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 007724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 006068224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 005112792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 004883968 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 004661760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 003906560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 003743744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 002469440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 002323696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 002096128 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-06-13 16:05 - 2019-06-13 16:05 - 002017280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-06-13 16:05 - 2019-06-13 16:05 - 001750016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 001260048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-06-13 16:05 - 2019-06-13 16:05 - 001223168 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloSI.PCShell.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000927744 _____ (Microsoft Corporation) C:\WINDOWS\system32\assignedaccessmanagersvc.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000833024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000804352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000791040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessManager.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000398848 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\esentutl.exe
2019-06-13 16:05 - 2019-06-13 16:05 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000351744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000345600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esentutl.exe
2019-06-13 16:05 - 2019-06-13 16:05 - 000311808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000287912 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe
2019-06-13 16:05 - 2019-06-13 16:05 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-06-13 16:05 - 2019-06-13 16:05 - 000228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2019-06-13 16:05 - 2019-06-13 16:05 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 022114960 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 017484800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 015221248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 009682744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 007884288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 006926336 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 006547144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 006441472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 006309256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 005764608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 005588184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 005297152 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 005210904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 005086208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 004627456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 003983872 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 003637248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 003426816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 003385344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 003344896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 003091968 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 002926096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 002777736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 002690048 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 002638336 _____ (Microsoft Corporation) C:\WINDOWS\system32\smartscreen.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 002627600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 002422272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 002276192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 002189312 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001903616 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001899160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001860608 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001761280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001701888 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001700312 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-06-13 16:04 - 2019-06-13 16:04 - 001670840 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001618944 ____R (The ICU Project) C:\WINDOWS\SysWOW64\icuin.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001605120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001485312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001483872 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001471040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 001466496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001462272 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001342904 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-06-13 16:04 - 2019-06-13 16:04 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001313792 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcore.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001254912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001180184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001072640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpcore.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 001032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 001000448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wpnapps.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000863544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000699392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000594944 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000586040 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000555232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000553664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryPS.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 000540720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StateRepository.Core.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000532992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000515152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000513904 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000496128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000478720 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskcomp.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000474936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-06-13 16:04 - 2019-06-13 16:04 - 000451104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000430904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 000427688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000419368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmicmiplugin.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000362496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskcomp.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-06-13 16:04 - 2019-06-13 16:04 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credprovhost.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000262160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-06-13 16:04 - 2019-06-13 16:04 - 000247608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000246784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000122680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryClient.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000091424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CompPkgSup.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000087864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryBroker.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerUI.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerUI.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryCore.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2019-06-13 16:04 - 2019-06-13 16:04 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 007687576 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 004997096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 003270144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 002999808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 002928640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 002707968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 002653696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 002085168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001929216 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001860096 ____R (The ICU Project) C:\WINDOWS\system32\icuin.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001298952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001253688 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 001229824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 001219424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryPS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 001048592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 001005056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000887808 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000853504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000850760 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000758688 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000752144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000730592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000676048 _____ (Microsoft Corporation) C:\WINDOWS\system32\StateRepository.Core.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000651576 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000651064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000615440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000506192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000476160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000404792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000389120 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000386576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000375544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000351232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000282424 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000244224 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000240128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000196920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSrv.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000156984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryClient.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000152896 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000152400 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000137056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000125528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000114648 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompPkgSup.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000101176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryBroker.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingFilterDS.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000090424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000080400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-06-13 16:03 - 2019-06-13 16:03 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2019-06-13 16:03 - 2019-06-13 16:03 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryCore.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-06-12 20:09 - 2019-06-12 20:09 - 003051288 _____ C:\Users\SWAN\Downloads\looperman-l-0850517-0168729-focus-on-your-breath.wav
2019-06-12 15:57 - 2019-06-12 15:57 - 001993528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2019-06-11 15:44 - 2019-06-11 15:44 - 000000080 ___SH C:\bootTel.dat
2019-06-11 15:44 - 2019-06-11 15:44 - 000000000 __SHD C:\found.000
2019-06-10 18:30 - 2019-06-10 18:32 - 671492918 _____ C:\Users\SWAN\Downloads\Vengeance Future House Vol.3.rar
2019-06-10 18:27 - 2009-06-15 08:33 - 778125312 _____ C:\Users\SWAN\Downloads\Vengeance Future House Vol.2.iso
2019-06-10 18:22 - 2009-05-04 07:16 - 797657088 _____ C:\Users\SWAN\Downloads\Vengeance Future House Vol.1.iso
2019-06-10 18:19 - 2019-06-10 18:21 - 572912961 _____ C:\Users\SWAN\Downloads\Vengeance Future House Vol.2.rar
2019-06-10 18:19 - 2013-01-09 12:55 - 724226048 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.2.iso
2019-06-10 18:15 - 2013-01-09 13:07 - 702248960 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.3.iso
2019-06-10 18:14 - 2019-06-10 18:16 - 580289861 _____ C:\Users\SWAN\Downloads\Vengeance Future House Vol.1.rar
2019-06-10 18:10 - 2019-06-10 18:11 - 473331102 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.2.rar
2019-06-10 18:10 - 2013-01-09 13:59 - 1582733312 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.4.iso
2019-06-10 18:06 - 2013-01-09 13:00 - 725006336 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.2.iso
2019-06-10 18:04 - 2019-06-10 18:06 - 464600245 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.3.rar
2019-06-10 18:04 - 2013-01-09 12:59 - 736800768 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.1.iso
2019-06-10 17:57 - 2019-06-10 18:01 - 1015718423 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.4.rar
2019-06-10 17:57 - 2006-01-24 19:21 - 733351936 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.1.iso
2019-06-10 17:55 - 2019-06-10 17:57 - 454348487 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.2.rar
2019-06-10 17:51 - 2019-06-10 17:53 - 415404692 _____ C:\Users\SWAN\Downloads\Vengeance Essential Clubsounds Vol.1.rar
2019-06-10 17:51 - 2013-01-09 19:16 - 1340250112 _____ C:\Users\SWAN\Downloads\Vengeance Essential Dubstep Vol.1.iso
2019-06-10 17:49 - 2019-06-10 17:51 - 437766945 _____ C:\Users\SWAN\Downloads\Vengeance Essential House Vol.1.rar
2019-06-10 17:45 - 2019-06-10 17:48 - 832261078 _____ C:\Users\SWAN\Downloads\Vengeance Essential Dubstep Vol.1.rar
2019-06-06 21:25 - 2019-06-06 21:25 - 141653517 _____ C:\Users\SWAN\Downloads\Yzomandias - J. eden dva [Mixtape] [2019].rar
2019-06-03 19:10 - 2019-06-03 19:10 - 000673022 _____ C:\Users\SWAN\Downloads\looperman-l-1756791-0167572-waubbles.wav

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-07-01 15:44 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-07-01 15:43 - 2019-02-04 11:30 - 000000935 _____ C:\WINDOWS\Tasks\EPSON XP-610 Series Update {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job
2019-07-01 15:43 - 2019-02-04 11:30 - 000000749 _____ C:\WINDOWS\Tasks\EPSON XP-610 Series Invitation {F046D536-3200-4F23-BAD7-73FA9472B4DD}.job
2019-07-01 15:43 - 2019-02-03 00:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-07-01 15:43 - 2019-02-01 12:30 - 000000911 _____ C:\WINDOWS\Tasks\EPSON XP-610 Series Update {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job
2019-07-01 15:43 - 2019-02-01 12:30 - 000000725 _____ C:\WINDOWS\Tasks\EPSON XP-610 Series Invitation {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}.job
2019-07-01 15:42 - 2018-09-15 08:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-07-01 15:42 - 2015-01-05 22:49 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\IObit
2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\LocalLow\IObit
2019-06-30 22:56 - 2019-02-03 00:17 - 000000000 ____D C:\Users\SWAN
2019-06-30 22:30 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
2019-06-30 22:08 - 2019-02-04 11:30 - 000003486 _____ C:\WINDOWS\System32\Tasks\EPSON XP-610 Series Update {F046D536-3200-4F23-BAD7-73FA9472B4DD}
2019-06-30 22:08 - 2019-02-04 11:30 - 000003308 _____ C:\WINDOWS\System32\Tasks\EPSON XP-610 Series Invitation {F046D536-3200-4F23-BAD7-73FA9472B4DD}
2019-06-30 22:08 - 2019-02-03 00:59 - 000002858 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2071813083-1845976314-806757171-1000
2019-06-30 22:08 - 2019-02-03 00:26 - 000003828 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2019-06-30 22:08 - 2019-02-03 00:26 - 000003406 _____ C:\WINDOWS\System32\Tasks\EPSON XP-610 Series Update {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}
2019-06-30 22:08 - 2019-02-03 00:26 - 000003406 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2019-06-30 22:08 - 2019-02-03 00:26 - 000003400 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2019-06-30 22:08 - 2019-02-03 00:26 - 000003250 _____ C:\WINDOWS\System32\Tasks\Antivirus Emergency Update
2019-06-30 22:08 - 2019-02-03 00:26 - 000003220 _____ C:\WINDOWS\System32\Tasks\EPSON XP-610 Series Invitation {2CEC53D3-1048-4830-A3EB-6CDB033BFCB0}
2019-06-30 22:08 - 2019-02-03 00:26 - 000003194 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2019-06-30 22:08 - 2019-02-03 00:26 - 000003176 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2019-06-30 22:08 - 2019-02-03 00:26 - 000002376 _____ C:\WINDOWS\System32\Tasks\{8AD2C5F6-A865-4382-AB5F-20B308586C86}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002376 _____ C:\WINDOWS\System32\Tasks\{53B0608A-A69B-449C-9081-1514F98AC435}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002356 _____ C:\WINDOWS\System32\Tasks\{B99D28A7-9F65-43D0-9F08-97012174B353}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002350 _____ C:\WINDOWS\System32\Tasks\{996C2E56-CF8D-42B1-8BB4-5B25693FCF2F}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002308 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2019-06-30 22:08 - 2019-02-03 00:26 - 000002288 _____ C:\WINDOWS\System32\Tasks\{1CA0FA9F-C6F9-42E3-8D18-DFCEB9BCE8C7}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002254 _____ C:\WINDOWS\System32\Tasks\{C3E3F5FC-6C4D-4BEB-AFB6-6E0AF263B50A}
2019-06-30 22:08 - 2019-02-03 00:26 - 000002184 _____ C:\WINDOWS\System32\Tasks\{466120E4-8C8C-4E51-8B69-F46BFC8B4EEF}
2019-06-30 22:08 - 2019-02-03 00:26 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
2019-06-30 20:51 - 2018-09-15 09:31 - 000000000 ____D C:\WINDOWS\INF
2019-06-30 20:50 - 2019-02-03 00:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-06-30 16:19 - 2014-12-28 13:47 - 000000000 ____D C:\Program Files\trend micro
2019-06-29 11:49 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-06-29 11:49 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-06-28 14:50 - 2019-04-27 11:20 - 000000000 ____D C:\Users\SWAN\AppData\Local\Spotify
2019-06-28 14:50 - 2019-04-27 11:19 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\Spotify
2019-06-28 12:43 - 2019-02-28 22:20 - 000000000 ____D C:\Users\SWAN\AppData\Local\LogMeIn Hamachi
2019-06-28 12:43 - 2018-07-31 17:27 - 000000000 ____D C:\Users\SWAN\AppData\Local\CrashDumps
2019-06-28 12:42 - 2014-03-06 23:03 - 000000000 ____D C:\Program Files\CCleaner
2019-06-25 18:41 - 2018-12-07 16:01 - 000000000 ____D C:\Program Files\UltraDefrag
2019-06-20 20:17 - 2019-02-03 12:41 - 000000000 ____D C:\ProgramData\Packages
2019-06-20 15:42 - 2015-08-09 22:21 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-06-20 15:42 - 2015-08-09 22:21 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-06-20 15:39 - 2018-05-04 17:36 - 000168136 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
2019-06-17 16:54 - 2018-05-04 17:36 - 000225656 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
2019-06-16 19:37 - 2019-01-27 15:20 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\Mp3tag
2019-06-16 19:26 - 2019-02-03 00:56 - 000000000 ____D C:\Users\SWAN\AppData\Local\PlaceholderTileLogoFolder
2019-06-16 18:14 - 2019-02-03 00:59 - 000000000 ___RD C:\Users\SWAN\OneDrive
2019-06-16 18:14 - 2019-02-03 00:17 - 000002395 _____ C:\Users\SWAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-06-15 14:02 - 2019-02-09 17:10 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\Origin
2019-06-15 14:02 - 2019-02-09 17:10 - 000000000 ____D C:\ProgramData\Origin
2019-06-15 14:00 - 2014-03-04 19:41 - 000000000 ____D C:\Program Files (x86)\VstPlugins
2019-06-15 13:51 - 2019-04-07 11:53 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\uTorrent
2019-06-15 10:11 - 2017-11-11 15:35 - 000000000 ____D C:\Program Files (x86)\UOS
2019-06-14 14:33 - 2019-02-03 00:52 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-06-14 14:33 - 2019-02-03 00:52 - 000000000 ___RD C:\Users\SWAN\3D Objects
2019-06-14 14:32 - 2019-02-03 00:09 - 002411544 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-06-13 21:58 - 2018-09-15 09:33 - 000000000 ___RD C:\Program Files\Windows Defender
2019-06-13 21:58 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-06-13 21:58 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-06-13 16:09 - 2018-09-15 09:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-06-12 16:05 - 2019-03-12 20:02 - 000000000 ____D C:\WINDOWS\system32\MpEngineStore
2019-06-12 16:05 - 2015-01-05 22:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-06-12 15:58 - 2015-01-05 22:55 - 135349160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-06-11 15:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-06-11 15:54 - 2018-09-15 09:33 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-06-10 18:46 - 2014-03-19 15:03 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\DAEMON Tools Lite
2019-06-06 20:08 - 2019-04-07 18:34 - 000000000 ____D C:\Users\SWAN\AppData\Local\Spectrasonics

==================== Files in the root of some directories ================

2019-01-27 11:14 - 2019-02-03 00:22 - 000000261 _____ () C:\ProgramData\fontcacheev1.dat
2014-06-16 13:08 - 2019-01-26 20:43 - 000007625 _____ () C:\Users\SWAN\AppData\Local\resmon.resmoncfg

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================

ReZisten
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 01 led 2010 14:07

Re: Poprosím o preventivku

#5 Příspěvek od ReZisten »

Addition:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-06-2019
Ran by SWAN (01-07-2019 15:52:30)
Running from C:\Users\SWAN\Desktop
Windows 10 Pro Version 1809 17763.557 (X64) (2019-02-02 22:28:10)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2071813083-1845976314-806757171-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2071813083-1845976314-806757171-503 - Limited - Disabled)
Guest (S-1-5-21-2071813083-1845976314-806757171-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2071813083-1845976314-806757171-1003 - Limited - Enabled)
SWAN (S-1-5-21-2071813083-1845976314-806757171-1000 - Administrator - Enabled) => C:\Users\SWAN
WDAGUtilityAccount (S-1-5-21-2071813083-1845976314-806757171-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Enabled - Up to date) {4FC75CA5-1654-5411-7CFB-1893D506BCF4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: AVG Antivirus (Enabled - Up to date) {F4A6BD41-306E-5B9F-464B-23E1AE81F649}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.207 - Adobe)
Adobe Photoshop CS3 (HKLM-x32\...\Adobe_2ac78060bc5856b0c1cf873bb919b58) (Version: 10.0 - Adobe Systems Incorporated)
Age of Empires 2 + The Conquerors CZ (HKLM-x32\...\Age of Empires 2 + The Conquerors CZ 1.1.0) (Version: 1.1.0 - Microsoft Game Studios)
Akai Professional MPK Mini MkII Editor (HKLM-x32\...\MPKminiMkIIEditor) (Version: - )
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{891F047C-9C42-5CE6-6126-B5EAA6F3CFC7}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.)
Apex Legends (HKLM-x32\...\{D7FBF176-382D-484E-863A-DFD1124A2A1C}) (Version: 1.0.0.2 - Electronic Arts, Inc.)
Apple Mobile Device Support (HKLM\...\{5FA8C4BE-8C74-4B9C-9B49-EBF759230189}) (Version: 12.1.0.25 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
AVG AntiVirus FREE (HKLM-x32\...\AVG Antivirus) (Version: 19.5.3093 - AVG Technologies)
AVG Secure Browser (HKLM-x32\...\AVG Secure Browser) (Version: 74.0.791.133 - Autoři prohlížeče AVG Secure Browser)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Call of Duty Modern Warfare 2 (HKLM-x32\...\Call of Duty Modern Warfare 2_is1) (Version: - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.00.0000 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) (HKLM-x32\...\InstallShield_{E48469CC-635E-4FD5-A122-1497C286D217}) (Version: 1.7 - Activision)
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: 1.6 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.6 Patch (HKLM-x32\...\InstallShield_{8A15B7D9-908A-4EF9-BA84-5AEDE61743EE}) (Version: - ) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: 1.7 - Activision) Hidden
Call of Duty(R) 4 - Modern Warfare(TM) 1.7 Patch (HKLM-x32\...\InstallShield_{931C37FC-594D-43A9-B10F-A2F2B1F03498}) (Version: - ) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.51 - Piriform)
CPUID CPU-Z 1.87 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.87 - CPUID, Inc.)
Crossout Launcher 1.0.3.78 (HKLM-x32\...\CrossOutLauncher_is1) (Version: - )
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 5.0.1.0406 - Disc Soft Ltd)
Defraggler (HKLM\...\Defraggler) (Version: 2.18 - Piriform)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
EPSON XP-610 Series Printer Uninstall (HKLM\...\EPSON XP-610 Series) (Version: - SEIKO EPSON Corporation)
FabFilter Pro-Q 2.07 (64-bit) (HKLM-x32\...\FabFilter Pro-Q 2.07 (64-bit)) (Version: - )
FabFilter Total Bundle (64-bit) (HKLM-x32\...\FabFilter Total Bundle (64-bit)) (Version: - )
FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line)
FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - )
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 8.1.4.1208 - Foxit Software Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 75.0.3770.100 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.11 - Google Inc.) Hidden
IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line)
IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line)
iTunes (HKLM\...\{288617D6-B455-4C00-8BFE-46B023202CF1}) (Version: 12.9.2.6 - Apple Inc.)
Java 8 Update 112 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180112F0}) (Version: 8.0.1120.15 - Oracle Corporation)
Java 8 Update 121 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Java 8 Update 121 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180121F0}) (Version: 8.0.1210.13 - Oracle Corporation)
Java 8 Update 65 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418065F0}) (Version: 8.0.650.17 - Oracle Corporation)
Java 8 Update 66 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418066F0}) (Version: 8.0.660.17 - Oracle Corporation)
Java 8 Update 74 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418074F0}) (Version: 8.0.740.2 - Oracle Corporation)
Java 8 Update 92 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418092F0}) (Version: 8.0.920.14 - Oracle Corporation)
Java 8 Update 92 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218092F0}) (Version: 8.0.920.14 - Oracle Corporation)
Java SE Development Kit 7 Update 71 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170710}) (Version: 1.7.0.710 - Oracle)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
LogMeIn Hamachi (HKLM-x32\...\{ECC0FA07-863E-44BC-8B1D-DA22F96E5FB7}) (Version: 2.2.0.633 - LogMeIn, Inc.) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.633 - LogMeIn, Inc.)
Mafia (HKLM-x32\...\{C72D7008-266D-4DD8-BF3C-296B736127F6}) (Version: 1.02 - )
Malwarebytes verze 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\OneDriveSetup.exe) (Version: 19.086.0502.0006 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.23026 (HKLM-x32\...\{e46eca4f-393b-40df-9f49-076faf788d83}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.23026 (HKLM-x32\...\{74d0e5db-b326-4dae-a6b2-445b9de1836e}) (Version: 14.0.23026.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.0 (HKLM-x32\...\{3898934B-05AE-41CD-96BE-70DA9BFBCE1F}) (Version: 3.0.11010.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 3.1 (HKLM-x32\...\{19BFDA5D-1FE2-4F25-97F9-1A79DD04EE20}) (Version: 3.1.10527.0 - Microsoft Corporation)
Movie Studio Platinum 13.0 (64-bit) (HKLM\...\{154C7340-7C70-11E3-A15F-F04DA23A5C58}) (Version: 13.0.879 - Sony)
Mp3tag v2.93 (HKLM-x32\...\Mp3tag) (Version: 2.93 - Florian Heidenreich)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MultiBit 0.5.18 (HKLM-x32\...\MultiBit 0.5.18) (Version: 0.5.18 - )
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Native Instruments Massive (HKLM-x32\...\Native Instruments Massive) (Version: - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: - Native Instruments)
Origin (HKLM-x32\...\Origin) (Version: 10.5.34.21025 - Electronic Arts, Inc.)
PDF Settings (HKLM-x32\...\{AC5B0C19-D851-42F4-BDA0-410ECF7F70A5}) (Version: 1.0 - Adobe Systems Incorporated) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{80B42CAA-28C0-4FBD-A46E-D61F45E2F9FC}) (Version: 7.2 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{466D00D0-E7DE-47C2-8FE5-54A8009F5850}) (Version: 7.2 - Apple Inc.)
QuickTime 7 (HKLM-x32\...\{FF59BD75-466A-4D5A-AD23-AAD87C5FD44C}) (Version: 7.79.80.95 - Apple Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8004 - Realtek Semiconductor Corp.)
reFX Nexus VSTi RTAS v2.2.0 (HKLM-x32\...\reFX Nexus_is1) (Version: - )
RogueKiller version 12.12.19.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.12.19.0 - Adlice Software)
Spotify (HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\Spotify) (Version: 1.1.9.383.g9f48828e - Spotify AB)
Super-Charger (HKLM-x32\...\{7CDF10DD-A9B5-4DA3-AB95-E193248D4369}_is1) (Version: 1.2.018 - MSI)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.2.3 - TeamSpeak Systems GmbH)
TP-Link TL-WN722N (HKLM-x32\...\{F9C15685-38A9-46A1-9826-97204015C19C}) (Version: 2.1.0 - TP-Link)
Ultima Online Cataclysm UO 5.0.8.3 (HKLM-x32\...\Ultima Online Cataclysm UO 5.0.8.3) (Version: - )
Ultra Defragmenter (HKLM-x32\...\UltraDefrag) (Version: 7.1.1 - UltraDefrag Development Team)
UOS version 1.0.5 (HKLM-x32\...\{FC6804BE-B90F-4C2B-BF21-6A4063C8FD4C}_is1) (Version: 1.0.5 - UOS, Team.)
VC80CRTRedist - 8.0.50727.6195 (HKLM-x32\...\{933B4015-4618-4716-A828-5289FC03165F}) (Version: 1.2.0 - DivX, Inc) Hidden
WinRAR 5.40 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)

Packages:
=========
ACG Player -> C:\Program Files\WindowsApps\41038AXILESOFT.ACGMEDIAPLAYER_1.15.17502.0_x64__wxjjre7dryqb6 [2019-04-26] (Axilesoft) [MS Ad]
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220 [2019-03-11] (Dolby Laboratories)
Fitbit Coach -> C:\Program Files\WindowsApps\Fitbit.FitbitCoach_4.4.133.0_x64__6mqt6hf9g46tw [2019-02-03] (Fitbit)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-03] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-03] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.6132.0_x64__8wekyb3d8bbwe [2019-06-15] (Microsoft Studios) [MS Ad]
Microsoft Zprávy -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.31.11723.0_x64__8wekyb3d8bbwe [2019-06-27] (Microsoft Corporation) [MS Ad]
MSN Money -> C:\Program Files\WindowsApps\Microsoft.BingFinance_4.29.10701.0_x64__8wekyb3d8bbwe [2019-03-24] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.28.10351.0_x64__8wekyb3d8bbwe [2019-02-12] (Microsoft Corporation) [MS Ad]
MSN Sports -> C:\Program Files\WindowsApps\Microsoft.BingSports_4.28.3242.0_x64__8wekyb3d8bbwe [2019-02-03] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.9.0_x64__nfy108tqq3p12 [2019-02-03] (Thumbmunkeys Ltd) [MS Ad]
Plex -> C:\Program Files\WindowsApps\CAF9E577.Plex_3.2.20.0_x64__aam28m9va5cke [2019-02-03] (Plex)
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe [2019-05-30] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers1: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers1: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2019-01-26] (Florian Heidenreich) [File not signed]
ContextMenuHandlers1: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2019-01-26] (Florian Heidenreich) [File not signed]
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers4: [Mp3tagShell] -> {6351E20C-35FA-4BE3-98FB-4CABF1363E12} => C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll [2019-01-26] (Florian Heidenreich) [File not signed]
ContextMenuHandlers4: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2019-05-27] (AVG Technologies USA, Inc. -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers6: [Foxit_ConvertToPDF_Reader] -> {A94757A0-0226-426F-B4F1-4DF381C630D3} => C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\ConvertToPDFShellExtension_x64.dll [2016-11-14] (Foxit Software Incorporated -> Foxit Software Inc.)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes Corporation -> Malwarebytes)
ContextMenuHandlers6: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext64.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2016-08-15] (win.rar GmbH -> Alexander Roshal)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\"::
WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99]
WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate]

Shortcut: C:\Users\SWAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ultima Online\Website.lnk -> hxxp://www.cataclysmuo.com

ShortcutWithArgument: C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Spouštěč aplikací Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --show-app-list
ShortcutWithArgument: C:\Users\SWAN\AppData\Local\Google\Chrome\User Data\Default\Web Applications\_crx_emfinbmielocnlhgmfkkmkngdoccbadn\ARC Welder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=emfinbmielocnlhgmfkkmkngdoccbadn
ShortcutWithArgument: C:\Users\SWAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome\Spouštěč aplikací Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --show-app-list
ShortcutWithArgument: C:\Users\SWAN\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\ARC Welder.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default --app-id=emfinbmielocnlhgmfkkmkngdoccbadn

==================== Loaded Modules (Whitelisted) ==============

2013-06-04 19:40 - 2013-06-04 19:40 - 000073728 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-06-04 19:40 - 2013-06-04 19:40 - 000103424 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2019-02-03 12:32 - 2019-02-03 12:32 - 000948736 _____ () [File not signed] C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220\e_sqlite3.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000032256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\f1f7bd49eea45dfc3e2f2dd0ef6681fb\A4.Foundation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\d404e325f3e7f244813fab09e42fe51f\AEM.Actions.CCAA.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\dcd29cf711ceb9293005b82c39bb0a82\AEM.Plugin.EEU.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\4991f9815edd6a885595c908d624563f\AEM.Plugin.Hotkeys.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.4adf1574#\925693a3cb2cecfc291cd7bdab448abb\AEM.Plugin.Audio.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\239861f8f76cd1cdca30139dfc971661\AEM.Plugin.DPPE.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000275968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\6933ea25ce658ffe37a6f1542f77aa0b\AEM.Plugin.Source.Kit.Server.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\dcc8c7ce7a9cbef4e38b1e39d25023da\AEM.Plugin.WinMessages.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\f9c62608e628693023d41de54be18510\AEM.Plugin.REG.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\86e399bec305e72963af4a1138e71deb\AEM.Plugin.GD.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000013824 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\65407c4ff29b7e6f1a08408a78c67028\AEM.Server.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\4d1e4451b64ec0ca8b50210c02dcf01c\AEM.Server.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\5c49fff8ac9dd1f79dc5b9855b5fd44e\APM.Foundation.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000122368 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\04f3f8ba8fd42dcd34882423d138226d\ATICCCom.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000199168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\e7a9563799f1864bc6739fd33d234fac\CCC.Implementation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC\70bbcb1912f1bd12d6a1e55f9f04c420\CCC.ni.exe
2019-05-17 17:43 - 2019-05-17 17:43 - 000147456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.2042675f#\e0d2c2ee8ff2163d0f4177b8e99960c9\CLI.Aspect.CPUPStates.Fuel.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000124928 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\8eac81eacb809d7f43c9766ad31ef477\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\78f7befa687f1b20fb5a99fbf37ff339\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\e118fba09a86b90868b83d7034f87c83\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000104448 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\bc52c5be6b247881ab1084347ec2d015\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000206336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\f4a09a042cd00762c701b436e50f3fd6\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000130048 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\5810f871d6afad04323487d607dab698\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000073728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\e4135dd7e8b3235b4d60813acff92b62\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4ede500c#\97c9dc9dc2e6c43e7df0b2d9c3ca88c6\CLI.Aspect.DPPE.Fuel.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\0797004b8c5fd36c4c2fbf7d7a23313e\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000073216 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\58770cb53a077f03e86fab0c5f119e1f\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000110592 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.5a772e69#\6d900348ace076ea99b38baf490ce57b\CLI.Aspect.Fets.Fuel.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.648b65fc#\1735045f9a4f4d8dafed55ac53a8bd59\CLI.Aspect.WiFi.Fuel.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000259584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\8d44f947f27c1e24f9c249af0a2458cf\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000355840 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\702a626536b4524497a1eb84979ae48f\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000062976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\5b4c326469743056902ddf4211c7f50b\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000666112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\684ed7952c1c7f02f813a3a84c4f3983\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000727552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\0aa832508990ef6c3f7c833aa7ffbd19\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000446464 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\115b59a469375117b5bc4ebe0088abfb\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\fd3d4ef15f14e9714299d2e7ad2bdcae\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\bbe4c56cb409350820044b458f533d30\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000056320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\ef6e89698a62e25500b5f72d24c3fd67\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000081920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\bb7b40301e80d47f5a3e1643a4119f6b\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000451584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\8cdae97a056d1ee6f95742098ca1d5c4\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\08598bb8be7efc7d8cfac32af5c3d927\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000066560 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\b3d977155cb1484714a13403f295b59a\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c2a2b491#\c6071d241626727130759a73b746bf74\CLI.Aspect.WiFi.Fuel.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000337408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\8b15a756623d72457f892d0e02004b15\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\4f74645b376c4b748dac0f005aa719d2\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000079872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.caa5cc64#\db3641ca581b81bfb46df956cc5811b6\CLI.Aspect.Fets.Fuel.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 001315328 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d7e090dc#\deded73184a33a099fd917bd562fe477\CLI.Aspect.User.Fuel.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000270848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\a7c6b5d6366682bbee2214b778e886e2\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 003282432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\5cdfc5e2a9f218086357bdec68b39a26\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000236032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\a72dcc0d5f271e1c9591feb9e0f064c8\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000046592 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\0142c9a578ca4e6530dd89fd39a6881e\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000069120 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.efd83192#\cbfd3736b35faf13d937269142ffed7f\CLI.Aspect.CPUPStates.Fuel.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000057344 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f45bd021#\e27a00ac3d825eed779cbc525d1967cf\CLI.Aspect.DPPE.Fuel.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000050176 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\94ff92b0b9fe81b64834dc495b7e094b\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\42cb867217244cd763d998b81f63d1aa\CLI.Caste.A4.Runtime.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\9eea1a4f844e809722e5bfc596262c86\CLI.Caste.A4.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\a370732b57270fca052dd4067bbde40d\CLI.Caste.A4.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\7b4fa96e9a09d993c7a2716b58938026\CLI.Caste.Fuel.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000304640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\30b360cadad48a5b9d879e3c828a45ab\CLI.Caste.Fuel.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\8383c98fa48197bb7cf26f4c40e88b4a\CLI.Caste.Fuel.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000038400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\7cc8aee3231425d8fde9889d669e7374\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 001537536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\b9b90b3ec66518f933cff0c1ddfebd48\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000574976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\019e6b4c74252547a6e60e8bc5a079b3\CLI.Caste.Graphics.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\22afae94de5f3003f1e8e057a1717790\CLI.Caste.HydraVision.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\a03f7a6bd354650402d2bddbc61f0bac\CLI.Caste.HydraVision.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\1432185c8861f65077c6a11eba950995\CLI.Caste.HydraVision.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\c853ebcf410d2c877eae81a37847e209\CLI.Caste.Platform.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000043520 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\ac85e48a177b9feeb6722d2c7b5bc586\CLI.Caste.Platform.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\d3a93a45551d7fdc54c21ff94a68b8bd\CLI.Caste.Platform.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000344064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combinee84f0351#\edd9620dcf55a40fed1919288d0b2c43\CLI.Combined.Fusion.Aspects.Runtime.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\e17196ea18ac140e8913905f2adf5670\CLI.Component.Runtime.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000884736 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\520a9c6ccb4e057b7453ee13256dc757\CLI.Component.Systemtray.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000168960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\dec54889537cc8c9cc592a56b9375307\CLI.Component.Dashboard.ProfileManager2.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000149504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\a5232a6dd8af2e948d6937e5affbfb3d\CLI.Component.Runtime.Shared.Private.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\d80c4a476961f89b4d44ba0df20418db\CLI.Component.Runtime.Extension.EEU.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 001605632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\29bb36c8869d7c2b8dc103c67c18a4bf\CLI.Component.Dashboard.Shared.Private.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000019968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\4e5ab757f51b3fe846591219eae2041d\CLI.Component.Client.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000086016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\e830e3abedf5ae8041fcf8d4f2589bee\CLI.Component.Dashboard.Shared.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\5c14d7d2642d67665d57b30a4c9ed3e1\CLI.Foundation.Private.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000060928 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\dfec139c27ecaa8282a5aee9d80dea96\CLI.Foundation.XManifest.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000090624 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\f96e32dad80b37ef4813f60c964c8d41\CLI.Foundation.CoreAudioAPI.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 001052672 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\d6c16fac9e289c01ad7599333cfbad67\CLI.Foundation.Client.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000295424 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\25c484a87f795d1dafc9e0c7381db432\CLI.Foundation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\e67713f98e8247089ce0f010899a2fea\DEM.Foundation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000117248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\736d78feb194a4a348102ebd1532d5b9\DEM.Graphics.I0601.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000015872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\89f9ffda679bc120eaf6a1db29a8d798\DEM.Graphics.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\cffd1d53ac88d142e1cc74ee891a3020\Fuel.Foundation.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000289792 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\49c2c7e5da49ec6ca917a80face55194\LOG.Foundation.Implementation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000146432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\4afb518f1aecfb57a4c18023b5d02f69\LOG.Foundation.Private.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\541b65c501f8ebe5fa5b2e590da245ab\LOG.Foundation.Implementation.Private.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000132096 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\6c1f01daeff7f1ee6d51bbf2d4ef4a23\LOG.Foundation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\0ff4d8b43ff3a7be591c2b3802e53179\MOM.Foundation.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000391680 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\975f45cf5a4407c40afd6e7520fa87e2\MOM.Implementation.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000020480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM\094c1023644d6009ef309566ed8ea4b5\MOM.ni.exe
2019-05-17 17:42 - 2019-05-17 17:42 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\ecbc44e3c4e8ccc3018ec1875c7702e8\NEWAEM.Foundation.ni.dll
2013-06-04 19:40 - 2013-06-04 19:40 - 000361984 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
2019-05-17 17:42 - 2019-05-17 17:42 - 000890368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\2f2c7ae1e2b9768a170c13b318065c68\ADL.Foundation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000250368 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\a4ef4c30f50b6295c5ed3ca3abb97245\APM.Server.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000290816 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\1d3b1dd091ff07f13be14e533d169d41\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 001642496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\c66049cf97a10e9de61d3bcb605b0226\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 006323200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\dc82f77a089458063305a497a1027b91\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 007986176 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\751bb1e106e8cf7e69c22c3bca8ba5c2\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 001131008 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\6628c6b2ece7cd841fc3448dea9155a0\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000133632 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\423e627cca74f1cd716177ef1f9b37e0\CLI.Component.Client.Shared.Private.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000228352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\4c7c53fdf2f9a4ec07563cc2951da4a9\CLI.Component.Runtime.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000910336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\e1b461fad68dcbc717ed66112676ec26\CLI.Component.Dashboard.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\1570720eca263c44202dc9376be4579e\DEM.Graphics.I0706.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000083456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\812c37611ef161a0a970475dc659e4be\DEM.Graphics.I0709.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\3b39988002025cc97fe6b01b8549fd81\DEM.Graphics.I0712.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000018944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\01ff4d1f3e3edbdaffdd488a710bc8be\DEM.Graphics.I0804.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000011264 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\598be6e9eff4bedefcfd8cb32f6a968f\DEM.Graphics.I0805.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000011776 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\58ed732111cdea0fbb53d638209616ec\DEM.Graphics.I0812.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\995749161a5b201fd97b0fca315e5106\DEM.Graphics.I0906.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000014848 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\16d31ad42edca848ce16225fddf07122\DEM.Graphics.I0912.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 000036352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\0567c329ab30ddaee0068abd324437d4\DEM.Graphics.I1010.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 001144320 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\77cd0bcf294cff051d4a09139314c802\Localization.Foundation.Private.ni.dll
2019-05-17 17:45 - 2019-05-17 17:45 - 000242688 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\1bc67ead1e33c500c447c6f7510191c8\ResourceManagement.Foundation.Implementation.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\07f95a2b56fe87586f3aff9f0c665bff\ResourceManagement.Foundation.Private.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000090112 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\3a0895bd068d1c2c508a83ed969ac6ae\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2019-05-17 17:42 - 2019-05-17 17:42 - 002786304 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\c447163f52d778d527a5a2e4330b57e4\CLI.Caste.Graphics.Shared.ni.dll
2019-05-17 17:44 - 2019-05-17 17:44 - 003187712 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\672c65a27b6d41c01b63b302812a863a\CLI.Caste.Graphics.Runtime.ni.dll
2019-03-11 16:51 - 2019-03-11 16:51 - 032393728 _____ (Dolby) [File not signed] C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_2.4.521.0_x64__rz1tebttyb220\DolbyUWP.dll
2019-01-26 21:24 - 2019-01-26 21:24 - 000424448 _____ (Florian Heidenreich) [File not signed] C:\Program Files (x86)\Mp3tag\Mp3tagShell64.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 000332800 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\2a0bddae2f1f3ac7690539a295c563f8\Microsoft.WindowsAPICodePack.ni.dll
2019-05-17 17:43 - 2019-05-17 17:43 - 002498048 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\e3e9b3ccc79742cdbbb00196910df537\Microsoft.WindowsAPICodePack.Shell.ni.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 001548288 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 000395776 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-02-09 17:14 - 2019-02-09 17:12 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 001177600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2019-02-09 17:14 - 2019-02-09 17:13 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\imageformats\qico.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000020992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\imageformats\qsvg.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 001181184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\platforms\qwindows.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 005010944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Core.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 005139968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Gui.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 002234880 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Network.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 002950144 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Qml.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 003084800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Quick.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000259584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Svg.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 004571648 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5Widgets.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000438272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\Qt5WinExtras.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQml\Models.2\modelsplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick.2\qtquick2plugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000729088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000179712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Dialogs\dialogplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000073216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000101888 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\PrivateWidgets\widgetsplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000014848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\QtQuick\Window.2\windowplugin.dll
2019-02-03 14:55 - 2018-12-04 16:29 - 000124928 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Malwarebytes\Anti-Malware\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\AppData:CSM [462]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\sharepoint.com -> hxxps://spstrutnov.sharepoint.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\008i.com -> 008i.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\008k.com -> 008k.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\00hq.com -> 00hq.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\0190-dialers.com -> 0190-dialers.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\01i.info -> 01i.info
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\02pmnzy5eo29bfk4.com -> 02pmnzy5eo29bfk4.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\05p.com -> 05p.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\07ic5do2myz3vzpk.com -> 07ic5do2myz3vzpk.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\08nigbmwk43i01y6.com -> 08nigbmwk43i01y6.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\093qpeuqpmz6ebfa.com -> 093qpeuqpmz6ebfa.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\0calories.net -> 0calories.net
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\0cj.net -> 0cj.net
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\0scan.com -> 0scan.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\1-britney-spears-nude.com -> 1-britney-spears-nude.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\1-domains-registrations.com -> 1-domains-registrations.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\1-se.com -> 1-se.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\1001movie.com -> 1001movie.com
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\1001night.biz -> 1001night.biz
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\100gal.net -> 100gal.net
IE restricted site: HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\100sexlinks.com -> 100sexlinks.com

There are 4788 more sites.


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2018-12-04 16:50 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts

127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2071813083-1845976314-806757171-1000\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
MSCONFIG\startupreg: iTunesHelper => "D:\Programy\iTunes\iTunesHelper.exe"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "Adguard"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000000"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "Gaijin.Net Agent"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "EPLTarget\P0000000000000001"
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\...\StartupApproved\Run: => "Spotify"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{EBEED3C6-23FE-4D9C-B486-CDCC01C4311D}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{759F323D-8054-4942-9432-41E8BEC610EB}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{F8BA76B4-32EA-4C76-9C15-35EB3C79BC63}] => (Allow) D:\Programy\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{8042F133-73B6-4F43-9E63-FED1F4AC9EB3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5B5EF83D-9AEE-4F50-8EE5-65D6A29ED902}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B8ECCDD3-0CA3-4C1B-A375-C58928E08BCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D5D382B7-EA3E-49EE-886E-63A98A8A0FCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0448DD50-CD30-4BBC-A2AB-13D529076B1B}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [UDP Query User{93CF257F-97A0-4429-A209-A49A8BB74EB6}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{FB88F6C3-5A00-4F1D-859A-E8D65F0DA096}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{75E78FC4-CA5F-49EA-9162-D0A824CE641F}D:\hry\ultimaonlinehs\client_1546x1010.exe] => (Allow) D:\hry\ultimaonlinehs\client_1546x1010.exe (Electronic Arts) [File not signed]
FirewallRules: [TCP Query User{EFE1635B-08D0-4AA2-9B85-0A0460B1B244}D:\hry\ultimaonlinehs\client_1546x1010.exe] => (Allow) D:\hry\ultimaonlinehs\client_1546x1010.exe (Electronic Arts) [File not signed]
FirewallRules: [UDP Query User{C56F768C-1832-42F5-B35D-02BE9D5BB128}D:\hry\ultima online cataclysm\client.exe] => (Allow) D:\hry\ultima online cataclysm\client.exe (Electronic Arts) [File not signed]
FirewallRules: [TCP Query User{E4ECC4AC-1D05-4552-AAD5-A0A0703C2439}D:\hry\ultima online cataclysm\client.exe] => (Allow) D:\hry\ultima online cataclysm\client.exe (Electronic Arts) [File not signed]
FirewallRules: [{F70A0379-9D4F-42A9-B6D0-9371DBBBA166}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe () [File not signed]
FirewallRules: [{BA534B00-EBE4-48E1-A048-9FBDDBC938C9}] => (Allow) C:\Program Files (x86)\Activision\Call of Duty 4 - Modern Warfare\iw3mp.exe () [File not signed]
FirewallRules: [UDP Query User{D5391CF5-202D-4A07-B070-BAACE4AB5E31}D:\hry\modern warfare 2\iw4mp.exe] => (Allow) D:\hry\modern warfare 2\iw4mp.exe (Valve Corporation -> ) [File not signed]
FirewallRules: [TCP Query User{0C1330E5-47C2-4381-859B-B33BBFB81B3C}D:\hry\modern warfare 2\iw4mp.exe] => (Allow) D:\hry\modern warfare 2\iw4mp.exe (Valve Corporation -> ) [File not signed]
FirewallRules: [UDP Query User{5E03D1D1-9EC2-45E3-9DC6-00A7E8842033}D:\hry\age of empires ii - the age of kings\empires2.exe] => (Allow) D:\hry\age of empires ii - the age of kings\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [TCP Query User{D4290C5E-7EA5-4A2A-8EBC-1AEA784959ED}D:\hry\age of empires ii - the age of kings\empires2.exe] => (Allow) D:\hry\age of empires ii - the age of kings\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [UDP Query User{5F3AD5B8-4F4B-428A-858B-1EE5F62FBC04}D:\hry\counter-strike\hl.exe] => (Allow) D:\hry\counter-strike\hl.exe (Valve) [File not signed]
FirewallRules: [TCP Query User{9D51ACFB-F915-4D7E-A126-07228409ABB0}D:\hry\counter-strike\hl.exe] => (Allow) D:\hry\counter-strike\hl.exe (Valve) [File not signed]
FirewallRules: [UDP Query User{4ACE498D-408A-4332-B320-A900B995037F}C:\program files\java\jdk1.7.0_71\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_71\bin\java.exe
FirewallRules: [TCP Query User{4DAB9987-1255-4D12-B667-F57F2599C4BD}C:\program files\java\jdk1.7.0_71\bin\java.exe] => (Allow) C:\program files\java\jdk1.7.0_71\bin\java.exe
FirewallRules: [{08171C5E-46DD-4C71-93E9-6EC5B3706F3C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]
FirewallRules: [{319AF72F-FC0B-4D3E-97A0-BA22A86171DE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]
FirewallRules: [{AE56261A-7E2E-4CE1-9987-476F4E4515DD}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{1F7997E1-1A03-49D8-B653-75ACEAAABDCE}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{8E45C885-0780-4E7C-B149-D318E0FD318B}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{305337A9-8509-481C-A27D-73E55EA4A223}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{16588876-B434-4624-B054-7C7F5917F0DD}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C6B26BAC-EF97-4693-A720-156999CEC6ED}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{60B62767-E2BE-4907-A0E8-691A8688FF79}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{ADB50534-6C2C-4CEF-A2BA-BF37A8CA2DCB}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5059EB77-4B16-4BE9-A8AF-AC1FCABD20CA}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{C2C6C40C-2764-4AF2-86F5-F3D18F32D00F}C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe] => (Allow) C:\windows\microsoft.net\framework\v2.0.50727\vbc.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{24170ABB-591C-4059-8F15-5F1B8B952AB4}D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [UDP Query User{1754E1F7-A3E1-46B8-A261-E135EF26BE36}D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [{1E1B8390-C2C5-48F6-B2ED-D4BB9A0C4DDF}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{0431575F-6685-450D-A802-4A7DC60B0B6F}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{4BE97DE8-FF21-4040-8E41-D011C3148EA2}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [UDP Query User{FB82564E-1E81-483E-B5BD-C45DBBE2623B}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{6EA81639-4CA5-45B7-8B61-CA91AC49C194}D:\hry\ultima online cataclysm\client.exe] => (Allow) D:\hry\ultima online cataclysm\client.exe (Electronic Arts) [File not signed]
FirewallRules: [UDP Query User{B0D93FD3-B981-494C-9091-569F3A7E5DE8}D:\hry\ultima online cataclysm\client.exe] => (Allow) D:\hry\ultima online cataclysm\client.exe (Electronic Arts) [File not signed]
FirewallRules: [{57A00520-C9A2-45E8-A297-F02BF5162C81}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{C3AEC40C-30E0-465F-BD9E-64075B970DC1}] => (Allow) C:\Program Files (x86)\Origin Games\Apex\EasyAntiCheat_launcher.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [TCP Query User{00D76CA2-9E7A-4985-A445-59DCE30CADE0}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [UDP Query User{0DD15B59-20DC-4161-A1EE-93A0E2E2EA2D}C:\program files (x86)\origin games\apex\r5apex.exe] => (Allow) C:\program files (x86)\origin games\apex\r5apex.exe (Electronic Arts, Inc. -> Respawn Entertainment)
FirewallRules: [TCP Query User{AC6985E5-E93C-4D55-884A-BCEDC27E1563}D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [UDP Query User{A6185375-615B-4079-8D82-61EFCE4024AE}D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.184\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{48242AD0-E4AF-45EA-9517-2A1D1431E353}D:\hry\lol\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [UDP Query User{1297C21A-1543-4A20-BE26-4900021C3448}D:\hry\lol\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe] => (Allow) D:\hry\lol\rads\projects\league_client\releases\0.0.0.188\deploy\leagueclient.exe (Riot Games, Inc. -> )
FirewallRules: [TCP Query User{6E6B4D90-9273-424C-B20A-D6E43ABF4FF1}D:\hry\age of empires ii - the age of kings\empires2.exe] => (Allow) D:\hry\age of empires ii - the age of kings\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [UDP Query User{649B6A28-6053-4286-8F4C-D8D00FE6D9F3}D:\hry\age of empires ii - the age of kings\empires2.exe] => (Allow) D:\hry\age of empires ii - the age of kings\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [TCP Query User{DC6DB2AA-A0AB-4F32-BC1A-E0279527F886}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{4DA8162E-09D5-4290-B774-B3A3C6D005D7}C:\windows\syswow64\dplaysvr.exe] => (Allow) C:\windows\syswow64\dplaysvr.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [TCP Query User{D333DAF7-D48A-49BC-9253-3CBAFAE0889E}D:\hry\counter-strike\hl.exe] => (Allow) D:\hry\counter-strike\hl.exe (Valve) [File not signed]
FirewallRules: [UDP Query User{F8F593DA-BF08-426E-B449-6CF7249EE3FE}D:\hry\counter-strike\hl.exe] => (Allow) D:\hry\counter-strike\hl.exe (Valve) [File not signed]
FirewallRules: [TCP Query User{4E64FEE7-E59A-4774-A204-CB331436149A}C:\users\swan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\swan\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{BE1A4CBB-C789-4F9A-9CD5-BCB3852D3C12}C:\users\swan\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\swan\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{676C582D-427F-4A60-A361-9CB9DD2F3ECE}D:\programy\fl studio\system\tools\bridge\64bit\ilbridge.exe] => (Allow) D:\programy\fl studio\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [UDP Query User{00C6FA4C-9686-4898-9882-515C7B040175}D:\programy\fl studio\system\tools\bridge\64bit\ilbridge.exe] => (Allow) D:\programy\fl studio\system\tools\bridge\64bit\ilbridge.exe (Image-Line) [File not signed]
FirewallRules: [{81C26E69-2702-40DC-A57C-B10521EB4A1D}] => (Allow) D:\Hry\Age of Empires II The Conquerors\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{0A9AA196-5C7D-453A-BBA7-F666F13F517C}] => (Allow) D:\Hry\Age of Empires II The Conquerors\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{8663365B-0A07-4EE4-A8B8-13A5BD7BD6CB}] => (Allow) D:\Hry\Age of Empires II The Conquerors\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{7A99D15F-642C-42CC-88FA-5CBC49182258}] => (Allow) D:\Hry\Age of Empires II The Conquerors\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{F1B9D538-7460-4794-9DA9-B73F1A1570D5}] => (Allow) D:\Hry\Age of Empires II The Conquerors\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{323AD91E-AEA8-4504-9003-50C05F4E845A}] => (Allow) D:\Hry\Age of Empires II The Conquerors\empires2.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{1F22B6B7-50D7-4279-B609-B9E8077FE08F}] => (Allow) D:\Hry\Age of Empires II The Conquerors\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{F101C7D3-E7CF-400E-9475-63EE566F1BFB}] => (Allow) D:\Hry\Age of Empires II The Conquerors\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{4FD49CD0-D211-4D8A-BD71-85BD31E17131}] => (Allow) D:\Hry\Age of Empires II The Conquerors\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [{8DC55F55-7F91-44DD-9656-E0D59CDD322D}] => (Allow) D:\Hry\Age of Empires II The Conquerors\age2_x1\age2_x1.exe (Microsoft Corporation) [File not signed]
FirewallRules: [TCP Query User{E1EDBF10-9252-4923-B39C-4E19F67F53A1}C:\users\swan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\swan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{BF1B6C13-7CD5-4DFE-99C9-9666F9C5A8AA}C:\users\swan\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\swan\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7A8FD91A-1DE9-4E3C-AEDE-C86931FF1DF7}] => (Allow) C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe (AVG Technologies USA, Inc. -> AVG Technologies)
FirewallRules: [{5B10EA7D-3DC6-40ED-ABC0-4376DC9B52D1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

12-06-2019 15:56:41 Windows Update
21-06-2019 15:47:32 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 17 E.5.0.1.2.F.3.A.6.0.2.2.A.4.5.1.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR SWAN-PC-2.local.

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 2620:009B:0000:0000:0000:0000:1946:DBE6:5353 15 E.5.0.1.2.F.3.A.6.0.2.2.A.4.5.1.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR SWAN-PC.local.

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 17 6.E.B.D.6.4.9.1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.B.9.0.0.0.2.6.2.ip6.arpa. PTR SWAN-PC-2.local.

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 2620:009B:0000:0000:0000:0000:1946:DBE6:5353 15 6.E.B.D.6.4.9.1.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.0.B.9.0.0.0.2.6.2.ip6.arpa. PTR SWAN-PC.local.

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Local Hostname SWAN-PC.local already in use; will try SWAN-PC-2.local instead

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: ProbeCount 0; will deregister 16 SWAN-PC.local. AAAA 2620:009B:0000:0000:0000:0000:1946:DBE6

Error: (07/01/2019 03:43:44 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from FE80:0000:0000:0000:154A:2206:A3F2:105E:5353 4 SWAN-PC.local. Addr 25.70.219.230

Error: (07/01/2019 03:38:06 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1023) (User: NT AUTHORITY)
Description: Systém Windows nemůže načíst knihovnu DLL rozšiřitelných čítačů C:\WINDOWS\system32\sysmain.dll (kód chyby Win32 126).


System errors:
=============
Error: (07/01/2019 03:45:46 PM) (Source: DCOM) (EventID: 10016) (User: SWAN-PC)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli SWAN-PC\SWAN (SID: S-1-5-21-2071813083-1845976314-806757171-1000) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (07/01/2019 03:43:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AODDriver4.3 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (07/01/2019 03:43:27 PM) (Source: NETLOGON) (EventID: 3095) (User: )
Description: Tento počítač je nakonfigurován jako člen pracovní skupiny, nikoliv jako
člen domény. Přihlašovací služba Netlogon nepotřebuje být spuštěna v této
konfiguraci.

Error: (07/01/2019 03:42:29 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\system32\Rtlihvs.dll

Error: (07/01/2019 03:42:29 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\system32\Rtlihvs.dll

Error: (07/01/2019 03:42:21 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 1115 při pokusu o spuštění služby SecurityHealthService s argumenty Není k dispozici za účelem spuštění serveru:
{2D15188C-D298-4E10-83B2-64666CCBEBBD}

Error: (07/01/2019 03:42:19 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\WINDOWS\system32\Rtlihvs.dll

Error: (07/01/2019 03:42:03 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Origin Web Helper Service byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2019-05-27 20:33:28.575
Description:
Program Antivirová ochrana v programu Windows Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.16000.6
Předchozí verze modulu: 1.1.15100.1
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

CodeIntegrity:
===================================

Date: 2019-07-01 15:43:37.068
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\AVG\Antivirus\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-15 13:53:15.366
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\AVG\Antivirus\wsc_proxy.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 15:48:59.752
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements.

Date: 2019-06-14 15:48:59.660
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements.

Date: 2019-06-14 15:48:59.593
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements.

Date: 2019-06-14 15:48:59.244
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\Microsoft.StdFormat\7.0.3300.0__b03f5f7f11d50a3a\Microsoft.stdformat.dll that did not meet the Microsoft signing level requirements.

Date: 2019-06-14 15:48:59.077
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\ADODB\7.0.3300.0__b03f5f7f11d50a3a\adodb.dll that did not meet the Microsoft signing level requirements.

Date: 2019-06-14 15:48:58.901
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe) attempted to load \Device\HarddiskVolume2\Windows\assembly\GAC\MSDATASRC\7.0.3300.0__b03f5f7f11d50a3a\msdatasrc.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: American Megatrends Inc. V11.4 10/12/2013
Motherboard: MSI FM2-A55M-E33 (MS-7721)
Processor: AMD A4-4000 APU with Radeon(tm) HD Graphics
Percentage of memory in use: 81%
Total physical RAM: 3281.81 MB
Available physical RAM: 590.82 MB
Total Virtual: 13281.81 MB
Available Virtual: 10350.95 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:292.48 GB) (Free:56.42 GB) NTFS
Drive d: () (Fixed) (Total:638.44 GB) (Free:355.7 GB) NTFS

\\?\Volume{624bedc4-78af-11e3-b137-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.03 GB) NTFS
\\?\Volume{00aec2cd-0000-0000-0000-c02449000000}\ () (Fixed) (Total:0.49 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 00AEC2CD)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=292.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=504 MB) - (Type=27)
Partition 4: (Not Active) - (Size=638.4 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

marek5816
Nováček
Nováček
Příspěvky: 77
Registrován: 19 kvě 2016 20:19

Re: Poprosím o preventivku

#6 Příspěvek od marek5816 »

:arrow: Pri starte sa spusta strasne vela programov ktore mozu spomalovat PC, odporucam vypnut vsetky programi ktore nepotrebujete pouzivat hned po starte windowsu.
  • Stiahnite a nainstalujte Ccleaner - https://www.ccleaner.com/ccleaner
  • V casti Tools - > Startup vypnite aplikacie ktore nepotrebujete hned spustit pri starte windows, tlacitkom Disable, hore vo vsetkych 3 zalozkach
:arrow: Nepouzivajte Iobit ani ziadne podobne zrychlovacie programy, nijako nepomozu, iba zhorsuju chod PC, s vynimkou Ccleaneru.

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    File: C:\Program Files\Microsoft Security Client\MpCmdRun.exe
    
    C:\Program Files\Bonjour
    C:\Program Files (x86)\Bonjour
    C:\Windows\SysWOW64\muzapp.exe
    
    FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
    Task: {5D3B9262-B0C3-4B66-BD7A-1274D8139FC3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)
    Task: {8F9384DB-6DA0-4146-A18A-66B0C840B60C} - System32\Tasks\{53B0608A-A69B-449C-9081-1514F98AC435} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp <==== ATTENTION
    Task: {C0CC8FC6-AFCD-44EF-AFB5-EB7B0758A1F4} - \{C2BAE604-973C-4300-B96B-A3EBE077AEB1} -> No File <==== ATTENTION
    Task: {E8E61980-3B76-4872-8E49-96DBEC59B232} - System32\Tasks\{8AD2C5F6-A865-4382-AB5F-20B308586C86} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp <==== ATTENTION
    HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
    HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
    HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
    HKU\S-1-5-21-2071813083-1845976314-806757171-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
    Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
    
    Task: {57097E1E-F755-4031-8FB2-A9C667F57AD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)
    
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
    2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
    
    2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\IObit
    2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\LocalLow\IObit
    2019-06-30 16:19 - 2014-12-28 13:47 - 000000000 ____D C:\Program Files\trend micro
    2019-01-27 11:14 - 2019-02-03 00:22 - 000000261 _____ () C:\ProgramData\fontcacheev1.dat
    2019-06-11 15:44 - 2019-06-11 15:44 - 000000000 __SHD C:\found.000
    
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
    ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
    ContextMenuHandlers1: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
    ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
    ContextMenuHandlers4: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
    ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File
    ContextMenuHandlers6: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
    
    AlternateDataStreams: C:\Users\Public\AppData:CSM [462]
    
    HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)
    
    FirewallRules: [{8042F133-73B6-4F43-9E63-FED1F4AC9EB3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
    FirewallRules: [{5B5EF83D-9AEE-4F50-8EE5-65D6A29ED902}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
    FirewallRules: [{B8ECCDD3-0CA3-4C1B-A375-C58928E08BCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
    FirewallRules: [{D5D382B7-EA3E-49EE-886E-63A98A8A0FCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
    
    FirewallRules: [{08171C5E-46DD-4C71-93E9-6EC5B3706F3C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]
    FirewallRules: [{319AF72F-FC0B-4D3E-97A0-BA22A86171DE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]
    
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

ReZisten
Návštěvník
Návštěvník
Příspěvky: 89
Registrován: 01 led 2010 14:07

Re: Poprosím o preventivku

#7 Příspěvek od ReZisten »

Hotovo, zde je log po fixu

Fix result of Farbar Recovery Scan Tool (x64) Version: 30-06-2019
Ran by SWAN (01-07-2019 21:37:40) Run:1
Running from C:\Users\SWAN\Desktop
Loaded Profiles: SWAN (Available Profiles: SWAN)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
File: C:\Program Files\Microsoft Security Client\MpCmdRun.exe

C:\Program Files\Bonjour
C:\Program Files (x86)\Bonjour
C:\Windows\SysWOW64\muzapp.exe

FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {5D3B9262-B0C3-4B66-BD7A-1274D8139FC3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)
Task: {8F9384DB-6DA0-4146-A18A-66B0C840B60C} - System32\Tasks\{53B0608A-A69B-449C-9081-1514F98AC435} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAB62.tmp <==== ATTENTION
Task: {C0CC8FC6-AFCD-44EF-AFB5-EB7B0758A1F4} - \{C2BAE604-973C-4300-B96B-A3EBE077AEB1} -> No File <==== ATTENTION
Task: {E8E61980-3B76-4872-8E49-96DBEC59B232} - System32\Tasks\{8AD2C5F6-A865-4382-AB5F-20B308586C86} => C:\Windows\system32\pcalua.exe -a C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp\MicroInstallerNative.exe -d C:\Users\SWAN\AppData\Local\Temp\7zSAD74.tmp <==== ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dl ... r=iesearch
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File

Task: {57097E1E-F755-4031-8FB2-A9C667F57AD8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-09] (Google Inc -> Google Inc.)

2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-06-13 16:03 - 2019-06-13 16:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin

2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\Roaming\IObit
2019-07-01 15:42 - 2015-01-05 22:21 - 000000000 ____D C:\Users\SWAN\AppData\LocalLow\IObit
2019-06-30 16:19 - 2014-12-28 13:47 - 000000000 ____D C:\Program Files\trend micro
2019-01-27 11:14 - 2019-02-03 00:22 - 000000261 _____ () C:\ProgramData\fontcacheev1.dat
2019-06-11 15:44 - 2019-06-11 15:44 - 000000000 __SHD C:\found.000

ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers4: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File
ContextMenuHandlers5: [Gadgets] -> {6B9228DA-9C15-419e-856C-19E768A13BDC} => -> No File
ContextMenuHandlers6: [PfMenu] -> {2F844462-7CB8-489C-828C-32A6422506AF} => -> No File

AlternateDataStreams: C:\Users\Public\AppData:CSM [462]

HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File)

FirewallRules: [{8042F133-73B6-4F43-9E63-FED1F4AC9EB3}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5B5EF83D-9AEE-4F50-8EE5-65D6A29ED902}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B8ECCDD3-0CA3-4C1B-A375-C58928E08BCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D5D382B7-EA3E-49EE-886E-63A98A8A0FCD}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)

FirewallRules: [{08171C5E-46DD-4C71-93E9-6EC5B3706F3C}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]
FirewallRules: [{319AF72F-FC0B-4D3E-97A0-BA22A86171DE}] => (Allow) C:\Windows\SysWOW64\muzapp.exe (Musiccity Co.Ltd.) [File not signed]

EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 42
Average :
Sum : 62617096
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========


========================= File: C:\Program Files\Microsoft Security Client\MpCmdRun.exe ========================

"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" => not found
====== End of File: ======

C:\Program Files\Bonjour => moved successfully
C:\Program Files (x86)\Bonjour => moved successfully
C:\Windows\SysWOW64\muzapp.exe => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5D3B9262-B0C3-4B66-BD7A-1274D8139FC3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5D3B9262-B0C3-4B66-BD7A-1274D8139FC3}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8F9384DB-6DA0-4146-A18A-66B0C840B60C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8F9384DB-6DA0-4146-A18A-66B0C840B60C}" => removed successfully
C:\WINDOWS\System32\Tasks\{53B0608A-A69B-449C-9081-1514F98AC435} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{53B0608A-A69B-449C-9081-1514F98AC435}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C0CC8FC6-AFCD-44EF-AFB5-EB7B0758A1F4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C0CC8FC6-AFCD-44EF-AFB5-EB7B0758A1F4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C2BAE604-973C-4300-B96B-A3EBE077AEB1}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E8E61980-3B76-4872-8E49-96DBEC59B232}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E8E61980-3B76-4872-8E49-96DBEC59B232}" => removed successfully
C:\WINDOWS\System32\Tasks\{8AD2C5F6-A865-4382-AB5F-20B308586C86} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{8AD2C5F6-A865-4382-AB5F-20B308586C86}" => removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Search_URL => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Local Page => value restored successfully
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Search Page" => removed successfully
"HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main\\Start Page" => removed successfully
HKU\S-1-5-21-2071813083-1845976314-806757171-1000\Software\Microsoft\Internet Explorer\Main\\Search Page => value restored successfully
"HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => removed successfully
HKLM\Software\Classes\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{57097E1E-F755-4031-8FB2-A9C667F57AD8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{57097E1E-F755-4031-8FB2-A9C667F57AD8}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
C:\WINDOWS\system32\DrtmAuth8.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth7.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth6.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth5.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth4.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth3.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth2.bin => moved successfully
C:\WINDOWS\system32\DrtmAuth1.bin => moved successfully
C:\Users\SWAN\AppData\Roaming\IObit => moved successfully
C:\Users\SWAN\AppData\LocalLow\IObit => moved successfully
C:\Program Files\trend micro => moved successfully
C:\ProgramData\fontcacheev1.dat => moved successfully
C:\found.000 => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avg => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\PfMenu => removed successfully
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\00avg => removed successfully
HKLM\Software\Classes\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => not found
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PfMenu => removed successfully
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\Gadgets => removed successfully
HKLM\Software\Classes\CLSID\{6B9228DA-9C15-419e-856C-19E768A13BDC} => not found
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PfMenu => removed successfully
HKLM\Software\Classes\CLSID\{2F844462-7CB8-489C-828C-32A6422506AF} => not found
C:\Users\Public\AppData => ":CSM" ADS removed successfully
HKLM\software\microsoft\Windows\CurrentVersion\Telephony\Providers => ProviderFileName2 -> ndptsp.tsp (No File) => Error: No automatic fix found for this entry.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8042F133-73B6-4F43-9E63-FED1F4AC9EB3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5B5EF83D-9AEE-4F50-8EE5-65D6A29ED902}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B8ECCDD3-0CA3-4C1B-A375-C58928E08BCD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D5D382B7-EA3E-49EE-886E-63A98A8A0FCD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{08171C5E-46DD-4C71-93E9-6EC5B3706F3C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{319AF72F-FC0B-4D3E-97A0-BA22A86171DE}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 18636800 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 153987862 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 164345 B
Edge => 25088 B
Chrome => 371341735 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 3610 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
SWAN => 3380674 B

RecycleBin => 0 B
EmptyTemp: => 522.2 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:41:00 ====

marek5816
Nováček
Nováček
Příspěvky: 77
Registrován: 19 kvě 2016 20:19

Re: Poprosím o preventivku

#8 Příspěvek od marek5816 »

Pc by mal byt cisty, su este nejake problemy?

Odpovědět